Show filters
155 Total Results
Displaying 101-110 of 155
Sort by:
Attacker Value
Unknown

CVE-2018-14528

Disclosure Date: July 05, 2019 (last updated November 27, 2024)
Invoxia NVX220 devices allow TELNET access as admin with a default password.
0
Attacker Value
Unknown

CVE-2019-9865

Disclosure Date: May 29, 2019 (last updated November 27, 2024)
When RPC is enabled in Wind River VxWorks 6.9 prior to 6.9.1, a specially crafted RPC request can trigger an integer overflow leading to an out-of-bounds memory copy. It may allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code.
0
Attacker Value
Unknown

CVE-2018-18566

Disclosure Date: October 24, 2018 (last updated November 27, 2024)
The SIP service in Polycom VVX 500 and 601 devices 5.8.0.12848 and earlier allow remote attackers to obtain sensitive phone configuration information by leveraging use with an on-premise installation with Skype for Business.
Attacker Value
Unknown

CVE-2018-18568

Disclosure Date: October 24, 2018 (last updated November 27, 2024)
Polycom VVX 500 and 601 devices 5.8.0.12848 and earlier allows man-in-the-middle attackers to obtain sensitive credential information by leveraging failure to validate X.509 certificates when used with an on-premise installation with Skype for Business.
Attacker Value
Unknown

CVE-2018-10567

Disclosure Date: May 02, 2018 (last updated November 26, 2024)
XSS exists in Flexense VX Search Enterprise from v10.1.12 to v10.7.
0
Attacker Value
Unknown

CVE-2017-15662

Disclosure Date: January 10, 2018 (last updated November 26, 2024)
In Flexense VX Search Enterprise v10.1.12, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9123.
0
Attacker Value
Unknown

CVE-2017-15220

Disclosure Date: October 11, 2017 (last updated November 26, 2024)
Flexense VX Search Enterprise 10.1.12 is vulnerable to a buffer overflow via an empty POST request to a long URI beginning with a /../ substring. This allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2017-13708

Disclosure Date: August 31, 2017 (last updated November 26, 2024)
Buffer overflow in the web server service in VX Search Enterprise 10.0.14 allows remote attackers to execute arbitrary code via a crafted GET request.
0
Attacker Value
Unknown

CVE-2017-8367

Disclosure Date: April 30, 2017 (last updated November 26, 2024)
Buffer overflow in Ether Software Easy MOV Converter 1.4.24, Easy DVD Creator, Easy MPEG/AVI/DIVX/WMV/RM to DVD, Easy Avi/Divx/Xvid to DVD Burner, Easy MPEG to DVD Burner, Easy WMV/ASF/ASX to DVD Burner, Easy RM RMVB to DVD Burner, Easy CD DVD Copy, MP3/AVI/MPEG/WMV/RM to Audio CD Burner, MP3/WAV/OGG/WMA/AC3 to CD Burner, MP3 WAV to CD Burner, My Video Converter, Easy AVI DivX Converter, Easy Video to iPod Converter, Easy Video to PSP Converter, Easy Video to 3GP Converter, Easy Video to MP4 Converter, and Easy Video to iPod/MP4/PSP/3GP Converter allows local attackers to cause a denial of service (SEH overwrite) or possibly have unspecified other impact via a long username.
0
Attacker Value
Unknown

CVE-2015-7599

Disclosure Date: February 07, 2017 (last updated November 26, 2024)
Integer overflow in the _authenticate function in svc_auth.c in Wind River VxWorks 5.5 through 6.9.4.1, when the Remote Procedure Call (RPC) protocol is enabled, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a username and password.
0