Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown

CVE-2021-44033

Disclosure Date: November 19, 2021 (last updated February 23, 2025)
In Ionic Identity Vault before 5.0.5, the protection mechanism for invalid unlock attempts can be bypassed.
Attacker Value
Unknown

CVE-2021-3145

Disclosure Date: September 10, 2021 (last updated February 23, 2025)
In Ionic Identity Vault before 5, a local root attacker on an Android device can bypass biometric authentication.
Attacker Value
Unknown

CVE-2018-16202

Disclosure Date: January 09, 2019 (last updated November 27, 2024)
Directory traversal vulnerability in cordova-plugin-ionic-webview versions prior to 2.2.0 (not including 2.0.0-beta.0, 2.0.0-beta.1, 2.0.0-beta.2, and 2.1.0-0) allows remote attackers to access arbitrary files via unspecified vectors.
Attacker Value
Unknown

CVE-2018-1000123

Disclosure Date: March 13, 2018 (last updated November 26, 2024)
Ionic Team Cordova plugin iOS Keychain version before commit 18233ca25dfa92cca018b9c0935f43f78fd77fbf contains an Information Exposure Through Log Files (CWE-532) vulnerability in CDVKeychain.m that can result in login, password and other sensitive data leakage. This attack appear to be exploitable via Attacker must have access to victim's iOS logs. This vulnerability appears to have been fixed in after commit 18233ca25dfa92cca018b9c0935f43f78fd77fbf.
0
Attacker Value
Unknown

CVE-2011-5226

Disclosure Date: October 25, 2012 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in wordpress_sentinel.php in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to hijack the authentication of an administrator for requests that trigger snapshots.
0
Attacker Value
Unknown

CVE-2011-5224

Disclosure Date: October 25, 2012 (last updated October 05, 2023)
SQL injection vulnerability in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
0
Attacker Value
Unknown

CVE-2011-5225

Disclosure Date: October 25, 2012 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in wordpress_sentinel.php in the Sentinel plugin 1.0.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
0
Attacker Value
Unknown

CVE-2007-5271

Disclosure Date: October 08, 2007 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in Trionic Cite CMS 1.2 rev9 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the bField[bf_data] parameter to (1) interface/editors/-custom.php or (2) interface/editors/custom.php.
0
Attacker Value
Unknown

CVE-2004-0404

Disclosure Date: July 07, 2004 (last updated February 22, 2025)
logcheck before 1.1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary directory in /var/tmp.
0