Show filters
50 Total Results
Displaying 11-20 of 50
Sort by:
Attacker Value
Unknown

CVE-2022-4232

Disclosure Date: November 30, 2022 (last updated February 02, 2024)
A vulnerability, which was classified as critical, was found in SourceCodester Event Registration System 1.0. Affected is an unknown function. The manipulation of the argument cmd leads to unrestricted upload. It is possible to launch the attack remotely. VDB-214590 is the identifier assigned to this vulnerability.
Attacker Value
Unknown

CVE-2022-2472

Disclosure Date: September 15, 2022 (last updated October 08, 2023)
Improper Initialization vulnerability in the local server component of EZVIZ CS-C6N-A0-1C2WFR allows a local attacker to read the contents of the memory space containing the encrypted admin password. This issue affects: EZVIZ CS-C6N-A0-1C2WFR versions prior to 5.3.0 build 220428.
Attacker Value
Unknown

CVE-2022-2471

Disclosure Date: September 15, 2022 (last updated October 08, 2023)
Stack-based Buffer Overflow vulnerability in the EZVIZ Motion Detection component as used in camera models CS-CV248, CS-C6N-A0-1C2WFR, CS-DB1C-A0-1E2W2FR, CS-C6N-B0-1G2WF, CS-C3W-A0-3H4WFRL allows a remote attacker to execute remote code on the device. This issue affects: EZVIZ CS-CV248 versions prior to 5.2.3 build 220725. EZVIZ CS-C6N-A0-1C2WFR versions prior to 5.3.0 build 220428. EZVIZ CS-DB1C-A0-1E2W2FR versions prior to 5.3.0 build 220802. EZVIZ CS-C6N-B0-1G2WF versions prior to 5.3.0 build 220712. EZVIZ CS-C3W-A0-3H4WFRL versions prior to 5.3.5 build 220723.
Attacker Value
Unknown

CVE-2021-27944

Disclosure Date: August 26, 2021 (last updated February 23, 2025)
Several high privileged APIs on the Vizio P65-F1 6.0.31.4-2 and E50x-E1 10.0.31.4-2 Smart TVs do not enforce access controls, allowing an unauthenticated threat actor to access privileged functionality, leading to OS command execution. The specific attack methodology is a file upload.
Attacker Value
Unknown

CVE-2021-27942

Disclosure Date: August 03, 2021 (last updated November 28, 2024)
Vizio P65-F1 6.0.31.4-2 and E50x-E1 10.0.31.4-2 Smart TVs allow a threat actor to execute arbitrary code from a USB drive via the Smart Cast functionality, because files on the USB drive are effectively under the web root and can be executed.
Attacker Value
Unknown

CVE-2021-27943

Disclosure Date: August 02, 2021 (last updated February 23, 2025)
The pairing procedure used by the Vizio P65-F1 6.0.31.4-2 and E50x-E1 10.0.31.4-2 Smart TVs and mobile application is vulnerable to a brute-force attack (against only 10000 possibilities), allowing a threat actor to forcefully pair the device, leading to remote control of the TV settings and configurations.
Attacker Value
Unknown

CVE-2020-18032

Disclosure Date: April 29, 2021 (last updated February 22, 2025)
Buffer Overflow in Graphviz Graph Visualization Tools from commit ID f8b9e035 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by loading a crafted file into the "lib/common/shapes.c" component.
Attacker Value
Unknown

CVE-2020-7747

Disclosure Date: October 20, 2020 (last updated February 22, 2025)
This affects all versions of package lightning-server. It is possible to inject malicious JavaScript code as part of a session controller.
0
Attacker Value
Unknown

CVE-2019-12393

Disclosure Date: December 02, 2019 (last updated November 27, 2024)
Anviz access control devices are vulnerable to replay attacks which could allow attackers to intercept and replay open door requests.
Attacker Value
Unknown

CVE-2019-12392

Disclosure Date: December 02, 2019 (last updated November 27, 2024)
Anviz access control devices allow remote attackers to issue commands without a password.