VYPR

S3 Browser

by S3 Browser

CVEs (2)

  • CVE-2018-20298Dec 19, 2018
    risk 0.00cvss epss 0.01

    S3 Browser before 8.1.5 contains an XML external entity (XXE) vulnerability, allowing remote attackers to read arbitrary files and obtain NTLMv2 hash values by tricking a user into connecting to a malicious server via the S3 protocol.

  • CVE-2006-6988Feb 9, 2007
    risk 0.00cvss epss 0.01

    Cross-domain vulnerability in Slim Browser 4.07 build 100 allows remote attackers to access restricted information from other domains via an object tag with a data parameter that references a link on the attacker's originating site that specifies a Location HTTP header that…