|
223001
|
7.5 |
HIGH
Network
|
trendmicro
|
password_manager
|
Trend Micro Password Manager versions 3.x, 5.0, and 5.1 for Android is affected by a FLAG_MISUSE vulnerability that could be exploited to allow the application to share information to third-party app…
|
NVD-CWE-noinfo
|
CVE-2019-15629
|
2024-11-21 13:29 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223002
|
4.3 |
MEDIUM
Network
|
google kaspersky
|
chrome protection
|
Kaspersky Protection extension for web browser Google Chrome prior to 30.112.62.0 was vulnerable to unauthorized access to its features remotely that could lead to removing other installed extensions.
|
NVD-CWE-noinfo
|
CVE-2019-15684
|
2024-11-21 13:29 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223003
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
GitLab 12.2.3 contains a security vulnerability that allows a user to affect the availability of the service through a Denial of Service attack in Issue Comments.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-15593
|
2024-11-21 13:29 |
2019-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223004
|
6.1 |
MEDIUM
Network
|
nssglobal
|
vmu_software
|
The web interface for NSSLGlobal SatLink VSAT Modem Unit (VMU) devices before 18.1.0 doesn't properly sanitize input for error messages, leading to the ability to inject client-side code.
|
CWE-79
Cross-site Scripting
|
CVE-2019-15652
|
2024-11-21 13:29 |
2019-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223005
|
5.5 |
MEDIUM
Local
|
fortinet
|
forticlient
|
A clear text storage of sensitive information vulnerability in FortiClient for Mac may allow a local attacker to read sensitive information logged in the console window when the user connects to an S…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2019-15704
|
2024-11-21 13:29 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223006
|
7.5 |
HIGH
Network
|
zyxel
|
gs1900-8_firmware gs1900-8hp_firmware gs1900-10hp_firmware gs1900-16_firmware gs1900-24e_firmware gs1900-24_firmware gs1900-24hp_firmware gs1900-48_firmware gs1900-48hp_firmwa…
|
An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. By sending a signal to the CLI process, undocumented functionality is triggered. Specifically, a menu can be trigg…
|
NVD-CWE-noinfo
|
CVE-2019-15804
|
2024-11-21 13:29 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223007
|
9.1 |
CRITICAL
Network
|
zyxel
|
gs1900-8_firmware gs1900-8hp_firmware gs1900-10hp_firmware gs1900-16_firmware gs1900-24e_firmware gs1900-24_firmware gs1900-24hp_firmware gs1900-48_firmware gs1900-48hp_firmwa…
|
An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. Through an undocumented sequence of keypresses, undocumented functionality is triggered. A diagnostics shell is tr…
|
CWE-287
Improper Authentication
|
CVE-2019-15803
|
2024-11-21 13:29 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223008
|
5.9 |
MEDIUM
Network
|
zyxel
|
gs1900-8_firmware gs1900-8hp_firmware gs1900-10hp_firmware gs1900-16_firmware gs1900-24e_firmware gs1900-24_firmware gs1900-24hp_firmware gs1900-48_firmware gs1900-48hp_firmwa…
|
An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. The firmware hashes and encrypts passwords using a hardcoded cryptographic key in sal_util_str_encrypt() in libsal…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-15802
|
2024-11-21 13:29 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223009
|
7.5 |
HIGH
Network
|
zyxel
|
gs1900-8_firmware gs1900-8hp_firmware gs1900-10hp_firmware gs1900-16_firmware gs1900-24e_firmware gs1900-24_firmware gs1900-24hp_firmware gs1900-48_firmware gs1900-48hp_firmwa…
|
An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. The firmware image contains encrypted passwords that are used to authenticate users wishing to access a diagnostic…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-15801
|
2024-11-21 13:29 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223010
|
9.8 |
CRITICAL
Network
|
zyxel
|
gs1900-8_firmware gs1900-8hp_firmware gs1900-10hp_firmware gs1900-16_firmware gs1900-24e_firmware gs1900-24_firmware gs1900-24hp_firmware gs1900-48_firmware gs1900-48hp_firmwa…
|
An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. Due to lack of input validation in the cmd_sys_traceroute_exec(), cmd_sys_arp_clear(), and cmd_sys_ping_exec() fun…
|
CWE-78
OS Command
|
CVE-2019-15800
|
2024-11-21 13:29 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|