mini-xml project records
5 published records for vendor mini-xml project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 60%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-400 Uncontrolled Resource Consumption2
- CWE-772 Missing Release of Resource after Effective Lifetime2
- CWE-787 Out-of-bounds Write1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2018-20004No exploit | An issue has been found in Mini-XML (aka mxml) 2.12.mini-xml project · mini-xml · CWE-787 | High8.8 | — | 2.0% | Dec 10, 2018 |
30Monitor | CVE-2021-42859No exploit | A memory leak issue was discovered in Mini-XML v3.2 that could cause a denial of service.mini-xml project · mini-xml · CWE-772 | High7.5 | — | 1.0% | May 26, 2022 |
30Monitor | CVE-2021-42860No exploit | A stack buffer overflow exists in Mini-XML v3.2.mini-xml project · mini-xml · CWE-772 | High7.5 | — | 1.0% | May 26, 2022 |
22Monitor | CVE-2016-4570No exploit | The mxmlDelete function in mxml-node.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stack comini-xml project · mini-xml · CWE-400 | Medium5.5 | — | 1.6% | Feb 3, 2017 |
22Monitor | CVE-2016-4571No exploit | The mxml_write_node function in mxml-file.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stamini-xml project · mini-xml · CWE-400 | Medium5.5 | — | 1.6% | Feb 3, 2017 |
- CVE-2018-2000436Monitor
An issue has been found in Mini-XML (aka mxml) 2.12.
HighCVSS 8.8No exploitEPSS 2%mini-xml project · mini-xmlDec 10, 2018
- CVE-2021-4285930Monitor
A memory leak issue was discovered in Mini-XML v3.2 that could cause a denial of service.
HighCVSS 7.5No exploitEPSS 1%mini-xml project · mini-xmlMay 26, 2022
- CVE-2021-4286030Monitor
A stack buffer overflow exists in Mini-XML v3.2.
HighCVSS 7.5No exploitEPSS 1%mini-xml project · mini-xmlMay 26, 2022
- CVE-2016-457022Monitor
The mxmlDelete function in mxml-node.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stack co
MediumCVSS 5.5No exploitEPSS 2%mini-xml project · mini-xmlFeb 3, 2017
- CVE-2016-457122Monitor
The mxml_write_node function in mxml-file.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (sta
MediumCVSS 5.5No exploitEPSS 2%mini-xml project · mini-xmlFeb 3, 2017