|
219371
|
6.5 |
MEDIUM
Network
|
samba debian canonical
|
samba debian_linux ubuntu_linux
|
A flaw was found in the way an LDAP search expression could crash the shared LDAP server process of a samba AD DC in samba before version 4.10. An authenticated user, having read permissions on the L…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-3824
|
2024-11-21 13:42 |
2019-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219372
|
9.8 |
CRITICAL
Network
|
nokia
|
i-240w-q_gpon_ont_firmware
|
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via crafted HTTP POST request sent by a remote, unauthenticated attacker to /GponFo…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-3922
|
2024-11-21 13:42 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219373
|
8.8 |
HIGH
Network
|
nokia
|
i-240w-q_gpon_ont_firmware
|
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via crafted HTTP POST request sent by a remote, authenticated attacker to /GponForm…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-3921
|
2024-11-21 13:42 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219374
|
8.8 |
HIGH
Network
|
nokia
|
i-240w-q_gpon_ont_firmware
|
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to authenticated command injection via crafted HTTP request sent by a remote, authenticated attacker to /GponF…
|
CWE-77
Command Injection
|
CVE-2019-3920
|
2024-11-21 13:42 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219375
|
8.8 |
HIGH
Network
|
nokia
|
i-240w-q_gpon_ont_firmware
|
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to command injection via crafted HTTP request sent by a remote, authenticated attacker to /GponForm/usb_restor…
|
CWE-77
Command Injection
|
CVE-2019-3919
|
2024-11-21 13:42 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219376
|
9.8 |
CRITICAL
Network
|
nokia
|
i-240w-q_gpon_ont_firmware
|
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 contains multiple hard coded credentials for the Telnet and SSH interfaces.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-3918
|
2024-11-21 13:42 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219377
|
7.5 |
HIGH
Network
|
nokia
|
i-240w-q_gpon_ont_firmware
|
The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 allows a remote, unauthenticated attacker to enable telnetd on the router via a crafted HTTP request.
|
CWE-425
Direct Request ('Forced Browsing')
|
CVE-2019-3917
|
2024-11-21 13:42 |
2019-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219378
|
7.5 |
HIGH
Network
|
mcafee
|
agent
|
Information Disclosure vulnerability in Remote logging (which is disabled by default) in McAfee Agent (MA) 5.x allows remote unauthenticated users to access sensitive information via remote logging w…
|
NVD-CWE-noinfo
|
CVE-2019-3599
|
2024-11-21 13:42 |
2019-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219379
|
5.3 |
MEDIUM
Network
|
mcafee
|
agent
|
Buffer Access with Incorrect Length Value in McAfee Agent (MA) 5.x allows remote unauthenticated users to potentially cause a denial of service via specifically crafted UDP packets.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-3598
|
2024-11-21 13:42 |
2019-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219380
|
7.8 |
HIGH
Local
|
mcafee
|
endpoint_security
|
Privilege Escalation vulnerability in Microsoft Windows client in McAfee Endpoint Security (ENS) 10.6.1 and earlier allows local users to gain elevated privileges via a specific set of circumstances.
|
NVD-CWE-noinfo
|
CVE-2019-3582
|
2024-11-21 13:42 |
2019-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|