
CVE-2020-27891
https://notcve.org/view.php?id=CVE-2020-27891
27 Oct 2020 — The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Read Reporting Configuration Response message. It crashes in zclHandleExternal(). La implementación del protocolo Zigbee en los dispositivos CC2538 de Texas Instruments con Z-Stack versión 3.0.1, no procesa apropiadamente un mensaje ZCL Read Reporting Configuration Response. Se bloquea en la función zclHandleExternal() • https://github.com/zigbeeprotocol/Z-Fuzzer/tree/master/vulnerabilities •

CVE-2020-27892
https://notcve.org/view.php?id=CVE-2020-27892
27 Oct 2020 — The Zigbee protocol implementation on Texas Instruments CC2538 devices with Z-Stack 3.0.1 does not properly process a ZCL Discover Commands Received Response message or a ZCL Discover Commands Generated Response message. It crashes in zclParseInDiscCmdsRspCmd(). La implementación del protocolo Zigbee en los dispositivos CC2538 de Texas Instruments con Z-Stack versión 3.0.1, no procesa apropiadamente un mensaje ZCL Discover Commands Received Response o un mensaje ZCL Discover Commands Generated Response. ... • https://github.com/zigbeeprotocol/Z-Fuzzer/tree/master/vulnerabilities •

CVE-2020-13593
https://notcve.org/view.php?id=CVE-2020-13593
31 Aug 2020 — The Bluetooth Low Energy Secure Manager Protocol (SMP) implementation in Texas Instruments SimpleLink SIMPLELINK-CC2640R2-SDK through 2.2.3 allows the Diffie-Hellman check during the Secure Connection pairing to be skipped if the Link Layer encryption setup is performed earlier. An attacker in radio range can achieve arbitrary read/write access to protected GATT service data, cause a denial of service, or possibly control a device's function by establishing an encrypted session with an unauthenticated Long ... • http://www.ti.com/tool/BLE-STACK • CWE-347: Improper Verification of Cryptographic Signature •

CVE-2019-19193
https://notcve.org/view.php?id=CVE-2019-19193
10 Feb 2020 — The Bluetooth Low Energy peripheral implementation on Texas Instruments SIMPLELINK-CC2640R2-SDK through 3.30.00.20 and BLE-STACK through 1.5.0 before Q4 2019 for CC2640R2 and CC2540/1 devices does not properly restrict the advertisement connection request packet on reception, allowing attackers in radio range to cause a denial of service (crash) via a crafted packet. La implementación periférica de Bluetooth Low Energy en Texas Instruments SIMPLELINK-CC2640R2-SDK versiones hasta 3.30.00.20 y BLE-STACK versi... • http://www.ti.com/tool/BLE-STACK •

CVE-2019-17520
https://notcve.org/view.php?id=CVE-2019-17520
10 Feb 2020 — The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM Public Key packet on reception, allowing attackers in radio range to cause a denial of service (crash) via crafted packets. La implementación de Bluetooth Low Energy en el SDK de Texas Instruments versiones hasta el 3.30.00.20 para dispositivos CC2640R2, no restringe apropiadamente el paquete SM Public Key en la recepción, permitiendo a atacantes dentro del radio de alca... • http://www.ti.com/tool/LAUNCHXL-CC2640R2 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2019-15948
https://notcve.org/view.php?id=CVE-2019-15948
13 Nov 2019 — Texas Instruments CC256x and WL18xx dual-mode Bluetooth controller devices, when LE scan mode is used, allow remote attackers to trigger a buffer overflow via a malformed Bluetooth Low Energy advertising packet, to cause a denial of service or potentially execute arbitrary code. This affects CC256xC-BT-SP 1.2, CC256xB-BT-SP 1.8, and WL18xx-BT-SP 4.4. Los dispositivos controladores de Bluetooth modo dual Texas Instruments CC256x y WL18xx, cuando se utiliza el modo de escaneo LE, permiten a atacantes remotos ... • https://e2e.ti.com/support/wireless-connectivity/bluetooth/f/538/t/856161 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2018-18056
https://notcve.org/view.php?id=CVE-2018-18056
20 Aug 2019 — An issue was discovered in the Texas Instruments (TI) TM4C, MSP432E and MSP432P microcontroller series. The eXecute-Only-Memory (XOM) implementation prevents code read-outs on protected memory by generating bus faults. However, single-stepping and using breakpoints is allowed in XOM-protected flash memory. As a consequence, it is possible to execute single instructions with arbitrary system states (e.g., registers, status flags, and SRAM content) and observe the state changes produced by the unknown instruc... • https://www.usenix.org/conference/woot19/presentation/schink • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2018-16986
https://notcve.org/view.php?id=CVE-2018-16986
06 Nov 2018 — Texas Instruments BLE-STACK v2.2.1 for SimpleLink CC2640 and CC2650 devices allows remote attackers to execute arbitrary code via a malformed packet that triggers a buffer overflow. Texas Instruments BLE-STACK v2.2.1 para dispositivos SimpleLink CC2640 y CC2650 provoca que atacantes remotos ejecuten código arbitrario mediante un paquete mal formado que desencadena un desbordamiento de búfer. • http://e2e.ti.com/support/wireless-connectivity/bluetooth/f/538/t/742827 • CWE-787: Out-of-bounds Write •

CVE-2013-6239 – Contexis CMS 1.0 Cross Site Scripting
https://notcve.org/view.php?id=CVE-2013-6239
24 Oct 2013 — Cross-site scripting (XSS) vulnerability in the photo gallery model in Exis Contexis before 2.0 allows remote attackers to inject arbitrary web script or HTML via the image parameter in a detail action. Una vulnerabilidad de tipo cross-site scripting (XSS) en el modelo de galería de fotos en Exis Contexis versiones anteriores a 2.0, permite a atacantes remotos inyectar script web o HTML arbitrario por medio del parámetro image en una acción detail. Contexis CMS version 1.0 suffers from a cross site scriptin... • https://packetstorm.news/files/id/123764 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVE-2008-4994
https://notcve.org/view.php?id=CVE-2008-4994
07 Nov 2008 — The (1) ncsarmt and (2) ncsawrap scripts in xmcd 2.6 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/Mosaic.*pid temporary file. Los ficheros de comandos (1) ncsarmt y (2) ncsawrap en xmcd v2.6 permite a usuarios locales sobrescribir ficheros de su elección a través de un ataque de enlaces simbólicos al fichero temporal /tmp/Mosaic.*pid. • http://bugs.debian.org/496416 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •