Vulnerabilities (CVE)

Filtered by vendor Google Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-2846 2 Google, Linux 2 Chrome, Linux Kernel 2012-08-07 5.0 MEDIUM N/A
Google Chrome before 21.0.1180.57 on Linux does not properly isolate renderer processes, which allows remote attackers to cause a denial of service (cross-process interference) via unspecified vectors.
CVE-2008-7294 1 Google 1 Chrome 2012-08-02 5.8 MEDIUM N/A
Google Chrome before 4.0.211.0 cannot properly restrict modifications to cookies established in HTTPS sessions, which allows man-in-the-middle attackers to overwrite or delete arbitrary cookies via a Set-Cookie header in an HTTP response, related to lack of the HTTP Strict Transport Security (HSTS) includeSubDomains feature, aka a "cookie forcing" issue.
CVE-2008-7298 2 Android, Google 2 Android Browser, Android 2012-08-02 5.8 MEDIUM N/A
The Android browser in Android cannot properly restrict modifications to cookies established in HTTPS sessions, which allows man-in-the-middle attackers to overwrite or delete arbitrary cookies via a Set-Cookie header in an HTTP response, related to lack of the HTTP Strict Transport Security (HSTS) includeSubDomains feature, aka a "cookie forcing" issue.
CVE-2012-2647 3 Apple, Google, Yahoo 3 Safari, Chrome, Toolbar 2012-07-31 5.8 MEDIUM N/A
Yahoo! Toolbar 1.0.0.5 and earlier for Chrome and Safari allows remote attackers to modify the configured search URL, and intercept search terms, via a crafted web page.
CVE-2012-2640 2 Google, Yomecolle 2 Android, Nec Biglobe Yome Collection 2012-07-17 5.0 MEDIUM N/A
The NEC BIGLOBE Yome Collection application 1.8.3 and earlier for Android allows remote attackers to read the IMEI value from an SD card via a crafted application that lacks the READ_PHONE_STATE permission.
CVE-2012-2827 2 Apple, Google 2 Mac Os X, Chrome 2012-06-29 7.5 HIGH N/A
Use-after-free vulnerability in the UI in Google Chrome before 20.0.1132.43 on Mac OS X allows attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CVE-2012-2635 2 Dolphin-browser, Google 3 Dolphin Browser Hd, Dolphin For Pad, Android 2012-06-18 4.3 MEDIUM N/A
The Dolphin Browser HD application before 7.6 and Dolphin for Pad application before 1.0.1 for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application.
CVE-2012-3290 3 Acer, Google, Samsung 6 Ac700 Chromebook, Chrome Os, Cr-48 Chromebook and 3 more 2012-06-12 10.0 HIGH N/A
Multiple unspecified vulnerabilities in Google Chrome before 20.0.1132.22 on the Acer AC700; Samsung Series 5, 5 550, and Chromebox 3; and Cr-48 Chromebook platforms have unknown impact and attack vectors.
CVE-2012-2949 2 Google, Zte 2 Android, Score M 2012-05-30 10.0 HIGH N/A
The ZTE sync_agent program for Android 2.3.4 on the Score M device uses a hardcoded ztex1609523 password to control access to commands, which allows remote attackers to gain privileges via a crafted application.
CVE-2011-4719 3 Acer, Google, Samsung 4 Ac700 Chromebook, Chrome Os, Cr-48 Chromebook and 1 more 2012-04-20 10.0 HIGH N/A
Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.63 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.
CVE-2012-1418 3 Acer, Google, Samsung 4 Ac700 Chromebook, Chrome Os, Cr-48 Chromebook and 1 more 2012-04-20 10.0 HIGH N/A
Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.60 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.
CVE-2011-2478 1 Google 1 Sketchup 2012-04-18 9.3 HIGH N/A
Google SketchUp before 8 does not properly handle edge geometry in SketchUp (aka .SKP) files, which allows remote attackers to execute arbitrary code via a crafted file.
CVE-2012-1475 2 Google, Qualcomm 2 Android, Yagattatalk Messenger 2012-03-14 10.0 HIGH N/A
Unspecified vulnerability in the YagattaTalk Messenger (com.iskoot.yagatta.yagattatalk) application 1.00.01.08 for Android has unknown impact and attack vectors.
CVE-2012-1409 2 Google, Tinycouch 2 Android, Tiny Password 2012-03-14 10.0 HIGH N/A
Unspecified vulnerability in the Tiny Password (com.tinycouch.android.freepassword) application 1.64 for Android has unknown impact and attack vectors.
