|
212151
|
6.1 |
MEDIUM
Network
|
adobe
|
experience_manager
|
Adobe Experience Manager version 6.4 and ealier have a Reflected Cross-site Scripting vulnerability. Successful exploitation could lead to Sensitive Information disclosure in the context of the curre…
|
CWE-79
Cross-site Scripting
|
CVE-2019-7955
|
2024-11-21 13:49 |
2019-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212152
|
6.1 |
MEDIUM
Network
|
adobe
|
experience_manager
|
Adobe Experience Manager version 6.4 and ealier have a Stored Cross-site Scripting vulnerability. Successful exploitation could lead to Sensitive Information disclosure in the context of the current …
|
CWE-79
Cross-site Scripting
|
CVE-2019-7954
|
2024-11-21 13:49 |
2019-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212153
|
6.5 |
MEDIUM
Network
|
adobe
|
experience_manager
|
Adobe Experience Manager version 6.4 and ealier have a Cross-Site Request Forgery vulnerability. Successful exploitation could lead to Sensitive Information disclosure in the context of the current u…
|
CWE-352
Origin Validation Error
|
CVE-2019-7953
|
2024-11-21 13:49 |
2019-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212154
|
4.3 |
MEDIUM
Network
|
kaspersky
|
total_security anti-virus internet_security free_anti-virus small_office_security
|
Information Disclosure in Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total Security versions up to 2019 could potentially disclose unique Product ID by forcing victim to visit a spe…
|
CWE-200
Information Exposure
|
CVE-2019-8286
|
2024-11-21 13:49 |
2019-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212155
|
9.8 |
CRITICAL
Network
|
checkpoint
|
jumbo_hotfix_for_endpoint_security_server endpoint_security_server_package smartconsole_for_endpoint_security_server endpoint_security_clients remote_access_clients capsule_docs_standa…
|
Check Point Endpoint Security Client for Windows, with the VPN blade, before version E80.83, starts a process without using quotes in the path. This can cause loading of a previously placed executabl…
|
CWE-428
Unquoted Search Path or Element
|
CVE-2019-8459
|
2024-11-21 13:49 |
2019-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212156
|
4.4 |
MEDIUM
Network
|
checkpoint
|
endpoint_security_clients remote_access_clients capsule_docs
|
Check Point Endpoint Security Client for Windows, with Anti-Malware blade installed, before version E81.00, tries to load a non-existent DLL during an update initiated by the UI. An attacker with adm…
|
NVD-CWE-noinfo
|
CVE-2019-8458
|
2024-11-21 13:49 |
2019-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212157
|
7.5 |
HIGH
Network
|
rubygems debian opensuse
|
rubygems debian_linux leap
|
An issue was discovered in RubyGems 2.6 and later through 3.0.2. Gem::GemcutterUtilities#with_response may output the API response to stdout as it is. Therefore, if the API side modifies the response…
|
CWE-74
Injection
|
CVE-2019-8323
|
2024-11-21 13:49 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212158
|
7.5 |
HIGH
Network
|
rubygems debian opensuse
|
rubygems debian_linux leap
|
An issue was discovered in RubyGems 2.6 and later through 3.0.2. The gem owner command outputs the contents of the API response directly to stdout. Therefore, if the response is crafted, escape seque…
|
CWE-74
Injection
|
CVE-2019-8322
|
2024-11-21 13:49 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212159
|
7.5 |
HIGH
Network
|
rubygems debian opensuse
|
rubygems debian_linux leap
|
An issue was discovered in RubyGems 2.6 and later through 3.0.2. Since Gem::UserInteraction#verbose calls say without escaping, escape sequence injection is possible.
|
CWE-88
Argument Injection
|
CVE-2019-8321
|
2024-11-21 13:49 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212160
|
7.5 |
HIGH
Network
|
rubygems opensuse debian
|
rubygems leap debian_linux
|
An issue was discovered in RubyGems 2.6 and later through 3.0.2. Since Gem::CommandManager#run calls alert_error without escaping, escape sequence injection is possible. (There are many ways to cause…
|
CWE-74
Injection
|
CVE-2019-8325
|
2024-11-21 13:49 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|