Show filters
14 Total Results
Displaying 1-10 of 14
Sort by:
Attacker Value
Unknown

CVE-2022-2485

Disclosure Date: August 31, 2022 (last updated February 24, 2025)
Any attempt (good or bad) to log into AutomationDirect Stride Field I/O with a web browser may result in the device responding with its password in the communication packets.
Attacker Value
Unknown

CVE-2021-26305

Disclosure Date: January 29, 2021 (last updated February 22, 2025)
An issue was discovered in Deserializer::read_vec in the cdr crate before 0.2.4 for Rust. A user-provided Read implementation can gain access to the old contents of newly allocated heap memory, violating soundness.
Attacker Value
Unknown

CVE-2013-1391

Disclosure Date: October 30, 2019 (last updated November 27, 2024)
Authentication bypass vulnerability in the the web interface in Hunt CCTV, Capture CCTV, Hachi CCTV, NoVus CCTV, and Well-Vision Inc DVR systems allows a remote attacker to retrieve the device configuration.
Attacker Value
Unknown

CVE-2019-6820

Disclosure Date: May 22, 2019 (last updated November 27, 2024)
A CWE-306: Missing Authentication for Critical Function vulnerability exists which could cause a modification of device IP configuration (IP address, network mask and gateway IP address) when a specific Ethernet frame is received in all versions of: Modicon M100, Modicon M200, Modicon M221, ATV IMC drive controller, Modicon M241, Modicon M251, Modicon M258, Modicon LMC058, Modicon LMC078, PacDrive Eco ,PacDrive Pro, PacDrive Pro2
Attacker Value
Unknown

CVE-2016-6530

Disclosure Date: September 21, 2016 (last updated November 25, 2024)
Dentsply Sirona (formerly Schick) CDR Dicom 5 and earlier has default passwords for the sa and cdr accounts, which allows remote attackers to obtain administrative access by leveraging knowledge of these passwords.
0
Attacker Value
Unknown

CVE-2008-4945

Disclosure Date: November 05, 2008 (last updated October 04, 2023)
amlabel-cdrw in cdrw-taper 0.4 might allow local users to overwrite arbitrary files via a symlink attack involving a /tmp/amlabel-cdrw.##### temporary directory.
0
Attacker Value
Unknown

CVE-2008-0573

Disclosure Date: February 05, 2008 (last updated October 04, 2023)
IPSecDrv.sys 10.4.0.12 in SafeNET HighAssurance Remote and SoftRemote allows local users to gain privileges via a crafted IPSECDRV_IOCTL IOCTL request.
0
Attacker Value
Unknown

CVE-2005-3012

Disclosure Date: September 21, 2005 (last updated February 22, 2025)
The MasterDataCD::createImage function in masterdatacd.cpp for SimpleCDR-X 1.3.3 creates the .temp temporary directory with insecure permissions, which allows local users to read sensitive ISO images.
0
Attacker Value
Unknown

CVE-2005-0866

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
cdrecord before 4:2.0, when DEBUG is enabled, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
0
Attacker Value
Unknown

CVE-2004-0806

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
cdrecord in the cdrtools package before 2.01, when installed setuid root, does not properly drop privileges before executing a program specified in the RSH environment variable, which allows local users to gain privileges.
0