|
212631
|
4.9 |
MEDIUM
Network
|
schneider-electric
|
modicon_m580_firmware modicon_m340_firmware modicon_bmxcra_firmware modicon_140cra_firmware
|
A CWE-755: Improper Handling of Exceptional Conditions vulnerability exists in Modicon M580 with firmware (version prior to V3.10), Modicon M340 (all firmware versions), and Modicon BMxCRA and 140CRA…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2019-6841
|
2024-11-21 13:47 |
2019-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212632
|
7.8 |
HIGH
Local
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0.20723. User interaction is required to exploit this vulnerability in that the …
|
CWE-416
Use After Free
|
CVE-2019-6776
|
2024-11-21 13:47 |
2019-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212633
|
7.8 |
HIGH
Local
|
foxitsoftware
|
reader phantompdf
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.20723. User interaction is required to exploit this vulnerability in that the targ…
|
CWE-416
Use After Free
|
CVE-2019-6775
|
2024-11-21 13:47 |
2019-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212634
|
7.8 |
HIGH
Local
|
foxitsoftware
|
reader phantompdf
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.4.1.16828. User interaction is required to exploit this vulnerability in that the targ…
|
CWE-416
Use After Free
|
CVE-2019-6774
|
2024-11-21 13:47 |
2019-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212635
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A Format String: CWE-134 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touch 10, MEG62…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2019-6840
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212636
|
8.8 |
HIGH
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motio…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-6839
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212637
|
6.5 |
MEDIUM
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A CWE-863: Incorrect Authorization vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touch…
|
NVD-CWE-Other
|
CVE-2019-6838
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212638
|
9.1 |
CRITICAL
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A Server-Side Request Forgery (SSRF): CWE-918 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server …
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2019-6837
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212639
|
7.5 |
HIGH
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A CWE-863: Incorrect Authorization vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touch…
|
NVD-CWE-Other
|
CVE-2019-6836
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212640
|
5.4 |
MEDIUM
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A Cross-Site Scripting (XSS) CWE-79 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touc…
|
CWE-79
Cross-site Scripting
|
CVE-2019-6835
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|