Skip to main content

Vendor archive

ucweb CVEs

Beta · best-effort

8 CVEs tagged to vendor ucweb1 Critical, 0 High, 6 Medium, 1 Low, 0 Unrated.

CVE-2017-20041

Published Jun 13, 2022

A vulnerability was found in Ucweb UC Browser 11.2.5.932. It has been classified as critical. Affected is an unknown function of the component HTML Handler. The manipulation of th…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-36473

Published Aug 14, 2021

UCWeb UC 12.12.3.1219 through 12.12.3.1226 uses cleartext HTTP, and thus man-in-the-middle attackers can discover visited URLs.

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-7364

Published Oct 20, 2020

User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of UCWeb's UC Browser allows an attacker to obfuscate the true source of data as pre…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7363

Published Oct 20, 2020

User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of UCWeb's UC Browser allows an attacker to obfuscate the true source of data as pre…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-10251

Published Mar 28, 2019

The UCWeb UC Browser application through 2019-03-26 for Android uses HTTP to download certain modules associated with PDF and Microsoft Office files (related to libpicsel), which…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-6691

Published Sep 23, 2014

The UC Browser HD (aka com.uc.browser.hd) application 3.3.1.469 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-1478

Published Mar 14, 2012

Unspecified vulnerability in the UCMobile BloveStorm (com.blovestorm) application 2.2.0 and 3.2.1 for Android has unknown impact and attack vectors.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1