Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
miniupnp project vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2017-8798
Integer signedness error in MiniUPnP MiniUPnPc v1.4.20101221 through v2.0 allows remote malicious users to cause a denial of service or possibly have unspecified other impact.
Miniupnp Project Miniupnpd 1.5
Miniupnp Project Miniupnpd 1.8
Miniupnp Project Miniupnpd 1.9
Miniupnp Project Miniupnpd 2.0
Miniupnp Project Miniupnpd 1.4
Miniupnp Project Miniupnpd 1.7
1 EDB exploit
1 Github repository
7.8
CVSSv2
CVE-2013-0229
The ProcessSSDPRequest function in minissdp.c in the SSDP handler in MiniUPnP MiniUPnPd prior to 1.4 allows remote malicious users to cause a denial of service (service crash) via a crafted request that triggers a buffer over-read.
Miniupnp Project Miniupnpd
Miniupnp Project Miniupnpd 1.2
Miniupnp Project Miniupnpd 1.1
Miniupnp Project Miniupnpd 1.0
2 EDB exploits
1 Github repository
5
CVSSv2
CVE-2019-12106
The updateDevice function in minissdpd.c in MiniUPnP MiniSSDPd 1.4 and 1.5 allows a remote malicious user to crash the process due to a Use After Free vulnerability.
Miniupnp Project Miniupnpd 1.5
Miniupnp Project Miniupnpd 1.4
5
CVSSv2
CVE-2014-3985
The getHTTPResponse function in miniwget.c in MiniUPnP 1.9 allows remote malicious users to cause a denial of service (crash) via crafted headers that trigger an out-of-bounds read.
Miniupnp Project Miniupnp 1.9
Opensuse Opensuse 12.3
Opensuse Opensuse 13.1
4.6
CVSSv2
CVE-2017-1000494
Uninitialized stack variable vulnerability in NameValueParserEndElt (upnpreplyparse.c) in miniupnpd < 2.0 allows an malicious user to cause Denial of Service (Segmentation fault and Memory Corruption) or possibly have unspecified other impact
Miniupnp Project Miniupnpd
1 Github repository
NA
CVE-2023-37748
ngiflib commit 5e7292 exists to contain an infinite loop via the function DecodeGifImg at ngiflib.c.
Miniupnp Project Ngiflib -
5
CVSSv2
CVE-2019-12108
A Denial Of Service vulnerability in MiniUPnP MiniUPnPd up to and including 2.1 exists due to a NULL pointer dereference in GetOutboundPinholeTimeout in upnpsoap.c for int_port.
Miniupnp Project Miniupnpd
5
CVSSv2
CVE-2019-12109
A Denial Of Service vulnerability in MiniUPnP MiniUPnPd up to and including 2.1 exists due to a NULL pointer dereference in GetOutboundPinholeTimeout in upnpsoap.c for rem_port.
Miniupnp Project Miniupnpd
10
CVSSv2
CVE-2013-0230
Stack-based buffer overflow in the ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote malicious users to execute arbitrary code via a long quoted method.
Miniupnp Project Miniupnpd 1.0
3 EDB exploits
1 Github repository
6.8
CVSSv2
CVE-2021-36531
ngiflib 0.4 has a heap overflow in GetByte() at ngiflib.c:70 in NGIFLIB_NO_FILE mode, GetByte() reads memory buffer without checking the boundary.
Miniupnp Project Ngiflib 0.4
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-21987
buffer overflow
CVE-2024-28890
CVE-2024-27574
CVE-2024-27347
CVE-2024-31450
privilege
SSTI
CVE-2024-31666
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »