|
218781
|
7.4 |
HIGH
Network
|
shadowsocks
|
shadowsocks-libev
|
An exploitable information disclosure vulnerability exists in the network packet handling functionality of Shadowsocks-libev 3.3.2. When utilizing a Stream Cipher, a specially crafted set of network …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-5152
|
2024-11-21 13:44 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218782
|
6.5 |
MEDIUM
Network
|
huawei
|
ar120-s_firmware ar1200_firmware ar1200-s_firmware ar150_firmware ar150-s_firmware ar160_firmware ar200_firmware ar200-s_firmware ar2200_firmware ar2200-s_firmware ar320…
|
There is an information leakage vulnerability on some Huawei products(AR120-S;AR1200;AR1200-S;AR150;AR150-S;AR160;AR200;AR200-S;AR2200;AR2200-S;AR3200;AR3600). An attacker with low permissions can vi…
|
CWE-269
Improper Privilege Management
|
CVE-2019-5259
|
2024-11-21 13:44 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218783
|
3.5 |
LOW
Physics
|
huawei
|
enjoy_8_plus_firmware y9_firmware honor_8x_firmware honor_9_lite_firmware honor_9i_firmware y6_pro_firmware
|
There is an improper authentication vulnerability in Huawei smartphones (Y9, Honor 8X, Honor 9 Lite, Honor 9i, Y6 Pro). The applock does not perform a sufficient authentication in a rare condition. S…
|
CWE-287
Improper Authentication
|
CVE-2019-5252
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218784
|
5.3 |
MEDIUM
Network
|
huawei
|
alp-al00b_firmware alp-tl00b_firmware bla-al00b_firmware bla-tl00b_firmware charlotte-al00a_firmware charlotte-tl00b_firmware columbia-al10b_firmware columbia-al10i_firmware c…
|
Some Huawei smart phones have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to exploit this vulnerability. Successful exploitation ma…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-5235
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218785
|
7.5 |
HIGH
Network
|
huawei
|
cloudusm-eua_firmware
|
Huawei CloudUSM-EUA V600R006C10;V600R019C00 have an information leak vulnerability. Due to improper configuration, the attacker may cause information leak by successful exploitation.
|
NVD-CWE-noinfo
|
CVE-2019-5277
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218786
|
4.6 |
MEDIUM
Physics
|
huawei
|
mate_10_firmware mate_10_pro_firmware honor_v10_firmware changxiang_7s_firmware p-smart_firmware changxiang_8_plus_firmware y9_2018_firmware honor_9_lite_firmware honor_9i_fir…
|
There is an information disclosure vulnerability in certain Huawei smartphones (Mate 10;Mate 10 Pro;Honor V10;Changxiang 7S;P-smart;Changxiang 8 Plus;Y9 2018;Honor 9 Lite;Honor 9i;Mate 9). The softwa…
|
NVD-CWE-noinfo
|
CVE-2019-5264
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218787
|
5.5 |
MEDIUM
Local
|
huawei
|
ap2000_firmware ips_firmware ngfw_firmware nip6300_firmware nip6600_firmware nip6800_firmware s5700_firmware svn5600_firmware svn5800_firmware svn5800-c_firmware semg981…
|
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace AntiDDoS8000;Secospace USG6300;Secospace USG6500;Secospace USG6600;US…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-5258
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218788
|
5.5 |
MEDIUM
Local
|
huawei
|
ap2000_firmware ips_firmware ngfw_firmware nip6300_firmware nip6600_firmware nip6800_firmware s5700_firmware svn5600_firmware svn5800_firmware svn5800-c_firmware semg981…
|
Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace) have a resource management vulnerability. An attacker who logs in to…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-5257
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218789
|
6.5 |
MEDIUM
Network
|
huawei
|
campusinsight
|
There is an out-of-bounds read vulnerability in the Advanced Packages feature of the Gauss100 OLTP database in CampusInsight before V100R019C00SPC200. Attackers who gain the specific permission can u…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-5278
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218790
|
6.5 |
MEDIUM
Adjacent
|
huawei
|
y9_2019_firmware view_20_firmware
|
Huawei smartphones HUAWEI Y9 2019 and Honor View 20 have a denial of service vulnerability. Due to insufficient input validation of specific value when parsing the messages, an attacker may send spec…
|
CWE-20
Improper Input Validation
|
CVE-2019-5260
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|