|
198451
|
8.8 |
HIGH
Network
|
ishekar
|
endoscope_camera_firmware
|
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope that an attacker connected to the device Wi-Fi SSID can exploit a memory corruptio…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-10723
|
2024-11-21 12:06 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198452
|
7.8 |
HIGH
Local
|
ishekar
|
endoscope_camera_firmware
|
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope that the desktop application used to connect to the device suffers from a stack ov…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-10722
|
2024-11-21 12:06 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198453
|
6.5 |
MEDIUM
Network
|
ishekar
|
endoscope_camera_firmware
|
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope that the device has Telnet functionality enabled by default. This device acts as a…
|
CWE-284
Improper Access Control
|
CVE-2017-10721
|
2024-11-21 12:06 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198454
|
7.8 |
HIGH
Local
|
ishekar
|
endoscope_camera_firmware
|
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope that the desktop application used to connect to the device suffers from a stack ov…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-10720
|
2024-11-21 12:06 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198455
|
6.5 |
MEDIUM
Network
|
ishekar
|
endoscope_camera_firmware
|
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope that the device has default Wi-Fi credentials that are exactly the same for every …
|
CWE-200
Information Exposure
|
CVE-2017-10719
|
2024-11-21 12:06 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198456
|
6.5 |
MEDIUM
Network
|
ishekar
|
endoscope_camera_firmware
|
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope that any malicious user connecting to the device can change the default SSID and p…
|
CWE-255
Credentials Management
|
CVE-2017-10718
|
2024-11-21 12:06 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198457
|
5.5 |
MEDIUM
Local
|
qualcomm
|
ipq8074_firmware mdm9206_firmware mdm9607_firmware mdm9635m_firmware mdm9650_firmware mdm9655_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware
|
A non-secure user may be able to access certain registers in snapdragon automobile, snapdragon mobile and snapdragon wear in versions IPQ8074, MDM9206, MDM9607, MDM9635M, MDM9650, MDM9655, MSM8996AU,…
|
NVD-CWE-noinfo
|
CVE-2017-11004
|
2024-11-21 12:06 |
2019-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198458
|
7.5 |
HIGH
Network
|
zte
|
zxiptv-ucm_firmware
|
SQL injection vulnerability in all versions prior to V2.01.05.09 of the ZTE ZXIPTV-UCM product allows remote attackers to execute arbitrary SQL commands via the opertype parameter, resulting in the d…
|
CWE-89
SQL Injection
|
CVE-2017-10937
|
2024-11-21 12:06 |
2018-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198459
|
7.5 |
HIGH
Network
|
zte
|
zxcdn-sns_firmware
|
SQL injection vulnerability in all versions prior to V4.01.01 of the ZTE ZXCDN-SNS product allows remote attackers to execute arbitrary SQL commands via the aoData parameter, resulting in the disclos…
|
CWE-89
SQL Injection
|
CVE-2017-10936
|
2024-11-21 12:06 |
2018-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198460
|
7.2 |
HIGH
Network
|
zte
|
zxr10_1800-2s_firmware
|
All versions prior to ZSRV2 V3.00.40 of the ZTE ZXR10 1800-2S products allow remote authenticated users to bypass the original password authentication protection to change other user's password.
|
NVD-CWE-noinfo
|
CVE-2017-10935
|
2024-11-21 12:06 |
2018-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|