|
222451
|
6.1 |
MEDIUM
Network
|
salesagility
|
suitecrm
|
SuiteCRM 7.10.x and 7.11.x before 7.10.20 and 7.11.8 has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2019-14752
|
2024-11-21 13:27 |
2019-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222452
|
7.5 |
HIGH
Network
|
mit fedoraproject
|
kerberos_5 fedora
|
A flaw was found in, Fedora versions of krb5 from 1.16.1 to, including 1.17.x, in the way a Kerberos client could crash the KDC by sending one of the RFC 4556 "enctypes". A remote unauthenticated use…
|
-
|
CVE-2019-14844
|
2024-11-21 13:27 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222453
|
8.8 |
HIGH
Network
|
glpi-project
|
glpi
|
GLPI through 9.4.3 is prone to account takeover by abusing the ajax/autocompletion.php autocompletion feature. The lack of correct validation leads to recovery of the token generated via the password…
|
CWE-200
Information Exposure
|
CVE-2019-14666
|
2024-11-21 13:27 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222454
|
9.8 |
CRITICAL
Network
|
gigastone
|
smart_battery_a4_firmware
|
An unsafe authentication interface was discovered in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7.9 . An attacker can bypass authentication without modifying device…
|
NVD-CWE-noinfo
|
CVE-2019-15069
|
2024-11-21 13:27 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222455
|
9.8 |
CRITICAL
Network
|
gigastone
|
smart_battery_a4_firmware
|
A broken access control vulnerability in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7.9 allows an attacker to get/reset administrator’s password without any authent…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-15068
|
2024-11-21 13:27 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222456
|
9.8 |
CRITICAL
Network
|
gigastone
|
smart_battery_a2-25de_firmware
|
An authentication bypass vulnerability discovered in Smart Battery A2-25DE, a multifunctional portable charger, firmware version ?<= SECFS-2013-10-16-13:42:58-629c30ee-60c68be6. An attacker can bypas…
|
NVD-CWE-noinfo
|
CVE-2019-15067
|
2024-11-21 13:27 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222457
|
7.5 |
HIGH
Network
|
sick
|
fx0-gpnt00000_firmware fx0-gent00000_firmware
|
SICK FX0-GPNT00000 and FX0-GENT00000 devices through 3.4.0 have a Buffer Overflow
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-14753
|
2024-11-21 13:27 |
2019-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222458
|
7.8 |
HIGH
Local
|
linux redhat debian fedoraproject netapp canonical opensuse
|
linux_kernel enterprise_linux_server_aus enterprise_linux enterprise_linux_for_real_time enterprise_linux_for_real_time_for_nfv enterprise_linux_server_tus virtualization enterpr…
|
There is heap-based buffer overflow in kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows local users to cause a denial of service(system crash) o…
|
-
|
CVE-2019-14816
|
2024-11-21 13:27 |
2019-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222459
|
7.8 |
HIGH
Local
|
linux redhat debian canonical opensuse netapp
|
linux_kernel enterprise_linux messaging_realtime_grid enterprise_linux_eus enterprise_linux_for_real_time_for_nfv enterprise_linux_server_aus enterprise_linux_for_real_time_tus e…
|
There is heap-based buffer overflow in Linux kernel, all versions up to, excluding 5.3, in the marvell wifi chip driver in Linux kernel, that allows local users to cause a denial of service(system cr…
|
-
|
CVE-2019-14814
|
2024-11-21 13:27 |
2019-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222460
|
6.5 |
MEDIUM
Network
|
prise
|
adas
|
An issue was discovered in PRiSE adAS 1.7.0. A file's format is not properly checked, leading to an unrestricted file upload.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-14916
|
2024-11-21 13:27 |
2019-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|