|
219481
|
4.8 |
MEDIUM
Network
|
netgear
|
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware
|
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.…
|
CWE-79
Cross-site Scripting
|
CVE-2019-20664
|
2024-11-21 13:39 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219482
|
4.3 |
MEDIUM
Adjacent
|
netgear
|
rbr50_firmware rbk50_firmware rbs50_firmware
|
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.
|
CWE-79
Cross-site Scripting
|
CVE-2019-20663
|
2024-11-21 13:39 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219483
|
4.3 |
MEDIUM
Adjacent
|
netgear
|
rbr50_firmware rbk50_firmware rbs50_firmware
|
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.
|
CWE-79
Cross-site Scripting
|
CVE-2019-20662
|
2024-11-21 13:39 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219484
|
7.2 |
HIGH
Network
|
netgear
|
d6100_firmware d3600_firmware d6000_firmware r9000_firmware r8900_firmware r7800_firmware wndr4500_firmware wndr4300_firmware wndr3700_firmware wnr2000_firmware
|
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.60, D3600 before 1.0.0.75, D6000 before 1.0.0.75, R9000 before 1.0.4.26…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-20767
|
2024-11-21 13:39 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219485
|
9.8 |
CRITICAL
Network
|
asus
|
rt-n53_firmware
|
ASUS RT-N53 3.0.0.4.376.3754 devices have a buffer overflow via a long lan_dns1_x or lan_dns2_x parameter to Advanced_LAN_Content.asp.
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-20082
|
2024-11-21 13:38 |
2021-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219486
|
5.3 |
MEDIUM
Network
|
atlassian
|
data_center jira
|
Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to view whitelist rules via a Broken Access Control vulnerability in the /rest/whitelist/<version>/check en…
|
NVD-CWE-Other
|
CVE-2019-20101
|
2024-11-21 13:38 |
2021-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219487
|
9.8 |
CRITICAL
Network
|
sannce
|
smart_hd_wifi_security_camera_ean_2_950004_595317_firmware
|
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. The device by default has a TELNET interface available (which is not advertised or functionally used, but …
|
NVD-CWE-noinfo
|
CVE-2019-20467
|
2024-11-21 13:38 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219488
|
7.8 |
HIGH
Local
|
sannce
|
smart_hd_wifi_security_camera_ean_2_950004_595317_firmware
|
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A local attacker with the "default" account is capable of reading the /etc/passwd file, which contains a w…
|
CWE-916
Use of Password Hash With Insufficient Computational Effort
|
CVE-2019-20466
|
2024-11-21 13:38 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219489
|
7.5 |
HIGH
Network
|
sannce
|
smart_hd_wifi_security_camera_ean_2_950004_595317_firmware
|
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. It is possible (using TELNET without a password) to control the camera's pan/zoom/tilt functionality.
|
NVD-CWE-noinfo
|
CVE-2019-20465
|
2024-11-21 13:38 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219490
|
7.5 |
HIGH
Network
|
sannce
|
smart_hd_wifi_security_camera_ean_2_950004_595317_firmware
|
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. By default, a mobile application is used to stream over UDP. However, the device offers many more services…
|
CWE-287
Improper Authentication
|
CVE-2019-20464
|
2024-11-21 13:38 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|