CVE-2012-1474 2 Google, Sdo 2 Android, Youni Sms 2012-03-14 10.0 HIGH N/A
Unspecified vulnerability in the Youni SMS (com.snda.youni) application 2.1.0c and 2.1.0d for Android has unknown impact and attack vectors.
CVE-2012-1477 2 Cnectd, Google 2 Cnectd, Android 2012-03-14 10.0 HIGH N/A
Unspecified vulnerability in the Cnectd (mci.cnectd) application 3.1.0 for Android has unknown impact and attack vectors.
CVE-2012-1476 2 Google, Kktalk 2 Android, Kktalk 2012-03-14 10.0 HIGH N/A
Unspecified vulnerability in the KKtalk (com.kkliaotian.android) application 4.0.0 and 4.1.5 for Android has unknown impact and attack vectors.
CVE-2012-1408 2 Creative Core, Google 2 App Lock, Android 2012-03-14 10.0 HIGH N/A
Unspecified vulnerability in the App Lock (com.cc.applock) application 1.7.5 and 1.7.6 for Android has unknown impact and attack vectors.
CVE-2012-1403 2 Dolphin-browser, Google 2 Dolphin Browser Cn, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the Dolphin Browser CN (com.dolphin.browser.cn) application 6.3.1 and 7.2.1 for Android has unknown impact and attack vectors.
CVE-2012-1380 2 Google, Netease 2 Android, Neteaseweibo 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the NetEaseWeibo (com.netease.wb) application 1.2.1 and 1.2.2 for Android has unknown impact and attack vectors.
CVE-2012-1381 2 Google, Netease 2 Android, Netease Cloudalbum 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the NetEase CloudAlbum (com.netease.cloudalbum) application 2.0.0 and 2.2.0 for Android has unknown impact and attack vectors.
CVE-2012-1383 2 Google, Netease 2 Android, Netease Reader 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the NetEase Reader (com.netease.pris) application 1.1.2 and 1.2.0 for Android has unknown impact and attack vectors.
CVE-2012-1384 2 Google, Netease 2 Android, Netease Pmail 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the NetEase Pmail (com.netease.rpmms) application 0.5.0 and 0.5.2 for Android has unknown impact and attack vectors.
CVE-2012-1385 2 Google, Netease 2 Android, Netease Weibohd 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the NetEase WeiboHD (com.netease.wbhd) application 1.0.0 for Android has unknown impact and attack vectors.
CVE-2012-1386 2 Google, Youmail 2 Android, Youmail Visual Voicemail Plus 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the YouMail Visual Voicemail Plus (com.youmail.android.vvm) application 2.0.45 and 2.1.43 for Android has unknown impact and attack vectors.
CVE-2012-1405 2 Goforandroid, Google 2 Go Note Widget, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO Note Widget (com.gau.go.launcherex.gowidget.notewidget) application 1.5 and 1.9 for Android has unknown impact and attack vectors.
CVE-2012-1400 2 Google, Uplus 2 Android, U\+box 2.0 Pad 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the U+Box 2.0 Pad (lg.uplusbox.pad) application 2.0.8.4 for Android has unknown impact and attack vectors.
CVE-2012-1404 2 Dolphin-browser, Google 2 Dolphin Browser Mini, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the Dolphin Browser Mini (com.dolphin.browser) application 2.2 for Android has unknown impact and attack vectors.
CVE-2012-1401 2 Google, Intsig 2 Android, Camscanner 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the CamScanner (com.intsig.camscanner) application 1.2.2.20110823 and 1.3.2.20120116 for Android has unknown impact and attack vectors.
CVE-2012-1402 2 1kxun, Google 2 Qianxun Yingshi, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the QianXun YingShi (com.qianxun.yingshi) application 1.2.3 and 1.3.4 for Android has unknown impact and attack vectors.
CVE-2012-1387 2 Google, Uangel 2 Android, Realtalk 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the RealTalk (com.tmsmanager.tms) application A.0.9.250 for Android has unknown impact and attack vectors.
CVE-2012-1388 2 Google, Xixun 2 Android, Xixuntiantian 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the XiXunTianTian (com.xixun.tiantian) application 0.6.2 beta for Android has unknown impact and attack vectors.
CVE-2012-1389 2 Google, Icekirin 2 Android, Di Long Weibo 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the Di Long Weibo (com.icekirin.weibos) application 1.9.9 for Android has unknown impact and attack vectors.
CVE-2012-1390 2 Gomiso, Google 2 Miso, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the Miso (com.bazaarlabs.miso) application 2.2 for Android has unknown impact and attack vectors.
