Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Intercom HIGH 7.5
CVE-2019-14365

The Intercom plugin through 1.2.1 for WordPress leaks a Slack Access Token in source code. An attacker can obtain a lot of information about the vict…

Fix: after 1.2.1
Fix from $1,950 2019-11-12
Malion CRITICAL 9.8
CVE-2017-10816

SQL injection vulnerability in the MaLion for Windows and Mac 5.0.0 to 5.2.1 allows remote attackers to execute arbitrary SQL commands via Relay Serv…

Fix: after 5.2.1
Fix from $2,300 2017-08-04
Malion CRITICAL 9.8
CVE-2017-10817

MaLion for Windows and Mac 5.0.0 to 5.2.1 allows remote attackers to bypass authentication to alter settings in Relay Service Server.

Fix: after 5.2.1
Fix from $2,300 2017-08-04
Malion CRITICAL 9.8
CVE-2017-10818

MaLion for Windows and Mac versions 3.2.1 to 5.2.1 uses a hardcoded cryptographic key which may allow an attacker to alter the connection settings of…

Fix: after 5.2.1
Fix from $2,300 2017-08-04
Malion HIGH 8.1
CVE-2017-10815

MaLion for Windows 5.2.1 and earlier (only when "Remote Control" is installed) and MaLion for Mac 4.0.1 to 5.2.1 (only when "Remote Control" is insta…

Fix: after 5.2.1
Fix from $1,950 2017-08-04
Malion MEDIUM 5.9
CVE-2017-10819

MaLion for Mac 4.3.0 to 5.2.1 does not properly validate certificates, which may allow an attacker to eavesdrop on an encrypted communication.

Fix: after 5.2.1
Fix from $1,600 2017-08-04
Web Kyukincho MEDIUM 6.8
CVE-2014-3881

Cross-site request forgery (CSRF) vulnerability in Intercom Web Kyukincho 3.x before 3.0.030 allows remote attackers to hijack the authentication of …

Mitigation only
Fix from $1,600 2014-06-28