|
213091
|
7.8 |
HIGH
Local
|
schneider-electric
|
msx_configurator
|
A CWE-427:Uncontrolled Search Path Element vulnerability exists in MSX Configurator (Software Version prior to V1.0.8.1), which could cause privilege escalation when injecting a malicious DLL.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-6858
|
2024-11-21 13:47 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213092
|
7.5 |
HIGH
Network
|
schneider-electric
|
modicon_m580_firmware modicon_m340_firmware tsxh5744m_firmware tsxh5724m_firmware tsxp576634m_firmware tsxp57554m_firmware tsxp575634m_firmware tsxp57454m_firmware tsxp574634m…
|
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific versions) …
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2019-6857
|
2024-11-21 13:47 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213093
|
7.5 |
HIGH
Network
|
schneider-electric
|
modicon_m580_firmware modicon_m340_firmware tsxh5744m_firmware tsxh5724m_firmware tsxp576634m_firmware tsxp57554m_firmware tsxp575634m_firmware tsxp57454m_firmware tsxp574634m…
|
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific versions) …
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2019-6856
|
2024-11-21 13:47 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213094
|
7.3 |
HIGH
Network
|
schneider-electric
|
unity_pro ecostruxure_control_expert modicon_m580_bmep584040_firmware modicon_m580_bmeh584040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmeh586040_firmware modicon_m580…
|
Incorrect Authorization vulnerability exists in EcoStruxure Control Expert (all versions prior to 14.1 Hot Fix), Unity Pro (all versions), Modicon M340 (all versions prior to V3.20) , and Modicon M58…
|
CWE-863
Incorrect Authorization
|
CVE-2019-6855
|
2024-11-21 13:47 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213095
|
7.8 |
HIGH
Local
|
schneider-electric
|
clearscada
|
A CWE-287: Improper Authentication vulnerability exists in a folder within EcoStruxure Geo SCADA Expert (ClearSCADA) -with initial releases before 1 January 2019- which could cause a low privilege us…
|
NVD-CWE-Other
|
CVE-2019-6854
|
2024-11-21 13:47 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213096
|
9.1 |
CRITICAL
Network
|
zohocorp
|
manageengine_adselfservice_plus
|
An issue was discovered in Zoho ManageEngine ADSelfService Plus 5.6 Build 5607. An exposed service allows an unauthenticated person to retrieve internal information from the system and modify the pro…
|
NVD-CWE-noinfo
|
CVE-2019-7162
|
2024-11-21 13:47 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213097
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x iphone_os watchos tvos
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A local user may be able to read kernel memory.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7293
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213098
|
6.5 |
MEDIUM
Network
|
apple
|
iphone_os watchos tvos icloud itunes safari
|
A validation issue was addressed with improved logic. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously …
|
CWE-20
Improper Input Validation
|
CVE-2019-7292
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213099
|
10.0 |
CRITICAL
Network
|
apple
|
shortcuts
|
An access issue was addressed with additional sandbox restrictions. This issue is fixed in Shortcuts 2.1.3 for iOS. A sandboxed process may be able to circumvent sandbox restrictions.
|
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
|
CVE-2019-7290
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213100
|
5.5 |
MEDIUM
Local
|
apple
|
shortcuts
|
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in Shortcuts 2.1.3 for iOS. A local user may be able to view senstive user informat…
|
CWE-22
Path Traversal
|
CVE-2019-7289
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|