|
223211
|
6.1 |
MEDIUM
Network
|
hp
|
futuresmart_3 futuresmart_4
|
A potential security vulnerability has been identified for certain HP printers and MFPs that would allow redirection page Cross-Site Scripting in a client’s browser by clicking on a third-party malic…
|
CWE-79
Cross-site Scripting
|
CVE-2019-18914
|
2024-11-21 13:33 |
2021-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223212
|
7.8 |
HIGH
Local
|
hp
|
futuresmart_4
|
A potential security vulnerability has been identified for certain HP printers and MFPs with Troy solutions. For affected printers with FutureSmart Firmware bundle version 4.9 or 4.9.0.1 the potentia…
|
NVD-CWE-noinfo
|
CVE-2019-18912
|
2024-11-21 13:33 |
2021-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223213
|
7.8 |
HIGH
Local
|
hp
|
color_laserjet_pro_mfp_m277_b3q11a_firmware color_laserjet_pro_mfp_m277_b3q11v_firmware color_laserjet_pro_mfp_m277_b3q10a_firmware color_laserjet_pro_mfp_m277_b3q10v_firmware color_laser…
|
A potential security vulnerability has been identified for HP LaserJet Solution Software (for certain HP LaserJet Printers) which may lead to unauthorized elevation of privilege on the client.
|
CWE-269
Improper Privilege Management
|
CVE-2019-18916
|
2024-11-21 13:33 |
2021-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223214
|
9.8 |
CRITICAL
Network
|
opensuse
|
cryptctl
|
A Improper Authentication vulnerability in cryptctl of SUSE Linux Enterprise Server for SAP 12-SP5, SUSE Manager Server 4.0 allows attackers with access to the hashed password to use it without havin…
|
-
|
CVE-2019-18906
|
2024-11-21 13:33 |
2021-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223215
|
7.5 |
HIGH
Network
|
xerox
|
altalink_b8045_firmware altalink_b8055_firmware altalink_b8065_firmware altalink_b8075_firmware altalink_b8090_firmware altalink_c8030_firmware altalink_c8035_firmware altalink_c…
|
On Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software releases before 101.00x.099.28200, portions of the drive containing executable c…
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2019-18630
|
2024-11-21 13:33 |
2021-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223216
|
8.1 |
HIGH
Network
|
xerox
|
altalink_b8045_firmware altalink_b8055_firmware altalink_b8065_firmware altalink_b8075_firmware altalink_b8090_firmware altalink_c8030_firmware altalink_c8035_firmware altalink_c…
|
Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software releases before 101.00x.099.28200 allow an attacker to execute an unwanted binary d…
|
NVD-CWE-noinfo
|
CVE-2019-18629
|
2024-11-21 13:33 |
2021-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223217
|
4.9 |
MEDIUM
Network
|
xerox
|
altalink_b8045_firmware altalink_b8055_firmware altalink_b8065_firmware altalink_b8075_firmware altalink_b8090_firmware altalink_c8030_firmware altalink_c8035_firmware altalink_c…
|
Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software releases before 101.00x.099.28200 allow a user with administrative privileges to tu…
|
NVD-CWE-noinfo
|
CVE-2019-18628
|
2024-11-21 13:33 |
2021-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223218
|
3.5 |
LOW
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to information disclosure.
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2019-18947
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223219
|
4.8 |
MEDIUM
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to session fixation.
|
CWE-384
Session Fixation
|
CVE-2019-18946
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223220
|
8.0 |
HIGH
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to privilege escalation vulnerability.
|
NVD-CWE-noinfo
|
CVE-2019-18945
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|