|
224331
|
8.8 |
HIGH
Network
|
sitevision
|
sitevision
|
SiteVision 4 has Incorrect Access Control.
|
CWE-862
Missing Authorization
|
CVE-2019-12734
|
2024-11-21 13:23 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224332
|
8.8 |
HIGH
Network
|
sitevision
|
sitevision
|
SiteVision 4 allows Remote Code Execution.
|
NVD-CWE-noinfo
|
CVE-2019-12733
|
2024-11-21 13:23 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224333
|
9.8 |
CRITICAL
Network
|
anviz
|
crosschex
|
Anviz CrossChex access control management software 4.3.8.0 and 4.3.12 is vulnerable to a buffer overflow vulnerability.
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-12518
|
2024-11-21 13:23 |
2019-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224334
|
9.8 |
CRITICAL
Network
|
squid-cache canonical fedoraproject opensuse debian
|
squid ubuntu_linux fedora leap debian_linux
|
An issue was discovered in Squid before 4.9. URN response handling in Squid suffers from a heap-based buffer overflow. When receiving data from a remote server in response to an URN request, Squid fa…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-12526
|
2024-11-21 13:23 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224335
|
9.1 |
CRITICAL
Network
|
squid-cache canonical fedoraproject opensuse debian
|
squid ubuntu_linux fedora leap debian_linux
|
An issue was discovered in Squid before 4.9. When handling a URN request, a corresponding HTTP request is made. This HTTP request doesn't go through the access checks that incoming HTTP requests go t…
|
NVD-CWE-noinfo
|
CVE-2019-12523
|
2024-11-21 13:23 |
2019-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224336
|
7.8 |
HIGH
Local
|
symantec
|
endpoint_protection_manager mail_security
|
Symantec Endpoint Protection Manager (SEPM) and Symantec Mail Security for MS Exchange (SMSMSE), prior to versions 14.2 RU2 and 7.5.x respectively, may be susceptible to a privilege escalation vulner…
|
NVD-CWE-noinfo
|
CVE-2019-12759
|
2024-11-21 13:23 |
2019-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224337
|
6.7 |
MEDIUM
Local
|
symantec
|
endpoint_protection
|
Symantec Endpoint Protection, prior to 14.2 RU2, may be susceptible to an unsigned code execution vulnerability, which may allow an individual to execute code without a resident proper digital signat…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-12758
|
2024-11-21 13:23 |
2019-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224338
|
7.8 |
HIGH
Local
|
symantec
|
endpoint_protection
|
Symantec Endpoint Protection (SEP), prior to 14.2 RU2 & 12.1 RU6 MP10 and Symantec Endpoint Protection Small Business Edition (SEP SBE) prior to 12.1 RU6 MP10d (12.1.7510.7002), may be susceptible to…
|
NVD-CWE-noinfo
|
CVE-2019-12757
|
2024-11-21 13:23 |
2019-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224339
|
2.3 |
LOW
Local
|
symantec
|
endpoint_protection
|
Symantec Endpoint Protection (SEP), prior to 14.2 RU2 may be susceptible to a password protection bypass vulnerability whereby the secondary layer of password protection could by bypassed for individ…
|
NVD-CWE-noinfo
|
CVE-2019-12756
|
2024-11-21 13:23 |
2019-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224340
|
7.5 |
HIGH
Network
|
auo
|
sunveillance_monitoring_system_\&_data_recorder
|
AUO SunVeillance Monitoring System before v1.1.9e is vulnerable to mvc_send_mail.aspx (MailAdd parameter) SQL Injection. An Attacker can carry a SQL Injection payload to the server, allowing the atta…
|
CWE-89
SQL Injection
|
CVE-2019-12720
|
2024-11-21 13:23 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|