Show filters
57 Total Results
Displaying 1-10 of 57
Sort by:
Attacker Value
Unknown

CVE-2022-33883

Disclosure Date: October 03, 2022 (last updated October 08, 2023)
A malicious crafted file consumed through Moldflow Synergy, Moldflow Adviser, Moldflow Communicator, and Advanced Material Exchange applications could lead to memory corruption vulnerability. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
Attacker Value
Unknown

CVE-2010-3048

Disclosure Date: January 16, 2020 (last updated February 21, 2025)
Cisco Unified Personal Communicator 7.0 (1.13056) does not free allocated memory for received data and does not perform validation if memory allocation is successful, causing a remote denial of service condition.
Attacker Value
Unknown

CVE-2019-6564

Disclosure Date: May 09, 2019 (last updated November 27, 2024)
GE Communicator, all versions prior to 4.0.517, allows a non-administrative user to place malicious files within the installer file directory, which may allow an attacker to gain administrative privileges on a system during installation or upgrade.
Attacker Value
Unknown

CVE-2019-6546

Disclosure Date: May 09, 2019 (last updated November 27, 2024)
GE Communicator, all versions prior to 4.0.517, allows an attacker to place malicious files within the working directory of the program, which may allow an attacker to manipulate widgets and UI elements.
Attacker Value
Unknown

CVE-2019-6548

Disclosure Date: May 09, 2019 (last updated November 27, 2024)
GE Communicator, all versions prior to 4.0.517, contains two backdoor accounts with hardcoded credentials, which may allow control over the database. This service is inaccessible to attackers if Windows default firewall settings are used by the end user.
Attacker Value
Unknown

CVE-2019-6544

Disclosure Date: May 09, 2019 (last updated November 27, 2024)
GE Communicator, all versions prior to 4.0.517, has a service running with system privileges that may allow an unprivileged user to perform certain administrative actions, which may allow the execution of scheduled scripts with system administrator privileges. This service is inaccessible to attackers if Windows default firewall settings are used by the end user.
Attacker Value
Unknown

CVE-2019-6566

Disclosure Date: May 09, 2019 (last updated November 27, 2024)
GE Communicator, all versions prior to 4.0.517, allows a non-administrative user to replace the uninstaller with a malicious version, which could allow an attacker to gain administrator privileges to the system.
Attacker Value
Unknown

Avaya one-X Communicator Weak Encryption

Disclosure Date: February 27, 2019 (last updated November 27, 2024)
Avaya one-X Communicator uses weak cryptographic algorithms in the client authentication component that could allow a local attacker to decrypt sensitive information. Affected versions include all 6.2.x versions prior to 6.2 SP13.
Attacker Value
Unknown

CVE-2017-7908

Disclosure Date: October 02, 2018 (last updated November 27, 2024)
A heap-based buffer overflow exists in the third-party product Gigasoft, v5 and prior, included in GE Communicator 3.15 and prior. A malicious HTML file that loads the ActiveX controls can trigger the vulnerability via unchecked function calls.
0
Attacker Value
Unknown

CVE-2015-4240

Disclosure Date: July 08, 2015 (last updated October 05, 2023)
Cisco IP Communicator 8.6(4) allows remote attackers to cause a denial of service (service outage) via an unspecified URL in a GET request, aka Bug ID CSCuu37656.
0