|
219671
|
8.1 |
HIGH
Network
|
tenable
|
nessus
|
Nessus 8.5.2 and earlier on Windows platforms were found to contain an issue where certain system files could be overwritten arbitrarily, potentially creating a denial of service condition.
|
NVD-CWE-noinfo
|
CVE-2019-3974
|
2024-11-21 13:42 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219672
|
5.4 |
MEDIUM
Network
|
zte
|
zxhn_f670_firmware
|
All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by cross-site scripting vulnerability (XSS). Due to incomplete input validation, an authorized user can exploit this vulnerabilit…
|
CWE-79
Cross-site Scripting
|
CVE-2019-3418
|
2024-11-21 13:42 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219673
|
8.8 |
HIGH
Network
|
zte
|
zxhn_f670_firmware
|
All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by command injection vulnerability. Due to insufficient parameter validation check, an authorized user can exploit this vulnerabi…
|
CWE-78
OS Command
|
CVE-2019-3417
|
2024-11-21 13:42 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219674
|
7.1 |
HIGH
Network
|
mcafee
|
web_gateway
|
Clickjack vulnerability in Adminstrator web console in McAfee Web Gateway (MWG) 7.8.2.x prior to 7.8.2.12 allows remote attackers to conduct clickjacking attacks via a crafted web page that contains …
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2019-3639
|
2024-11-21 13:42 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219675
|
6.7 |
MEDIUM
Local
|
mcafee
|
file_and_removable_media_protection
|
Privilege Escalation vulnerability in McAfee FRP 5.x prior to 5.1.0.209 allows local users to gain elevated privileges via running McAfee Tray with elevated privileges.
|
NVD-CWE-noinfo
|
CVE-2019-3637
|
2024-11-21 13:42 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219676
|
6.5 |
MEDIUM
Network
|
mcafee
|
web_gateway
|
Exfiltration of Data in McAfee Web Gateway (MWG) 7.8.2.x prior to 7.8.2.12 allows attackers to obtain sensitive data via crafting a complex webpage that will trigger the Web Gateway to block the user…
|
NVD-CWE-noinfo
|
CVE-2019-3635
|
2024-11-21 13:42 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219677
|
7.8 |
HIGH
Local
|
dell
|
digital_delivery
|
Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a Universal Windows Platform application by …
|
CWE-22 CWE-362
Path Traversal Race Condition
|
CVE-2019-3744
|
2024-11-21 13:42 |
2019-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219678
|
7.8 |
HIGH
Local
|
dell
|
digital_delivery
|
Dell/Alienware Digital Delivery versions prior to 3.5.2013 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a named pipe that performs binary deserial…
|
NVD-CWE-noinfo
|
CVE-2019-3742
|
2024-11-21 13:42 |
2019-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219679
|
7.8 |
HIGH
Local
|
pivotal apigee newrelic microsoft appdynamics bluemedora contrastsecurity cyberark datadoghq datastax dynatrace forgerock google ibm pagerduty riverbed signalsciences wavefront tibco solace snyk samba splunk sumologic synopsys yugabyte anynines
|
cloud_foundry_notifications cloud_foundry_log_cache_release cloud_foundry_deployment_concourse_tasks cloud_foundry_deployment cloud_foundry_smoke_test cloud_foundry_routing_release …
|
CF CLI version prior to v6.45.0 (bosh release version 1.16.0) writes the client id and secret to its config file when the user authenticates with --client-credentials flag. A local authenticated mali…
|
CWE-200
Information Exposure
|
CVE-2019-3800
|
2024-11-21 13:42 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219680
|
6.8 |
MEDIUM
Physics
|
dell
|
chengming_3967_firmware chengming_3977_firmware chengming_3980_firmware g3_3579_firmware g3_3779_firmware g5_5587_firmware g5_5590_firmware g7_7588_firmware g7_7590_firmware
|
Select Dell Client Commercial and Consumer platforms contain an Improper Access Vulnerability. An unauthenticated attacker with physical access to the system could potentially bypass intended Secure …
|
NVD-CWE-noinfo
|
CVE-2019-3717
|
2024-11-21 13:42 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|