|
218961
|
9.8 |
CRITICAL
Network
|
wago
|
pfc_200_firmware pfc_100_firmware
|
An exploitable stack buffer overflow vulnerability exists in the command line utility getcouplerdetails of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware versio…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5075
|
2024-11-21 13:44 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218962
|
5.3 |
MEDIUM
Network
|
wago
|
pfc_200_firmware pfc_100_firmware
|
An exploitable information exposure vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware ver…
|
CWE-200
Information Exposure
|
CVE-2019-5073
|
2024-11-21 13:44 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218963
|
9.8 |
CRITICAL
Network
|
wago
|
pfc_200_firmware pfc_100_firmware
|
An exploitable heap buffer overflow vulnerability exists in the iocheckd service ''I/O-Chec'' functionality of WAGO PFC 200 Firmware version 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware ve…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5081
|
2024-11-21 13:44 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218964
|
9.1 |
CRITICAL
Network
|
wago
|
pfc_200_firmware pfc_100_firmware
|
An exploitable denial-of-service vulnerability exists in the iocheckd service ‘’I/O-Chec’’ functionality of WAGO PFC 200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC 100 Firmware ver…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-5077
|
2024-11-21 13:44 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218965
|
9.8 |
CRITICAL
Network
|
wago
|
pfc_200_firmware pfc_100_firmware
|
An exploitable stack buffer overflow vulnerability exists in the iocheckd service ''I/O-Check'' functionality of WAGO PFC200 Firmware version 03.01.07(13), WAGO PFC200 Firmware version 03.00.39(12) a…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5074
|
2024-11-21 13:44 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218966
|
9.8 |
CRITICAL
Network
|
ibm
|
planning_analytics
|
IBM Planning Analytics 2.0.0 through 2.0.8 is vulnerable to a configuration overwrite that allows an unauthenticated user to login as "admin", and then execute code as root or SYSTEM via TM1 scriptin…
|
CWE-94
Code Injection
|
CVE-2019-4716
|
2024-11-21 13:44 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218967
|
7.4 |
HIGH
Network
|
shadowsocks
|
shadowsocks-libev
|
An exploitable information disclosure vulnerability exists in the network packet handling functionality of Shadowsocks-libev 3.3.2. When utilizing a Stream Cipher, a specially crafted set of network …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-5152
|
2024-11-21 13:44 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218968
|
6.5 |
MEDIUM
Network
|
huawei
|
ar120-s_firmware ar1200_firmware ar1200-s_firmware ar150_firmware ar150-s_firmware ar160_firmware ar200_firmware ar200-s_firmware ar2200_firmware ar2200-s_firmware ar320…
|
There is an information leakage vulnerability on some Huawei products(AR120-S;AR1200;AR1200-S;AR150;AR150-S;AR160;AR200;AR200-S;AR2200;AR2200-S;AR3200;AR3600). An attacker with low permissions can vi…
|
CWE-269
Improper Privilege Management
|
CVE-2019-5259
|
2024-11-21 13:44 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218969
|
3.5 |
LOW
Physics
|
huawei
|
enjoy_8_plus_firmware y9_firmware honor_8x_firmware honor_9_lite_firmware honor_9i_firmware y6_pro_firmware
|
There is an improper authentication vulnerability in Huawei smartphones (Y9, Honor 8X, Honor 9 Lite, Honor 9i, Y6 Pro). The applock does not perform a sufficient authentication in a rare condition. S…
|
CWE-287
Improper Authentication
|
CVE-2019-5252
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218970
|
5.3 |
MEDIUM
Network
|
huawei
|
alp-al00b_firmware alp-tl00b_firmware bla-al00b_firmware bla-tl00b_firmware charlotte-al00a_firmware charlotte-tl00b_firmware columbia-al10b_firmware columbia-al10i_firmware c…
|
Some Huawei smart phones have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to exploit this vulnerability. Successful exploitation ma…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-5235
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|