|
222711
|
7.5 |
HIGH
Network
|
cisco
|
roomos telepresence_collaboration_endpoint
|
Multiple vulnerabilities in the video service of Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS Software could allow an unauthenticated, remote attacker to cause a denial of service …
|
CWE-20
Improper Input Validation
|
CVE-2019-15289
|
2024-11-21 13:28 |
2020-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222712
|
7.8 |
HIGH
Local
|
cisco
|
webex_meetings webex_meetings_online webex_meetings_server
|
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected sy…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-15287
|
2024-11-21 13:28 |
2020-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222713
|
7.8 |
HIGH
Local
|
cisco
|
webex_meetings webex_meetings_online webex_meetings_server
|
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected sy…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-15285
|
2024-11-21 13:28 |
2020-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222714
|
7.8 |
HIGH
Local
|
cisco
|
webex_meetings webex_meetings_online webex_meetings_server
|
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected sy…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-15283
|
2024-11-21 13:28 |
2020-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222715
|
8.8 |
HIGH
Network
|
linkplay
|
linkplay
|
An issue was discovered on Zolo Halo devices via the Linkplay firmware. There is a Zolo Halo DNS rebinding attack. The device was found to be vulnerable to DNS rebinding. Combined with one of the man…
|
NVD-CWE-noinfo
|
CVE-2019-15312
|
2024-11-21 13:28 |
2020-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222716
|
9.8 |
CRITICAL
Network
|
linkplay
|
linkplay
|
An issue was discovered on Zolo Halo devices via the Linkplay firmware. There is Zolo Halo LAN remote code execution. The Zolo Halo Bluetooth speaker had a GoAhead web server listening on the port 80…
|
CWE-78
OS Command
|
CVE-2019-15311
|
2024-11-21 13:28 |
2020-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222717
|
9.8 |
CRITICAL
Network
|
linkplay
|
linkplay
|
An issue was discovered on various devices via the Linkplay firmware. There is WAN remote code execution without user interaction. An attacker could retrieve the AWS key from the firmware and obtain …
|
CWE-78 CWE-639
OS Command Authorization Bypass Through User-Controlled Key
|
CVE-2019-15310
|
2024-11-21 13:28 |
2020-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222718
|
7.2 |
HIGH
Network
|
vikisolutions
|
vera
|
The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated user to change the logo on the website. An attacker could use this to upload a malicious .aspx file and gain Remote Code Execution…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-15123
|
2024-11-21 13:28 |
2020-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222719
|
6.1 |
MEDIUM
Network
|
zohocorp
|
manageengine_servicedesk_plus
|
Default installations of Zoho ManageEngine ServiceDesk Plus 10.0 before 10500 are vulnerable to XSS injected by a workstation local administrator. Using the installed program names of the computer as…
|
CWE-79
Cross-site Scripting
|
CVE-2019-15083
|
2024-11-21 13:28 |
2020-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222720
|
7.5 |
HIGH
Network
|
ushareit
|
shareit
|
SHAREit through 4.0.6.177 does not check the full message length from the received packet header (which is used to allocate memory for the next set of data). This could lead to a system denial of ser…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-15234
|
2024-11-21 13:28 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|