Vulnerabilities > Motorola

DATE CVE VULNERABILITY TITLE RISK
2008-06-04 CVE-2008-2548 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Motorola Razr
Stack-based buffer overflow in the JPEG thumbprint component in the EXIF parser on Motorola cell phones with RAZR firmware allows user-assisted remote attackers to execute arbitrary code via an MMS transmission of a malformed JPEG image, which triggers memory corruption.
network
motorola CWE-119
critical
9.3
2008-04-28 CVE-2008-2002 Cross-Site Request Forgery (CSRF) vulnerability in Motorola Surfboard Sb5100
Multiple cross-site request forgery (CSRF) vulnerabilities on Motorola Surfboard with software SB5100-2.3.3.0-SCM00-NOSH allow remote attackers to (1) cause a denial of service (device reboot) via the "Restart Cable Modem" value in the BUTTON_INPUT parameter to configdata.html, and (2) cause a denial of service (hard reset) via the "Reset All Defaults" value in the BUTTON_INPUT parameter to configdata.html.
network
motorola CWE-352
7.8
2008-01-09 CVE-2007-5761 Permissions, Privileges, and Access Controls vulnerability in Motorola Netoctopus 5.1.2Build1011
The NantSys device 5.0.0.115 in Motorola netOctopus 5.1.2 build 1011 has weak permissions for the \\.\NantSys device interface (nantsys.sys), which allows local users to gain privileges or cause a denial of service (system crash), as demonstrated by modifying the SYSENTER_EIP_MSR CPU Model Specific Register (MSR) value.
local
low complexity
motorola CWE-264
7.2
2007-08-29 CVE-2007-4221 Improper Input Validation vulnerability in Motorola Timbuktu 8.6.3.1367
Multiple buffer overflows in Motorola Timbuktu Pro before 8.6.5 for Windows allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via (1) a long user name and (2) certain malformed requests; and (3) allow remote Timbuktu servers to have an unknown impact via a malformed HELLO response, related to the Scanner component and possibly related to a malformed computer name.
network
low complexity
motorola CWE-20
critical
10.0
2007-08-29 CVE-2007-4220 Path Traversal vulnerability in Motorola Timbuktu 8.6.3.1367
Directory traversal vulnerability in Motorola Timbuktu Pro before 8.6.5 for Windows allows remote attackers to create or delete arbitrary files via a ..
network
low complexity
motorola CWE-22
7.8
2007-01-26 CVE-2007-0522 Improper Input Validation vulnerability in Motorola Motorazr V3
The Motorola MOTORAZR V3 phone allows remote attackers to cause a denial of service (continual modal dialogs and UI unavailability) by repeatedly trying to OBEX push a file over Bluetooth, as demonstrated by ussp-push.
low complexity
motorola CWE-20
3.3
2006-10-10 CVE-2006-5196 Remote Denial of Service vulnerability in Motorola Surfboard Sb4200
The HTTP interface in the Motorola SURFboard SB4200 Cable Modem allows remote attackers to cause a denial of service (device crash) via a request with MfcISAPICommand set to SecretProc and a long string in the Secret parameter.
network
low complexity
motorola
7.8
2005-12-14 CVE-2005-4215 Denial Of Service vulnerability in Motorola Cable Modem Sb5100E
Motorola SB5100E Cable Modem allows remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LAND).
network
low complexity
motorola
7.8
2004-12-31 CVE-2004-1550 Remote Authentication Bypass vulnerability in Motorola Wr850G 4.0.3Firmware
Motorola Wireless Router WR850G running firmware 4.03 allows remote attackers to bypass authentication, log on as an administrator, and obtain sensitive information by repeatedly making an HTTP request for ver.asp until an administrator logs on.
network
low complexity
motorola
7.5
2002-12-31 CVE-2002-1944 Denial-Of-Service vulnerability in Motorola Surfboard 4200
Motorola Surfboard 4200 cable modem allows remote attackers to cause a denial of service (crash) by performing a SYN scan using a tool such as nmap.
network
low complexity
motorola
5.0