miro records
2 published records for vendor miro.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 50%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-399 Resource Management Errors1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2008-0984Proof of concept | The MP4 demuxer (mp4.c) for VLC media player 0.8.6d and earlier, as used in Miro Player 1.1 and earlier, allows remote attackers to overwritmiro · miro player · CWE-399 | Critical9.3 | — | 15.3% | Feb 26, 2008 |
39Monitor | CVE-2024-23746Proof of concept | Miro Desktop 0.8.18 on macOS allows local Electron code injection via a complex series of steps that might be usable in some environments (bmiro · miro · CWE-94 | Critical9.8 | — | 1.3% | Feb 1, 2024 |
- CVE-2008-098442Plan
The MP4 demuxer (mp4.c) for VLC media player 0.8.6d and earlier, as used in Miro Player 1.1 and earlier, allows remote attackers to overwrit
CriticalCVSS 9.3Proof of conceptEPSS 15%miro · miro playerFeb 26, 2008
- CVE-2024-2374639Monitor
Miro Desktop 0.8.18 on macOS allows local Electron code injection via a complex series of steps that might be usable in some environments (b
CriticalCVSS 9.8Proof of conceptEPSS 1%miro · miroFeb 1, 2024