|
269341
|
8.1 |
HIGH
Network
|
dalekjs
|
dalekjs
|
dalek-browser-chrome-canary provides Google Chrome bindings for DalekJS. dalek-browser-chrome-canary downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possib…
|
CWE-310
Cryptographic Issues
|
CVE-2016-10584
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269342
|
8.1 |
HIGH
Network
|
unicode_project
|
unicode
|
unicode loads unicode data downloaded from unicode.org into nodejs. Unicode before 9.0.0 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks.
|
CWE-310
Cryptographic Issues
|
CVE-2016-10578
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269343
|
8.1 |
HIGH
Network
|
ibm
|
ibm_db
|
ibm_db is an asynchronous/synchronous interface for node.js to IBM DB2 and IBM Informix. ibm_db before 1.0.2 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may b…
|
CWE-310
Cryptographic Issues
|
CVE-2016-10577
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269344
|
8.1 |
HIGH
Network
|
baryton-saxophone_project
|
baryton-saxophone
|
baryton-saxophone is a module to install and launch Selenium Server for Mac, Linux and Windows. baryton-saxophone versions below 3.0.1 download binary resources over HTTP, which leaves it vulnerable …
|
CWE-310
Cryptographic Issues
|
CVE-2016-10573
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269345
|
8.1 |
HIGH
Network
|
pngcrush-installer_project
|
pngcrush-installer
|
pngcrush-installer is an installer for Pngcrush. pngcrush-installer versions below 1.8.10 download binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause …
|
CWE-310
Cryptographic Issues
|
CVE-2016-10570
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269346
|
8.1 |
HIGH
Network
|
geoip-lite-country_project
|
geoip-lite-country
|
geoip-lite-country is a stripped down version of geoip-lite, supporting only country lookup. geoip-lite-country before 1.1.4 downloads data resources over HTTP, which leaves it vulnerable to MITM att…
|
CWE-310
Cryptographic Issues
|
CVE-2016-10568
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269347
|
8.1 |
HIGH
Network
|
install-nw_project
|
install-nw
|
install-nw is a module which quickly and robustly installs and caches NW.js. install-nw versions below 1.1.5 download binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be…
|
CWE-310
Cryptographic Issues
|
CVE-2016-10566
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269348
|
8.1 |
HIGH
Network
|
product-monitor_project
|
product-monitor
|
product-monitor is a HTML/JavaScript template for monitoring a product by encouraging product developers to gather all the information about the status of a product, including live monitoring, statis…
|
CWE-310
Cryptographic Issues
|
CVE-2016-10567
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269349
|
8.1 |
HIGH
Network
|
groupon
|
selenium-download
|
selenium-download downloads the latest versions of the selenium standalone server and the chromedriver. selenium-download before 2.0.7 downloads binary resources over HTTP, which leaves it vulnerable…
|
CWE-310
Cryptographic Issues
|
CVE-2016-10559
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269350
|
8.1 |
HIGH
Network
|
aerospike
|
aerospike
|
aerospike is an Aerospike add-on module for Node.js. aerospike versions below 2.4.2 download binary resources over HTTP, which leaves the module vulnerable to MITM attacks. It may be possible to caus…
|
CWE-310
Cryptographic Issues
|
CVE-2016-10558
|
2024-11-21 11:44 |
2018-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|