VYPR

Minishare

by Minishare Project

CVEs (4)

  • CVE-2018-19862CriJan 3, 2019
    risk 0.68cvss 9.8epss 0.13

    Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP POST request. NOTE: this product is discontinued.

  • CVE-2018-19861CriJan 3, 2019
    risk 0.68cvss 9.8epss 0.13

    Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP HEAD request. NOTE: this product is discontinued.

  • CVE-2020-13768CriJun 4, 2020
    risk 0.64cvss 9.8epss 0.02

    In MiniShare before 1.4.2, there is a stack-based buffer overflow via an HTTP PUT request, which allows an attacker to achieve arbitrary code execution, a similar issue to CVE-2018-19861, CVE-2018-19862, and CVE-2019-17601. NOTE: this product is discontinued.

  • CVE-2019-17601CriOct 15, 2019
    risk 0.64cvss 9.8epss 0.03

    In MiniShare 1.4.1, there is a stack-based buffer overflow via an HTTP CONNECT request, which allows an attacker to achieve arbitrary code execution, a similar issue to CVE-2018-19862 and CVE-2018-19861. NOTE: this product is discontinued.