Vulnerabilities > S3Browser

DATE CVE VULNERABILITY TITLE RISK
2024-07-09 CVE-2024-37865 Improper Certificate Validation vulnerability in S3Browser S3 Browser
An issue in S3Browser v.11.4.5 and v.10.9.9 and fixed in v.11.5.7 allows a remote attacker to obtain sensitive information via the S3 compatible storage component.
network
high complexity
s3browser CWE-295
5.9
2018-12-19 CVE-2018-20298 XXE vulnerability in S3Browser S3 Browser
S3 Browser before 8.1.5 contains an XML external entity (XXE) vulnerability, allowing remote attackers to read arbitrary files and obtain NTLMv2 hash values by tricking a user into connecting to a malicious server via the S3 protocol.
network
s3browser CWE-611
4.3