|
208301
|
7.5 |
HIGH
Network
|
hosteng
|
h0-ecom100_firmware h2-ecom100_firmware h4-ecom100_firmware
|
The length of the input fields of Host Engineering H0-ECOM100, H2-ECOM100, and H4-ECOM100 modules are verified only on the client side when receiving input from the configuration web server, which ma…
|
CWE-20
Improper Input Validation
|
CVE-2020-25195
|
2024-11-21 14:17 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208302
|
7.5 |
HIGH
Network
|
siemens
|
logo\!_8_bm_firmware
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The password used for authentication for the LOGO! Website and the LOGO! Access Tool is sent in a reco…
|
-
|
CVE-2020-25235
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208303
|
7.7 |
HIGH
Local
|
siemens
|
logo\!_8_bm_firmware
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All versions < V8.3). The LOGO! program files generated and used by the affected c…
|
-
|
CVE-2020-25234
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208304
|
5.5 |
MEDIUM
Local
|
siemens
|
logo\!_8_bm_firmware
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The firmware update of affected devices contains the private RSA key that is used as a basis for encry…
|
-
|
CVE-2020-25233
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208305
|
7.5 |
HIGH
Network
|
siemens
|
logo\!_8_bm_firmware
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Due to the usage of an insecure random number generation function and a deprecated cryptographic funct…
|
-
|
CVE-2020-25232
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208306
|
5.5 |
MEDIUM
Local
|
siemens
|
logo\!_8_bm_firmware logo\!_soft_comfort
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All versions < V8.3). The encryption of program data for the affected devices uses…
|
-
|
CVE-2020-25231
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208307
|
7.5 |
HIGH
Network
|
siemens
|
logo\!_8_bm_firmware
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Due to the usage of an outdated cipher mode on port 10005/tcp, an attacker could extract the encryptio…
|
-
|
CVE-2020-25230
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208308
|
7.5 |
HIGH
Network
|
siemens
|
logo\!_8_bm_firmware
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The implemented encryption for communication with affected devices is prone to replay attacks due to t…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-25229
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208309
|
9.8 |
CRITICAL
Network
|
siemens
|
logo\!_8_bm_firmware
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). A service available on port 10005/tcp of the affected devices could allow complete access to all servi…
|
-
|
CVE-2020-25228
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208310
|
9.8 |
CRITICAL
Network
|
medtronic
|
mycarelink_smart_model_25000_firmware
|
Medtronic MyCareLink Smart 25000 all versions are vulnerable when an attacker who gains auth runs a debug command, which is sent to the reader causing heap overflow in the MCL Smart Reader stack. A h…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-25187
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|