Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
miniupnp project vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2017-8798
Integer signedness error in MiniUPnP MiniUPnPc v1.4.20101221 through v2.0 allows remote malicious users to cause a denial of service or possibly have unspecified other impact.
Miniupnp Project Miniupnpd 1.5
Miniupnp Project Miniupnpd 1.8
Miniupnp Project Miniupnpd 1.9
Miniupnp Project Miniupnpd 2.0
Miniupnp Project Miniupnpd 1.4
Miniupnp Project Miniupnpd 1.7
1 EDB exploit
1 Github repository
NA
CVE-2013-0229
The ProcessSSDPRequest function in minissdp.c in the SSDP handler in MiniUPnP MiniUPnPd prior to 1.4 allows remote malicious users to cause a denial of service (service crash) via a crafted request that triggers a buffer over-read.
Miniupnp Project Miniupnpd
Miniupnp Project Miniupnpd 1.2
Miniupnp Project Miniupnpd 1.1
Miniupnp Project Miniupnpd 1.0
2 EDB exploits
1 Github repository
7.5
CVSSv3
CVE-2019-12106
The updateDevice function in minissdpd.c in MiniUPnP MiniSSDPd 1.4 and 1.5 allows a remote malicious user to crash the process due to a Use After Free vulnerability.
Miniupnp Project Miniupnpd 1.5
Miniupnp Project Miniupnpd 1.4
NA
CVE-2014-3985
The getHTTPResponse function in miniwget.c in MiniUPnP 1.9 allows remote malicious users to cause a denial of service (crash) via crafted headers that trigger an out-of-bounds read.
Miniupnp Project Miniupnp 1.9
Opensuse Opensuse 12.3
Opensuse Opensuse 13.1
7.8
CVSSv3
CVE-2017-1000494
Uninitialized stack variable vulnerability in NameValueParserEndElt (upnpreplyparse.c) in miniupnpd < 2.0 allows an malicious user to cause Denial of Service (Segmentation fault and Memory Corruption) or possibly have unspecified other impact
Miniupnp Project Miniupnpd
1 Github repository
7.5
CVSSv3
CVE-2019-12108
A Denial Of Service vulnerability in MiniUPnP MiniUPnPd up to and including 2.1 exists due to a NULL pointer dereference in GetOutboundPinholeTimeout in upnpsoap.c for int_port.
Miniupnp Project Miniupnpd
7.5
CVSSv3
CVE-2019-12109
A Denial Of Service vulnerability in MiniUPnP MiniUPnPd up to and including 2.1 exists due to a NULL pointer dereference in GetOutboundPinholeTimeout in upnpsoap.c for rem_port.
Miniupnp Project Miniupnpd
5.5
CVSSv3
CVE-2023-37748
ngiflib commit 5e7292 exists to contain an infinite loop via the function DecodeGifImg at ngiflib.c.
Miniupnp Project Ngiflib -
NA
CVE-2013-1461
The ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote malicious users to cause a denial of service (NULL pointer dereference and service crash) via a SOAPAction header that lacks a # (pound sign) character, a differen...
Miniupnp Project Miniupnpd 1.0
NA
CVE-2013-0230
Stack-based buffer overflow in the ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote malicious users to execute arbitrary code via a long quoted method.
Miniupnp Project Miniupnpd 1.0
3 EDB exploits
1 Github repository
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-3400
deserialization
CVE-2024-21788
CVE-2023-42433
CVE-2024-21841
CVE-2024-22095
local file inclusion
memory leak
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »