|
208311
|
8.8 |
HIGH
Adjacent
|
medtronic
|
mycarelink_smart_model_25000_firmware
|
Medtronic MyCareLink Smart 25000 all versions contain an authentication protocol vuln where the method used to auth between MCL Smart Patient Reader and MyCareLink Smart mobile app is vulnerable to b…
|
CWE-287
Improper Authentication
|
CVE-2020-25183
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208312
|
9.8 |
CRITICAL
Network
|
gehealthcare
|
3.0t_signa_hdxt_firmware 3.0t_signa_hd_16_firmware 3.0t_signa_hd_23_firmware 1.5t_brivo_mr355_firmware optima_mr360_firmware signa_hdi_1.5t_firmware signa_vibrant_firmware logiq_…
|
GE Healthcare Imaging and Ultrasound Products may allow specific credentials to be exposed during transport over the network.
|
CWE-200
Information Exposure
|
CVE-2020-25179
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208313
|
9.8 |
CRITICAL
Network
|
gehealthcare
|
3.0t_signa_hdxt_firmware 3.0t_signa_hd_16_firmware 3.0t_signa_hd_23_firmware 1.5t_brivo_mr355_firmware optima_mr360_firmware signa_hdi_1.5t_firmware signa_vibrant_firmware logiq_…
|
GE Healthcare Imaging and Ultrasound Products may allow specific credentials to be exposed during transport over the network.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-25175
|
2024-11-21 14:17 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208314
|
9.8 |
CRITICAL
Network
|
contiki-os
|
contiki-os
|
An issue was discovered in the IPv6 stack in Contiki through 3.0. There are inconsistent checks for IPv6 header extension lengths. This leads to Denial-of-Service and potential Remote Code Execution …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-25112
|
2024-11-21 14:17 |
2020-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208315
|
9.8 |
CRITICAL
Network
|
contiki-os
|
contiki-os
|
An issue was discovered in the IPv6 stack in Contiki through 3.0. There is an insufficient check for the IPv6 header length. This leads to Denial-of-Service and potential Remote Code Execution via a …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-25111
|
2024-11-21 14:17 |
2020-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208316
|
9.8 |
CRITICAL
Network
|
ethernut
|
nut\/os
|
An issue was discovered in the DNS implementation in Ethernut in Nut/OS 5.1. The length byte of a domain name in a DNS query/response is not checked, and is used for internal memory operations. This …
|
CWE-125
Out-of-bounds Read
|
CVE-2020-25110
|
2024-11-21 14:17 |
2020-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208317
|
9.8 |
CRITICAL
Network
|
ethernut
|
nut\/os
|
An issue was discovered in the DNS implementation in Ethernut in Nut/OS 5.1. The number of DNS queries/responses (set in a DNS header) is not checked against the data present. This may lead to succes…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-25109
|
2024-11-21 14:17 |
2020-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208318
|
9.8 |
CRITICAL
Network
|
ethernut
|
nut\/os
|
An issue was discovered in the DNS implementation in Ethernut in Nut/OS 5.1. The DNS response data length is not checked (it can be set to an arbitrary value from a packet). This may lead to successf…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-25108
|
2024-11-21 14:17 |
2020-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208319
|
9.8 |
CRITICAL
Network
|
ethernut
|
nut\/os
|
An issue was discovered in the DNS implementation in Ethernut in Nut/OS 5.1. There is no check on whether a domain name has '\0' termination. This may lead to successful Denial-of-Service, and possib…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-25107
|
2024-11-21 14:17 |
2020-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208320
|
7.5 |
HIGH
Network
|
ni
|
compactrio_firmware
|
Incorrect permissions are set by default for an API entry-point of a specific service, allowing a non-authenticated user to trigger a function that could reboot the CompactRIO (Driver versions prior …
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-25191
|
2024-11-21 14:17 |
2020-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|