CVE-2019-14715

Verifone Pinpad Payment Terminals allow undocumented physical access to the system via an SBI bootloader memory write operation.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:verifone:p400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:verifone:p400:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:verifone:p200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:verifone:p200:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:verifone:vx_820_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:verifone:vx_820:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:verifone:vx_805_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:verifone:vx_805:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-10-23 05:15

Updated : 2024-02-28 18:08


NVD link : CVE-2019-14715

Mitre link : CVE-2019-14715

CVE.ORG link : CVE-2019-14715


JSON object : View

Products Affected

verifone

  • vx_805
  • vx_820
  • vx_820_firmware
  • p200_firmware
  • p400
  • p400_firmware
  • p200
  • vx_805_firmware
CWE
CWE-787

Out-of-bounds Write