Idemia

Morphowave Xp Firmware

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.53%
  • Veröffentlicht 15.12.2023 12:15:44
  • Zuletzt bearbeitet 21.11.2024 08:05:10

When handling contactless cards, usage of a specific function to get additional information from the card which doesn't check the boundary on the data received while reading. This allows a stack-based buffer overflow that could lead to a p...

  • EPSS 1.22%
  • Veröffentlicht 15.12.2023 12:15:43
  • Zuletzt bearbeitet 21.11.2024 08:05:09

The Parameter Zone Read and Parameter Zone Write command handlers allow performing a Stack buffer overflow. This could potentially lead to a Remote Code execution on the targeted device.

  • EPSS 0.9%
  • Veröffentlicht 15.12.2023 12:15:43
  • Zuletzt bearbeitet 21.11.2024 08:05:09

The handler of the retrofit validation command doesn't properly check the boundaries when performing certain validation operations. This allows a stack-based buffer overflow that could lead to a potential Remote Code Execution on the targeted ...

  • EPSS 0.86%
  • Veröffentlicht 15.12.2023 12:15:43
  • Zuletzt bearbeitet 21.11.2024 08:05:09

During the retrofit validation process, the firmware doesn't properly check the boundaries while copying some attributes to check. This allows a stack-based buffer overflow that could lead to a potential Remote Code Execution on the targeted ...

  • EPSS 0.55%
  • Veröffentlicht 15.12.2023 12:15:43
  • Zuletzt bearbeitet 21.11.2024 08:05:10

When reading DesFire keys, the function that reads the card isn't properly checking the boundaries when copying internally the data received. This allows a heap based buffer overflow that could lead to a potential Remote Code Execution on ...

  • EPSS 0.12%
  • Veröffentlicht 15.12.2023 11:15:08
  • Zuletzt bearbeitet 21.11.2024 08:05:09

By abusing a design flaw in the firmware upgrade mechanism of the impacted terminal it's possible to cause a permanent denial of service for the terminal. the only way to recover the terminal is by sending back the terminal to the manufacturer