Vulnerabilities > Fenrir

DATE CVE VULNERABILITY TITLE RISK
2010-12-10 CVE-2010-3919 Permissions, Privileges, and Access Controls vulnerability in Fenrir Grani
Fenrir Grani 4.5 and earlier does not prevent interaction between web script and the clipboard, which allows remote attackers to read or modify the clipboard contents via a crafted web site.
network
fenrir CWE-264
5.8
2010-10-25 CVE-2010-3164 Unspecified vulnerability in Fenrir Grani and Sleipnir
Untrusted search path vulnerability in Fenrir Sleipnir 2.9.4 and earlier and Grani 4.3 and earlier allows local users to gain privileges via a Trojan horse executable file in the current working directory.
local
fenrir
6.9
2010-10-25 CVE-2010-3163 Unspecified vulnerability in Fenrir Grani and Sleipnir
Untrusted search path vulnerability in Fenrir Sleipnir before 2.9.5 and Grani before 4.4 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
local
fenrir
6.9
2008-06-06 CVE-2008-2567 Cross-Site Scripting vulnerability in Fenrir Grani
Cross-site scripting (XSS) vulnerability in Fenriru Sleipnir 2.7.1 Release2 and earlier, Portable Sleipnir 2.7.1 Release2 and earlier, and Grani 3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to a history mechanism and favorites search, a different vulnerability than CVE-2007-6002.
network
fenrir CWE-79
4.3
2007-11-15 CVE-2007-6002 Cross-Site Scripting vulnerability in Fenrir Grani and Sleipnir
Cross-site scripting (XSS) vulnerability in Fenriru (1) Sleipnir 2.5.17 R2 and earlier and (2) Grani 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the Search field in a search for additions to the Favorites section.
network
fenrir CWE-79
4.3
2007-02-04 CVE-2007-0706 Security Bypass vulnerability in Darksky Rss Bar
Cross-zone scripting vulnerability in Darksky RSS bar for Internet Explorer before 1.29, RSS bar for Sleipnir before 1.29, and RSS bar for unDonut before 1.29 allows remote attackers to bypass Web content zone restrictions via certain script contained in RSS data.
network
low complexity
fenrir
7.5
2007-02-04 CVE-2007-0705 Security Bypass vulnerability in Portable Sleipnir
Cross-zone scripting vulnerability in Sleipnir 2.49 and earlier, and Portable Sleipnir 2.45 and earlier, allows remote attackers to bypass Web content zone restrictions via certain script contained in RSS data.
network
low complexity
fenrir
7.5