265161
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 does not validate the peer certificate when obtaining an update, which could allow remote attackers to distribute malicious updates to cli…
|
NVD-CWE-Other
|
CVE-2006-2707
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265162
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
The vulnerabilities and security issues have been fixed in C5 EVM version 2.8.1.
|
NVD-CWE-Other
|
CVE-2006-2707
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265163
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 allows remote attackers to read portions of process memory via a modified size for (1) EM_GET_CE_PARAMETER and (2) EM_SET_CE_PARAMETER mes…
|
NVD-CWE-Other
|
CVE-2006-2708
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265164
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Upgrade to version 2.8.1
|
NVD-CWE-Other
|
CVE-2006-2708
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265165
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 do not validate the source address of a message, which allows remote attackers to (1) execute arbitrary code on a client or (2) forge messages to…
|
NVD-CWE-Other
|
CVE-2006-2709
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265166
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Upgrade to version 2.8.1
|
NVD-CWE-Other
|
CVE-2006-2709
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265167
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 uses the same invariant RSA key for all installations, which allows remote attackers with the key to decrypt communications.
|
NVD-CWE-Other
|
CVE-2006-2710
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265168
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Upgrade to 2.8.1
|
NVD-CWE-Other
|
CVE-2006-2710
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265169
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier, and possibly later 2.8.x releases, uses the same initialization vector and key for each message session, which allows remote attackers to o…
|
NVD-CWE-Other
|
CVE-2006-2711
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265170
|
- |
|
secure_elements
|
class_5_enterprise_vulnerability_management
|
Upgrade to 2.8.1
|
NVD-CWE-Other
|
CVE-2006-2711
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|