|
224351
|
6.1 |
MEDIUM
Network
|
cisco
|
sf250-24_firmware sf250-24p_firmware sf250-48_firmware sf250-48hp_firmware sf250-08_firmware sf250-08hp_firmware sf250-10p_firmware sf250-18_firmware sf250-26_firmware sf25…
|
A vulnerability in the web-based interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a …
|
CWE-79
Cross-site Scripting
|
CVE-2019-12718
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224352
|
6.5 |
MEDIUM
Network
|
cisco
|
spa112_firmware spa122_firmware
|
A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attacker to view the contents of arbitrary files on …
|
CWE-22
Path Traversal
|
CVE-2019-12704
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224353
|
5.2 |
MEDIUM
Adjacent
|
cisco
|
spa122_firmware
|
A vulnerability in the web-based management interface of Cisco SPA122 ATA with Router Devices could allow an unauthenticated, adjacent attacker to conduct cross-site scripting attacks. The vulnerabil…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12703
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224354
|
5.4 |
MEDIUM
Network
|
cisco
|
spa112_firmware spa122_firmware
|
A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attacker to conduct cross-site scripting attacks. Th…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12702
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224355
|
5.4 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a use…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12638
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224356
|
5.4 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks agai…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12637
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224357
|
8.8 |
HIGH
Network
|
cisco
|
sf250-24_firmware sf250-24p_firmware sf250-48_firmware sf250-48hp_firmware sf250-08_firmware sf250-08hp_firmware sf250-10p_firmware sf250-18_firmware sf250-26_firmware sf25…
|
A vulnerability in the web-based management interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF)…
|
CWE-352
Origin Validation Error
|
CVE-2019-12636
|
2024-11-21 13:23 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224358
|
7.5 |
HIGH
Network
|
gluehome
|
glue_smart_lock_firmware
|
Glue Smart Lock 2.7.8 devices do not properly block guest access in certain situations where the network connection is unavailable.
|
CWE-862
Missing Authorization
|
CVE-2019-12944
|
2024-11-21 13:23 |
2019-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224359
|
9.8 |
CRITICAL
Network
|
autopi
|
wi-fi\/nb_firmware 4g\/lte_firmware
|
AutoPi Wi-Fi/NB and 4G/LTE devices before 2019-10-15 allows an attacker to perform a brute-force attack or dictionary attack to gain access to the WiFi network, which provides root access to the devi…
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2019-12941
|
2024-11-21 13:23 |
2019-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224360
|
9.8 |
CRITICAL
Network
|
activesoft
|
mybuilder
|
MyBuilder viewer before 6.2.2019.814 allow an attacker to execute arbitrary command via specifically crafted configuration file. This can be leveraged for code execution.
|
NVD-CWE-noinfo
|
CVE-2019-12812
|
2024-11-21 13:23 |
2019-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|