Show filters
326 Total Results
Displaying 261-270 of 326
Sort by:
Attacker Value
Unknown
CVE-2020-12857
Disclosure Date: May 18, 2020 (last updated February 21, 2025)
Caching of GATT characteristic values (TempID) in COVIDSafe v1.0.15 and v1.0.16 allows a remote attacker to long-term re-identify an Android device running COVIDSafe.
0
Attacker Value
Unknown
CVE-2020-12858
Disclosure Date: May 18, 2020 (last updated February 21, 2025)
Non-reinitialisation of random data in the advertising payload in COVIDSafe v1.0.15 and v1.0.16 allows a remote attacker to re-identify Android devices running COVIDSafe by scanning for their advertising beacons.
0
Attacker Value
Unknown
CVE-2020-12856
Disclosure Date: May 18, 2020 (last updated November 27, 2024)
OpenTrace, as used in COVIDSafe through v1.0.17, TraceTogether, ABTraceTogether, and other applications on iOS and Android, allows remote attackers to conduct long-term re-identification attacks and possibly have unspecified other impact, because of how Bluetooth is used.
0
Attacker Value
Unknown
CVE-2020-12717
Disclosure Date: May 14, 2020 (last updated November 08, 2023)
The COVIDSafe (Australia) app 1.0 and 1.1 for iOS allows a remote attacker to crash the app, and consequently interfere with COVID-19 contact tracing, via a Bluetooth advertisement containing manufacturer data that is too short. This occurs because of an erroneous OpenTrace manuData.subdata call. The ABTraceTogether (Alberta), ProteGO (Poland), and TraceTogether (Singapore) apps were also affected.
0
Attacker Value
Unknown
CVE-2020-4092
Disclosure Date: May 06, 2020 (last updated February 21, 2025)
"If port encryption is not enabled on the Domino Server, HCL Nomad on Android and iOS Platforms will communicate in clear text and does not currently have a user interface option to change the setting to request an encrypted communication channel with the Domino server. This can potentially expose sensitive information including but not limited to server names, user IDs and document content."
0
Attacker Value
Unknown
CVE-2019-4209
Disclosure Date: May 01, 2020 (last updated February 21, 2025)
HCL Connections v5.5, v6.0, and v6.5 contains an open redirect vulnerability which could be exploited by an attacker to conduct phishing attacks.
0
Attacker Value
Unknown
CVE-2020-4085
Disclosure Date: April 22, 2020 (last updated February 21, 2025)
"HCL Connections is vulnerable to possible information leakage and could disclose sensitive information via stack trace to a local user."
0
Attacker Value
Unknown
CVE-2019-4327
Disclosure Date: April 21, 2020 (last updated February 21, 2025)
"HCL AppScan Enterprise uses hard-coded credentials which can be exploited by attackers to get unauthorized access to application's encrypted files."
0
Attacker Value
Unknown
CVE-2019-4391
Disclosure Date: April 07, 2020 (last updated February 21, 2025)
HCL AppScan Standard is vulnerable to XML External Entity Injection (XXE) attack when processing XML data
0
Attacker Value
Unknown
CVE-2019-4393
Disclosure Date: April 07, 2020 (last updated February 21, 2025)
HCL AppScan Standard is vulnerable to excessive authorization attempts
0