Vulnerabilities (CVE)

Filtered by vendor Snipsnap Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-9559 1 Snipsnap 1 Snipsnap 2024-11-21 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in SnipSnap 0.5.2a, 1.0b1, and 1.0b2 allows remote attackers to inject arbitrary web script or HTML via the query parameter to /snipsnap-search.
CVE-2014-5891 1 Snipsnap 1 Snipsnap Coupon App 2024-11-21 5.4 MEDIUM N/A
The SnipSnap Coupon App (aka com.snipsnap.snipsnapapp) application 1.1.11 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
CVE-2004-1470 1 Snipsnap 1 Snipsnap 2024-11-20 5.0 MEDIUM N/A
CRLF injection vulnerability in SnipSnap 0.5.2a, and other versions before 1.0b1, allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server.