|
222541
|
6.5 |
MEDIUM
Adjacent
|
ti
|
cc2640r2_software_development_kit
|
The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM Public Key packet on reception, allowing attackers in radio …
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-17520
|
2024-11-21 13:32 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222542
|
6.5 |
MEDIUM
Adjacent
|
dialog-semiconductor
|
software_development_kit
|
The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 1.0.14.1081 for DA1468x devices responds to link layer packets with a payload length larger than expected, allowing attacke…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-17518
|
2024-11-21 13:32 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222543
|
5.7 |
MEDIUM
Adjacent
|
dialog-semiconductor
|
software_development_kit
|
The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 5.0.4 for DA14580/1/2/3 devices does not properly restrict the L2CAP payload length, allowing attackers in radio range to c…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-17517
|
2024-11-21 13:32 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222544
|
6.5 |
MEDIUM
Network
|
fortinet
|
forticlient
|
A stack buffer overflow vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to cause FortiClient processes running under root priviledge crashes via sending spe…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-17652
|
2024-11-21 13:32 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222545
|
7.5 |
HIGH
Local
|
unisys
|
stealth
|
In Unisys Stealth (core) 3.4.108.0, 3.4.209.x, 4.0.027.x and 4.0.114, key material inadvertently logged under certain conditions. Fixed included in 3.4.109, 4.0.027.13, 4.0.125 and 5.0.013.0.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2019-18193
|
2024-11-21 13:32 |
2020-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222546
|
6.5 |
MEDIUM
Adjacent
|
netapp
|
e-series_santricity_os_controller
|
E-Series SANtricity OS Controller Software version 11.60.0 is susceptible to a vulnerability which allows an attacker to cause a Denial of Service (DoS) in IPv6 environments.
|
NVD-CWE-noinfo
|
CVE-2019-17273
|
2024-11-21 13:32 |
2020-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222547
|
5.4 |
MEDIUM
Network
|
tibco
|
patterns_-_search
|
The user interface component of TIBCO Software Inc.'s TIBCO Patterns - Search contains multiple vulnerabilities that theoretically allow authenticated users to perform persistent cross-site scripting…
|
CWE-79
Cross-site Scripting
|
CVE-2019-17338
|
2024-11-21 13:32 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222548
|
5.4 |
MEDIUM
Network
|
fortinet
|
fortisiem
|
An Improper Neutralization of Input vulnerability in the description and title parameters of a Device Maintenance Schedule in FortiSIEM version 5.2.5 and below may allow a remote authenticated attack…
|
CWE-79
Cross-site Scripting
|
CVE-2019-17651
|
2024-11-21 13:32 |
2020-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222549
|
9.8 |
CRITICAL
Network
|
apache debian canonical fedoraproject redhat
|
xml-rpc debian_linux ubuntu_linux fedora software_collections
|
An untrusted deserialization was found in the org.apache.xmlrpc.parser.XmlRpcResponseParser:addResult method of Apache XML-RPC (aka ws-xmlrpc) library. A malicious XML-RPC server could target a XML-R…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-17570
|
2024-11-21 13:32 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222550
|
4.7 |
MEDIUM
Local
|
arm fedoraproject debian
|
mbed_tls mbed_crypto fedora debian_linux
|
The ECDSA signature implementation in ecdsa.c in Arm Mbed Crypto 2.1 and Mbed TLS through 2.19.1 does not reduce the blinded scalar before computing the inverse, which allows a local attacker to reco…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2019-18222
|
2024-11-21 13:32 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|