Vulnerabilities > Lunascape

DATE CVE VULNERABILITY TITLE RISK
2012-05-21 CVE-2012-1249 Information Exposure vulnerability in Lunascape Ilunascape Android 1.0.4.0
The iLunascape application 1.0.4.0 and earlier for Android does not properly implement the WebView class, which allows remote attackers to obtain sensitive stored information via a crafted application.
network
low complexity
lunascape google CWE-200
5.0
2011-02-24 CVE-2011-0452 Unspecified vulnerability in Lunascape
Untrusted search path vulnerability in the script function in Lunascape before 6.4.3 allows local users to gain privileges via a Trojan horse executable file in the current working directory.
local
high complexity
lunascape
6.2
2011-01-24 CVE-2010-3927 DLL Loading Arbitrary Code Execution vulnerability in Lunascape
Untrusted search path vulnerability in Lunascape before 6.4.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
local
lunascape
6.9
2009-08-28 CVE-2009-3005 Remote Security vulnerability in Lunascape 5.1.3/5.1.4
Lunascape 5.1.3 and 5.1.4 allows remote attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary URL on the web site visited by the victim, as demonstrated by a visit to an attacker-controlled web page, which triggers a spoofed login form for the site containing that page.
network
lunascape
4.3
2007-04-27 CVE-2007-2335 HTML Injection vulnerability in Lunascape RSS Feed
Cross-site scripting (XSS) vulnerability in the RSS feed reader functionality in Lunascape 4.1.3 build2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
lunascape
4.3