Show filters
392 Total Results
Displaying 101-110 of 392
Sort by:
Attacker Value
Unknown

CVE-2020-24341

Disclosure Date: December 11, 2020 (last updated February 22, 2025)
An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. The TCP input data processing function in pico_tcp.c does not validate the length of incoming TCP packets, which leads to an out-of-bounds read when assembling received packets into a data segment, eventually causing Denial-of-Service or an information leak.
Attacker Value
Unknown

CVE-2020-16850

Disclosure Date: November 30, 2020 (last updated February 22, 2025)
Mitsubishi MELSEC iQ-R Series PLCs with firmware 49 allow an unauthenticated attacker to halt the industrial process by sending a crafted packet over the network. This denial of service attack exposes Improper Input Validation. After halting, physical access to the PLC is required in order to restore production, and the device state is lost. This is related to R04CPU, RJ71GF11-T2, R04CPU, and RJ71GF11-T2.
Attacker Value
Unknown

CVE-2020-5652

Disclosure Date: November 02, 2020 (last updated February 22, 2025)
Uncontrolled resource consumption vulnerability in Ethernet Port on MELSEC iQ-R, Q and L series CPU modules (R 00/01/02 CPU firmware versions '20' and earlier, R 04/08/16/32/120 (EN) CPU firmware versions '52' and earlier, R 08/16/32/120 SFCPU firmware versions '22' and earlier, R 08/16/32/120 PCPU all versions, R 08/16/32/120 PSFCPU all versions, R 16/32/64 MTCPU all versions, Q03 UDECPU, Q 04/06/10/13/20/26/50/100 UDEHCPU serial number '22081' and earlier , Q 03/04/06/13/26 UDVCPU serial number '22031' and earlier, Q 04/06/13/26 UDPVCPU serial number '22031' and earlier, Q 172/173 DCPU all versions, Q 172/173 DSCPU all versions, Q 170 MCPU all versions, Q 170 MSCPU all versions, L 02/06/26 CPU (-P) and L 26 CPU - (P) BT all versions) allows a remote unauthenticated attacker to stop the Ethernet communication functions of the products via a specially crafted packet, which may lead to a denial of service (DoS) condition .
Attacker Value
Unknown

CVE-2020-24266

Disclosure Date: October 19, 2020 (last updated February 22, 2025)
An issue was discovered in tcpreplay tcpprep v4.3.3. There is a heap buffer overflow vulnerability in get_l2len() that can make tcpprep crash and cause a denial of service.
Attacker Value
Unknown

CVE-2020-24265

Disclosure Date: October 19, 2020 (last updated February 22, 2025)
An issue was discovered in tcpreplay tcpprep v4.3.3. There is a heap buffer overflow vulnerability in MemcmpInterceptorCommon() that can make tcpprep crash and cause a denial of service.
Attacker Value
Unknown

CVE-2020-11909

Disclosure Date: June 17, 2020 (last updated February 21, 2025)
The Treck TCP/IP stack before 6.0.1.66 has an IPv4 Integer Underflow.
Attacker Value
Unknown

CVE-2020-11898

Disclosure Date: June 17, 2020 (last updated February 21, 2025)
The Treck TCP/IP stack before 6.0.1.66 improperly handles an IPv4/ICMPv4 Length Parameter Inconsistency, which might allow remote attackers to trigger an information leak.
Attacker Value
Unknown

CVE-2020-11908

Disclosure Date: June 17, 2020 (last updated February 21, 2025)
The Treck TCP/IP stack before 4.7.1.27 mishandles '\0' termination in DHCP.
Attacker Value
Unknown

CVE-2020-11900

Disclosure Date: June 17, 2020 (last updated February 21, 2025)
The Treck TCP/IP stack before 6.0.1.41 has an IPv4 tunneling Double Free.
Attacker Value
Unknown

CVE-2020-11905

Disclosure Date: June 17, 2020 (last updated February 21, 2025)
The Treck TCP/IP stack before 6.0.1.66 has a DHCPv6 Out-of-bounds Read.