secure elements kayıtları
secure elements üreticisine ait 14 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Saldırı profili
Tüm kayıtlar
14 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2006-2715İstismar yok | The Administration Console in Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 does not enforce access control, which allows remote attsecure elements · c5 enterprise vulnerability management | Yüksek7,5 | — | %2,2 | 31 May 2006 |
31İzleyin | CVE-2006-2716İstismar yok | Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 uses a hard-coded user ID and password, which allows remote attackers to gain asecure elements · c5 enterprise vulnerability management | Yüksek7,5 | — | %2,2 | 31 May 2006 |
21İzleyin | CVE-2006-2709İstismar yok | Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 do not validate the source address of a message, which allows remote attackers to (1) secure elements · class 5 enterprise vulnerability management | Orta5,0 | — | %3,7 | 31 May 2006 |
21İzleyin | CVE-2006-2712İstismar yok | Secure Elements Class 5 AVR (aka C5 EVM) client and server before 2.8.1 do not verify the integrity of a message digest, which allows remotesecure elements · class 5 enterprise vulnerability management | Orta5,0 | — | %2,6 | 31 May 2006 |
21İzleyin | CVE-2006-2708İstismar yok | Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 allows remote attackers to read portions of process memory via a modified size secure elements · class 5 enterprise vulnerability management | Orta5,0 | — | %2,4 | 31 May 2006 |
21İzleyin | CVE-2006-2706İstismar yok | Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause a denial of service via forged "session start"secure elements · class 5 enterprise vulnerability management | Orta5,0 | — | %2,2 | 31 May 2006 |
21İzleyin | CVE-2006-2705İstismar yok | Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause an unspecified denial of service via a large nsecure elements · c5 enterprise vulnerability management | Orta5,0 | — | %2,2 | 31 May 2006 |
21İzleyin | CVE-2006-2704İstismar yok | Secure Elements Class 5 AVR server and client (aka C5 EVM) before 2.8.1 send messages in cleartext, which allows remote attackers to read sesecure elements · c5 enterprise vulnerability management | Orta5,0 | — | %2,1 | 31 May 2006 |
21İzleyin | CVE-2006-2711İstismar yok | Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier, and possibly later 2.8.x releases, uses the same initialization vector and key fsecure elements · class 5 enterprise vulnerability management | Orta5,0 | — | %1,9 | 31 May 2006 |
21İzleyin | CVE-2006-2713İstismar yok | Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 generates predictable CEIDs, which allows remote attackers to determine the CEIsecure elements · c5 enterprise vulnerability management | Orta5,0 | — | %1,9 | 31 May 2006 |
21İzleyin | CVE-2006-2710İstismar yok | Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 uses the same invariant RSA key for all installations, which allows remote attackers wsecure elements · class 5 enterprise vulnerability management | Orta5,0 | — | %1,9 | 31 May 2006 |
21İzleyin | CVE-2006-2714İstismar yok | Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 does not validate the CEID of an incoming message, which allows remote attackersecure elements · c5 enterprise vulnerability management | Orta5,0 | — | %1,9 | 31 May 2006 |
20İzleyin | CVE-2006-2707İstismar yok | Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 does not validate the peer certificate when obtaining an update, which could alsecure elements · class 5 enterprise vulnerability management | Orta5,0 | — | %1,1 | 31 May 2006 |
17İzleyin | CVE-2006-2717İstismar yok | Unspecified vulnerability in Secure Elements Class 5 AVR client and server (aka C5 EVM) before 2.8.1 allows authenticated attackers to overwsecure elements · c5 enterprise vulnerability management | Orta4,0 | — | %1,9 | 31 May 2006 |
- CVE-2006-271531İzleyin
The Administration Console in Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 does not enforce access control, which allows remote att
YüksekCVSS 7,5İstismar yokEPSS %2secure elements · c5 enterprise vulnerability management31 May 2006
- CVE-2006-271631İzleyin
Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 uses a hard-coded user ID and password, which allows remote attackers to gain a
YüksekCVSS 7,5İstismar yokEPSS %2secure elements · c5 enterprise vulnerability management31 May 2006
- CVE-2006-270921İzleyin
Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 do not validate the source address of a message, which allows remote attackers to (1)
OrtaCVSS 5,0İstismar yokEPSS %4secure elements · class 5 enterprise vulnerability management31 May 2006
- CVE-2006-271221İzleyin
Secure Elements Class 5 AVR (aka C5 EVM) client and server before 2.8.1 do not verify the integrity of a message digest, which allows remote
OrtaCVSS 5,0İstismar yokEPSS %3secure elements · class 5 enterprise vulnerability management31 May 2006
- CVE-2006-270821İzleyin
Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 allows remote attackers to read portions of process memory via a modified size
OrtaCVSS 5,0İstismar yokEPSS %2secure elements · class 5 enterprise vulnerability management31 May 2006
- CVE-2006-270621İzleyin
Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause a denial of service via forged "session start"
OrtaCVSS 5,0İstismar yokEPSS %2secure elements · class 5 enterprise vulnerability management31 May 2006
- CVE-2006-270521İzleyin
Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause an unspecified denial of service via a large n
OrtaCVSS 5,0İstismar yokEPSS %2secure elements · c5 enterprise vulnerability management31 May 2006
- CVE-2006-270421İzleyin
Secure Elements Class 5 AVR server and client (aka C5 EVM) before 2.8.1 send messages in cleartext, which allows remote attackers to read se
OrtaCVSS 5,0İstismar yokEPSS %2secure elements · c5 enterprise vulnerability management31 May 2006
- CVE-2006-271121İzleyin
Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier, and possibly later 2.8.x releases, uses the same initialization vector and key f
OrtaCVSS 5,0İstismar yokEPSS %2secure elements · class 5 enterprise vulnerability management31 May 2006
- CVE-2006-271321İzleyin
Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 generates predictable CEIDs, which allows remote attackers to determine the CEI
OrtaCVSS 5,0İstismar yokEPSS %2secure elements · c5 enterprise vulnerability management31 May 2006
- CVE-2006-271021İzleyin
Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 uses the same invariant RSA key for all installations, which allows remote attackers w
OrtaCVSS 5,0İstismar yokEPSS %2secure elements · class 5 enterprise vulnerability management31 May 2006
- CVE-2006-271421İzleyin
Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 does not validate the CEID of an incoming message, which allows remote attacker
OrtaCVSS 5,0İstismar yokEPSS %2secure elements · c5 enterprise vulnerability management31 May 2006
- CVE-2006-270720İzleyin
Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 does not validate the peer certificate when obtaining an update, which could al
OrtaCVSS 5,0İstismar yokEPSS %1secure elements · class 5 enterprise vulnerability management31 May 2006
- CVE-2006-271717İzleyin
Unspecified vulnerability in Secure Elements Class 5 AVR client and server (aka C5 EVM) before 2.8.1 allows authenticated attackers to overw
OrtaCVSS 4,0İstismar yokEPSS %2secure elements · c5 enterprise vulnerability management31 May 2006