|
224141
|
9.8 |
CRITICAL
Network
|
citrix
|
sd-wan netscaler_sd-wan
|
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow Directory Traversal.
|
CWE-22
Path Traversal
|
CVE-2019-12990
|
2024-11-21 13:23 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224142
|
9.8 |
CRITICAL
Network
|
citrix
|
netscaler_sd-wan sd-wan
|
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow SQL Injection.
|
CWE-89
SQL Injection
|
CVE-2019-12989
|
2024-11-21 13:23 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224143
|
9.8 |
CRITICAL
Network
|
citrix
|
sd-wan netscaler_sd-wan
|
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 4 of 6).
|
CWE-78
OS Command
|
CVE-2019-12988
|
2024-11-21 13:23 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224144
|
9.8 |
CRITICAL
Network
|
citrix
|
sd-wan netscaler_sd-wan
|
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 3 of 6).
|
CWE-78
OS Command
|
CVE-2019-12987
|
2024-11-21 13:23 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224145
|
9.8 |
CRITICAL
Network
|
citrix
|
sd-wan netscaler_sd-wan
|
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 2 of 6).
|
CWE-78
OS Command
|
CVE-2019-12986
|
2024-11-21 13:23 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224146
|
9.8 |
CRITICAL
Network
|
citrix
|
sd-wan netscaler_sd-wan
|
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 1 of 6).
|
CWE-78
OS Command
|
CVE-2019-12985
|
2024-11-21 13:23 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224147
|
6.1 |
MEDIUM
Network
|
ht2labs
|
learning_locker
|
In HT2 Labs Learning Locker 3.15.1, it's possible to inject malicious HTML and JavaScript code into the DOM of the website via the PATH_INFO to the dashboards/ URI.
|
CWE-79
Cross-site Scripting
|
CVE-2019-12834
|
2024-11-21 13:23 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224148
|
6.5 |
MEDIUM
Network
|
digium
|
certified_asterisk asterisk
|
Buffer overflow in res_pjsip_messaging in Digium Asterisk versions 13.21-cert3, 13.27.0, 15.7.2, 16.4.0 and earlier allows remote authenticated users to crash Asterisk by sending a specially crafted …
|
CWE-787
Out-of-bounds Write
|
CVE-2019-12827
|
2024-11-21 13:23 |
2019-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224149
|
7.8 |
HIGH
Local
|
mikogo
|
mikogo
|
The Windows versions of Snapview Mikogo, versions before 5.10.2 are affected by insecure implementations which allow local attackers to escalate privileges.
|
CWE-269
Improper Privilege Management
|
CVE-2019-12731
|
2024-11-21 13:23 |
2019-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224150
|
9.8 |
CRITICAL
Network
|
symantec
|
message_gateway
|
Symantec Messaging Gateway, prior to 10.7.1, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software applicatio…
|
NVD-CWE-noinfo
|
CVE-2019-12751
|
2024-11-21 13:23 |
2019-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|