|
246481
|
7.6 |
HIGH
Physics
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware server_platform_services_firmware
|
Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before versions 4.00.04.383 or SPS 4.01.02.174, or Intel(R) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12191
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246482
|
6.7 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Insufficient input validation in Intel(r) CSME subsystem before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel(r) TXE before 3.1.60 or 4.0.10 may allow a privileged user to potentially enab…
|
CWE-20
Improper Input Validation
|
CVE-2018-12190
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246483
|
4.4 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Unhandled exception in Content Protection subsystem in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before 3.1.60 or 4.0.10 may allow privileged user to potentially …
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2018-12189
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246484
|
4.6 |
MEDIUM
Physics
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Insufficient input validation in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before version 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially modify…
|
CWE-20
Improper Input Validation
|
CVE-2018-12188
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246485
|
7.5 |
HIGH
Network
|
intel
|
active_management_technology_firmware
|
Insufficient input validation in Intel(R) Active Management Technology (Intel(R) AMT) before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow an unauthenticated user to potentially cause a de…
|
CWE-20
Improper Input Validation
|
CVE-2018-12187
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246486
|
6.8 |
MEDIUM
Physics
|
intel
|
converged_security_management_engine_firmware
|
Insufficient input validation in Intel(R) AMT in Intel(R) CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow an unauthenticated user to potentially execute arbitrary code via physic…
|
CWE-20
Improper Input Validation
|
CVE-2018-12185
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246487
|
7.5 |
HIGH
Network
|
apache
|
traffic_server
|
sslheaders plugin extracts information from the client certificate and sets headers in the request based on the configuration of the plugin. The plugin doesn't strip the headers from the request in s…
|
CWE-200
Information Exposure
|
CVE-2018-11783
|
2024-11-21 12:44 |
2019-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246488
|
7.5 |
HIGH
Network
|
apache
|
mesos
|
When parsing a JSON payload with deeply nested JSON structures, the parser in Apache Mesos versions pre-1.4.x, 1.4.0 to 1.4.2, 1.5.0 to 1.5.1, 1.6.0 to 1.6.1, and 1.7.0 might overflow the stack due t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-11793
|
2024-11-21 12:44 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246489
|
5.5 |
MEDIUM
Local
|
qualcomm
|
msm8996au_firmware qcs605_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_435_firmware sd_439_firmware sd_429_firmware sd_450…
|
Exceeding the limit of usage entries are not tracked and the information will be lost causing the content to lose continuity in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdrago…
|
CWE-129
Improper Validation of Array Index
|
CVE-2018-11948
|
2024-11-21 12:44 |
2019-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246490
|
9.8 |
CRITICAL
Network
|
qualcomm
|
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware mdm9625_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware<…
|
Improper input validation in wireless service messaging module for data received from broadcast messages can lead to heap overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electron…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-11945
|
2024-11-21 12:44 |
2019-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|