|
222971
|
7.8 |
HIGH
Local
|
deltaww
|
tpeditor
|
Delta Electronics TPEditor, Versions 1.94 and prior. Multiple stack-based buffer overflow vulnerabilities may be exploited by processing specially crafted project files, which may allow an attacker t…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13540
|
2024-11-21 13:25 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222972
|
7.8 |
HIGH
Local
|
deltaww
|
tpeditor
|
Delta Electronics TPEditor, Versions 1.94 and prior. Multiple heap-based buffer overflow vulnerabilities may be exploited by processing specially crafted project files, which may allow an attacker to…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13536
|
2024-11-21 13:25 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222973
|
8.8 |
HIGH
Adjacent
|
xiaoyi
|
yi_m1_mirrorless_camera_firmware
|
An exploitable authentication bypass vulnerability exists in the Bluetooth Low Energy (BLE) authentication module of YI M1 Mirrorless Camera V3.2-cn. An attacker can send a set of BLE commands to tri…
|
NVD-CWE-noinfo
|
CVE-2019-13953
|
2024-11-21 13:25 |
2019-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222974
|
9.8 |
CRITICAL
Network
|
broadcom
|
ca_workload_automation_ae ca_client_automation
|
An access vulnerability in CA Common Services DIA of CA Technologies Client Automation 14 and Workload Automation AE 11.3.5, 11.3.6 allows a remote attacker to execute arbitrary code.
|
NVD-CWE-noinfo
|
CVE-2019-13656
|
2024-11-21 13:25 |
2019-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222975
|
8.8 |
HIGH
Network
|
bd
|
pyxis_enterprise_server pyxis_es
|
In Pyxis ES Versions 1.3.4 through to 1.6.1 and Pyxis Enterprise Server, with Windows Server Versions 4.4 through 4.12, a vulnerability has been identified where existing access privileges are not re…
|
CWE-384
Session Fixation
|
CVE-2019-13517
|
2024-11-21 13:25 |
2019-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222976
|
9.8 |
CRITICAL
Network
|
egain
|
chat
|
eGain Chat 15.0.3 allows unrestricted file upload.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-13976
|
2024-11-21 13:25 |
2019-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222977
|
6.1 |
MEDIUM
Network
|
egain
|
chat
|
eGain Chat 15.0.3 allows HTML Injection.
|
CWE-79
Cross-site Scripting
|
CVE-2019-13975
|
2024-11-21 13:25 |
2019-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222978
|
7.8 |
HIGH
Local
|
ezautomation
|
ez_plc_editor
|
An attacker could use a specially crafted project file to corrupt the memory and execute code under the privileges of the EZ PLC Editor Versions 1.8.41 and prior.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13522
|
2024-11-21 13:25 |
2019-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222979
|
7.8 |
HIGH
Local
|
ezautomation
|
ez_touch_editor
|
An attacker could use a specially crafted project file to overflow the buffer and execute code under the privileges of the EZ Touch Editor Versions 2.1.0 and prior.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-13518
|
2024-11-21 13:25 |
2019-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222980
|
8.8 |
HIGH
Network
|
datalogic
|
av7000_firmware
|
Datalogic AV7000 Linear barcode scanner all versions prior to 4.6.0.0 is vulnerable to authentication bypass, which may allow an attacker to remotely execute arbitrary code.
|
CWE-287
Improper Authentication
|
CVE-2019-13526
|
2024-11-21 13:25 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|