Записи UCWeb
8 опубликованных записей вендора ucweb.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-319 Cleartext Transmission of Sensitive Information2
- CWE-451 User Interface (UI) Misrepresentation of Critical Information2
- CWE-1021 Improper Restriction of Rendered UI Layers or Frames1
- CWE-310 Cryptographic Issues1
- CWE-312 Cleartext Storage of Sensitive Information1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2012-1478Эксплойта нет | Unspecified vulnerability in the UCMobile BloveStorm (com.blovestorm) application 2.2.0 and 3.2.1 for Android has unknown impact and attack ucweb · ucmobile blovestorm | Критическая10,0 | — | 1,7 % | 13 мар. 2012 г. |
26Наблюдать | CVE-2017-20041Эксплойта нет | Ucweb UC Browser HTML URL improper restriction of rendered ui layersucweb · uc browser · CWE-1021 | Средняя6,5 | — | 0,7 % | 13 июн. 2022 г. |
23Наблюдать | CVE-2019-10251Эксплойта нет | The UCWeb UC Browser application through 2019-03-26 for Android uses HTTP to download certain modules associated with PDF and Microsoft Offiucweb · uc browser · CWE-319 | Средняя5,9 | — | 0,8 % | 28 мар. 2019 г. |
23Наблюдать | CVE-2019-10250Эксплойта нет | UCWeb UC Browser 7.0.185.1002 on Windows uses HTTP for downloading certain PDF modules, which allows MITM attacks.ucweb · uc browser · CWE-319 | Средняя5,9 | — | 0,7 % | 28 мар. 2019 г. |
21Наблюдать | CVE-2014-6691Эксплойта нет | The UC Browser HD (aka com.uc.browser.hd) application 3.3.1.469 for Android does not verify X.509 certificates from SSL servers, which allowucweb · uc browser hd · CWE-310 | Средняя5,4 | — | 0,3 % | 23 сент. 2014 г. |
17Наблюдать | CVE-2020-7363Эксплойта нет | UCWeb UC Browser Address Bar Spooofingucweb · uc browser · CWE-451 | Средняя4,3 | — | 0,7 % | 20 окт. 2020 г. |
17Наблюдать | CVE-2020-7364Эксплойта нет | UCWeb UC Browser Address Bar Spooofingucweb · uc browser · CWE-451 | Средняя4,3 | — | 0,7 % | 20 окт. 2020 г. |
14Наблюдать | CVE-2020-36473Эксплойта нет | UCWeb UC 12.12.3.1219 through 12.12.3.1226 uses cleartext HTTP, and thus man-in-the-middle attackers can discover visited URLs.ucweb · ucweb uc · CWE-312 | Низкая3,7 | — | 0,5 % | 14 авг. 2021 г. |
- CVE-2012-147840В плане
Unspecified vulnerability in the UCMobile BloveStorm (com.blovestorm) application 2.2.0 and 3.2.1 for Android has unknown impact and attack
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %ucweb · ucmobile blovestorm13 мар. 2012 г.
- CVE-2017-2004126Наблюдать
Ucweb UC Browser HTML URL improper restriction of rendered ui layers
СредняяCVSS 6,5Эксплойта нетEPSS 1 %ucweb · uc browser13 июн. 2022 г.
- CVE-2019-1025123Наблюдать
The UCWeb UC Browser application through 2019-03-26 for Android uses HTTP to download certain modules associated with PDF and Microsoft Offi
СредняяCVSS 5,9Эксплойта нетEPSS 1 %ucweb · uc browser28 мар. 2019 г.
- CVE-2019-1025023Наблюдать
UCWeb UC Browser 7.0.185.1002 on Windows uses HTTP for downloading certain PDF modules, which allows MITM attacks.
СредняяCVSS 5,9Эксплойта нетEPSS 1 %ucweb · uc browser28 мар. 2019 г.
- CVE-2014-669121Наблюдать
The UC Browser HD (aka com.uc.browser.hd) application 3.3.1.469 for Android does not verify X.509 certificates from SSL servers, which allow
СредняяCVSS 5,4Эксплойта нетEPSS 0 %ucweb · uc browser hd23 сент. 2014 г.
- CVE-2020-736317Наблюдать
UCWeb UC Browser Address Bar Spooofing
СредняяCVSS 4,3Эксплойта нетEPSS 1 %ucweb · uc browser20 окт. 2020 г.
- CVE-2020-736417Наблюдать
UCWeb UC Browser Address Bar Spooofing
СредняяCVSS 4,3Эксплойта нетEPSS 1 %ucweb · uc browser20 окт. 2020 г.
- CVE-2020-3647314Наблюдать
UCWeb UC 12.12.3.1219 through 12.12.3.1226 uses cleartext HTTP, and thus man-in-the-middle attackers can discover visited URLs.
НизкаяCVSS 3,7Эксплойта нетEPSS 1 %ucweb · ucweb uc14 авг. 2021 г.