|
198251
|
6.7 |
MEDIUM
Local
|
cisco
|
ios_xe
|
A vulnerability in the implementation of the Lua interpreter that is integrated in Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary code with root privileges on…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-3423
|
2024-11-21 14:31 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198252
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the IP Service Level Agreement (SLA) responder feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the IP SLA responder to reuse an existing p…
|
NVD-CWE-noinfo
|
CVE-2020-3422
|
2024-11-21 14:31 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198253
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe
|
Multiple vulnerabilities in the Zone-Based Firewall feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload or stop forwarding traffic through t…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2020-3421
|
2024-11-21 14:31 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198254
|
4.7 |
MEDIUM
Adjacent
|
cisco
|
ios_xe
|
A vulnerability in Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9800 Series Routers could allow an unauthenticated, adjacent attacker to send ICMPv6 traffic prior to the client being …
|
NVD-CWE-Other
|
CVE-2020-3418
|
2024-11-21 14:31 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198255
|
6.7 |
MEDIUM
Local
|
cisco
|
ios_xe
|
A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to execute persistent code at boot time and break the chain of trust. This vulnerability is due to incorrect vali…
|
CWE-78
OS Command
|
CVE-2020-3417
|
2024-11-21 14:31 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198256
|
6.7 |
MEDIUM
Local
|
cisco
|
ios_xe
|
Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cisco ASR 900 Series Aggregation Services Routers with a Route Switch Processor 3 …
|
CWE-94
Code Injection
|
CVE-2020-3416
|
2024-11-21 14:31 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198257
|
8.6 |
HIGH
Network
|
cisco
|
ios_xr
|
Multiple vulnerabilities in the Distance Vector Multicast Routing Protocol (DVMRP) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to either immediately crash the Int…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2020-3569
|
2024-11-21 14:31 |
2020-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198258
|
5.5 |
MEDIUM
Local
|
qualcomm
|
bitra_firmware kamorta_firmware nicobar_firmware qcs404_firmware qcs610_firmware rennell_firmware sa6155p_firmware sa8155p_firmware saipan_firmware sc7180_firmware sc818…
|
u'During execution after Address Space Layout Randomization is turned on for QTEE, part of code is still mapped at known address including code segments' in Snapdragon Auto, Snapdragon Compute, Snapd…
|
NVD-CWE-noinfo
|
CVE-2020-3679
|
2024-11-21 14:31 |
2020-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198259
|
5.5 |
MEDIUM
Local
|
qualcomm
|
nicobar_firmware qcs405_firmware saipan_firmware sc8180x_firmware sdx55_firmware sm8150_firmware sm8250_firmware sxr2130_firmware
|
Information can leak into userspace due to improper transfer of data from kernel to userspace in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mo…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-3674
|
2024-11-21 14:31 |
2020-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198260
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8009_firmware kamorta_firmware mdm9607_firmware msm8917_firmware msm8953_firmware nicobar_firmware qcm2150_firmware qcs405_firmware qcs605_firmware qm215_firmware ren…
|
Out of bound access can happen in MHI command process due to lack of check of command channel id value received from MHI devices in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapd…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-3656
|
2024-11-21 14:31 |
2020-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|