|
197391
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8037_firmware apq8053_firmware mdm9250_firmware mdm9607_firmware mdm9628_firmware mdm9640_firmware mdm9650_firmware msm8108_firmware
|
u'When a non standard SIP sigcomp message is received from the network, then there may be chances of using more UDVM cycle or memory overflow' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consu…
|
CWE-129
Improper Validation of Array Index
|
CVE-2020-3639
|
2024-11-21 14:31 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197392
|
7.8 |
HIGH
Local
|
qualcomm
|
qsm8350_firmware sc7180_firmware sdx55_firmware sdx55m_firmware sm6150_firmware sm6250_firmware sm6250p_firmware sm7125_firmware sm7150_firmware sm7150p_firmware sm7250_…
|
u'Incorrect validation of ring context fetched from host memory can lead to memory overflow' in Snapdragon Compute, Snapdragon Mobile in QSM8350, SC7180, SDX55, SDX55M, SM6150, SM6250, SM6250P, SM712…
|
CWE-129
Improper Validation of Array Index
|
CVE-2020-3632
|
2024-11-21 14:31 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197393
|
7.8 |
HIGH
Local
|
cisco
|
webex_meetings
|
Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabil…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-3604
|
2024-11-21 14:31 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197394
|
7.8 |
HIGH
Local
|
cisco
|
webex_meetings_server webex_meetings
|
Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabil…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-3603
|
2024-11-21 14:31 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197395
|
7.8 |
HIGH
Local
|
cisco
|
sd-wan
|
A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating system. The vulnerability is due to insufficient securi…
|
CWE-863
Incorrect Authorization
|
CVE-2020-3600
|
2024-11-21 14:31 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197396
|
7.8 |
HIGH
Local
|
cisco
|
sd-wan
|
A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root group on the underlying operating system. The vulnerability is due to incorrect per…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-3595
|
2024-11-21 14:31 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197397
|
7.8 |
HIGH
Local
|
cisco
|
sd-wan
|
A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating system. The vulnerability is due to insufficient input …
|
CWE-269
Improper Privilege Management
|
CVE-2020-3594
|
2024-11-21 14:31 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197398
|
7.8 |
HIGH
Local
|
cisco
|
sd-wan
|
A vulnerability in Cisco SD-WAN Software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating system. The vulnerability is due to insufficient input …
|
CWE-269
Improper Privilege Management
|
CVE-2020-3593
|
2024-11-21 14:31 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197399
|
6.5 |
MEDIUM
Network
|
cisco
|
sd-wan_vmanage catalyst_sd-wan_manager
|
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass authorization and modify the configuration of an affecte…
|
CWE-863
Incorrect Authorization
|
CVE-2020-3592
|
2024-11-21 14:31 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197400
|
4.3 |
MEDIUM
Network
|
cisco
|
sd-wan_vmanage catalyst_sd-wan_manager
|
A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user …
|
CWE-79
Cross-site Scripting
|
CVE-2020-3591
|
2024-11-21 14:31 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|