|
214111
|
6.5 |
MEDIUM
Network
|
wpfastestcache
|
wp_fastest_cache
|
The WP Fastest Cache plugin through 0.8.9.0 for WordPress allows remote attackers to delete arbitrary files because wp_postratings_clear_fastest_cache and rm_folder_recursively in wpFastestCache.php …
|
CWE-22
Path Traversal
|
CVE-2019-6726
|
2024-11-21 13:47 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214112
|
7.8 |
HIGH
Local
|
schneider-electric
|
interactive_graphical_scada_system
|
A CWE-787: Out-of-bounds Write vulnerability exists in Interactive Graphical SCADA System (IGSS), Version 14 and prior, which could cause a software crash when data in the mdb database is manipulated.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-6827
|
2024-11-21 13:47 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214113
|
7.8 |
HIGH
Local
|
schneider-electric
|
proclima
|
A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProClima (all versions prior to version 8.0.0) which could allow a malicious DLL file, with the same name of any resident DLLs insi…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-6825
|
2024-11-21 13:47 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214114
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
proclima
|
A CWE-119: Buffer Errors vulnerability exists in ProClima (all versions prior to version 8.0.0) which allows an unauthenticated, remote attacker to execute arbitrary code on the targeted system in al…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-6824
|
2024-11-21 13:47 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214115
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
proclima
|
A CWE-94: Code Injection vulnerability exists in ProClima (all versions prior to version 8.0.0) which could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system …
|
CWE-94
Code Injection
|
CVE-2019-6823
|
2024-11-21 13:47 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214116
|
7.8 |
HIGH
Local
|
schneider-electric
|
zelio_soft_2
|
A Use After Free: CWE-416 vulnerability exists in Zelio Soft 2, V5.2 and earlier, which could cause remote code execution when opening a specially crafted Zelio Soft 2 project file.
|
CWE-416
Use After Free
|
CVE-2019-6822
|
2024-11-21 13:47 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214117
|
10.0 |
CRITICAL
Network
|
avaya
|
control_manager
|
A SQL injection vulnerability in the reporting component of Avaya Control Manager could allow an unauthenticated attacker to execute arbitrary SQL commands and retrieve sensitive data related to othe…
|
CWE-89
SQL Injection
|
CVE-2019-7003
|
2024-11-21 13:47 |
2019-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214118
|
9.8 |
CRITICAL
Network
|
dosbox debian fedoraproject
|
dosbox debian_linux fedora
|
A buffer overflow in DOSBox 0.74-2 allows attackers to execute arbitrary code.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-7165
|
2024-11-21 13:47 |
2019-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214119
|
8.8 |
HIGH
Network
|
nortekcontrol
|
linear_emerge_essential_firmware linear_emerge_elite_firmware
|
Linear eMerge E3-Series devices allow Privilege Escalation.
|
CWE-863
Incorrect Authorization
|
CVE-2019-7258
|
2024-11-21 13:47 |
2019-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214120
|
10.0 |
CRITICAL
Network
|
nortekcontrol
|
linear_emerge_essential_firmware linear_emerge_elite_firmware
|
Linear eMerge E3-Series devices allow Unrestricted File Upload.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-7257
|
2024-11-21 13:47 |
2019-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|