Page 3 of 15 results (0.016 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

Cryptocat before 2.0.22 has weak encryption in the Socialist Millionnaire Protocol Cryptocat versiones anteriores a 2.0.22, presenta un cifrado débil en el Protocolo Socialist Millionnaire. • https://tobtu.com/decryptocat.php https://vuldb.com/?id.9436 https://www.openwall.com/lists/oss-security/2013/07/10/15 https://www.securityfocus.com/bid/61108 • CWE-326: Inadequate Encryption Strength •

CVSS: 7.5EPSS: 2%CPEs: 1EXPL: 0

Cryptocat before 2.0.22 has Remote Denial of Service via username Cryptocat versiones anteriores a 2.0.22, presenta una Denegación de Servicio Remota mediante el nombre de usuario • https://tobtu.com/decryptocat.php https://vuldb.com/?id.9439 https://www.openwall.com/lists/oss-security/2013/07/10/15 https://www.securityfocus.com/bid/61094 • CWE-20: Improper Input Validation •

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 0

Cryptocat before 2.0.22 Link Markup Decorator HTML Handling Weakness Cryptocat versiones anteriores a 2.0.22, una Debilidad del Manejo HTML del Decodificador de Marcado de Enlaces. • https://tobtu.com/decryptocat.php https://www.openwall.com/lists/oss-security/2013/07/10/15 https://www.securityfocus.com/bid/61098 • CWE-20: Improper Input Validation •

CVSS: 9.1EPSS: 0%CPEs: 1EXPL: 0

Cryptocat before 2.0.22 strophe.js Math.random() Random Number Generator Weakness Cryptocat versiones anteriores a 2.0.22, una Debilidad del Generador de Números Aleatorios de la función Math.random() del archivo strophe.js. • https://tobtu.com/decryptocat.php https://vuldb.com/?id.9443 https://www.openwall.com/lists/oss-security/2013/07/10/15 https://www.securityfocus.com/bid/61095 • CWE-330: Use of Insufficiently Random Values •

CVSS: 9.8EPSS: 4%CPEs: 1EXPL: 1

Cryptocat before 2.0.22 has Remote Script Injection due to improperly sanitizing user input Cryptocat versiones anteriores a 2.0.22, presenta una Inyección de Script Remota debido a un saneamiento de la entrada de usuario de manera inapropiada. Cryptocat versions prior to 2.0.22 are vulnerability to a script injection vulnerability. • https://www.exploit-db.com/exploits/38637 http://packetstormsecurity.com/files/134252/Cryptocat-Script-Insertion.html https://packetstormsecurity.com/files/cve/CVE-2013-4103 https://tobtu.com/decryptocat.php https://www.openwall.com/lists/oss-security/2013/07/10/15 https://www.securityfocus.com/bid/61093 • CWE-20: Improper Input Validation •