CVE-2019-0729
- EPSS 1.42%
- Published 05.03.2019 23:29:02
- Last modified 21.11.2024 04:17:11
An Elevation of Privilege vulnerability exists in the way Azure IoT Java SDK generates symmetric keys for encryption, allowing an attacker to predict the randomness of the key, aka 'Azure IoT Java SDK Elevation of Privilege Vulnerability'.
CVE-2019-0741
- EPSS 3.32%
- Published 05.03.2019 23:29:02
- Last modified 21.11.2024 04:17:12
An information disclosure vulnerability exists in the way Azure IoT Java SDK logs sensitive information, aka 'Azure IoT Java SDK Information Disclosure Vulnerability'.
CVE-2018-8479
- EPSS 1.19%
- Published 13.09.2018 00:29:07
- Last modified 21.11.2024 04:13:54
A spoofing vulnerability exists for the Azure IoT Device Provisioning for the C SDK library using the HTTP protocol on Windows platform, aka "Azure IoT SDK Spoofing Vulnerability." This affects C SDK.
CVE-2018-8119
- EPSS 0.95%
- Published 09.05.2018 19:29:01
- Last modified 21.11.2024 04:13:18
A spoofing vulnerability exists when the Azure IoT Device Provisioning AMQP Transport library improperly validates certificates over the AMQP protocol, aka "Azure IoT SDK Spoofing Vulnerability." This affects C# SDK, C SDK, Java SDK.