|
223591
|
6.5 |
MEDIUM
Network
|
cisco
|
sd-wan_firmware
|
A vulnerability in the web interface for Cisco SD-WAN Solution vManage could allow an authenticated, remote attacker to impact the integrity of an affected system by executing arbitrary SQL queries. …
|
CWE-89
SQL Injection
|
CVE-2019-12619
|
2024-11-21 13:23 |
2020-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223592
|
4.3 |
MEDIUM
Network
|
gencat
|
portal_d\'acces_a_la_universitat
|
The Java API in accesuniversitat.gencat.cat 1.7.5 allows remote attackers to get personal information of all registered students via several API endpoints.
|
CWE-706 CWE-863
Use of Incorrectly-Resolved Name or Reference Incorrect Authorization
|
CVE-2019-12837
|
2024-11-21 13:23 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223593
|
9.8 |
CRITICAL
Network
|
open_tftp_server_project
|
open_tftp_server
|
Stack-based overflow vulnerability in the logMess function in Open TFTP Server SP 1.66 and earlier allows remote attackers to perform a denial of service or execute arbitrary code via a long TFTP err…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-12568
|
2024-11-21 13:23 |
2019-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223594
|
9.8 |
CRITICAL
Network
|
open_tftp_server_project
|
open_tftp_server
|
Stack-based overflow vulnerability in the logMess function in Open TFTP Server MT 1.65 and earlier allows remote attackers to perform a denial of service or execute arbitrary code via a long TFTP err…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-12567
|
2024-11-21 13:23 |
2019-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223595
|
8.8 |
HIGH
Network
|
sitevision
|
sitevision
|
SiteVision 4 has Incorrect Access Control.
|
CWE-862
Missing Authorization
|
CVE-2019-12734
|
2024-11-21 13:23 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223596
|
8.8 |
HIGH
Network
|
sitevision
|
sitevision
|
SiteVision 4 allows Remote Code Execution.
|
NVD-CWE-noinfo
|
CVE-2019-12733
|
2024-11-21 13:23 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223597
|
9.8 |
CRITICAL
Network
|
anviz
|
crosschex
|
Anviz CrossChex access control management software 4.3.8.0 and 4.3.12 is vulnerable to a buffer overflow vulnerability.
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-12518
|
2024-11-21 13:23 |
2019-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223598
|
9.8 |
CRITICAL
Network
|
squid-cache canonical fedoraproject opensuse debian
|
squid ubuntu_linux fedora leap debian_linux
|
An issue was discovered in Squid before 4.9. URN response handling in Squid suffers from a heap-based buffer overflow. When receiving data from a remote server in response to an URN request, Squid fa…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-12526
|
2024-11-21 13:23 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223599
|
9.1 |
CRITICAL
Network
|
squid-cache canonical fedoraproject opensuse debian
|
squid ubuntu_linux fedora leap debian_linux
|
An issue was discovered in Squid before 4.9. When handling a URN request, a corresponding HTTP request is made. This HTTP request doesn't go through the access checks that incoming HTTP requests go t…
|
NVD-CWE-noinfo
|
CVE-2019-12523
|
2024-11-21 13:23 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223600
|
7.8 |
HIGH
Local
|
symantec
|
endpoint_protection_manager mail_security
|
Symantec Endpoint Protection Manager (SEPM) and Symantec Mail Security for MS Exchange (SMSMSE), prior to versions 14.2 RU2 and 7.5.x respectively, may be susceptible to a privilege escalation vulner…
|
NVD-CWE-noinfo
|
CVE-2019-12759
|
2024-11-21 13:23 |
2019-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|