tinyxml2 project records
3 published records for vendor tinyxml2 project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 33.3%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2018-11210No exploit | TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so.tinyxml2 project · tinyxml2 · CWE-125 | Critical9.8 | — | 2.3% | May 16, 2018 |
26Monitor | CVE-2024-50614No exploit | TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/16, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterRtinyxml2 project · tinyxml2 · CWE-617 | Medium6.5 | — | 0.4% | Oct 27, 2024 |
26Monitor | CVE-2024-50615No exploit | TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/digit, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacttinyxml2 project · tinyxml2 · CWE-617 | Medium6.5 | — | 0.4% | Oct 27, 2024 |
- CVE-2018-1121040Plan
TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so.
CriticalCVSS 9.8No exploitEPSS 2%tinyxml2 project · tinyxml2May 16, 2018
- CVE-2024-5061426Monitor
TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/16, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharacterR
MediumCVSS 6.5No exploitEPSS 0%tinyxml2 project · tinyxml2Oct 27, 2024
- CVE-2024-5061526Monitor
TinyXML2 through 10.0.0 has a reachable assertion for UINT_MAX/digit, that may lead to application exit, in tinyxml2.cpp XMLUtil::GetCharact
MediumCVSS 6.5No exploitEPSS 0%tinyxml2 project · tinyxml2Oct 27, 2024