Записи Cypress
12 опубликованных записей вендора cypress.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 33,3 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')2
- CWE-787 Out-of-bounds Write2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-331 Insufficient Entropy1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
12 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
35Наблюдать | CVE-2019-13916Эксплойта нет | An issue was discovered in Cypress (formerly Broadcom) WICED Studio 6.2 CYW20735B1 and CYW20819A1.cypress · wiced studio · CWE-787 | Высокая8,8 | — | 1,2 % | 13 апр. 2020 г. |
35Наблюдать | CVE-2018-19860Эксплойта нет | Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices doebroadcom · bcm4335c0 firmware · CWE-732 | Высокая8,8 | — | 1,0 % | 7 июн. 2019 г. |
34Наблюдать | CVE-2023-47415Эксплойта нет | Cypress Solutions CTM-200 v2.7.1.5600 and below was discovered to contain an OS command injection vulnerability via the cli_text parameter.cypress · ctm-200 firmware · CWE-78 | Высокая7,5 | — | 13,8 % | 6 мар. 2024 г. |
31Наблюдать | CVE-2019-18614Эксплойта нет | On the Cypress CYW20735 evaluation board, any data that exceeds 384 bytes is copied and causes an overflow.cypress · cyw20735 firmware · CWE-787 | Высокая7,8 | — | 0,3 % | 16 июн. 2020 г. |
30Наблюдать | CVE-2020-11957Эксплойта нет | The Bluetooth Low Energy implementation in Cypress PSoC Creator BLE 4.2 component versions before 3.64 generates a random number (Pairing Racypress · psoc 4.2 ble · CWE-331 | Высокая7,5 | — | 0,4 % | 9 июн. 2020 г. |
26Наблюдать | CVE-2019-16336Эксплойта нет | The Bluetooth Low Energy implementation in Cypress PSoC 4 BLE component 3.61 and earlier processes data channel frames with a payload lengthcypress · cyble-416045 · CWE-120 | Средняя6,5 | — | 1,5 % | 12 февр. 2020 г. |
26Наблюдать | CVE-2019-17061Эксплойта нет | The Bluetooth Low Energy (BLE) stack implementation on Cypress PSoC 4 through 3.62 devices does not properly restrict the BLE Link Layer heacypress · psoc 4 ble · CWE-120 | Средняя6,5 | — | 0,9 % | 10 февр. 2020 г. |
26Наблюдать | CVE-2021-34146Эксплойта нет | The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous unsolicited LMP rescypress · cyw920735q60evb-01 firmware | Средняя6,5 | — | 0,6 % | 7 сент. 2021 г. |
26Наблюдать | CVE-2021-34147Эксплойта нет | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 does not properly handle the reception of a cypress · wireless internet connectivity for embedded devices | Средняя6,5 | — | 0,6 % | 7 сент. 2021 г. |
26Наблюдать | CVE-2021-34148Эксплойта нет | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properly handle the recepticypress · wireless internet connectivity for embedded devices | Средняя6,5 | — | 0,6 % | 7 сент. 2021 г. |
21Наблюдать | CVE-2021-34145Эксплойта нет | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properly handle the recepticypress · wireless internet connectivity for embedded devices | Средняя5,3 | — | 0,5 % | 7 сент. 2021 г. |
20Наблюдать | CVE-2007-5922Эксплойта нет | The modules/mdop.m in the Cypress 1.0k script for BitchX, as downloaded from a distribution site in November 2007, contains an externally inbitchx · bitchx · CWE-200 | Средняя5,0 | — | 1,0 % | 9 нояб. 2007 г. |
- CVE-2019-1391635Наблюдать
An issue was discovered in Cypress (formerly Broadcom) WICED Studio 6.2 CYW20735B1 and CYW20819A1.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %cypress · wiced studio13 апр. 2020 г.
- CVE-2018-1986035Наблюдать
Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices doe
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %broadcom · bcm4335c0 firmware7 июн. 2019 г.
- CVE-2023-4741534Наблюдать
Cypress Solutions CTM-200 v2.7.1.5600 and below was discovered to contain an OS command injection vulnerability via the cli_text parameter.
ВысокаяCVSS 7,5Эксплойта нетEPSS 14 %cypress · ctm-200 firmware6 мар. 2024 г.
- CVE-2019-1861431Наблюдать
On the Cypress CYW20735 evaluation board, any data that exceeds 384 bytes is copied and causes an overflow.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %cypress · cyw20735 firmware16 июн. 2020 г.
- CVE-2020-1195730Наблюдать
The Bluetooth Low Energy implementation in Cypress PSoC Creator BLE 4.2 component versions before 3.64 generates a random number (Pairing Ra
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %cypress · psoc 4.2 ble9 июн. 2020 г.
- CVE-2019-1633626Наблюдать
The Bluetooth Low Energy implementation in Cypress PSoC 4 BLE component 3.61 and earlier processes data channel frames with a payload length
СредняяCVSS 6,5Эксплойта нетEPSS 1 %cypress · cyble-41604512 февр. 2020 г.
- CVE-2019-1706126Наблюдать
The Bluetooth Low Energy (BLE) stack implementation on Cypress PSoC 4 through 3.62 devices does not properly restrict the BLE Link Layer hea
СредняяCVSS 6,5Эксплойта нетEPSS 1 %cypress · psoc 4 ble10 февр. 2020 г.
- CVE-2021-3414626Наблюдать
The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous unsolicited LMP res
СредняяCVSS 6,5Эксплойта нетEPSS 1 %cypress · cyw920735q60evb-01 firmware7 сент. 2021 г.
- CVE-2021-3414726Наблюдать
The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 does not properly handle the reception of a
СредняяCVSS 6,5Эксплойта нетEPSS 1 %cypress · wireless internet connectivity for embedded devices7 сент. 2021 г.
- CVE-2021-3414826Наблюдать
The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properly handle the recepti
СредняяCVSS 6,5Эксплойта нетEPSS 1 %cypress · wireless internet connectivity for embedded devices7 сент. 2021 г.
- CVE-2021-3414521Наблюдать
The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properly handle the recepti
СредняяCVSS 5,3Эксплойта нетEPSS 1 %cypress · wireless internet connectivity for embedded devices7 сент. 2021 г.
- CVE-2007-592220Наблюдать
The modules/mdop.m in the Cypress 1.0k script for BitchX, as downloaded from a distribution site in November 2007, contains an externally in
СредняяCVSS 5,0Эксплойта нетEPSS 1 %bitchx · bitchx9 нояб. 2007 г.