Show filters
75 Total Results
Displaying 1-10 of 75
Sort by:
Attacker Value
Unknown
CVE-2023-7266
Disclosure Date: December 28, 2024 (last updated January 14, 2025)
Some Huawei home routers have a connection hijacking vulnerability. Successful exploitation of this vulnerability may cause DoS or information leakage.(Vulnerability ID:HWPSIRT-2023-76605)
This vulnerability has been assigned a (CVE)ID:CVE-2023-7266
0
Attacker Value
Unknown
CVE-2023-26597
Disclosure Date: July 13, 2023 (last updated April 22, 2024)
Controller DoS due to buffer overflow in the handling of a specially crafted message received by the controller. See Honeywell Security Notification for recommendations on upgrading and versioning. See Honeywell Security Notification for recommendations on upgrading and versioning.
0
Attacker Value
Unknown
CVE-2023-25770
Disclosure Date: July 13, 2023 (last updated April 22, 2024)
Controller DoS may occur due to buffer overflow when an error is generated in response to a specially crafted message. See Honeywell Security Notification for recommendations on upgrading and versioning.
0
Attacker Value
Unknown
CVE-2023-25178
Disclosure Date: July 13, 2023 (last updated April 22, 2024)
Controller may be loaded with malicious firmware which could enable remote code execution. See Honeywell Security Notification for recommendations on upgrading and versioning.
0
Attacker Value
Unknown
CVE-2023-24480
Disclosure Date: July 13, 2023 (last updated April 22, 2024)
Controller DoS due to stack overflow when decoding a message from the server.
See Honeywell Security Notification for recommendations on upgrading and versioning.
0
Attacker Value
Unknown
CVE-2022-43969
Disclosure Date: February 16, 2023 (last updated October 08, 2023)
Ricoh mp_c4504ex devices with firmware 1.06 mishandle credentials.
0
Attacker Value
Unknown
CVE-2021-39995
Disclosure Date: November 29, 2021 (last updated February 23, 2025)
Some Huawei products use the OpenHpi software for hardware management. A function that parses data returned by OpenHpi contains an out-of-bounds read vulnerability that could lead to a denial of service. Affected product versions include: eCNS280_TD V100R005C10; eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300.
0
Attacker Value
Unknown
CVE-2021-37127
Disclosure Date: October 27, 2021 (last updated February 23, 2025)
There is a signature management vulnerability in some huawei products. An attacker can forge signature and bypass the signature check. During firmware update process, successful exploit this vulnerability can cause the forged system file overwrite the correct system file. Affected product versions include:iManager NetEco V600R010C00CP2001,V600R010C00CP2002,V600R010C00SPC100,V600R010C00SPC110,V600R010C00SPC120,V600R010C00SPC200,V600R010C00SPC210,V600R010C00SPC300;iManager NetEco 6000 V600R009C00SPC100,V600R009C00SPC110,V600R009C00SPC120,V600R009C00SPC190,V600R009C00SPC200,V600R009C00SPC201,V600R009C00SPC202,V600R009C00SPC210.
0
Attacker Value
Unknown
CVE-2021-38399
Disclosure Date: October 05, 2021 (last updated February 24, 2025)
Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to relative path traversal, which may allow an attacker access to unauthorized files and directories.
0
Attacker Value
Unknown
CVE-2021-38395
Disclosure Date: October 05, 2021 (last updated February 24, 2025)
Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to improper neutralization of special elements in output, which may allow an attacker to remotely execute arbitrary code and cause a denial-of-service condition.
0