|
219571
|
9.8 |
CRITICAL
Network
|
advantech
|
webaccess
|
Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.1 allows a remote, unauthenticated attacker to execute arbitrary code via a crafted IOCTL 70603 RPC message.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-3975
|
2024-11-21 13:42 |
2019-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219572
|
6.1 |
MEDIUM
Network
|
dell
|
emc_unity_operating_environment emc_unityvsa_operating_environment emc_vnxe3200_firmware
|
Dell EMC Unity Operating Environment versions prior to 5.0.0.0.5.116, Dell EMC UnityVSA versions prior to 5.0.0.0.5.116 and Dell EMC VNXe3200 versions prior to 3.1.10.9946299 contain a reflected cros…
|
CWE-79
Cross-site Scripting
|
CVE-2019-3754
|
2024-11-21 13:42 |
2019-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219573
|
7.4 |
HIGH
Network
|
dell
|
emc_enterprise_copy_data_management
|
Dell EMC Enterprise Copy Data Management (eCDM) versions 1.0, 1.1, 2.0, 2.1, and 3.0 contain a certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vu…
|
CWE-295
Improper Certificate Validation
|
CVE-2019-3751
|
2024-11-21 13:42 |
2019-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219574
|
8.8 |
HIGH
Network
|
atlassian
|
confluence confluence_server
|
There was a local file disclosure vulnerability in Confluence Server and Confluence Data Center via page exporting. An attacker with permission to editing a page is able to exploit this issue to read…
|
CWE-22
Path Traversal
|
CVE-2019-3394
|
2024-11-21 13:42 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219575
|
5.5 |
MEDIUM
Local
|
mcafee
|
data_loss_prevention_endpoint
|
Buffer overflow in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.2.8 allows local user to cause the Windows operating system to "blue screen" via an encrypted message sent to DLPe…
|
CWE-119 CWE-125
Incorrect Access of Indexable Resource ('Range Error') Out-of-bounds Read
|
CVE-2019-3634
|
2024-11-21 13:42 |
2019-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219576
|
5.5 |
MEDIUM
Local
|
mcafee
|
data_loss_prevention_endpoint
|
Buffer overflow in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.2.8 allows local user to cause the Windows operating system to "blue screen" via a carefully constructed message s…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-3633
|
2024-11-21 13:42 |
2019-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219577
|
8.8 |
HIGH
Network
|
open-emr
|
openemr
|
In OpenEMR 5.0.1 and earlier, an authenticated attacker can execute arbitrary commands on the host system via the Scanned Forms interface when creating a new form.
|
CWE-78
OS Command
|
CVE-2019-3968
|
2024-11-21 13:42 |
2019-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219578
|
6.5 |
MEDIUM
Network
|
dell
|
emc_powerconnect_8024_firmware emc_powerconnect_7000_firmware emc_powerconnect_m6348_firmware emc_powerconnect_m6220_firmware emc_powerconnect_m8024_firmware emc_powerconnect_m8024-k_f…
|
Dell EMC PowerConnect 8024, 7000, M6348, M6220, M8024 and M8024-K running firmware versions prior to 5.1.15.2 contain a plain-text password storage vulnerability. TACACS\Radius credentials are stored…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-3753
|
2024-11-21 13:42 |
2019-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219579
|
6.5 |
MEDIUM
Network
|
open-emr
|
openemr
|
In OpenEMR 5.0.1 and earlier, the patient file download interface contains a directory traversal flaw that allows authenticated attackers to download arbitrary files from the host system.
|
CWE-22
Path Traversal
|
CVE-2019-3967
|
2024-11-21 13:42 |
2019-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219580
|
6.1 |
MEDIUM
Network
|
open-emr
|
openemr
|
In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the foreign_id parameter. This could allow an attacker to execute arbitrary code in the context of a user's sess…
|
CWE-79
Cross-site Scripting
|
CVE-2019-3966
|
2024-11-21 13:42 |
2019-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|