|
223631
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Use-after-free in content delivery manager in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416 CWE-665
Out-of-bounds Write Use After Free Improper Initialization
|
CVE-2019-13765
|
2024-11-21 13:25 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223632
|
8.1 |
HIGH
Network
|
omron
|
plc_cs_firmware plc_cj_firmware
|
In Omron PLC CJ series, all versions, and Omron PLC CS series, all versions, an attacker could monitor traffic between the PLC and the controller and replay requests that could result in the opening …
|
CWE-294
Authentication Bypass by Capture-replay
|
CVE-2019-13533
|
2024-11-21 13:25 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223633
|
4.9 |
MEDIUM
Network
|
siemens
|
sinvr_3_video_server sinvr_3_central_control_server
|
A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0). The user configuration menu in the web interface of the
Control Center Server (CCS) transfers user password…
|
-
|
CVE-2019-13947
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223634
|
5.3 |
MEDIUM
Network
|
siemens
|
en100_ethernet_module_with_firmware_variant_dnp3_tcp en100_ethernet_module_with_firmware_variant_iec_61850 en100_ethernet_module_with_firmware_variant_iec104 en100_ethernet_module_with_firmw…
|
A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.37), EN100 Ethernet module IEC104 variant (All ver…
|
CWE-22
Path Traversal
|
CVE-2019-13944
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223635
|
6.1 |
MEDIUM
Network
|
siemens
|
en100_ethernet_module_with_firmware_variant_dnp3_tcp en100_ethernet_module_with_firmware_variant_iec_61850 en100_ethernet_module_with_firmware_variant_iec104 en100_ethernet_module_with_firmw…
|
A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.37), EN100 Ethernet module IEC104 variant (All ver…
|
CWE-79
Cross-site Scripting
|
CVE-2019-13943
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223636
|
7.5 |
HIGH
Network
|
siemens
|
en100_ethernet_module_with_firmware_variant_dnp3_tcp en100_ethernet_module_with_firmware_variant_iec_61850 en100_ethernet_module_with_firmware_variant_iec104 en100_ethernet_module_with_firmw…
|
A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.37), EN100 Ethernet module IEC104 variant (All ver…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-13942
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223637
|
9.1 |
CRITICAL
Network
|
siemens
|
xhq
|
A vulnerability has been identified in XHQ (All versions < V6.0.0.2). The web application requests could be manipulated, causing the the application to behave in unexpected ways for legitimate users.…
|
CWE-20
Improper Input Validation
|
CVE-2019-13932
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223638
|
5.4 |
MEDIUM
Network
|
siemens
|
xhq
|
A vulnerability has been identified in XHQ (All versions < V6.0.0.2). The web interface could allow for an an attacker to craft the input in a form that is not expected, causing the application to be…
|
CWE-79
Cross-site Scripting
|
CVE-2019-13931
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223639
|
8.1 |
HIGH
Network
|
siemens
|
xhq
|
A vulnerability has been identified in XHQ (All versions < V6.0.0.2). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a mali…
|
CWE-352
Origin Validation Error
|
CVE-2019-13930
|
2024-11-21 13:25 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223640
|
6.8 |
MEDIUM
Physics
|
siemens
|
simatic_s7-1200_firmware s7-200_smart_firmware simatic_s7-200_smart_cpu_st20_firmware simatic_s7-200_smart_cpu_st30_firmware simatic_s7-200_smart_cpu_st40_firmware simatic_s7-200_smart…
|
A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-1200 CPU family < V4.x (incl. SIPLUS variants) (All versions), SIMATIC S7-1200 CPU…
|
NVD-CWE-Other
|
CVE-2019-13945
|
2024-11-21 13:25 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|