Summary
Detail | |||
---|---|---|---|
Vendor | Ingenico | First view | 2020-09-09 |
Product | Telium 2 Firmware | Last view | 2020-09-09 |
Version | Type | Os | |
Update | |||
Edition | |||
Language | |||
Sofware Edition | |||
Target Software | |||
Target Hardware | |||
Other |
Activity : Overall
COMMON PLATFORM ENUMERATION: Repartition per Version
CPE Name | Affected CVE |
---|---|
cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:* | 10 |
Related : CVE
Date | Alert | Description | |
---|---|---|---|
6.8 | 2020-09-09 | CVE-2018-17774 | Ingenico Telium 2 POS terminals have an insecure NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N. |
6.8 | 2020-09-09 | CVE-2018-17773 | Ingenico Telium 2 POS terminals have a buffer overflow via SOCKET_TASK in the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N. |
6.8 | 2020-09-09 | CVE-2018-17772 | Ingenico Telium 2 POS terminals allow arbitrary code execution via the TRACE protocol. This is fixed in Telium 2 SDK v9.32.03 patch N. |
6.6 | 2020-09-09 | CVE-2018-17771 | Ingenico Telium 2 POS terminals have hardcoded FTP credentials. This is fixed in Telium 2 SDK v9.32.03 patch N. |
6.6 | 2020-09-09 | CVE-2018-17770 | Ingenico Telium 2 POS terminals have a buffer overflow via the RemotePutFile command of the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N. |
6.6 | 2020-09-09 | CVE-2018-17769 | Ingenico Telium 2 POS terminals have a buffer overflow via the 0x26 command of the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N. |
6.8 | 2020-09-09 | CVE-2018-17768 | Ingenico Telium 2 POS terminals have an insecure TRACE protocol. This is fixed in Telium 2 SDK v9.32.03 patch N. |
6.8 | 2020-09-09 | CVE-2018-17767 | Ingenico Telium 2 POS terminals have hardcoded PPP credentials. This is fixed in Telium 2 SDK v9.32.03 patch N. |
4.6 | 2020-09-09 | CVE-2018-17766 | Ingenico Telium 2 POS Telium2 OS allow bypass of file-reading restrictions via the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N. |
6.8 | 2020-09-09 | CVE-2018-17765 | Ingenico Telium 2 POS terminals have undeclared TRACE protocol commands. This is fixed in Telium 2 SDK v9.32.03 patch N. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
50% (3) | CWE-120 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflo... |
33% (2) | CWE-798 | Use of Hard-coded Credentials |
16% (1) | CWE-732 | Incorrect Permission Assignment for Critical Resource |