|
209761
|
6.8 |
MEDIUM
Physics
|
svakom
|
siime_eye_firmware
|
An issue was discovered in Svakom Siime Eye 14.1.00000001.3.330.0.0.3.14. By sending a set_params.cgi?telnetd=1&save=1&reboot=1 request to the webserver, it is possible to enable the telnet interface…
|
CWE-1188
Insecure Default Initialization of Resource
|
CVE-2020-11915
|
2024-11-21 13:58 |
2021-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209762
|
5.5 |
MEDIUM
Local
|
google
|
android
|
OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The “adb shell getprop ro.vendor.aee.enforcing” or “adb shell getprop ro.vendor.aee.enforc…
|
NVD-CWE-noinfo
|
CVE-2020-11836
|
2024-11-21 13:58 |
2021-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209763
|
5.5 |
MEDIUM
Local
|
oppo
|
reno3_pro_firmware find_x2_pro_firmware
|
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_da9313.c, failure to check the parameter buf in the function proc_work_mode_write in proc_work_mode_write causes a vulnerability.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-11835
|
2024-11-21 13:58 |
2021-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209764
|
5.5 |
MEDIUM
Local
|
oppo
|
reno3_pro_firmware find_x2_pro_firmware
|
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_vooc.c, the function proc_fastchg_fw_update_write in proc_fastchg_fw_update_write does not check the parameter len, resulting in a vulnerabil…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-11834
|
2024-11-21 13:58 |
2021-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209765
|
5.5 |
MEDIUM
Local
|
oppo
|
reno3_pro_firmware find_x2_pro_firmware
|
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_mp2650.c, the function mp2650_data_log_write in mp2650_data_log_write does not check the parameter len which causes a vulnerabilit…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-11833
|
2024-11-21 13:58 |
2021-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209766
|
5.5 |
MEDIUM
Local
|
oppo
|
reno3_pro_firmware find_x2_pro_firmware
|
In functions charging_limit_current_write and charging_limit_time_write in /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_charger.c have not checked the parameters, which causes a vulnerabili…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-11832
|
2024-11-21 13:58 |
2021-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209767
|
3.8 |
LOW
Local
|
qemu
|
qemu
|
iscsi_aio_ioctl_cb in block/iscsi.c in QEMU 4.1.0 has a heap-based buffer over-read that may disclose unrelated information from process memory to an attacker.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-11947
|
2024-11-21 13:58 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209768
|
7.5 |
HIGH
Network
|
bilanc
|
bilanc
|
An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and possibly below. It relies on broken encryption with a weak and guessable static encryption key.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-11719
|
2024-11-21 13:58 |
2020-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209769
|
9.8 |
CRITICAL
Network
|
bilanc
|
bilanc
|
An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and possibly below. During the installation, it sets up administrative access by default with the account admin and passwor…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-11720
|
2024-11-21 13:58 |
2020-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209770
|
7.4 |
HIGH
Network
|
bilanc
|
bilanc
|
An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and below. Its software-update packages are downloaded via cleartext HTTP.
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2020-11718
|
2024-11-21 13:58 |
2020-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|