|
223051
|
9.6 |
CRITICAL
Network
|
siemens
|
ie\/wsn-pa_link_wirelesshart_gateway_firmware
|
A vulnerability has been identified in IE/WSN-PA Link WirelessHART Gateway (All versions). The integrated configuration web server of the affected device could allow Cross-Site Scripting (XSS) attack…
|
CWE-79
Cross-site Scripting
|
CVE-2019-13923
|
2024-11-21 13:25 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223052
|
2.7 |
LOW
Network
|
siemens
|
sinema_remote_connect_server
|
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0 SP1). An attacker with administrative privileges can obtain the hash of a connected device's password. The sec…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2019-13922
|
2024-11-21 13:25 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223053
|
4.3 |
MEDIUM
Network
|
siemens
|
sinema_remote_connect_server
|
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0 SP1). Some parts of the web application are not protected against Cross Site Request Forgery (CSRF) attacks. T…
|
CWE-352
Origin Validation Error
|
CVE-2019-13920
|
2024-11-21 13:25 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223054
|
4.3 |
MEDIUM
Network
|
siemens
|
sinema_remote_connect_server
|
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0 SP1). Some pages that should only be accessible by a privileged user can also be accessed by a non-privileged …
|
NVD-CWE-Other
|
CVE-2019-13919
|
2024-11-21 13:25 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223055
|
9.8 |
CRITICAL
Network
|
siemens
|
sinema_remote_connect_server
|
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0 SP1). The web interface has no means to prevent password guessing attacks. The vulnerability could be exploite…
|
CWE-521
Weak Password Requirements
|
CVE-2019-13918
|
2024-11-21 13:25 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223056
|
9.8 |
CRITICAL
Network
|
codesys
|
control_rte control_for_beaglebone control_for_empc-a\/imx6 control_for_iot2000 control_for_linux control_for_pfc100 control_runtime_system_toolkit hmi control_for_pfc200 c…
|
CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which could cause a stack overflow and create a denial-of-service condition…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13548
|
2024-11-21 13:25 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223057
|
7.5 |
HIGH
Network
|
codesys
|
control_rte control_for_beaglebone control_for_empc-a\/imx6 control_for_iot2000 control_for_linux control_for_pfc100 control_for_raspberry_pi remote_target_visu_toolkit contro…
|
CODESYS V3 web server, all versions prior to 3.5.14.10, allows an attacker to send specially crafted http or https requests which may allow access to files outside the restricted working directory of…
|
CWE-22
Path Traversal
|
CVE-2019-13532
|
2024-11-21 13:25 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223058
|
7.2 |
HIGH
Network
|
philips
|
intellivue_mp_monitors_mp20-mp90_firmware intellivue_mp_monitors_mp5\/5sc_firmware intellivue_mp_monitors_mp2\/x2_firmware intellivue_mp_monitors_mx800\/700\/600_firmware
|
Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by…
|
CWE-494
Download of Code Without Integrity Check
|
CVE-2019-13534
|
2024-11-21 13:25 |
2019-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223059
|
7.2 |
HIGH
Network
|
philips
|
intellivue_mp_monitors_mp20-mp90_firmware intellivue_mp_monitors_mp5\/5sc_firmware intellivue_mp_monitors_mp2\/x2_firmware intellivue_mp_monitors_mx800\/700\/600_firmware
|
Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-13530
|
2024-11-21 13:25 |
2019-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223060
|
7.8 |
HIGH
Local
|
deltaww
|
tpeditor
|
Delta Electronics TPEditor, Versions 1.94 and prior. Multiple out-of-bounds write vulnerabilities may be exploited by processing specially crafted project files, which may allow remote code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13544
|
2024-11-21 13:25 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|