CVEs (8)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Mono Project2Debian Linux MonoMay 20, 2026 Feb 22, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 The mono package before 6.8.0.105+dfsg-3.3 for Debian allows arbitrary code execution because the application/x-ms-dos-executable MIME type is associated with an un-sandboxed Mono CLR interpreter. |
3Canonical DebianMono Project3Debian Linux MonoUbuntu LinuxNov 21, 2024 Nov 21, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 mono 2.10.x ASP.NET Web Form Hash collision DoS |
2Debian Mono Project2Debian Linux MonoNov 21, 2024 Jan 8, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The TLS stack in Mono before 3.12.1 allows remote attackers to have unspecified impact via vectors related to client-side SSLv2 fallback. |
The TLS stack in Mono before 3.12.1 makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via crafted TLS traffic, related to the "FREAK" issue, a different vulnerability than CVE...Show more |
2Debian Mono Project2Debian Linux MonoNov 21, 2024 Jan 8, 2018 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 The TLS stack in Mono before 3.12.1 allows man-in-the-middle attackers to conduct message skipping attacks and consequently impersonate clients by leveraging missing handshake state validation, aka a "SMACK SKIP-TLS" iss...Show more |
3Ibm Mono ProjectOracle5Application Server Bea Product SuiteMono+2 moreApr 23, 2026 Jul 14, 2009 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The design of the W3C XML Signature Syntax and Processing (XMLDsig) recommendation, as implemented in products including (1) the Oracle Security Developer Tools component in Oracle Application Server 10.1.2.3, 10.1.3.4,...Show more |
CRLF injection vulnerability in Sys.Web in Mono 2.0 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the query string. |
Multiple cross-site scripting (XSS) vulnerabilities in the ASP.net class libraries in Mono 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via crafted attributes related to (1) HtmlControl.c...Show more |