|
222821
|
6.5 |
MEDIUM
Network
|
siemens
|
xhq
|
A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow attackers to traverse through the file system of the server based by sending specially crafted packets o…
|
-
|
CVE-2019-19287
|
2024-11-21 13:34 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222822
|
7.2 |
HIGH
Network
|
siemens
|
xhq
|
A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow SQL injection attacks if an attacker is able to modify content of particular web pages.
|
-
|
CVE-2019-19286
|
2024-11-21 13:34 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222823
|
5.4 |
MEDIUM
Network
|
siemens
|
xhq
|
A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow injections that could lead to XSS attacks if unsuspecting users are tricked into accessing a malicious l…
|
CWE-79
Cross-site Scripting
|
CVE-2019-19285
|
2024-11-21 13:34 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222824
|
5.4 |
MEDIUM
Network
|
siemens
|
xhq
|
A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow Cross-Site Scripting (XSS) attacks if an attacker is able to modify content of particular web pages, cau…
|
-
|
CVE-2019-19284
|
2024-11-21 13:34 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222825
|
5.3 |
MEDIUM
Network
|
siemens
|
xhq
|
A vulnerability has been identified in XHQ (All Versions < 6.1). The application's web server could expose non-sensitive information about the server's architecture. This could allow an attacker to a…
|
-
|
CVE-2019-19283
|
2024-11-21 13:34 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222826
|
2.4 |
LOW
Physics
|
harman
|
hermes
|
A misconfiguration in the debug interface in Mercedes-Benz HERMES 2.1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
|
NVD-CWE-noinfo
|
CVE-2019-19563
|
2024-11-21 13:34 |
2020-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222827
|
4.6 |
MEDIUM
Physics
|
harman
|
hermes
|
An authentication bypass in the debug interface in Mercedes-Benz HERMES 2.1 allows an attacker with physical access to device hardware to obtain system information.
|
CWE-287
Improper Authentication
|
CVE-2019-19562
|
2024-11-21 13:34 |
2020-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222828
|
2.4 |
LOW
Physics
|
harman
|
hermes
|
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
|
CWE-922
Insecure Storage of Sensitive Information
|
CVE-2019-19561
|
2024-11-21 13:34 |
2020-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222829
|
4.6 |
MEDIUM
Physics
|
harman
|
hermes
|
An authentication bypass in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with physical access to device hardware to obtain system information.
|
CWE-287
Improper Authentication
|
CVE-2019-19560
|
2024-11-21 13:34 |
2020-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222830
|
2.4 |
LOW
Physics
|
harman
|
hermes
|
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
|
CWE-922
Insecure Storage of Sensitive Information
|
CVE-2019-19557
|
2024-11-21 13:34 |
2020-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|