Vulnerabilities > Mids Reborn Hero Designer Project

DATE CVE VULNERABILITY TITLE RISK
2020-06-11 CVE-2020-11614 Cleartext Transmission of Sensitive Information vulnerability in Mids' Reborn Hero Designer Project Mids' Reborn Hero Designer 2.6.0.7
Mids' Reborn Hero Designer 2.6.0.7 downloads the update manifest, as well as update files, over cleartext HTTP.
network
high complexity
mids-reborn-hero-designer-project CWE-319
8.1
2020-06-11 CVE-2020-11613 Incorrect Permission Assignment for Critical Resource vulnerability in Mids' Reborn Hero Designer Project Mids' Reborn Hero Designer 2.6.0.7
Mids' Reborn Hero Designer 2.6.0.7 has an elevation of privilege vulnerability due to default and insecure permissions being set for the installation folder.
7.8