|
219511
|
5.9 |
MEDIUM
Network
|
bullguard
|
premium_protection
|
The malware scan function in BullGuard Premium Protection 20.0.371.8 has a TOCTOU issue that enables a symbolic link attack, allowing privileged files to be deleted.
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2019-20000
|
2024-11-21 13:37 |
2019-12-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219512
|
5.3 |
MEDIUM
Network
|
cisco
|
firepower_management_center firepower_threat_defense firepower_services_software_for_asa
|
A vulnerability in the HTTP traffic filtering component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could all…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-1982
|
2024-11-21 13:37 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219513
|
5.8 |
MEDIUM
Network
|
cisco
|
firepower_threat_defense firepower_management_center firepower_services_software_for_asa
|
A vulnerability in the normalization functionality of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an…
|
CWE-20
Improper Input Validation
|
CVE-2019-1981
|
2024-11-21 13:37 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219514
|
5.3 |
MEDIUM
Network
|
cisco
|
firepower_threat_defense firepower_management_center firepower_services_software_for_asa
|
A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow a…
|
CWE-287
Improper Authentication
|
CVE-2019-1980
|
2024-11-21 13:37 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219515
|
5.8 |
MEDIUM
Network
|
cisco
|
firepower_threat_defense firepower_management_center firepower_services_software_for_asa
|
A vulnerability in the stream reassembly component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an…
|
CWE-20
Improper Input Validation
|
CVE-2019-1978
|
2024-11-21 13:37 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219516
|
6.5 |
MEDIUM
Network
|
cisco
|
enterprise_chat_and_email
|
A vulnerability in the HTTP API of Cisco Enterprise Chat and Email could allow an unauthenticated, remote attacker to download files attached through chat sessions. The vulnerability is due to insuff…
|
CWE-287
Improper Authentication
|
CVE-2019-1877
|
2024-11-21 13:37 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219517
|
5.5 |
MEDIUM
Local
|
cisco
|
firepower_extensible_operating_system nx-os
|
A vulnerability in the implementation of a CLI diagnostic command in Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to view sensitive system files that shou…
|
NVD-CWE-Other
|
CVE-2019-1734
|
2024-11-21 13:37 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219518
|
7.5 |
HIGH
Network
|
clamav
|
clamav
|
ClamAV versions prior to 0.101.2 are susceptible to a denial of service (DoS) vulnerability. An out-of-bounds heap read condition may occur when scanning PE files. An example is Windows EXE and DLL f…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-1789
|
2024-11-21 13:37 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219519
|
6.5 |
MEDIUM
Network
|
cisco
|
unified_communications_manager unity_connection unified_communications_manager_im_and_presence_service
|
A vulnerability in the web-based interface of Cisco Unified Communications Manager, Cisco Unified Communications Manager Session Management Edition (SME), Cisco Unified Communications Manager IM and …
|
CWE-352
Origin Validation Error
|
CVE-2019-1915
|
2024-11-21 13:37 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219520
|
6.1 |
MEDIUM
Network
|
cisco
|
hyperflex_hx220c_m5_firmware hyperflex_hx240c_m5_firmware hyperflex_hx220c_af_m5_firmware hyperflex_hx240c_af_m5_firmware hyperflex_hx220c_edge_m5_firmware
|
A vulnerability in the web-based interface of Cisco HyperFlex Software could allow an unauthenticated, remote attacker to execute a cross-frame scripting (XFS) attack on an affected device. This vuln…
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2019-1975
|
2024-11-21 13:37 |
2019-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|