Show filters
176 Total Results
Displaying 41-50 of 176
Sort by:
Attacker Value
Unknown
CVE-2023-46327
Disclosure Date: November 02, 2023 (last updated November 10, 2023)
Multiple MFPs (multifunction printers) provided by FUJIFILM Business Innovation Corp. and Xerox Corporation provide a facility to export the contents of their Address Book with encrypted form, but the encryption strength is insufficient. With the knowledge of the encryption process and the encryption key, the information such as the server credentials may be obtained from the exported Address Book data. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].
0
Attacker Value
Unknown
CVE-2023-24849
Disclosure Date: October 03, 2023 (last updated October 09, 2023)
Information Disclosure in data Modem while parsing an FMTP line in an SDP message.
0
Attacker Value
Unknown
CVE-2023-24848
Disclosure Date: October 03, 2023 (last updated October 09, 2023)
Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.
0
Attacker Value
Unknown
CVE-2023-22385
Disclosure Date: October 03, 2023 (last updated October 09, 2023)
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
0
Attacker Value
Unknown
CVE-2023-5142
Disclosure Date: September 24, 2023 (last updated October 08, 2023)
A vulnerability classified as problematic was found in H3C GR-1100-P, GR-1108-P, GR-1200W, GR-1800AX, GR-2200, GR-3200, GR-5200, GR-8300, ER2100n, ER2200G2, ER3200G2, ER3260G2, ER5100G2, ER5200G2 and ER6300G2 up to 20230908. This vulnerability affects unknown code of the file /userLogin.asp of the component Config File Handler. The manipulation leads to path traversal. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. VDB-240238 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0
Attacker Value
Unknown
CVE-2023-27396
Disclosure Date: June 19, 2023 (last updated October 08, 2023)
FINS (Factory Interface Network Service) is a message communication protocol, which is designed to be used in closed FA (Factory Automation) networks, and is used in FA networks composed of OMRON products. Multiple OMRON products that implement FINS protocol contain following security issues -- (1)Plaintext communication, and (2)No authentication required. When FINS messages are intercepted, the contents may be retrieved. When arbitrary FINS messages are injected, any commands may be executed on, or the system information may be retrieved from, the affected device. Affected products and versions are as follows: SYSMAC CS-series CPU Units, all versions, SYSMAC CJ-series CPU Units, all versions, SYSMAC CP-series CPU Units, all versions, SYSMAC NJ-series CPU Units, all versions, SYSMAC NX1P-series CPU Units, all versions, SYSMAC NX102-series CPU Units, all versions, and SYSMAC NX7 Database Connection CPU Units (Ver.1.16 or later)
0
Attacker Value
Unknown
CVE-2022-40521
Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Transient DOS due to improper authorization in Modem
0
Attacker Value
Unknown
CVE-2022-40507
Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Memory corruption due to double free in Core while mapping HLOS address to the list.
0
Attacker Value
Unknown
CVE-2022-33264
Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
0
Attacker Value
Unknown
CVE-2022-22076
Disclosure Date: June 06, 2023 (last updated October 08, 2023)
information disclosure due to cryptographic issue in Core during RPMB read request.
0