|
213531
|
5.5 |
MEDIUM
Local
|
lenovo
|
xclarity_administrator
|
An XML External Entity (XXE) processing vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow information disclosure.
|
CWE-611
XXE
|
CVE-2019-6194
|
2024-11-21 13:46 |
2020-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213532
|
7.5 |
HIGH
Network
|
lenovo
|
xclarity_administrator
|
An information disclosure vulnerability was reported in Lenovo XClarity Administrator (LXCA) versions prior to 2.6.6 that could allow unauthenticated access to some configuration files which may cont…
|
CWE-200
Information Exposure
|
CVE-2019-6193
|
2024-11-21 13:46 |
2020-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213533
|
4.8 |
MEDIUM
Network
|
lenovo
|
xclarity_controller
|
An authorization bypass exists in Lenovo XClarity Controller (XCC) versions prior to 3.08 CDI340V, 3.01 TEI392O, 1.71 PSI328N where a valid authenticated user with lesser privileges may be granted re…
|
CWE-269
Improper Privilege Management
|
CVE-2019-6195
|
2024-11-21 13:46 |
2020-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213534
|
5.5 |
MEDIUM
Local
|
lenovo
|
thinkcentre_e93_firmware thinkcentre_m6500s_firmware thinkcentre_m6500t_firmware thinkcentre_m73p_firmware thinkcentre_m83_firmware thinkcentre_m8500s_firmware thinkcentre_m8500t_fi…
|
Lenovo was notified of a potential denial of service vulnerability, affecting various versions of BIOS for Lenovo Desktop, Desktop - All in One, and ThinkStation, that could cause PCRs to be cleared …
|
CWE-665
Improper Initialization
|
CVE-2019-6190
|
2024-11-21 13:46 |
2020-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213535
|
6.1 |
MEDIUM
Network
|
forcepoint
|
web_security
|
It has been reported that cross-site scripting (XSS) is possible in Forcepoint Web Security, version 8.x, via host header injection. CVSSv3.0: 5.3 (Medium) (/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
|
CWE-79
Cross-site Scripting
|
CVE-2019-6146
|
2024-11-21 13:46 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213536
|
8.1 |
HIGH
Network
|
hp
|
deskjet_3630_f5s43a_firmware deskjet_3630_f5s57a_firmware deskjet_3630_k4t93a_firmware deskjet_3630_k4t99c_firmware deskjet_3630_k4u00b_firmware deskjet_3630_k4u03b_firmware deskjet…
|
HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version SWP1FN1912BR or higher) have a Cross-Site Request Forgery (CSRF) vu…
|
CWE-352
Origin Validation Error
|
CVE-2019-6319
|
2024-11-21 13:46 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213537
|
4.8 |
MEDIUM
Network
|
hp
|
deskjet_2600_4uj28b_firmware deskjet_2600_v1n01a_firmware deskjet_2600_v1n08a_firmware deskjet_2600_y5h60a_firmware deskjet_2600_y5h80a_firmware deskjet_ink_advantage_2600_v1n02a_firmw…
|
A potential security vulnerability has been identified with certain HP InkJet printers. The vulnerability could be exploited to allow cross-site scripting (XSS). Affected products and versions includ…
|
CWE-79
Cross-site Scripting
|
CVE-2019-6332
|
2024-11-21 13:46 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213538
|
3.3 |
LOW
Local
|
hp
|
samsung_mobile_print
|
An issue was found in Samsung Mobile Print (Android) versions prior to 4.08.007. A potential security vulnerability caused by incomplete obfuscation of application configuration information.
|
CWE-200
Information Exposure
|
CVE-2019-6331
|
2024-11-21 13:46 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213539
|
9.8 |
CRITICAL
Network
|
hp
|
access_control
|
A potential security vulnerability has been identified in the software solution HP Access Control versions prior to 16.7. This vulnerability could potentially grant elevation of privilege.
|
NVD-CWE-noinfo
|
CVE-2019-6330
|
2024-11-21 13:46 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213540
|
8.1 |
HIGH
Network
|
hp
|
deskjet_3630_f5s43a_firmware deskjet_3630_f5s57a_firmware deskjet_3630_k4t93a_firmware deskjet_3630_k4t99c_firmware deskjet_3630_k4u00b_firmware deskjet_3630_k4u03b_firmware deskjet…
|
Certain HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version SWP1FN1912BR or higher) have a Cross-Site Request Forgery (…
|
CWE-352
Origin Validation Error
|
CVE-2019-6320
|
2024-11-21 13:46 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|