Show filters
231 Total Results
Displaying 191-200 of 231
Sort by:
Attacker Value
Unknown

CVE-2018-8012

Disclosure Date: May 21, 2018 (last updated November 08, 2023)
No authentication/authorization is enforced when a server attempts to join a quorum in Apache ZooKeeper before 3.4.10, and 3.5.0-alpha through 3.5.3-beta. As a result an arbitrary end point could join the cluster and begin propagating counterfeit changes to the leader.
Attacker Value
Unknown

CVE-2017-14012

Disclosure Date: May 01, 2018 (last updated November 26, 2024)
Boston Scientific ZOOM LATITUDE PRM Model 3120 does not encrypt PHI at rest. CVSS v3 base score: 4.6; CVSS vector string: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N.
0
Attacker Value
Unknown

CVE-2017-14014

Disclosure Date: May 01, 2018 (last updated November 26, 2024)
Boston Scientific ZOOM LATITUDE PRM Model 3120 uses a hard-coded cryptographic key to encrypt PHI prior to having it transferred to removable media. CVSS v3 base score: 4.6; CVSS vector string: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N.
0
Attacker Value
Unknown

CVE-2017-15048

Disclosure Date: December 19, 2017 (last updated November 26, 2024)
Stack-based buffer overflow in the ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 allows remote attackers to execute arbitrary code by leveraging the zoommtg:// scheme handler.
Attacker Value
Unknown

CVE-2017-15049

Disclosure Date: December 19, 2017 (last updated November 26, 2024)
The ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 does not properly sanitize user input when constructing a shell command, which allows remote attackers to execute arbitrary code by leveraging the zoommtg:// scheme handler.
Attacker Value
Unknown

CVE-2017-5637

Disclosure Date: October 10, 2017 (last updated November 08, 2023)
Two four letter word commands "wchp/wchc" are CPU intensive and could cause spike of CPU utilization on Apache ZooKeeper server if abused, which leads to the server unable to serve legitimate client requests. Apache ZooKeeper thru version 3.4.9 and 3.5.2 suffer from this issue, fixed in 3.4.10, 3.5.3, and later.
0
Attacker Value
Unknown

CVE-2015-2888

Disclosure Date: April 10, 2017 (last updated November 26, 2024)
Summer Baby Zoom Wifi Monitor & Internet Viewing System allows remote attackers to bypass authentication, related to the MySnapCam web service.
Attacker Value
Unknown

CVE-2015-2889

Disclosure Date: April 10, 2017 (last updated November 26, 2024)
Summer Baby Zoom Wifi Monitor & Internet Viewing System allows remote attackers to gain privileges via manual entry of a Settings URL.
Attacker Value
Unknown

CVE-2016-5017

Disclosure Date: September 21, 2016 (last updated November 08, 2023)
Buffer overflow in the C cli shell in Apache Zookeeper before 3.4.9 and 3.5.x before 3.5.3, when using the "cmd:" batch mode syntax, allows attackers to have unspecified impact via a long command string.
0
Attacker Value
Unknown

CVE-2015-1846

Disclosure Date: May 19, 2015 (last updated October 05, 2023)
unzoo allows remote attackers to cause a denial of service (infinite loop and resource consumption) via unspecified vectors to the (1) ExtrArch or (2) ListArch function, related to pointer handling.
0