|
222701
|
7.8 |
HIGH
Local
|
andyroid
|
andy_os
|
An issue was discovered in AndyOS Andy versions up to 46.11.113. By default, it starts telnet and ssh (ports 22 and 23) with root privileges in the emulated Android system. This can be exploited by r…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-14326
|
2024-11-21 13:26 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222702
|
6.1 |
MEDIUM
Network
|
limesurvey
|
limesurvey
|
LimeSurvey 3.17.7+190627 has XSS via Boxes in application/extensions/PanelBoxWidget/views/box.php or a label title in application/views/admin/labels/labelview_view.php.
|
CWE-79
Cross-site Scripting
|
CVE-2019-14512
|
2024-11-21 13:26 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222703
|
9.8 |
CRITICAL
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices allow denial of service (issue 2 of 3). Unauthenticated crafted packets to the IPP service will cause a vulnerable device to crash. A memory corruption has been identifie…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14310
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222704
|
7.5 |
HIGH
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices have a fixed password. FTP service credential were found to be hardcoded within the printer firmware. This would allow to an attacker to access and read information store…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-14309
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222705
|
7.5 |
HIGH
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices allow denial of service (issue 1 of 3). Some Ricoh printers were affected by a wrong LPD service implementation that lead to a denial of service vulnerability.
|
NVD-CWE-noinfo
|
CVE-2019-14303
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222706
|
9.8 |
CRITICAL
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices have an Authentication Method Vulnerable to Brute Force Attacks. Some Ricoh printers did not implement account lockout. Therefore, it was possible to obtain the local acc…
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2019-14299
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222707
|
7.8 |
HIGH
Local
|
qualcomm
|
qcn7605_firmware qcs605_firmware sda845_firmware sdm670_firmware sdm710_firmware sdm845_firmware sdm850_firmware sm8150_firmware sxr1130_firmware
|
Possible Integer underflow in WLAN function due to lack of check of data received from user side in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consu…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2019-14085
|
2024-11-21 13:26 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222708
|
9.1 |
CRITICAL
Network
|
qualcomm
|
ipq8074_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware qcn7605_firmware sm8150_firmware
|
Potential buffer over-read due to lack of bound check of memory offset passed in WLAN firmware in Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon…
|
CWE-20 CWE-125
Improper Input Validation Out-of-bounds Read
|
CVE-2019-14082
|
2024-11-21 13:26 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222709
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8064_firmware apq8096_firmware apq8096au_firmware ipq6018_firmware ipq8074_firmware mdm9206_firmware mdm9207c_firmware…
|
Possible buffer overflow in data offload handler due to lack of check of keydata length when copying data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-14098
|
2024-11-21 13:26 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222710
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8096_firmware apq8096au_firmware apq8098_firmware ipq6018_firmware ipq8074_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8996au_firmware msm8998_firmwar…
|
Possible buffer overflow in WLAN Parser due to lack of length check when copying data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Sn…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-14097
|
2024-11-21 13:26 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|