|
212931
|
7.8 |
HIGH
Local
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.5.0.20723. User interaction is required to exploit this vulnerability in that the …
|
CWE-416
Use After Free
|
CVE-2019-6776
|
2024-11-21 13:47 |
2019-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212932
|
7.8 |
HIGH
Local
|
foxitsoftware
|
reader phantompdf
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.5.0.20723. User interaction is required to exploit this vulnerability in that the targ…
|
CWE-416
Use After Free
|
CVE-2019-6775
|
2024-11-21 13:47 |
2019-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212933
|
7.8 |
HIGH
Local
|
foxitsoftware
|
reader phantompdf
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.4.1.16828. User interaction is required to exploit this vulnerability in that the targ…
|
CWE-416
Use After Free
|
CVE-2019-6774
|
2024-11-21 13:47 |
2019-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212934
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A Format String: CWE-134 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touch 10, MEG62…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2019-6840
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212935
|
8.8 |
HIGH
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motio…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-6839
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212936
|
6.5 |
MEDIUM
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A CWE-863: Incorrect Authorization vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touch…
|
NVD-CWE-Other
|
CVE-2019-6838
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212937
|
9.1 |
CRITICAL
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A Server-Side Request Forgery (SSRF): CWE-918 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server …
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2019-6837
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212938
|
7.5 |
HIGH
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A CWE-863: Incorrect Authorization vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touch…
|
NVD-CWE-Other
|
CVE-2019-6836
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212939
|
5.4 |
MEDIUM
Network
|
schneider-electric
|
meg6501-0001_firmware meg6501-0002_firmware meg6260-0410_firmware meg6260-0415_firmware
|
A Cross-Site Scripting (XSS) CWE-79 vulnerability exists in U.motion Server (MEG6501-0001 - U.motion KNX server, MEG6501-0002 - U.motion KNX Server Plus, MEG6260-0410 - U.motion KNX Server Plus, Touc…
|
CWE-79
Cross-site Scripting
|
CVE-2019-6835
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212940
|
8.3 |
HIGH
Network
|
schneider-electric
|
wiser_for_knx_firmware spacelynk_firmware
|
A CWE-287: Authentication vulnerability exists in spaceLYnk (all versions before 2.4.0) and Wiser for KNX (all versions before 2.4.0 - formerly known as homeLYnk), which could cause loss of control w…
|
CWE-287
Improper Authentication
|
CVE-2019-6832
|
2024-11-21 13:47 |
2019-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|