Show filters
3,160 Total Results
Displaying 31-40 of 3,160
Sort by:
Attacker Value
Unknown

CVE-2022-41223

Disclosure Date: November 22, 2022 (last updated October 08, 2023)
The Director database component of MiVoice Connect through 19.3 (22.22.6100.0) could allow an authenticated attacker to conduct a code-injection attack via crafted data due to insufficient restrictions on the database data type.
Attacker Value
Unknown

CVE-2022-22306

Disclosure Date: May 24, 2022 (last updated October 07, 2023)
An improper certificate validation vulnerability [CWE-295] in FortiOS 6.0.0 through 6.0.14, 6.2.0 through 6.2.10, 6.4.0 through 6.4.8, 7.0.0 may allow a network adjacent and unauthenticated attacker to man-in-the-middle the communication between the FortiGate and some peers such as private SDNs and external cloud platforms.
Attacker Value
Unknown

CVE-2021-26443

Disclosure Date: November 10, 2021 (last updated December 29, 2023)
Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2021-36967

Disclosure Date: September 15, 2021 (last updated December 29, 2023)
Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2021-36965

Disclosure Date: September 15, 2021 (last updated December 29, 2023)
Windows WLAN AutoConfig Service Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2020-27266

Disclosure Date: January 19, 2021 (last updated October 07, 2023)
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically proximate attackers to bypass user authentication checks via Bluetooth Low Energy.
Attacker Value
Unknown

CVE-2020-27269

Disclosure Date: January 19, 2021 (last updated October 07, 2023)
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications lacks replay protection measures, which allows unauthenticated, physically proximate attackers to replay communication sequences via Bluetooth Low Energy.
Attacker Value
Unknown

CVE-2020-27258

Disclosure Date: January 19, 2021 (last updated October 07, 2023)
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, an information disclosure vulnerability in the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows unauthenticated attackers to extract the pump’s keypad lock PIN via Bluetooth Low Energy.
Attacker Value
Unknown

CVE-2020-27264

Disclosure Date: January 19, 2021 (last updated October 07, 2023)
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications use deterministic keys, which allows unauthenticated, physically proximate attackers to brute-force the keys via Bluetooth Low Energy.
Attacker Value
Unknown

CVE-2020-27276

Disclosure Date: January 19, 2021 (last updated October 07, 2023)
SOOIL Developments Co Ltd DiabecareRS,AnyDana-i & AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i & AnyDana-A mobile apps doesn't use adequate measures to authenticate the communicating entities before exchanging keys, which allows unauthenticated, physically proximate attackers to eavesdrop the authentication sequence via Bluetooth Low Energy.