|
222191
|
5.4 |
MEDIUM
Network
|
dell
|
rsa_identity_governance_and_lifecycle
|
The RSA Identity Governance and Lifecycle and RSA Via Lifecycle and Governance products prior to 7.1.1 P03 contain a reflected cross-site scripting vulnerability in the My Access Live module [MAL]. A…
|
CWE-79
Cross-site Scripting
|
CVE-2019-18571
|
2024-11-21 13:33 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222192
|
9.8 |
CRITICAL
Network
|
divisait
|
dv2eemvc sparkspace proxia_suite proxia_phr
|
Divisa Proxia Suite 9 < 9.12.16, 9.11.19, 9.10.26, 9.9.8, 9.8.43 and 9.7.10, 10.0 < 10.0.32, and 10.1 < 10.1.5, SparkSpace 1.0 < 1.0.30, 1.1 < 1.1.2, and 1.2 < 1.2.4, and Proxia PHR 1.0 < 1.0.30 and …
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-18956
|
2024-11-21 13:33 |
2019-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222193
|
7.8 |
HIGH
Local
|
acer
|
quick_access
|
In the Quick Access Service (QAAdminAgent.exe) in Acer Quick Access V2.01.3000 through 2.01.3027 and V3.00.3000 through V3.00.3008, a REGULAR user can load an arbitrary unsigned DLL into the signed s…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-18670
|
2024-11-21 13:33 |
2019-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222194
|
5.9 |
MEDIUM
Network
|
barco
|
clickshare_button_r9861500d01_firmware
|
Barco ClickShare Button R9861500D01 devices before 1.9.0 allow Information exposure (issue 2 of 2).. The encryption key of the media content which is shared between a ClickShare Button and a ClickSha…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2019-18833
|
2024-11-21 13:33 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222195
|
8.1 |
HIGH
Network
|
barco
|
clickshare_button_r9861500d01_firmware
|
Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements encryption at rest which uses a one-time programmable (OTP) AES encryp…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2019-18832
|
2024-11-21 13:33 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222196
|
7.8 |
HIGH
Local
|
barco
|
clickshare_button_r9861500d01_firmware
|
Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The Barco signed 'Clickshare_For_Windows.exe' binary on the ClickShare Button (R9861500D01) load…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2019-18829
|
2024-11-21 13:33 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222197
|
7.5 |
HIGH
Network
|
barco
|
clickshare_cs-100_huddle_firmware clickshare_cse-200_firmware
|
Barco ClickShare Huddle CS-100 devices before 1.9.0 and CSE-200 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Base Unit implements encryption at rest using encryption key…
|
NVD-CWE-Other
|
CVE-2019-18825
|
2024-11-21 13:33 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222198
|
6.6 |
MEDIUM
Physics
|
barco
|
clickshare_button_r9861500d01_firmware
|
Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The ClickShare Button does not verify the integrity of the mutable content on the UBIFS partitio…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2019-18824
|
2024-11-21 13:33 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222199
|
6.8 |
MEDIUM
Physics
|
dell
|
xps_7390_firmware
|
Settings for the Dell XPS 13 2-in-1 (7390) BIOS versions prior to 1.1.3 contain a configuration vulnerability. The BIOS configuration for the "Enable Thunderbolt (and PCIe behind TBT) pre-boot module…
|
NVD-CWE-Other
|
CVE-2019-18579
|
2024-11-21 13:33 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222200
|
5.3 |
MEDIUM
Network
|
barco
|
clickshare_cs-100_firmware clickshare_cse-200_firmware clickshare_cse-200\+_firmware clickshare_cse-800_firmware
|
Barco ClickShare Button R9861500D01 devices before 1.9.0 allow Information Exposure. The encrypted ClickShare Button firmware contains the private key of a test device-certificate.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-18831
|
2024-11-21 13:33 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|