|
222881
|
9.8 |
CRITICAL
Network
|
qualcomm
|
ipq6018_firmware ipq8074_firmware nicobar_firmware qca6390_firmware qca8081_firmware qcn7605_firmware qcs404_firmware qcs405_firmware rennell_firmware sc7180_firmware sc…
|
Possible buffer overflow while handling NAN reception of NMF in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdrag…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-14111
|
2024-11-21 13:26 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222882
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8064_firmware apq8096_firmware apq8096au_firmware apq8098_firmware ipq6018_firmware ipq8074_firmware mdm9206_firmware<…
|
Buffer overflow can occur in function wlan firmware while copying association frame content if frame length is more than the maximum buffer size in case of SAP mode in Snapdragon Auto, Snapdragon Com…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-14110
|
2024-11-21 13:26 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222883
|
5.5 |
MEDIUM
Local
|
qualcomm
|
mdm9607_firmware msm8917_firmware msm8920_firmware msm8937_firmware msm8940_firmware msm8953_firmware msm8998_firmware nicobar_firmware qcs605_firmware rennell_firmware …
|
Null pointer dereference issue in radio interface layer due to lack of null check in sapmodule destructor in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in …
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-14075
|
2024-11-21 13:26 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222884
|
7.0 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8064_firmware apq8096au_firmware apq8098_firmware ipq4019_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware<…
|
Possible use after free issue in pcm volume controls due to race condition exist in private data used in mixer controls in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Ind…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2019-14070
|
2024-11-21 13:26 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222885
|
7.8 |
HIGH
Local
|
andyroid
|
andy_os
|
An issue was discovered in AndyOS Andy versions up to 46.11.113. By default, it starts telnet and ssh (ports 22 and 23) with root privileges in the emulated Android system. This can be exploited by r…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-14326
|
2024-11-21 13:26 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222886
|
6.1 |
MEDIUM
Network
|
limesurvey
|
limesurvey
|
LimeSurvey 3.17.7+190627 has XSS via Boxes in application/extensions/PanelBoxWidget/views/box.php or a label title in application/views/admin/labels/labelview_view.php.
|
CWE-79
Cross-site Scripting
|
CVE-2019-14512
|
2024-11-21 13:26 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222887
|
9.8 |
CRITICAL
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices allow denial of service (issue 2 of 3). Unauthenticated crafted packets to the IPP service will cause a vulnerable device to crash. A memory corruption has been identifie…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14310
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222888
|
7.5 |
HIGH
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices have a fixed password. FTP service credential were found to be hardcoded within the printer firmware. This would allow to an attacker to access and read information store…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-14309
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222889
|
7.5 |
HIGH
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices allow denial of service (issue 1 of 3). Some Ricoh printers were affected by a wrong LPD service implementation that lead to a denial of service vulnerability.
|
NVD-CWE-noinfo
|
CVE-2019-14303
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222890
|
9.8 |
CRITICAL
Network
|
ricoh
|
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware
|
Ricoh SP C250DN 1.05 devices have an Authentication Method Vulnerable to Brute Force Attacks. Some Ricoh printers did not implement account lockout. Therefore, it was possible to obtain the local acc…
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2019-14299
|
2024-11-21 13:26 |
2020-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|