Security Vulnerabilities
- CVEs Published In December 2019
Static HTTP Server 1.0 has a Local Overflow
Samsung Galaxy S3/S4 exposes an unprotected component allowing arbitrary SMS text messages without requesting permission.
Samsung Galaxy S3/S4 exposes an unprotected component allowing an unprivileged app to send arbitrary SMS texts to arbitrary destinations without permission.
ReviewBoard 1.6.17 allows code execution by attaching PHP scripts to review request
INSTEON Hub 2242-222 lacks Web and API authentication
Electronic Arts Karotz Smart Rabbit 12.07.19.00 allows Python module hijacking
Karotz API 12.07.19.00: Session Token Information Disclosure
Hikvision DS-2CD7153-E IP Camera has Privilege Escalation
Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials
AVTECH AVN801 DVR has a security bypass via the administration login captcha