|
223691
|
5.4 |
MEDIUM
Network
|
samba opensuse fedoraproject
|
samba leap fedora
|
A flaw was found in Samba, all versions starting samba 4.5.0 before samba 4.9.15, samba 4.10.10, samba 4.11.2, in the way it handles a user password change or a new password for a samba user. The Sam…
|
CWE-521
Weak Password Requirements
|
CVE-2019-14833
|
2024-11-21 13:27 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223692
|
9.8 |
CRITICAL
Network
|
mitsubishielectric inea
|
smartrtu_firmware me-rtu_firmware
|
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. An unauthenticated remote OS Command Injection vulnerability allows an atta…
|
CWE-78
OS Command
|
CVE-2019-14931
|
2024-11-21 13:27 |
2019-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223693
|
9.8 |
CRITICAL
Network
|
mitsubishielectric inea
|
smartrtu_firmware me-rtu_firmware
|
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. Undocumented hard-coded user passwords for root, ineaadmin, mitsadmin, and …
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-14930
|
2024-11-21 13:27 |
2019-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223694
|
9.8 |
CRITICAL
Network
|
mitsubishielectric inea
|
smartrtu_firmware me-rtu_firmware
|
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. Stored cleartext passwords could allow an unauthenticated attacker to obtai…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-14929
|
2024-11-21 13:27 |
2019-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223695
|
5.4 |
MEDIUM
Network
|
mitsubishielectric inea
|
smartrtu_firmware me-rtu_firmware
|
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. A number of stored cross-site script (XSS) vulnerabilities allow an attacke…
|
CWE-79
Cross-site Scripting
|
CVE-2019-14928
|
2024-11-21 13:27 |
2019-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223696
|
7.5 |
HIGH
Network
|
mitsubishielectric inea
|
smartrtu_firmware me-rtu_firmware
|
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. An unauthenticated remote configuration download vulnerability allows an at…
|
CWE-306 CWE-425
Missing Authentication for Critical Function Direct Request ('Forced Browsing')
|
CVE-2019-14927
|
2024-11-21 13:27 |
2019-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223697
|
6.5 |
MEDIUM
Network
|
mitsubishielectric inea
|
smartrtu_firmware me-rtu_firmware
|
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. A world-readable /usr/smartrtu/init/settings.xml configuration file on the …
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-14925
|
2024-11-21 13:27 |
2019-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223698
|
9.8 |
CRITICAL
Network
|
mitsubishielectric inea
|
smartrtu_firmware me-rtu_firmware
|
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. Hard-coded SSH keys allow an attacker to gain unauthorised access or disclo…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-14926
|
2024-11-21 13:27 |
2019-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223699
|
9.8 |
CRITICAL
Network
|
hinet
|
gpon_firmware
|
An “invalid command” handler issue was discovered in HiNet GPON firmware < I040GWR190731. It allows an attacker to execute arbitrary command through port 6998. CVSS 3.0 Base score 10.0. CVSS vector: …
|
NVD-CWE-noinfo
|
CVE-2019-15066
|
2024-11-21 13:27 |
2019-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223700
|
7.5 |
HIGH
Network
|
hinet
|
gpon_firmware
|
A service which is hosted on port 6998 in HiNet GPON firmware < I040GWR190731 allows an attacker to execute a specific command to read arbitrary files. CVSS 3.0 Base score 9.3. CVSS vector: (CVSS:3.0…
|
NVD-CWE-noinfo
|
CVE-2019-15065
|
2024-11-21 13:27 |
2019-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|