Vulnerabilities > Baidu

DATE CVE VULNERABILITY TITLE RISK
2018-11-15 CVE-2018-0692 Untrusted Search Path vulnerability in Baidu Spark Browser
Untrusted search path vulnerability in Baidu Browser Version 43.23.1000.500 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
baidu CWE-426
7.8
2017-09-26 CVE-2017-14744 Cross-site Scripting vulnerability in Baidu Ueditor
UEditor 1.4.3.3 has XSS via the SRC attribute of an IFRAME element.
network
low complexity
baidu CWE-79
6.1
2017-08-04 CVE-2017-2221 Untrusted Search Path vulnerability in Baidu IME 3.6.1.6
Untrusted search path vulnerability in Installer of Baidu IME Ver3.6.1.6 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
baidu CWE-426
7.8
2017-06-09 CVE-2017-2219 Untrusted Search Path vulnerability in Baidu Simeji 1.0.0.7
Untrusted search path vulnerability in the [Simeji for Windows] installer (simeji.exe) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
baidu CWE-426
7.8