s3browser records
2 published records for vendor s3browser.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-295 Improper Certificate Validation1
- CWE-611 Improper Restriction of XML External Entity Reference1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
26Monitor | CVE-2018-20298No exploit | S3 Browser before 8.1.5 contains an XML external entity (XXE) vulnerability, allowing remote attackers to read arbitrary files and obtain NTs3browser · s3 browser · CWE-611 | Medium6.5 | — | 1.4% | Dec 19, 2018 |
23Monitor | CVE-2024-37865No exploit | An issue in S3Browser v.11.4.5 and v.10.9.9 and fixed in v.11.5.7 allows a remote attacker to obtain sensitive information via the S3 compats3browser · s3 browser · CWE-295 | Medium5.9 | — | 0.7% | Jul 9, 2024 |
- CVE-2018-2029826Monitor
S3 Browser before 8.1.5 contains an XML external entity (XXE) vulnerability, allowing remote attackers to read arbitrary files and obtain NT
MediumCVSS 6.5No exploitEPSS 1%s3browser · s3 browserDec 19, 2018
- CVE-2024-3786523Monitor
An issue in S3Browser v.11.4.5 and v.10.9.9 and fixed in v.11.5.7 allows a remote attacker to obtain sensitive information via the S3 compat
MediumCVSS 5.9No exploitEPSS 1%s3browser · s3 browserJul 9, 2024