|
219031
|
9.8 |
CRITICAL
Network
|
exhibitor_project
|
exhibitor
|
An exploitable command injection vulnerability exists in the Config editor of the Exhibitor Web UI versions 1.0.9 to 1.7.1. Arbitrary shell commands surrounded by backticks or $() can be inserted int…
|
CWE-78
OS Command
|
CVE-2019-5029
|
2024-11-21 13:44 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219032
|
7.5 |
HIGH
Network
|
huawei
|
ar120-s_firmware ar1200_firmware ar1200-s_firmware ar150_firmware ar150-s_firmware ar160_firmware ar200_firmware ar200-s_firmware ar2200_firmware ar2200-s_firmware ar320…
|
There is an out of bound read vulnerability in some Huawei products. A remote, unauthenticated attacker may send a corrupt or crafted message to the affected products. Due to a buffer read overflow e…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-5294
|
2024-11-21 13:44 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219033
|
6.5 |
MEDIUM
Network
|
huawei
|
ar120-s_firmware ar1200_firmware ar1200-s_firmware ar150_firmware ar150-s_firmware ar160_firmware ar200_firmware ar200-s_firmware ar2200_firmware ar2200-s_firmware ar320…
|
Some Huawei products have a memory leak vulnerability when handling some messages. A remote attacker with operation privilege could exploit the vulnerability by sending specific messages continuously…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-5293
|
2024-11-21 13:44 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219034
|
7.5 |
HIGH
Network
|
huawei
|
manageone
|
Gauss100 OLTP database in ManageOne with versions of 6.5.0 have an out-of-bounds read vulnerability due to the insufficient checks of the specific packet length. Attackers can construct invalid packe…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-5289
|
2024-11-21 13:44 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219035
|
3.3 |
LOW
Local
|
huawei
|
honor_10_lite_firmware honor_8a_firmware huawei_y6_firmware
|
Honor 10 Lite, Honor 8A, Huawei Y6 mobile phones with the versions before 9.1.0.217(C00E215R3P1), the versions before 9.1.0.205(C00E97R1P9), the versions before 9.1.0.205(C00E97R2P2) have an informat…
|
NVD-CWE-noinfo
|
CVE-2019-5292
|
2024-11-21 13:44 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219036
|
7.8 |
HIGH
Local
|
huawei
|
p30_firmware
|
P30 smart phones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an integer overflow vulnerability due to insufficient check on specific parameters. An attacker tricks the user into…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-5288
|
2024-11-21 13:44 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219037
|
7.8 |
HIGH
Local
|
huawei
|
p30_firmware
|
P30 smart phones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an integer overflow vulnerability due to insufficient check on specific parameters. An attacker tricks the user into…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-5287
|
2024-11-21 13:44 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219038
|
7.8 |
HIGH
Local
|
huawei
|
emily-al00a_firmware emily-tl00b_firmware emily-l09c_firmware emily-l29c_firmware hima-l09ca_firmware hima-l29ca_firmware hima-l29c_firmware
|
Bastet module of some Huawei smartphones with Versions earlier than Emily-AL00A 9.0.0.182(C00E82R1P21), Versions earlier than Emily-TL00B 9.0.0.182(C01E82R1P21), Versions earlier than Emily-L09C 9.0.…
|
CWE-415
Double Free
|
CVE-2019-5282
|
2024-11-21 13:44 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219039
|
5.5 |
MEDIUM
Local
|
huawei
|
emily-l29c_firmware
|
Huawei smart phones Emily-L29C with Versions earlier than 9.1.0.311(C10E2R1P13T8), Versions earlier than 9.1.0.311(C461E2R1P11T8), Versions earlier than 9.1.0.316(C635E2R1P11T8), Versions earlier tha…
|
NVD-CWE-noinfo
|
CVE-2019-5279
|
2024-11-21 13:44 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219040
|
6.2 |
MEDIUM
Physics
|
huawei
|
elle-al00b_firmware
|
Smartphones with software of ELLE-AL00B 9.1.0.109(C00E106R1P21), 9.1.0.113(C00E110R1P21), 9.1.0.125(C00E120R1P21), 9.1.0.135(C00E130R1P21), 9.1.0.153(C00E150R1P21), 9.1.0.155(C00E150R1P21), 9.1.0.162…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2019-5246
|
2024-11-21 13:44 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|