CVE-2012-1391 2 Google, Mobisynapse 2 Android, Moffice-outlook Sync 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the mOffice - Outlook sync (com.innov8tion.isharesync) application 3.1 for Android has unknown impact and attack vectors.
CVE-2012-1392 2 Dolphin-browser, Google 2 Dolphin Browser Hd, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the Dolphin Browser HD (mobi.mgeek.TunnyBrowser) application 6.2.0, 7.2.1, 7.3.0, and 7.4.0 for Android has unknown impact and attack vectors.
CVE-2012-1393 2 Goforandroid, Google 2 Go Sms Pro, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO SMS Pro (com.jb.gosms) application 3.72, 4.10, and 4.35 for Android has unknown impact and attack vectors.
CVE-2012-1394 2 Goforandroid, Google 2 Go Email Widget, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO Email Widget (com.gau.go.launcherex.gowidget.emailwidget) application 1.3.1, 1.8, and 1.81 for Android has unknown impact and attack vectors.
CVE-2012-1395 2 Goforandroid, Google 2 Go Twiwidget, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO TwiWidget (com.gau.go.launcherex.gowidget.twitterwidget) application 1.7 and 2.1 for Android has unknown impact and attack vectors.
CVE-2012-1396 2 Goforandroid, Google 2 Go Fbwidget, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO FBWidget (com.gau.go.launcherex.gowidget.fbwidget) application 1.9 and 2.1 for Android has unknown impact and attack vectors.
CVE-2012-1397 2 Goforandroid, Google 2 Go Qqweibowidget, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO QQWeiboWidget (com.gau.go.launcherex.gowidget.qqweibowidget) application 1.2 for Android has unknown impact and attack vectors.
CVE-2012-1407 2 Goforandroid, Google 2 Go Message Widget, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO Message Widget (com.gau.go.launcherex.gowidget.smswidget) application 1.9, 2.1, and 2.3 for Android has unknown impact and attack vectors.
CVE-2012-1406 2 Goforandroid, Google 2 Go Bookmark Widget, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO Bookmark Widget (com.gau.go.launcherex.gowidget.bookmark) application 1.1 for Android has unknown impact and attack vectors.
CVE-2012-1398 2 Goforandroid, Google 2 Go Weibowidget, Android 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the GO WeiboWidget (com.gau.go.launcherex.gowidget.weibowidget) application 2.4 for Android has unknown impact and attack vectors.
CVE-2012-1399 2 Google, Uplus 2 Android, U\+box 2.0 2012-03-07 10.0 HIGH N/A
Unspecified vulnerability in the U+Box 2.0 (lg.uplusbox) application 2.0.2 and 2.0.8.4 for Android has unknown impact and attack vectors.
CVE-2011-4865 2 Google, Tencent 3 Android, Microblogpad, Wblog 2012-02-29 5.8 MEDIUM N/A
The Tencent WBlog (com.tencent.WBlog) 3.3.1 and MicroBlogPad 1.4.0 applications for Android do not properly protect data, which allows remote attackers to read or modify message drafts and search keywords via a crafted application.
CVE-2011-4864 2 Google, Tencent 2 Android, Mobileqq 2012-02-29 5.8 MEDIUM N/A
The Tencent MobileQQ (com.tencent.mobileqq) application 2.2 for Android does not properly protect data, which allows remote attackers to read or modify messages and a friends list via a crafted application.
CVE-2009-1754 1 Google 1 Android 2012-02-29 4.3 MEDIUM N/A
The PackageManagerService class in services/java/com/android/server/PackageManagerService.java in Android 1.5 through 1.5 CRB42 does not properly check developer certificates during processing of sharedUserId requests at an application's installation time, which allows remote user-assisted attackers to access application data by creating a package that specifies a shared user ID with an arbitrary application.
CVE-2011-3874 1 Google 1 Android 2012-02-06 9.3 HIGH N/A
Stack-based buffer overflow in libsysutils in Android 2.2.x through 2.2.2 and 2.3.x through 2.3.6 allows user-assisted remote attackers to execute arbitrary code via an application that calls the FrameworkListener::dispatchCommand method with the wrong number of arguments, as demonstrated by zergRush to trigger a use-after-free error.
CVE-2011-4276 1 Google 1 Android 2012-01-26 4.3 MEDIUM N/A
The Bluetooth service (com/android/phone/BluetoothHeadsetService.java) in Android 2.3 before 2.3.6 allows remote attackers within Bluetooth range to obtain contact data via an AT phonebook transfer.