Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
miniupnp project vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2017-8798
Integer signedness error in MiniUPnP MiniUPnPc v1.4.20101221 through v2.0 allows remote malicious users to cause a denial of service or possibly have unspecified other impact.
Miniupnp Project Miniupnpd 1.5
Miniupnp Project Miniupnpd 1.8
Miniupnp Project Miniupnpd 1.9
Miniupnp Project Miniupnpd 2.0
Miniupnp Project Miniupnpd 1.4
Miniupnp Project Miniupnpd 1.7
1 EDB exploit
1 Github repository
NA
CVE-2013-0229
The ProcessSSDPRequest function in minissdp.c in the SSDP handler in MiniUPnP MiniUPnPd prior to 1.4 allows remote malicious users to cause a denial of service (service crash) via a crafted request that triggers a buffer over-read.
Miniupnp Project Miniupnpd
Miniupnp Project Miniupnpd 1.2
Miniupnp Project Miniupnpd 1.1
Miniupnp Project Miniupnpd 1.0
2 EDB exploits
1 Github repository
7.5
CVSSv3
CVE-2019-12106
The updateDevice function in minissdpd.c in MiniUPnP MiniSSDPd 1.4 and 1.5 allows a remote malicious user to crash the process due to a Use After Free vulnerability.
Miniupnp Project Miniupnpd 1.5
Miniupnp Project Miniupnpd 1.4
NA
CVE-2014-3985
The getHTTPResponse function in miniwget.c in MiniUPnP 1.9 allows remote malicious users to cause a denial of service (crash) via crafted headers that trigger an out-of-bounds read.
Miniupnp Project Miniupnp 1.9
Opensuse Opensuse 12.3
Opensuse Opensuse 13.1
7.5
CVSSv3
CVE-2019-12108
A Denial Of Service vulnerability in MiniUPnP MiniUPnPd up to and including 2.1 exists due to a NULL pointer dereference in GetOutboundPinholeTimeout in upnpsoap.c for int_port.
Miniupnp Project Miniupnpd
7.5
CVSSv3
CVE-2019-12109
A Denial Of Service vulnerability in MiniUPnP MiniUPnPd up to and including 2.1 exists due to a NULL pointer dereference in GetOutboundPinholeTimeout in upnpsoap.c for rem_port.
Miniupnp Project Miniupnpd
5.5
CVSSv3
CVE-2023-37748
ngiflib commit 5e7292 exists to contain an infinite loop via the function DecodeGifImg at ngiflib.c.
Miniupnp Project Ngiflib -
7.8
CVSSv3
CVE-2017-1000494
Uninitialized stack variable vulnerability in NameValueParserEndElt (upnpreplyparse.c) in miniupnpd < 2.0 allows an malicious user to cause Denial of Service (Segmentation fault and Memory Corruption) or possibly have unspecified other impact
Miniupnp Project Miniupnpd
1 Github repository
NA
CVE-2013-1461
The ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote malicious users to cause a denial of service (NULL pointer dereference and service crash) via a SOAPAction header that lacks a # (pound sign) character, a differen...
Miniupnp Project Miniupnpd 1.0
NA
CVE-2013-1462
Integer signedness error in the ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote malicious users to cause a denial of service (incorrect memory copy) via a SOAPAction header that lacks a " (double quote) charact...
Miniupnp Project Miniupnpd 1.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-26925
CVE-2023-41826
LFI
CVE-2022-22364
CVE-2024-2887
command injection
remote code execution
CVE-2024-34446
CVE-2022-48699
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »