Daum
Products
4- 3 CVEs
- 1 CVE
- 1 CVE
- 1 CVE
Recent CVEs
6| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-40212 | Cri | 0.64 | 9.8 | 0.02 | Jun 15, 2022 | An exploitable out-of-bounds write vulnerability in PotPlayer 1.7.21523 build 210729 may lead to code execution, information disclosure, and denial of service. | ||
| CVE-2013-7185 | Hig | 0.54 | 7.8 | 0.03 | Jan 14, 2020 | PotPlayer 1.5.40688: .avi File Memory Corruption | ||
| CVE-2013-3942 | Hig | 0.51 | 7.8 | 0.01 | Feb 11, 2020 | Potplayer prior to 1.5.39659: DLL Loading Arbitrary Code Execution Vulnerability | ||
| CVE-2013-7246 | 0.04 | — | 0.11 | Jan 30, 2014 | Buffer overflow in the IconCreate method in an ActiveX control in the DaumGame ActiveX plugin 1.1.0.4 and 1.1.0.5 allows remote attackers to execute arbitrary code via a long string, as exploited in the wild in January 2014. | |||
| CVE-2014-6859 | 0.00 | — | 0.00 | Oct 2, 2014 | The Daum Maps - Subway (aka net.daum.android.map) application 3.9.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | |||
| CVE-2014-5791 | 0.00 | — | 0.00 | Sep 9, 2014 | The Daum Cloud (aka net.daum.android.cloud) application 1.6.18 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |
- risk 0.64cvss 9.8epss 0.02
An exploitable out-of-bounds write vulnerability in PotPlayer 1.7.21523 build 210729 may lead to code execution, information disclosure, and denial of service.
- risk 0.54cvss 7.8epss 0.03
PotPlayer 1.5.40688: .avi File Memory Corruption
- risk 0.51cvss 7.8epss 0.01
Potplayer prior to 1.5.39659: DLL Loading Arbitrary Code Execution Vulnerability
- CVE-2013-7246Jan 30, 2014risk 0.04cvss —epss 0.11
Buffer overflow in the IconCreate method in an ActiveX control in the DaumGame ActiveX plugin 1.1.0.4 and 1.1.0.5 allows remote attackers to execute arbitrary code via a long string, as exploited in the wild in January 2014.
- CVE-2014-6859Oct 2, 2014risk 0.00cvss —epss 0.00
The Daum Maps - Subway (aka net.daum.android.map) application 3.9.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
- CVE-2014-5791Sep 9, 2014risk 0.00cvss —epss 0.00
The Daum Cloud (aka net.daum.android.cloud) application 1.6.18 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.