CVE-2024-23962
- EPSS 0.65%
- Veröffentlicht 31.01.2025 00:15:09
- Zuletzt bearbeitet 12.08.2025 18:13:55
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Alpine Halo9 devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the DLT interface, which li...
- EPSS 0.11%
- Veröffentlicht 31.01.2025 00:15:09
- Zuletzt bearbeitet 12.08.2025 18:13:43
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9 devices. An attacker must first obtain the ability to pair a malicious Bluetooth device with the target system in order to exploi...
CVE-2024-23960
- EPSS 0.01%
- Veröffentlicht 28.09.2024 07:15:03
- Zuletzt bearbeitet 03.10.2024 18:06:26
Alpine Halo9 Improper Verification of Cryptographic Signature Vulnerability. This vulnerability allows physically present attackers to bypass signature validation mechanism on affected installations of Alpine Halo9 devices. Authentication is not requ...
CVE-2024-23961
- EPSS 1.23%
- Veröffentlicht 28.09.2024 07:15:03
- Zuletzt bearbeitet 03.10.2024 18:06:59
Alpine Halo9 UPDM_wemCmdUpdFSpeDecomp Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Alpine Halo9 devices. Authentication is not req...
CVE-2024-23923
- EPSS 0.86%
- Veröffentlicht 28.09.2024 07:15:02
- Zuletzt bearbeitet 03.10.2024 18:07:35
Alpine Halo9 prh_l2_sar_data_ind Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9 devices. Authentication is not required to e...
CVE-2024-23924
- EPSS 2.38%
- Veröffentlicht 28.09.2024 07:15:02
- Zuletzt bearbeitet 03.10.2024 18:06:54
Alpine Halo9 UPDM_wemCmdCreatSHA256Hash Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Alpine Halo9 devices. Authentication is not r...
CVE-2024-23935
- EPSS 0.67%
- Veröffentlicht 28.09.2024 07:15:02
- Zuletzt bearbeitet 03.10.2024 18:07:01
Alpine Halo9 DecodeUTF7 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9 devices. An attacker must first obtain t...