|
223521
|
6.5 |
MEDIUM
Network
|
themooltipass
|
moolticute
|
Stephan Mooltipass Moolticute through 0.42.1 (and possibly earlier versions) has Incorrect Access Control.
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2019-12967
|
2024-11-21 13:23 |
2019-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223522
|
4.4 |
MEDIUM
Local
|
bitdefender
|
box_firmware
|
An issue was discovered in Bitdefender BOX firmware versions before 2.1.37.37-34 that affects the general reliability of the product. Specially crafted packets sent to the miniupnpd implementation in…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-12611
|
2024-11-21 13:23 |
2019-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223523
|
6.5 |
MEDIUM
Network
|
cisco
|
spa112_firmware spa122_firmware
|
A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attacker to access sensitive information on an affec…
|
CWE-200
Information Exposure
|
CVE-2019-12708
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223524
|
6.1 |
MEDIUM
Network
|
cisco
|
telepresence_video_communication_server
|
A vulnerability in the web-based management interface of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to conduct a c…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12705
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223525
|
6.1 |
MEDIUM
Network
|
cisco
|
sf250-24_firmware sf250-24p_firmware sf250-48_firmware sf250-48hp_firmware sf250-08_firmware sf250-08hp_firmware sf250-10p_firmware sf250-18_firmware sf250-26_firmware sf25…
|
A vulnerability in the web-based interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a …
|
CWE-79
Cross-site Scripting
|
CVE-2019-12718
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223526
|
6.5 |
MEDIUM
Network
|
cisco
|
spa112_firmware spa122_firmware
|
A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attacker to view the contents of arbitrary files on …
|
CWE-22
Path Traversal
|
CVE-2019-12704
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223527
|
5.2 |
MEDIUM
Adjacent
|
cisco
|
spa122_firmware
|
A vulnerability in the web-based management interface of Cisco SPA122 ATA with Router Devices could allow an unauthenticated, adjacent attacker to conduct cross-site scripting attacks. The vulnerabil…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12703
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223528
|
5.4 |
MEDIUM
Network
|
cisco
|
spa112_firmware spa122_firmware
|
A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attacker to conduct cross-site scripting attacks. Th…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12702
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223529
|
5.4 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a use…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12638
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223530
|
5.4 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks agai…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12637
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|