|
223271
|
7.1 |
HIGH
Adjacent
|
siemens
|
nucleus_rtos nucleus_readystart nucleus_source_code nucleus_safetycert nucleus_net capital_vstar apogee_modular_equiment_controller_firmware apogee_modular_building_controller_fi…
|
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303), Nucleus NET (All versions), Nucleus ReadyStart V3…
|
-
|
CVE-2019-13939
|
2024-11-21 13:25 |
2020-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223272
|
8.6 |
HIGH
Network
|
siemens
|
scalance_x-200rna_firmware scalance_x204rna_firmware scalance_x-300_firmware scalance_xr-300wg_firmware scalance_xr-300_firmware scalance_x408-2_firmware siplus_net_csm_1277_firmware
|
A vulnerability has been identified in SCALANCE X204RNA (HSR), SCALANCE X204RNA (PRP), SCALANCE X204RNA EEC (HSR), SCALANCE X204RNA EEC (PRP), SCALANCE X204RNA EEC (PRP/HSR), SCALANCE X302-7 EEC (230…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-13933
|
2024-11-21 13:25 |
2020-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223273
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Inappropriate implementation in WebRTC in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13722
|
2024-11-21 13:25 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223274
|
7.5 |
HIGH
Network
|
aveva
|
iec870ip_firmware
|
The IEC870IP driver for AVEVA’s Vijeo Citect and Citect SCADA and Schneider Electric’s Power SCADA Operation has a buffer overflow vulnerability that could result in a server-side crash.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13537
|
2024-11-21 13:25 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223275
|
8.8 |
HIGH
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora backports_sle
|
Use after free in media picker in Google Chrome prior to 79.0.3945.88 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2019-13767
|
2024-11-21 13:25 |
2020-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223276
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Use-after-free in accessibility in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2019-13766
|
2024-11-21 13:25 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223277
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Use-after-free in content delivery manager in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416 CWE-665
Out-of-bounds Write Use After Free Improper Initialization
|
CVE-2019-13765
|
2024-11-21 13:25 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223278
|
8.1 |
HIGH
Network
|
omron
|
plc_cs_firmware plc_cj_firmware
|
In Omron PLC CJ series, all versions, and Omron PLC CS series, all versions, an attacker could monitor traffic between the PLC and the controller and replay requests that could result in the opening …
|
CWE-294
Authentication Bypass by Capture-replay
|
CVE-2019-13533
|
2024-11-21 13:25 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223279
|
4.9 |
MEDIUM
Network
|
siemens
|
sinvr_3_video_server sinvr_3_central_control_server
|
A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0). The user configuration menu in the web interface of the
Control Center Server (CCS) transfers user password…
|
-
|
CVE-2019-13947
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223280
|
5.3 |
MEDIUM
Network
|
siemens
|
en100_ethernet_module_with_firmware_variant_dnp3_tcp en100_ethernet_module_with_firmware_variant_iec_61850 en100_ethernet_module_with_firmware_variant_iec104 en100_ethernet_module_with_firmw…
|
A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.37), EN100 Ethernet module IEC104 variant (All ver…
|
CWE-22
Path Traversal
|
CVE-2019-13944
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|