CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2006-2717 MEDIUM

Unspecified vulnerability in Secure Elements Class 5 AVR client and server (aka C5 EVM) before 2.8.1 allows authenticated attackers to overwrite arbitrary file…

CVSS 4.0 EPSS 1.88% May 31, 2006
CVE-2006-2716 HIGH

Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 uses a hard-coded user ID and password, which allows remote attackers to gain access to the server.

CVSS 7.5 EPSS 2.15% May 31, 2006
CVE-2006-2715 HIGH

The Administration Console in Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 does not enforce access control, which allows remote attackers to gain acce…

CVSS 7.5 EPSS 2.15% May 31, 2006
CVE-2006-2714 MEDIUM

Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 does not validate the CEID of an incoming message, which allows remote attackers to send messages…

CVSS 5.0 EPSS 1.88% May 31, 2006
CVE-2006-2713 MEDIUM

Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 generates predictable CEIDs, which allows remote attackers to determine the CEID of a protected as…

CVSS 5.0 EPSS 1.93% May 31, 2006
CVE-2006-2712 MEDIUM

Secure Elements Class 5 AVR (aka C5 EVM) client and server before 2.8.1 do not verify the integrity of a message digest, which allows remote attackers to modif…

CVSS 5.0 EPSS 2.63% May 31, 2006
CVE-2006-2711 MEDIUM

Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier, and possibly later 2.8.x releases, uses the same initialization vector and key for each message ses…

CVSS 5.0 EPSS 1.93% May 31, 2006
CVE-2006-2710 MEDIUM

Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 uses the same invariant RSA key for all installations, which allows remote attackers with the key to decr…

CVSS 5.0 EPSS 1.89% May 31, 2006
CVE-2006-2709 MEDIUM

Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 do not validate the source address of a message, which allows remote attackers to (1) execute arbitrary c…

CVSS 5.0 EPSS 3.68% May 31, 2006
CVE-2006-2708 MEDIUM

Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 allows remote attackers to read portions of process memory via a modified size for (1) EM_GET_CE_P…

CVSS 5.0 EPSS 2.38% May 31, 2006
CVE-2006-2707 MEDIUM

Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 does not validate the peer certificate when obtaining an update, which could allow remote attacker…

CVSS 5.0 EPSS 1.14% May 31, 2006
CVE-2006-2706 MEDIUM

Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause a denial of service via forged "session start" messages that caus…

CVSS 5.0 EPSS 2.17% May 31, 2006
CVE-2006-2705 MEDIUM

Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause an unspecified denial of service via a large number of forged cli…

CVSS 5.0 EPSS 2.17% May 31, 2006
CVE-2006-2704 MEDIUM

Secure Elements Class 5 AVR server and client (aka C5 EVM) before 2.8.1 send messages in cleartext, which allows remote attackers to read sensitive vulnerabili…

CVSS 5.0 EPSS 2.12% May 31, 2006

Showing 1 to 14 CVEs · page 1