|
221831
|
7.8 |
HIGH
Local
|
ricoh
|
ps_driver_for_universal_print pcl6_driver_for_universal_print rpcs_driver postscript3_driver pcl6_\(pcl_xl\)_driver pc_fax_generic_driver generic_pcl5_driver rpcs_raster_driver
|
An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attackers local privilege escalation. Affected drivers and versions are: PCL6 Driver fo…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-19363
|
2024-11-21 13:34 |
2020-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221832
|
7.5 |
HIGH
Network
|
huawei
|
dbs3900_tdd_lte_firmware dp300_firmware rp200_firmware te30_firmware te40_firmware te50_firmware te60_firmware
|
There is an integer overflow vulnerability in LDAP server of some Huawei products. Due to insufficient input validation, a remote attacker could exploit this vulnerability by sending malformed packet…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-19414
|
2024-11-21 13:34 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221833
|
7.5 |
HIGH
Network
|
huawei
|
dbs3900_tdd_lte_firmware dp300_firmware rp200_firmware te30_firmware te40_firmware te50_firmware te60_firmware
|
There is an integer overflow vulnerability in LDAP client of some Huawei products. Due to insufficient input validation, a remote attacker could exploit this vulnerability by sending malformed packet…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-19413
|
2024-11-21 13:34 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221834
|
3.7 |
LOW
Network
|
huawei
|
usg9500_firmware
|
USG9500 with versions of V500R001C30SPC100, V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200 have an information leakage vulnerability. Due to improper pr…
|
CWE-665
Improper Initialization
|
CVE-2019-19411
|
2024-11-21 13:34 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221835
|
6.5 |
MEDIUM
Network
|
samba canonical synology opensuse
|
samba ubuntu_linux skynas diskstation_manager directory_server router_manager leap
|
There is a use-after-free issue in all samba 4.9.x versions before 4.9.18, all samba 4.10.x versions before 4.10.12 and all samba 4.11.x versions before 4.11.5, essentially due to a call to realloc()…
|
CWE-416
Use After Free
|
CVE-2019-19344
|
2024-11-21 13:34 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221836
|
9.8 |
CRITICAL
Network
|
fordnn
|
usersexportimport
|
The forDNN.UsersExportImport module before 1.2.0 for DNN (formerly DotNetNuke) allows an unprivileged user to import (create) new users with Administrator privileges, as demonstrated by Roles="Admini…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-19392
|
2024-11-21 13:34 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221837
|
6.5 |
MEDIUM
Local
|
redhat
|
enterprise_linux enterprise_linux_eus
|
It was found that the Red Hat Enterprise Linux 8 kpatch update did not include the complete fix for CVE-2018-12207. A flaw was found in the way Intel CPUs handle inconsistency between, virtual to phy…
|
NVD-CWE-noinfo
|
CVE-2019-19339
|
2024-11-21 13:34 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221838
|
7.5 |
HIGH
Network
|
intelbras
|
wrn_240_firmware
|
Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-19142
|
2024-11-21 13:34 |
2020-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221839
|
6.8 |
MEDIUM
Physics
|
siemens
|
sinamics_perfect_harmony_gh180_firmware
|
A vulnerability has been identified in SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR32..-.....-.... MLFB 6SR4...-.....-.... MLFB 6SR5...-.....-.... With option A30 (HMIs 12 inches or larger) (All ve…
|
CWE-362
Race Condition
|
CVE-2019-19278
|
2024-11-21 13:34 |
2020-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221840
|
7.8 |
HIGH
Local
|
norton
|
power_eraser
|
Norton Power Eraser, prior to 5.3.0.67, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to …
|
NVD-CWE-noinfo
|
CVE-2019-19548
|
2024-11-21 13:34 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|