Vulnerabilities > Palm

DATE CVE VULNERABILITY TITLE RISK
2007-08-21 CVE-2007-4213 Remote Denial of Service vulnerability in Palm OS Treo Smartphone
Palm OS on Treo 650, 680, 700p, and 755p Smart phones allows remote attackers to cause a denial of service (device reset or hang) via a flood of large ICMP echo requests.
network
palm treo
7.1
2007-02-16 CVE-2007-0859 Information Disclosure vulnerability in Palm Treo 650/680/700P
The Find feature in Palm OS Treo smart phones operates despite the system password lock, which allows attackers with physical access to obtain sensitive information (memory contents) by doing (1) text searches or (2) paste operations after pressing certain keyboard shortcut keys.
local
low complexity
palm
2.1
2006-12-04 CVE-2006-6286 Unspecified vulnerability in Palm Desktop 4.0B76/4.0B77
Palm Desktop 4.1.4 and earlier stores user data with weak permissions under the application directory, which allows local users to obtain sensitive information (address books, calendar files, and todo lists of other users) via unspecified vectors.
local
low complexity
palm
1.7
2003-06-16 CVE-2003-0293 Denial-Of-Service vulnerability in Palmos
PalmOS allows remote attackers to cause a denial of service (CPU consumption) via a flood of ICMP echo request (ping) packets.
network
low complexity
palm
5.0
2002-03-25 CVE-2002-0120 Unspecified vulnerability in Palm Desktop 4.0B76/4.0B77
Apple Palm Desktop 4.0b76 and 4.0b77 creates world-readable backup files and folders when a hotsync is performed, which could allow a local user to obtain sensitive information.
local
low complexity
palm
2.1
2002-03-25 CVE-2002-0116 Remote Denial Of Service vulnerability in Palm OS 3.5H
Palm OS 3.5h and possibly other versions, as used in Handspring Visor and Xircom products, allows remote attackers to cause a denial of service via a TCP connect scan, e.g.
network
low complexity
palm
5.0
2001-10-22 CVE-2001-1438 Denial-Of-Service vulnerability in Palm OS
Handspring Visor 1.0 and 1.0.1 with the VisorPhone Springboard module installed allows remote attackers to cause a denial of service (PalmOS crash and VisorPhone database corruption) by sending a large or crafted SMS image.
network
low complexity
palm handspring
5.0
2001-06-02 CVE-2001-0157 Unspecified vulnerability in Palm OS 3.5.2
Debugging utility in the backdoor mode of Palm OS 3.5.2 and earlier allows attackers with physical access to a Palm device to bypass access restrictions and obtain passwords, even if the system lockout mechanism is enabled.
local
low complexity
palm
4.6
2000-12-11 CVE-2000-1008 Unspecified vulnerability in Palm OS
PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device.
local
low complexity
palm
4.6