← Back

Ithoughts

ithoughts

3 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Ithoughtshd
ithoughtshd

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ithoughts
1Ithoughtshd
May 6, 2026
Mar 26, 2014
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The iThoughts web server in the iThoughtsHD app 4.19 for iOS on iPad devices allows remote attackers to cause a denial of service (disk consumption) by uploading a large file.
1Ithoughts
1Ithoughtshd
May 6, 2026
Mar 26, 2014
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer feature is used, allows remote attackers to upload arbitrary files by placing a %00 sequence after a dangerous extension, as demonstrated by a .htm...Show more
The iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer feature is used, allows remote attackers to upload arbitrary files by placing a %00 sequence after a dangerous extension, as demonstrated by a .html%00.txt file.Show less
1Ithoughts
1Ithoughtshd
May 6, 2026
Mar 26, 2014
N/A· v4
N/A· v3
2.6 LOW· v2
Cross-site scripting (XSS) vulnerability in the iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer feature is used, allows remote attackers to inject arbitrary web script or HTML via a crafted map name.