arora-browser records
2 published records for vendor arora-browser.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
20Monitor | CVE-2010-1100No exploit | Integer overflow in Arora allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outsidearora-browser · arora · CWE-189 | Medium5.0 | — | 1.1% | Mar 24, 2010 |
20Monitor | CVE-2011-3367No exploit | Arora, possibly 0.11 and other versions, does not use a certain font when rendering certificate fields in a security dialog, which allows rearora-browser · arora · CWE-20 | Medium5.0 | — | 0.9% | Nov 29, 2011 |
- CVE-2010-110020Monitor
Integer overflow in Arora allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside
MediumCVSS 5.0No exploitEPSS 1%arora-browser · aroraMar 24, 2010
- CVE-2011-336720Monitor
Arora, possibly 0.11 and other versions, does not use a certain font when rendering certificate fields in a security dialog, which allows re
MediumCVSS 5.0No exploitEPSS 1%arora-browser · aroraNov 29, 2011