search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2006-05-30 2006-05-30 2006-06-07 VU#566553 Secure Elements Class 5 AVR uses the same RSA key for all installations
2006-05-30 2006-05-30 2006-06-07 VU#397417 Secure Elements Class 5 AVR server fails to properly enforce access controls on console operations
2006-05-30 2006-05-30 2006-06-07 VU#288121 Secure Elements Class 5 AVR client fails to validate source address of messages
2006-05-30 2006-05-30 2006-06-07 VU#353769 Secure Elements Class 5 AVR client fails to enforce integrity of message digests
2006-05-30 2006-05-30 2006-06-07 VU#873409 Secure Elements Class 5 AVR client fails to properly validate the size of EM_SET_CE_PARAMETER messages
2006-05-30 2006-05-30 2006-06-07 VU#764025 Secure Elements Class 5 AVR server fails to properly validate pathnames when downloading updates
2006-05-30 2006-05-30 2006-06-07 VU#919345 Secure Elements Class 5 AVR server fails to validate source address of messages
2006-05-30 2006-05-30 2006-06-07 VU#353945 Secure Elements Class 5 AVR client generates predictable CEIDs
2006-05-30 2006-05-30 2006-05-30 VU#346377 Secure Elements Class 5 AVR uses the same encryption key and initialization vector for every message session
2006-05-30 2006-05-30 2006-06-07 VU#207337 Secure Elements Class 5 AVR server fails to properly validate peer certificate when downloading updates
2006-05-30 2006-05-30 2006-06-07 VU#207161 Secure Elements Class 5 AVR server fails to properly authenticate registration messages
2006-05-30 2006-05-30 2006-06-07 VU#227929 Secure Elements Class 5 AVR client fails to properly validate the size of EM_GET_CE_PARAMETER messages
2006-05-30 2006-05-30 2006-06-12 VU#456729 Secure Elements Class 5 AVR server fails to enforce integrity of message digests
2006-05-30 2006-05-30 2006-06-07 VU#135529 Secure Elements Class 5 AVR server sends messages in cleartext
2006-05-30 2006-05-30 2006-06-07 VU#912217 Secure Elements Class 5 AVR client fails to properly validate pathnames supplied in messages

Sponsored by CISA.