Show filters
77 Total Results
Displaying 61-70 of 77
Sort by:
Attacker Value
Unknown

CVE-2019-15360

Disclosure Date: November 14, 2019 (last updated November 27, 2024)
The Hisense U965 Android device with a build fingerprint of Hisense/U965_4G_10/HS6739MT:8.1.0/O11019/Hisense_U965_4G_10_S01:user/release-keys contains a pre-installed app with a package name of com.mediatek.wfo.impl app (versionCode=27, versionName=8.1.0) that allows any app co-located on the device to modify a system property through an exported interface without proper authorization.
Attacker Value
Unknown

CVE-2017-18599

Disclosure Date: September 10, 2019 (last updated November 27, 2024)
The Pinfinity theme before 2.0 for WordPress has XSS via the s parameter.
Attacker Value
Unknown

CVE-2018-19010

Disclosure Date: January 28, 2019 (last updated November 27, 2024)
Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. A malformed network packet may cause the monitor to reboot. By repeatedly sending the malformed network packet, an attacker may be able to disrupt patient monitoring by causing the monitor to repeatedly reboot until it falls back to default configuration and loses network connectivity.
0
Attacker Value
Unknown

CVE-2018-19014

Disclosure Date: January 28, 2019 (last updated November 27, 2024)
Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. Log files are accessible over an unauthenticated network connection. By accessing the log files, an attacker is able to gain insights about internals of the patient monitor, the location of the monitor, and wired network configuration.
0
Attacker Value
Unknown

CVE-2018-19012

Disclosure Date: January 28, 2019 (last updated November 27, 2024)
Drager Infinity Delta, Infinity Delta, all versions, Delta XL, all versions, Kappa, all version, and Infinity Explorer C700, all versions. Via a specific dialog it is possible to break out of the kiosk mode and reach the underlying operating system. By breaking out of the kiosk mode, an attacker is able to take control of the operating system.
0
Attacker Value
Unknown

Some Navarino Infinity functions placed in the URL can bypass any authenticatio…

Disclosure Date: July 24, 2018 (last updated November 08, 2023)
Some Navarino Infinity functions, up to version 2.2, placed in the URL can bypass any authentication mechanism leading to an information leak.
0
Attacker Value
Unknown

Navarino Infinity web interface up to version 2.2 exposes an unauthenticated sc…

Disclosure Date: July 24, 2018 (last updated November 08, 2023)
Navarino Infinity web interface up to version 2.2 exposes an unauthenticated script that is prone to blind sql injection. If successfully exploited the user can get info from the underlying postgresql database that could lead into to total compromise of the product. The said script is available with no authentication.
0
Attacker Value
Unknown

Navarino Infinity web interface up to version 2.2 is prone to session fixation …

Disclosure Date: July 24, 2018 (last updated November 08, 2023)
Navarino Infinity is prone to session fixation attacks. The server accepts the session ID as a GET parameter which can lead to bypassing the two factor authentication in some installations. This could lead to phishing attacks that can bypass the two factor authentication that is present in some installations.
0
Attacker Value
Unknown

CVE-2015-1429

Disclosure Date: October 06, 2017 (last updated November 26, 2024)
Directory traversal vulnerability in Cybele Software Thinfinity Remote Desktop Workstation 3.0.0.3 32-bit and 64-bit allows remote attackers to download arbitrary files via a .. (dot dot) in an unspecified parameter.
Attacker Value
Unknown

CVE-2015-3886

Disclosure Date: July 21, 2017 (last updated November 26, 2024)
libinfinity before 0.6.6-1 does not validate expired SSL certificates, which allows remote attackers to have unspecified impact via unknown vectors.
0