|
222881
|
3.3 |
LOW
Local
|
lavamobiles
|
flair_z1_firmware
|
The Lava Flair Z1 Android device with a build fingerprint of LAVA/Z1/Z1:8.1.0/O11019/1536680131:user/release-keys contains a pre-installed app with a package name of com.android.lava.powersave app (v…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-15333
|
2024-11-21 13:28 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222882
|
3.3 |
LOW
Local
|
lavamobiles
|
z61_firmware
|
The Lava Z61 Android device with a build fingerprint of LAVA/Z61_2GB/Z61_2GB:8.1.0/O11019/1533889281:user/release-keys contains a pre-installed app with a package name of com.android.lava.powersave a…
|
CWE-269
Improper Privilege Management
|
CVE-2019-15332
|
2024-11-21 13:28 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222883
|
7.8 |
HIGH
Local
|
tecno-mobile
|
camon_iair_2\+_firmware
|
The Tecno Camon iAir 2 Plus Android device with a build fingerprint of TECNO/H622/TECNO-ID3k:8.1.0/O11019/E-180914V83:user/release-keys contains a pre-installed platform app with a package name of co…
|
CWE-78
OS Command
|
CVE-2019-15342
|
2024-11-21 13:28 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222884
|
7.8 |
HIGH
Local
|
tecno-mobile
|
camon_iair_2\+_firmware
|
The Tecno Camon iAir 2 Plus Android device with a build fingerprint of TECNO/H622/TECNO-ID3k:8.1.0/O11019/E-180914V83:user/release-keys contains a pre-installed platform app with a package name of co…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2019-15341
|
2024-11-21 13:28 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222885
|
5.3 |
MEDIUM
Network
|
cisco
|
identity_services_engine_software
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an unauthenticated, remote attacker read tcpdump files generated on an affected devi…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-15282
|
2024-11-21 13:28 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222886
|
4.8 |
MEDIUM
Network
|
cisco
|
identity_services_engine_software
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) att…
|
CWE-79
Cross-site Scripting
|
CVE-2019-15281
|
2024-11-21 13:28 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222887
|
4.8 |
MEDIUM
Network
|
cisco
|
firepower_management_center
|
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) …
|
CWE-79
Cross-site Scripting
|
CVE-2019-15280
|
2024-11-21 13:28 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222888
|
6.7 |
MEDIUM
Local
|
cisco
|
telepresence_collaboration_endpoint
|
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to execute code with root privileges. The vulnerability is due to in…
|
CWE-78
OS Command
|
CVE-2019-15277
|
2024-11-21 13:28 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222889
|
6.7 |
MEDIUM
Local
|
cisco
|
telepresence_collaboration_endpoint
|
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to execute arbitrary commands with root privileges. The vulnerabilit…
|
CWE-78
OS Command
|
CVE-2019-15275
|
2024-11-21 13:28 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222890
|
6.7 |
MEDIUM
Local
|
cisco
|
telepresence_collaboration_endpoint
|
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to perform command injections. The vulnerability is due to insuffici…
|
CWE-20
Improper Input Validation
|
CVE-2019-15274
|
2024-11-21 13:28 |
2019-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|