|
222541
|
5.5 |
MEDIUM
Local
|
qualcomm
|
mdm9607_firmware msm8917_firmware msm8920_firmware msm8937_firmware msm8940_firmware msm8953_firmware msm8998_firmware nicobar_firmware qcs605_firmware rennell_firmware …
|
Null pointer dereference issue in radio interface layer due to lack of null check in sapmodule destructor in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in …
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-14075
|
2024-11-21 13:26 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222542
|
7.0 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8064_firmware apq8096au_firmware apq8098_firmware ipq4019_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware<…
|
Possible use after free issue in pcm volume controls due to race condition exist in private data used in mixer controls in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Ind…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2019-14070
|
2024-11-21 13:26 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222543
|
7.8 |
HIGH
Local
|
andyroid
|
andy_os
|
An issue was discovered in AndyOS Andy versions up to 46.11.113. By default, it starts telnet and ssh (ports 22 and 23) with root privileges in the emulated Android system. This can be exploited by r…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-14326
|
2024-11-21 13:26 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222544
|
6.1 |
MEDIUM
Network
|
limesurvey
|
limesurvey
|
LimeSurvey 3.17.7+190627 has XSS via Boxes in application/extensions/PanelBoxWidget/views/box.php or a label title in application/views/admin/labels/labelview_view.php.
|
CWE-79
Cross-site Scripting
|
CVE-2019-14512
|
2024-11-21 13:26 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222545
|
9.8 |
CRITICAL
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices allow denial of service (issue 2 of 3). Unauthenticated crafted packets to the IPP service will cause a vulnerable device to crash. A memory corruption has been identifie…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14310
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222546
|
7.5 |
HIGH
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices have a fixed password. FTP service credential were found to be hardcoded within the printer firmware. This would allow to an attacker to access and read information store…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-14309
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222547
|
7.5 |
HIGH
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices allow denial of service (issue 1 of 3). Some Ricoh printers were affected by a wrong LPD service implementation that lead to a denial of service vulnerability.
|
NVD-CWE-noinfo
|
CVE-2019-14303
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222548
|
9.8 |
CRITICAL
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices have an Authentication Method Vulnerable to Brute Force Attacks. Some Ricoh printers did not implement account lockout. Therefore, it was possible to obtain the local acc…
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2019-14299
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222549
|
7.8 |
HIGH
Local
|
qualcomm
|
qcn7605_firmware qcs605_firmware sda845_firmware sdm670_firmware sdm710_firmware sdm845_firmware sdm850_firmware sm8150_firmware sxr1130_firmware
|
Possible Integer underflow in WLAN function due to lack of check of data received from user side in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consu…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2019-14085
|
2024-11-21 13:26 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222550
|
9.1 |
CRITICAL
Network
|
qualcomm
|
ipq8074_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware qcn7605_firmware sm8150_firmware
|
Potential buffer over-read due to lack of bound check of memory offset passed in WLAN firmware in Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon…
|
CWE-20 CWE-125
Improper Input Validation Out-of-bounds Read
|
CVE-2019-14082
|
2024-11-21 13:26 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|