garrett records
9 published records for vendor garrett.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')4
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')2
- CWE-121 Stack-based Buffer Overflow2
- CWE-303 Incorrect Implementation of Authentication Algorithm1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2021-21903No exploit | A stack-based buffer overflow vulnerability exists in the CMA check_udp_crc function of Garrett Metal Detectors’ iC Module CMA Version 5.0.garrett · ic module cma · CWE-120 | Critical9.8 | — | 1.7% | Dec 22, 2021 |
35Monitor | CVE-2021-21901No exploit | A stack-based buffer overflow vulnerability exists in the CMA check_udp_crc function of Garrett Metal Detectors’ iC Module CMA Version 5.0.garrett · ic module cma · CWE-120 | High8.8 | — | 1.6% | Dec 22, 2021 |
33Monitor | CVE-2021-21902No exploit | An authentication bypass vulnerability exists in the CMA run_server_6877 functionality of Garrett Metal Detectors iC Module CMA Version 5.0.garrett · ic module cma · CWE-303 | High8.1 | — | 1.7% | Dec 22, 2021 |
32Monitor | CVE-2021-21909No exploit | Specially-crafted command line arguments can lead to arbitrary file deletion in the del .cnt|.log file delete command.garrett · ic module firmware · CWE-22 | High8.1 | — | 1.0% | Dec 22, 2021 |
29Monitor | CVE-2021-21904No exploit | A directory traversal vulnerability exists in the CMA CLI setenv command of Garrett Metal Detectors’ iC Module CMA Version 5.0.garrett · ic module cma · CWE-22 | High7.2 | — | 2.8% | Dec 22, 2021 |
28Monitor | CVE-2021-21906No exploit | Stack-based buffer overflow vulnerability exists in how the CMA readfile function of Garrett Metal Detectors iC Module CMA Version 5.0 is usgarrett · ic module cma · CWE-121 | High7.2 | — | 1.0% | Dec 22, 2021 |
28Monitor | CVE-2021-21905No exploit | Stack-based buffer overflow vulnerability exists in how the CMA readfile function of Garrett Metal Detectors iC Module CMA Version 5.0 is usgarrett · ic module cma · CWE-121 | High7.2 | — | 1.0% | Dec 22, 2021 |
26Monitor | CVE-2021-21908No exploit | Specially-crafted command line arguments can lead to arbitrary file deletion.garrett · ic module firmware · CWE-22 | Medium6.5 | — | 1.4% | Dec 22, 2021 |
19Monitor | CVE-2021-21907No exploit | A directory traversal vulnerability exists in the CMA CLI getenv command functionality of Garrett Metal Detectors’ iC Module CMA Version 5.0garrett · ic module cma · CWE-22 | Medium4.9 | — | 1.4% | Dec 22, 2021 |
- CVE-2021-2190340Plan
A stack-based buffer overflow vulnerability exists in the CMA check_udp_crc function of Garrett Metal Detectors’ iC Module CMA Version 5.0.
CriticalCVSS 9.8No exploitEPSS 2%garrett · ic module cmaDec 22, 2021
- CVE-2021-2190135Monitor
A stack-based buffer overflow vulnerability exists in the CMA check_udp_crc function of Garrett Metal Detectors’ iC Module CMA Version 5.0.
HighCVSS 8.8No exploitEPSS 2%garrett · ic module cmaDec 22, 2021
- CVE-2021-2190233Monitor
An authentication bypass vulnerability exists in the CMA run_server_6877 functionality of Garrett Metal Detectors iC Module CMA Version 5.0.
HighCVSS 8.1No exploitEPSS 2%garrett · ic module cmaDec 22, 2021
- CVE-2021-2190932Monitor
Specially-crafted command line arguments can lead to arbitrary file deletion in the del .cnt|.log file delete command.
HighCVSS 8.1No exploitEPSS 1%garrett · ic module firmwareDec 22, 2021
- CVE-2021-2190429Monitor
A directory traversal vulnerability exists in the CMA CLI setenv command of Garrett Metal Detectors’ iC Module CMA Version 5.0.
HighCVSS 7.2No exploitEPSS 3%garrett · ic module cmaDec 22, 2021
- CVE-2021-2190628Monitor
Stack-based buffer overflow vulnerability exists in how the CMA readfile function of Garrett Metal Detectors iC Module CMA Version 5.0 is us
HighCVSS 7.2No exploitEPSS 1%garrett · ic module cmaDec 22, 2021
- CVE-2021-2190528Monitor
Stack-based buffer overflow vulnerability exists in how the CMA readfile function of Garrett Metal Detectors iC Module CMA Version 5.0 is us
HighCVSS 7.2No exploitEPSS 1%garrett · ic module cmaDec 22, 2021
- CVE-2021-2190826Monitor
Specially-crafted command line arguments can lead to arbitrary file deletion.
MediumCVSS 6.5No exploitEPSS 1%garrett · ic module firmwareDec 22, 2021
- CVE-2021-2190719Monitor
A directory traversal vulnerability exists in the CMA CLI getenv command functionality of Garrett Metal Detectors’ iC Module CMA Version 5.0
MediumCVSS 4.9No exploitEPSS 1%garrett · ic module cmaDec 22, 2021