Show filters
1,081 Total Results
Displaying 271-280 of 1,081
Sort by:
Attacker Value
Unknown
CVE-2018-20378
Disclosure Date: March 29, 2019 (last updated November 27, 2024)
The L2CAP signaling channel implementation and SDP server implementation in OpenSynergy Blue SDK 3.2 through 6.0 allow remote, unauthenticated attackers to execute arbitrary code or cause a denial of service via malicious L2CAP configuration requests, in conjunction with crafted SDP communication over maliciously configured L2CAP channels. The attacker must have connectivity over the Bluetooth physical layer, and must be able to send raw L2CAP frames. This is related to L2Cap_HandleConfigReq in core/stack/l2cap/l2cap_sm.c and SdpServHandleServiceSearchAttribReq in core/stack/sdp/sdpserv.c.
0
Attacker Value
Unknown
CVE-2019-0122
Disclosure Date: March 14, 2019 (last updated November 27, 2024)
Double free in Intel(R) SGX SDK for Linux before version 2.2 and Intel(R) SGX SDK for Windows before version 2.1 may allow an authenticated user to potentially enable information disclosure or denial of service via local access.
0
Attacker Value
Unknown
CVE-2019-0274
Disclosure Date: March 12, 2019 (last updated November 27, 2024)
SAP Mobile Platform SDK allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service (i.e. denial of service). Fixed in versions 3.1 SP03 PL02, SDK 3.1 SP04, or later.
0
Attacker Value
Unknown
CVE-2018-18098
Disclosure Date: January 10, 2019 (last updated November 27, 2024)
Improper file verification in install routine for Intel(R) SGX SDK and Platform Software for Windows before 2.2.100 may allow an escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2018-0667
Disclosure Date: January 09, 2019 (last updated November 27, 2024)
Untrusted search path vulnerability in Installer of INplc SDK Express 3.08 and earlier and Installer of INplc SDK Pro+ 3.08 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
0
Attacker Value
Unknown
CVE-2019-0241
Disclosure Date: January 08, 2019 (last updated November 27, 2024)
SAP Work and Inventory Manager (Agentry_SDK , before 7.0, 7.1) allows an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.
0
Attacker Value
Unknown
On Demand Services SDK Timing Attack Vulnerability
Disclosure Date: November 19, 2018 (last updated November 27, 2024)
Pivotal Cloud Foundry On Demand Services SDK, versions prior to 0.24 contain an insecure method of verifying credentials. A remote unauthenticated malicious user may make many requests to the service broker with different credentials, allowing them to infer valid credentials and gain access to perform broker operations.
0
Attacker Value
Unknown
CVE-2018-19187
Disclosure Date: November 14, 2018 (last updated November 27, 2024)
The Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via an arbitrary parameter name or value that is mishandled in a success.php echo statement.
0
Attacker Value
Unknown
CVE-2018-19189
Disclosure Date: November 14, 2018 (last updated November 27, 2024)
The Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via an arbitrary parameter name or value that is mishandled in an error.php echo statement.
0
Attacker Value
Unknown
CVE-2018-19190
Disclosure Date: November 14, 2018 (last updated November 27, 2024)
The Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via the error.php error_msg parameter.
0