Show filters
162 Total Results
Displaying 101-110 of 162
Sort by:
Attacker Value
Unknown
CVE-2020-25183
Disclosure Date: December 14, 2020 (last updated February 22, 2025)
Medtronic MyCareLink Smart 25000 all versions contain an authentication protocol vuln where the method used to auth between MCL Smart Patient Reader and MyCareLink Smart mobile app is vulnerable to bypass. This vuln allows attacker to use other mobile device or malicious app on smartphone to auth to the patient’s Smart Reader, fools the device into thinking its communicating with the actual smart phone application when executed in range of Bluetooth.
0
Attacker Value
Unknown
CVE-2020-29440
Disclosure Date: November 30, 2020 (last updated February 22, 2025)
Tesla Model X vehicles before 2020-11-23 do not perform certificate validation during an attempt to pair a new key fob with the body control module (BCM). This allows an attacker (who is inside a vehicle, or is otherwise able to send data over the CAN bus) to start and drive the vehicle with a spoofed key fob.
0
Attacker Value
Unknown
CVE-2020-29439
Disclosure Date: November 30, 2020 (last updated November 28, 2024)
Tesla Model X vehicles before 2020-11-23 have key fobs that rely on five VIN digits for the authentication needed for a body control module (BCM) to initiate a Bluetooth wake-up action. (The full VIN is visible from outside the vehicle.)
0
Attacker Value
Unknown
CVE-2020-29438
Disclosure Date: November 30, 2020 (last updated February 22, 2025)
Tesla Model X vehicles before 2020-11-23 have key fobs that accept firmware updates without signature verification. This allows attackers to construct firmware that retrieves an unlock code from a secure enclave chip.
0
Attacker Value
Unknown
CVE-2020-12739
Disclosure Date: August 03, 2020 (last updated February 21, 2025)
A denial-of-service vulnerability in the Fanuc i Series CNC (0i-MD and 0i Mate-MD) could allow an unauthenticated, remote attacker to cause an affected CNC to become inaccessible to other devices.
0
Attacker Value
Unknown
CVE-2020-15912
Disclosure Date: July 23, 2020 (last updated November 08, 2023)
Tesla Model 3 vehicles allow attackers to open a door by leveraging access to a legitimate key card, and then using NFC Relay. NOTE: the vendor has developed Pin2Drive to mitigate this issue
0
Attacker Value
Unknown
CVE-2020-14199
Disclosure Date: June 16, 2020 (last updated February 21, 2025)
BIP-143 in the Bitcoin protocol specification mishandles the signing of a Segwit transaction, which allows attackers to trick a user into making two signatures in certain cases, potentially leading to a huge transaction fee. NOTE: this affects all hardware wallets. It was fixed in 1.9.1 for the Trezor One and 2.3.1 for the Trezor Model T.
0
Attacker Value
Unknown
CVE-2020-2180
Disclosure Date: April 16, 2020 (last updated February 21, 2025)
Jenkins AWS SAM Plugin 1.2.2 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.
0
Attacker Value
Unknown
CVE-2020-10558
Disclosure Date: March 20, 2020 (last updated November 27, 2024)
The driving interface of Tesla Model 3 vehicles in any release before 2020.4.10 allows Denial of Service to occur due to improper process separation, which allows attackers to disable the speedometer, web browser, climate controls, turn signal visual and sounds, navigation, autopilot notifications, along with other miscellaneous functions from the main screen.
0
Attacker Value
Unknown
CVE-2019-10219
Disclosure Date: November 08, 2019 (last updated November 08, 2023)
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
0