|
213071
|
6.5 |
MEDIUM
Network
|
synacor
|
zimbra_collaboration_suite
|
Zimbra Collaboration Suite 8.7.x through 8.8.11 allows Blind SSRF in the Feed component.
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2019-6981
|
2024-11-21 13:47 |
2019-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213072
|
9.8 |
CRITICAL
Network
|
synacor
|
zimbra_collaboration_suite
|
Synacor Zimbra Collaboration Suite 8.7.x through 8.8.11 allows insecure object deserialization in the IMAP component.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-6980
|
2024-11-21 13:47 |
2019-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213073
|
9.1 |
CRITICAL
Network
|
bosch
|
bosch_video_management_system access_professional_edition building_integration_system bosch_video_client video_sdk configuration_manager dip_2000_firmware dip_3000_firmware di…
|
A recently discovered security vulnerability affects all Bosch Video Management System (BVMS) versions 9.0 and below, DIVAR IP 2000, 3000, 5000 and 7000, Configuration Manager, Building Integration S…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-6958
|
2024-11-21 13:47 |
2019-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213074
|
9.8 |
CRITICAL
Network
|
bosch
|
video_recording_manager bosch_video_management_system access_professional_edition building_integration_system bosch_video_client video_sdk video_streaming_gateway configuration_m…
|
A recently discovered security vulnerability affects all Bosch Video Management System (BVMS) versions 9.0 and below, DIVAR IP 2000, 3000, 5000 and 7000, Video Recording Manager (VRM), Video Streamin…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-6957
|
2024-11-21 13:47 |
2019-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213075
|
6.1 |
MEDIUM
Network
|
adobe
|
experience_manager_forms
|
Adobe Experience Manager Forms versions 6.2, 6.3 and 6.4 have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
|
CWE-79
Cross-site Scripting
|
CVE-2019-7129
|
2024-11-21 13:47 |
2019-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213076
|
9.8 |
CRITICAL
Network
|
adobe
|
digital_editions
|
Adobe Digital Editions versions 4.5.10.185749 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7095
|
2024-11-21 13:47 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213077
|
9.8 |
CRITICAL
Network
|
adobe
|
photoshop_cc
|
Adobe Photoshop CC 19.1.7 and earlier, and 20.0.2 and earlier have a heap corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7094
|
2024-11-21 13:47 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213078
|
7.8 |
HIGH
Local
|
adobe
|
creative_cloud
|
Creative Cloud Desktop Application (installer) versions 4.7.0.400 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalatio…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-7093
|
2024-11-21 13:47 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213079
|
6.1 |
MEDIUM
Network
|
adobe
|
coldfusion
|
ColdFusion versions Update 1 and earlier, Update 7 and earlier, and Update 15 and earlier have a cross site scripting vulnerability. Successful exploitation could lead to information disclosure .
|
CWE-79
Cross-site Scripting
|
CVE-2019-7092
|
2024-11-21 13:47 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213080
|
9.8 |
CRITICAL
Network
|
adobe
|
coldfusion
|
ColdFusion versions Update 1 and earlier, Update 7 and earlier, and Update 15 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code …
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-7091
|
2024-11-21 13:47 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|