Show filters
155 Total Results
Displaying 101-110 of 155
Sort by:
Attacker Value
Unknown
CVE-2018-14528
Disclosure Date: July 05, 2019 (last updated November 27, 2024)
Invoxia NVX220 devices allow TELNET access as admin with a default password.
0
Attacker Value
Unknown
CVE-2019-9865
Disclosure Date: May 29, 2019 (last updated November 27, 2024)
When RPC is enabled in Wind River VxWorks 6.9 prior to 6.9.1, a specially crafted RPC request can trigger an integer overflow leading to an out-of-bounds memory copy. It may allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code.
0
Attacker Value
Unknown
CVE-2018-18566
Disclosure Date: October 24, 2018 (last updated November 27, 2024)
The SIP service in Polycom VVX 500 and 601 devices 5.8.0.12848 and earlier allow remote attackers to obtain sensitive phone configuration information by leveraging use with an on-premise installation with Skype for Business.
0
Attacker Value
Unknown
CVE-2018-18568
Disclosure Date: October 24, 2018 (last updated November 27, 2024)
Polycom VVX 500 and 601 devices 5.8.0.12848 and earlier allows man-in-the-middle attackers to obtain sensitive credential information by leveraging failure to validate X.509 certificates when used with an on-premise installation with Skype for Business.
0
Attacker Value
Unknown
CVE-2018-10567
Disclosure Date: May 02, 2018 (last updated November 26, 2024)
XSS exists in Flexense VX Search Enterprise from v10.1.12 to v10.7.
0
Attacker Value
Unknown
CVE-2017-15662
Disclosure Date: January 10, 2018 (last updated November 26, 2024)
In Flexense VX Search Enterprise v10.1.12, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9123.
0
Attacker Value
Unknown
CVE-2017-15220
Disclosure Date: October 11, 2017 (last updated November 26, 2024)
Flexense VX Search Enterprise 10.1.12 is vulnerable to a buffer overflow via an empty POST request to a long URI beginning with a /../ substring. This allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2017-13708
Disclosure Date: August 31, 2017 (last updated November 26, 2024)
Buffer overflow in the web server service in VX Search Enterprise 10.0.14 allows remote attackers to execute arbitrary code via a crafted GET request.
0
Attacker Value
Unknown
CVE-2017-8367
Disclosure Date: April 30, 2017 (last updated November 26, 2024)
Buffer overflow in Ether Software Easy MOV Converter 1.4.24, Easy DVD Creator, Easy MPEG/AVI/DIVX/WMV/RM to DVD, Easy Avi/Divx/Xvid to DVD Burner, Easy MPEG to DVD Burner, Easy WMV/ASF/ASX to DVD Burner, Easy RM RMVB to DVD Burner, Easy CD DVD Copy, MP3/AVI/MPEG/WMV/RM to Audio CD Burner, MP3/WAV/OGG/WMA/AC3 to CD Burner, MP3 WAV to CD Burner, My Video Converter, Easy AVI DivX Converter, Easy Video to iPod Converter, Easy Video to PSP Converter, Easy Video to 3GP Converter, Easy Video to MP4 Converter, and Easy Video to iPod/MP4/PSP/3GP Converter allows local attackers to cause a denial of service (SEH overwrite) or possibly have unspecified other impact via a long username.
0
Attacker Value
Unknown
CVE-2015-7599
Disclosure Date: February 07, 2017 (last updated November 26, 2024)
Integer overflow in the _authenticate function in svc_auth.c in Wind River VxWorks 5.5 through 6.9.4.1, when the Remote Procedure Call (RPC) protocol is enabled, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a username and password.
0