Skip to content
Noroxi

UCWeb records

8 published records for vendor ucweb.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

8 records
  • Unspecified vulnerability in the UCMobile BloveStorm (com.blovestorm) application 2.2.0 and 3.2.1 for Android has unknown impact and attack

    CriticalCVSS 10.0No exploitEPSS 2%

    ucweb · ucmobile blovestormMar 13, 2012

  • Ucweb UC Browser HTML URL improper restriction of rendered ui layers

    MediumCVSS 6.5No exploitEPSS 1%

    ucweb · uc browserJun 13, 2022

  • The UCWeb UC Browser application through 2019-03-26 for Android uses HTTP to download certain modules associated with PDF and Microsoft Offi

    MediumCVSS 5.9No exploitEPSS 1%

    ucweb · uc browserMar 28, 2019

  • UCWeb UC Browser 7.0.185.1002 on Windows uses HTTP for downloading certain PDF modules, which allows MITM attacks.

    MediumCVSS 5.9No exploitEPSS 1%

    ucweb · uc browserMar 28, 2019

  • CVE-2014-6691
    21Monitor

    The UC Browser HD (aka com.uc.browser.hd) application 3.3.1.469 for Android does not verify X.509 certificates from SSL servers, which allow

    MediumCVSS 5.4No exploitEPSS 0%

    ucweb · uc browser hdSep 23, 2014

  • CVE-2020-7363
    17Monitor

    UCWeb UC Browser Address Bar Spooofing

    MediumCVSS 4.3No exploitEPSS 1%

    ucweb · uc browserOct 20, 2020

  • CVE-2020-7364
    17Monitor

    UCWeb UC Browser Address Bar Spooofing

    MediumCVSS 4.3No exploitEPSS 1%

    ucweb · uc browserOct 20, 2020

  • UCWeb UC 12.12.3.1219 through 12.12.3.1226 uses cleartext HTTP, and thus man-in-the-middle attackers can discover visited URLs.

    LowCVSS 3.7No exploitEPSS 1%

    ucweb · ucweb ucAug 14, 2021