|
248451
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9206_firmware mdm9607_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_427_firmware sd_4…
|
Improper authorization involving a fuse in TrustZone in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, …
|
CWE-863
Incorrect Authorization
|
CVE-2017-8276
|
2024-11-21 12:33 |
2019-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248452
|
7.5 |
HIGH
Network
|
jetbrains
|
intellij_idea
|
IntelliJ IDEA XML parser was found vulnerable to XML External Entity attack, an attacker can exploit the vulnerability by implementing malicious code on both Androidmanifest.xml.
|
CWE-611
XXE
|
CVE-2017-8316
|
2024-11-21 12:33 |
2018-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248453
|
7.5 |
HIGH
Network
|
eclipse
|
ide
|
Eclipse XML parser for the Eclipse IDE versions 2017.2.5 and earlier was found vulnerable to an XML External Entity attack. An attacker can exploit the vulnerability by implementing malicious code on…
|
CWE-611
XXE
|
CVE-2017-8315
|
2024-11-21 12:33 |
2018-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248454
|
5.3 |
MEDIUM
Network
|
huawei
|
honor_8_lite_firmware
|
The Themes App Honor 8 Lite Huawei mobile phones with software of versions before Prague-L31C576B172, versions before Prague-L31C530B160, versions before Prague-L31C432B180 has a man-in-the-middle (M…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2017-8154
|
2024-11-21 12:33 |
2018-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248455
|
9.8 |
CRITICAL
Network
|
qualcomm
|
mdm9206_firmware mdm9607_firmware msm8909w_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd_430_firmware sd_450_firmware sd_625_firmware sd_65…
|
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MSM8909W, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, an acc…
|
NVD-CWE-noinfo
|
CVE-2017-8274
|
2024-11-21 12:33 |
2018-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248456
|
9.8 |
CRITICAL
Network
|
qualcomm
|
sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_430_firmware sd_450_firmware sd_617_firmware sd_625_firmware sd_650_firmware sd_652_firmware sd_800_fi…
|
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 820, SD 835, an integer ove…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-8275
|
2024-11-21 12:33 |
2018-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248457
|
7.2 |
HIGH
Network
|
huawei
|
fusionsphere_openstack_firmware
|
Huawei FusionSphere OpenStack V100R006C00SPC102(NFV) has a privilege escalation vulnerability. Due to improper privilege restrictions, an attacker with high privilege may obtain the other users' cert…
|
CWE-269
Improper Privilege Management
|
CVE-2017-8187
|
2024-11-21 12:33 |
2018-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248458
|
7.5 |
HIGH
Network
|
huawei
|
iptv_stb_firmware
|
Huawei IPTV STB with earlier than IPTV STB V100R003C01LMYTa6SPC001 versions has an authentication bypass vulnerability. An attacker could exploit this vulnerability to access the serial interface and…
|
NVD-CWE-noinfo
|
CVE-2017-8176
|
2024-11-21 12:33 |
2018-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248459
|
9.8 |
CRITICAL
Network
|
emc
|
data_protection_advisor
|
EMC Data Protection Advisor 6.3.x before patch 67 and 6.4.x before patch 130 contains undocumented accounts with hard-coded passwords and various privileges. Affected accounts are: "Apollo System Tes…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-8013
|
2024-11-21 12:33 |
2018-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248460
|
5.5 |
MEDIUM
Local
|
huawei
|
mate_9_firmware
|
Mate 9 Huawei smart phones with versions earlier than MHA-AL00BC00B233 have a sensitive information leak vulnerability. An attacker can trick a user to install a malicious application to exploit this…
|
CWE-200
Information Exposure
|
CVE-2017-8165
|
2024-11-21 12:33 |
2018-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|