Show filters
97 Total Results
Displaying 41-50 of 97
Sort by:
Attacker Value
Unknown

CVE-2020-13472

Disclosure Date: August 31, 2020 (last updated February 22, 2025)
The flash memory readout protection in Gigadevice GD32F103 devices allows physical attackers to extract firmware via the debug interface by utilizing the DMA module.
Attacker Value
Unknown

CVE-2020-13469

Disclosure Date: August 31, 2020 (last updated February 22, 2025)
The flash memory readout protection in Gigadevice GD32VF103 devices allows physical attackers to extract firmware via the debug interface by utilizing the CPU.
Attacker Value
Unknown

CVE-2020-13465

Disclosure Date: August 31, 2020 (last updated February 22, 2025)
The security protection in Gigadevice GD32F103 devices allows physical attackers to redirect the control flow and execute arbitrary code via the debug interface.
Attacker Value
Unknown

CVE-2020-12252

Disclosure Date: April 29, 2020 (last updated February 21, 2025)
An issue was discovered in Gigamon GigaVUE 5.5.01.11. The upload functionality allows an arbitrary file upload for an authenticated user. If an executable file is uploaded into the www-root directory, then it could yield remote code execution via the filename parameter.
Attacker Value
Unknown

CVE-2020-12251

Disclosure Date: April 29, 2020 (last updated February 21, 2025)
An issue was discovered in Gigamon GigaVUE 5.5.01.11. The upload functionality allows an authenticated user to change the filename value (in the POST method) from the original filename to achieve directory traversal via a ../ sequence and, for example, obtain a complete directory listing of the machine.
Attacker Value
Unknown

CVE-2020-10512

Disclosure Date: April 15, 2020 (last updated February 21, 2025)
HGiga C&Cmail CCMAILQ before olln-calendar-6.0-100.i386.rpm and CCMAILN before olln-calendar-5.0-100.i386.rpm contains a SQL Injection vulnerability which allows attackers to injecting SQL commands in the URL parameter to execute unauthorized commands.
Attacker Value
Unknown

CVE-2020-10511

Disclosure Date: April 15, 2020 (last updated February 21, 2025)
HGiga C&Cmail CCMAILQ before olln-base-6.0-418.i386.rpm and CCMAILN before olln-base-5.0-418.i386.rpm contains insecure configurations. Attackers can exploit these flaws to access unauthorized functionality via a crafted URL.
Attacker Value
Unknown

CVE-2019-7630

Disclosure Date: March 25, 2020 (last updated February 21, 2025)
An issue was discovered in gdrv.sys in Gigabyte APP Center before 19.0227.1. The vulnerable driver exposes a wrmsr instruction via IOCTL 0xC3502580 and does not properly filter the target Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.
Attacker Value
Unknown

An authentication bypass vulnerability discovered in Smart Battery A2-25DE

Disclosure Date: September 25, 2019 (last updated November 27, 2024)
An authentication bypass vulnerability discovered in Smart Battery A2-25DE, a multifunctional portable charger, firmware version ?<= SECFS-2013-10-16-13:42:58-629c30ee-60c68be6. An attacker can bypass authentication and gain privilege by modifying the login page.
Attacker Value
Unknown

An unsafe authentication interface was discovered in Smart Battery A4

Disclosure Date: September 25, 2019 (last updated November 27, 2024)
An unsafe authentication interface was discovered in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7.9 . An attacker can bypass authentication without modifying device file and gain web page management privilege.