Show filters
35 Total Results
Displaying 21-30 of 35
Sort by:
Attacker Value
Unknown
CVE-2021-3971
Disclosure Date: April 22, 2022 (last updated February 23, 2025)
A potential vulnerability by a driver used during older manufacturing processes on some consumer Lenovo Notebook devices that was mistakenly included in the BIOS image could allow an attacker with elevated privileges to modify firmware protection region by modifying an NVRAM variable.
0
Attacker Value
Unknown
CVE-2021-3970
Disclosure Date: April 22, 2022 (last updated February 23, 2025)
A potential vulnerability in LenovoVariable SMI Handler due to insufficient validation in some Lenovo Notebook models BIOS may allow an attacker with local access and elevated privileges to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2021-26341
Disclosure Date: March 08, 2022 (last updated February 23, 2025)
Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage.
0
Attacker Value
Unknown
CVE-2021-26401
Disclosure Date: March 08, 2022 (last updated October 07, 2023)
LFENCE/JMP (mitigation V2-2) may not sufficiently mitigate CVE-2017-5715 on some AMD CPUs.
0
Attacker Value
Unknown
CVE-2020-26141
Disclosure Date: May 11, 2021 (last updated February 22, 2025)
An issue was discovered in the ALFA Windows 10 driver 6.1316.1209 for AWUS036H. The Wi-Fi implementation does not verify the Message Integrity Check (authenticity) of fragmented TKIP frames. An adversary can abuse this to inject and possibly decrypt packets in WPA or WPA2 networks that support the TKIP data-confidentiality protocol.
0
Attacker Value
Unknown
CVE-2021-25910
Disclosure Date: January 28, 2021 (last updated February 22, 2025)
Improper Authentication vulnerability in the cookie parameter of ZIV AUTOMATION 4CCT-EA6-334126BF allows a local attacker to perform modifications in several parameters of the affected device as an authenticated user.
0
Attacker Value
Unknown
CVE-2021-25909
Disclosure Date: January 28, 2021 (last updated February 22, 2025)
ZIV Automation 4CCT-EA6-334126BF firmware version 3.23.80.27.36371, allows an unauthenticated, remote attacker to cause a denial of service condition on the device. An attacker could exploit this vulnerability by sending specific packets to the port 7919.
0
Attacker Value
Unknown
CVE-2019-16213
Disclosure Date: June 25, 2020 (last updated February 21, 2025)
Tenda PA6 Wi-Fi Powerline extender 1.0.1.21 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially crafted string, an attacker could modify the device name of an attached PLC adapter to inject and execute arbitrary commands on the system with root privileges.
0
Attacker Value
Unknown
CVE-2019-19505
Disclosure Date: June 25, 2020 (last updated February 21, 2025)
Tenda PA6 Wi-Fi Powerline extender 1.0.1.21 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking by the "Wireless" section in the web-UI. By sending a specially crafted hostname, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the application to crash.
0
Attacker Value
Unknown
CVE-2019-19506
Disclosure Date: June 25, 2020 (last updated February 21, 2025)
Tenda PA6 Wi-Fi Powerline extender 1.0.1.21 is vulnerable to a denial of service, caused by an error in the "homeplugd" process. By sending a specially crafted UDP packet, an attacker could exploit this vulnerability to cause the device to reboot.
0