|
197761
|
6.0 |
MEDIUM
Local
|
qualcomm
|
aqt1000_firmware ar8031_firmware ar8035_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmware fsm10055_firmware fsm10056_firmware ipq6000_firmwar…
|
Out of bound read access in hypervisor due to an invalid read access attempt by passing invalid addresses in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Sna…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-3664
|
2024-11-21 14:31 |
2021-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197762
|
5.5 |
MEDIUM
Local
|
qualcomm
|
qualcomm
|
Local privilege escalation in admin services in Windows environment can occur due to an arbitrary read issue.
|
CWE-200
Information Exposure
|
CVE-2020-3687
|
2024-11-21 14:31 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197763
|
9.8 |
CRITICAL
Network
|
qualcomm
|
msm8960 mdm9206 mdm9607 mdm9650 msm8909w mdm9635m mdm9655 mdm9615 mdm9625 mdm9640 mdm9645 sdm630 qca6174a qca6574au qca6584 qca6584au qca9379 msm897…
|
Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2020-3691
|
2024-11-21 14:31 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197764
|
9.8 |
CRITICAL
Network
|
qualcomm
|
msm8960 mdm9607 mdm9650 msm8909w mdm9635m mdm9655 mdm9615 mdm9625 mdm9640 mdm9645 sdm630 qca6174a qca6574au qca6584au qca9379 msm8976 msm8952 apq809…
|
Possible memory out of bound issue during music playback when an incorrect bit stream content is copied into array without checking the length of array in Snapdragon Auto, Snapdragon Compute, Snapdra…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-3686
|
2024-11-21 14:31 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197765
|
7.5 |
HIGH
Network
|
qualcomm
|
msm8960 mdm9206 mdm9607 mdm9650 msm8909w mdm9635m mdm9655 mdm9615 mdm9625 mdm9640 mdm9645 sdm630 qca6174a qca6574au qca6584 qca6584au qca9379 msm897…
|
Pointer variable which is freed is not cleared can result in memory corruption and leads to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,…
|
CWE-415
Double Free
|
CVE-2020-3685
|
2024-11-21 14:31 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197766
|
9.8 |
CRITICAL
Network
|
cisco
|
dna_spaces\
|
A vulnerability in the web-based management interface of Cisco DNA Spaces Connector could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. The vulnerabil…
|
CWE-78
OS Command
|
CVE-2020-3586
|
2024-11-21 14:31 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197767
|
9.8 |
CRITICAL
Network
|
cisco
|
iot_field_network_director
|
A vulnerability in the REST API of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to access the back-end database of an affected system. The vulnerability exis…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-3531
|
2024-11-21 14:31 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197768
|
6.5 |
MEDIUM
Network
|
cisco
|
expressway telepresence_video_communication_server
|
A vulnerability in the Traversal Using Relays around NAT (TURN) server component of Cisco Expressway software could allow an unauthenticated, remote attacker to bypass security controls and send netw…
|
CWE-269
Improper Privilege Management
|
CVE-2020-3482
|
2024-11-21 14:31 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197769
|
6.5 |
MEDIUM
Network
|
cisco
|
webex_meetings_server
|
A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to maintain bidirectional audio despite being expelled from an active Webex ses…
|
CWE-662
Improper Synchronization
|
CVE-2020-3471
|
2024-11-21 14:31 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197770
|
9.8 |
CRITICAL
Network
|
cisco
|
enterprise_nfv_infrastructure_software integrated_management_controller
|
Multiple vulnerabilities in the API subsystem of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges. The vulne…
|
CWE-20
Improper Input Validation
|
CVE-2020-3470
|
2024-11-21 14:31 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|