|
222091
|
4.9 |
MEDIUM
Network
|
xerox
|
altalink_b8045_firmware altalink_b8055_firmware altalink_b8065_firmware altalink_b8075_firmware altalink_b8090_firmware altalink_c8030_firmware altalink_c8035_firmware altalink_c…
|
Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software releases before 101.00x.099.28200 allow a user with administrative privileges to tu…
|
NVD-CWE-noinfo
|
CVE-2019-18628
|
2024-11-21 13:33 |
2021-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222092
|
3.5 |
LOW
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to information disclosure.
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2019-18947
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222093
|
4.8 |
MEDIUM
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to session fixation.
|
CWE-384
Session Fixation
|
CVE-2019-18946
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222094
|
8.0 |
HIGH
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to privilege escalation vulnerability.
|
NVD-CWE-noinfo
|
CVE-2019-18945
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222095
|
4.8 |
MEDIUM
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager Application Repository versions prior to 11.7.1 are vulnerable to reflected XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2019-18944
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222096
|
8.0 |
HIGH
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager versions prior to 11.7.1 are vulnerable to XML External Entity Processing (XXE) on certain operations.
|
CWE-611
XXE
|
CVE-2019-18943
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222097
|
4.8 |
MEDIUM
Adjacent
|
microfocus
|
solutions_business_manager
|
Micro Focus Solutions Business Manager versions prior to 11.7.1 are vulnerable to stored XSS. The application reflects previously stored user input without encoding.
|
CWE-79
Cross-site Scripting
|
CVE-2019-18942
|
2024-11-21 13:33 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222098
|
7.8 |
HIGH
Local
|
autotrace_project fedoraproject
|
autotrace fedora
|
A bitmap double free in main.c in autotrace 0.31.1 allows attackers to cause an unspecified impact via a malformed bitmap image. This may occur after the use-after-free in CVE-2017-9182.
|
CWE-415
Double Free
|
CVE-2019-19005
|
2024-11-21 13:33 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222099
|
3.3 |
LOW
Local
|
autotrace_project fedoraproject
|
autotrace fedora
|
A biWidth*biBitCnt integer overflow in input-bmp.c in autotrace 0.31.1 allows attackers to provide an unexpected input value to malloc via a malformed bitmap image.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-19004
|
2024-11-21 13:33 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222100
|
9.8 |
CRITICAL
Network
|
sparkdevnetwork
|
rock_rms
|
Rock RMS versions before 8.10 and versions 9.0 through 9.3 fails to properly validate files uploaded in the application. The only protection mechanism is a file-extension blacklist that can be bypass…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-18643
|
2024-11-21 13:33 |
2021-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|