|
213261
|
7.5 |
HIGH
Network
|
schneider-electric
|
modicon_m580_firmware modicon_m340_firmware tsxh5744m_firmware tsxh5724m_firmware tsxp576634m_firmware tsxp57554m_firmware tsxp575634m_firmware tsxp57454m_firmware tsxp574634m…
|
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Modicon Quantum, Modicon Premium (see security notification for specific versions) …
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2019-6856
|
2024-11-21 13:47 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213262
|
7.3 |
HIGH
Network
|
schneider-electric
|
unity_pro ecostruxure_control_expert modicon_m580_bmep584040_firmware modicon_m580_bmeh584040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmeh586040_firmware modicon_m580…
|
Incorrect Authorization vulnerability exists in EcoStruxure Control Expert (all versions prior to 14.1 Hot Fix), Unity Pro (all versions), Modicon M340 (all versions prior to V3.20) , and Modicon M58…
|
CWE-863
Incorrect Authorization
|
CVE-2019-6855
|
2024-11-21 13:47 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213263
|
7.8 |
HIGH
Local
|
schneider-electric
|
clearscada
|
A CWE-287: Improper Authentication vulnerability exists in a folder within EcoStruxure Geo SCADA Expert (ClearSCADA) -with initial releases before 1 January 2019- which could cause a low privilege us…
|
NVD-CWE-Other
|
CVE-2019-6854
|
2024-11-21 13:47 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213264
|
9.1 |
CRITICAL
Network
|
zohocorp
|
manageengine_adselfservice_plus
|
An issue was discovered in Zoho ManageEngine ADSelfService Plus 5.6 Build 5607. An exposed service allows an unauthenticated person to retrieve internal information from the system and modify the pro…
|
NVD-CWE-noinfo
|
CVE-2019-7162
|
2024-11-21 13:47 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213265
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x iphone_os watchos tvos
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A local user may be able to read kernel memory.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7293
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213266
|
6.5 |
MEDIUM
Network
|
apple
|
iphone_os watchos tvos icloud itunes safari
|
A validation issue was addressed with improved logic. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously …
|
CWE-20
Improper Input Validation
|
CVE-2019-7292
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213267
|
10.0 |
CRITICAL
Network
|
apple
|
shortcuts
|
An access issue was addressed with additional sandbox restrictions. This issue is fixed in Shortcuts 2.1.3 for iOS. A sandboxed process may be able to circumvent sandbox restrictions.
|
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
|
CVE-2019-7290
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213268
|
5.5 |
MEDIUM
Local
|
apple
|
shortcuts
|
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in Shortcuts 2.1.3 for iOS. A local user may be able to view senstive user informat…
|
CWE-22
Path Traversal
|
CVE-2019-7289
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213269
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x iphone_os
|
A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.1.4, macOS Mojave 10.14.3 Supplemental Update. An application may be able to gain elevated privil…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7286
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213270
|
8.8 |
HIGH
Network
|
apple
|
iphone_os tvos icloud itunes safari
|
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing malicious…
|
CWE-416
Use After Free
|
CVE-2019-7285
|
2024-11-21 13:47 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|