Filtered by vendor Disney
Subscribe
Total
4 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-1999-1009 | 1 Disney | 1 Go Express Search | 2022-08-17 | 2.6 LOW | N/A |
The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to an HTTP server on the user's system. | |||||
CVE-2014-5606 | 1 Disney | 1 Where\'s My Perry\? Free | 2017-11-30 | 5.4 MEDIUM | N/A |
The Where's My Perry? Free (aka com.disney.WMPLite) application 1.5.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | |||||
CVE-2014-5607 | 1 Disney | 1 Where\'s My Water\? Free | 2017-11-30 | 5.4 MEDIUM | N/A |
The Where's My Water? Free (aka com.disney.WMWLite) application 1.9.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | |||||
CVE-2014-5849 | 1 Disney | 1 Maleficent Free Fall | 2014-09-20 | 5.4 MEDIUM | N/A |
The Maleficent Free Fall (aka com.disney.maleficent_goo) application 1.2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |