|
247131
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8996au_firmware qcs605_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_435_firmware sd…
|
Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9206, MDM9607, MDM9640, MD…
|
CWE-416
Use After Free
|
CVE-2018-11819
|
2024-11-21 12:44 |
2019-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247132
|
6.7 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware server_platform_services_firmware trusted_execution_engine_firmware
|
Insufficient input validation in HECI subsystem in Intel(R) CSME before version 11.21.55, Intel® Server Platform Services before version 4.0 and Intel® Trusted Execution Engine Firmware before versio…
|
CWE-20
Improper Input Validation
|
CVE-2018-12147
|
2024-11-21 12:44 |
2019-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247133
|
9.8 |
CRITICAL
Network
|
apache
|
fineract
|
SQL injection vulnerability in Apache Fineract before 1.3.0 allows attackers to execute arbitrary SQL commands via a query on a m_center data related table.
|
CWE-89
SQL Injection
|
CVE-2018-11801
|
2024-11-21 12:44 |
2019-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247134
|
9.8 |
CRITICAL
Network
|
apache
|
fineract
|
SQL injection vulnerability in Apache Fineract before 1.3.0 allows attackers to execute arbitrary SQL commands via a query on the GroupSummaryCounts related table.
|
CWE-89
SQL Injection
|
CVE-2018-11800
|
2024-11-21 12:44 |
2019-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247135
|
5.6 |
MEDIUM
Local
|
intel fedoraproject
|
microarchitectural_fill_buffer_data_sampling_firmware fedora
|
Microarchitectural Fill Buffer Data Sampling (MFBDS): Fill buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure…
|
CWE-200
Information Exposure
|
CVE-2018-12130
|
2024-11-21 12:44 |
2019-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247136
|
5.6 |
MEDIUM
Local
|
intel fedoraproject
|
microarchitectural_load_port_data_sampling_firmware fedora
|
Microarchitectural Load Port Data Sampling (MLPDS): Load ports on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via…
|
CWE-200
Information Exposure
|
CVE-2018-12127
|
2024-11-21 12:44 |
2019-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247137
|
5.6 |
MEDIUM
Local
|
intel fedoraproject
|
microarchitectural_store_buffer_data_sampling_firmware fedora
|
Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosu…
|
CWE-200
Information Exposure
|
CVE-2018-12126
|
2024-11-21 12:44 |
2019-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247138
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9206_firmware mdm9607_firmware mdm9650_firmware mdm9655_firmware qcs605_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_412_firmware sd_61…
|
Improper authentication in locked memory region can lead to unprivilged access to the memory in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer …
|
CWE-287
Improper Authentication
|
CVE-2018-12013
|
2024-11-21 12:44 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247139
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9206_firmware mdm9607_firmware mdm9650_firmware mdm9655_firmware qcs605_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_412_firmware sd_61…
|
While updating blacklisting region shared buffered memory region is not validated against newly updated black list, causing boot-up to be compromised in Snapdragon Auto, Snapdragon Compute, Snapdrago…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12012
|
2024-11-21 12:44 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247140
|
5.5 |
MEDIUM
Local
|
qualcomm
|
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qm215_firmware sd_210_firmware …
|
An unprivileged user can issue a binder call and cause a system halt in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & …
|
CWE-416
Use After Free
|
CVE-2018-12005
|
2024-11-21 12:44 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|