|
218641
|
8.8 |
HIGH
Network
|
siemens
|
sinema_remote_connect_server
|
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0). Due to insufficient checking of user permissions, an attacker may access URLs that require special authoriza…
|
-
|
CVE-2019-6570
|
2024-11-21 13:46 |
2019-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218642
|
9.8 |
CRITICAL
Network
|
siemens
|
spectrum_power_4
|
A vulnerability has been identified in Spectrum Power 4 (with Web Office Portal). An attacker with network access to the web server on port 80/TCP or 443/TCP could execute system commands with admini…
|
NVD-CWE-noinfo
|
CVE-2019-6579
|
2024-11-21 13:46 |
2019-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218643
|
7.5 |
HIGH
Network
|
siemens
|
simatic_cp443-1_opc_ua_firmware simatic_et_200_open_controller_cpu_1515sp_pc2_firmware simatic_ipc_diagmonitor_firmware simatic_net_pc_software_firmware simatic_rf188c_firmware simatic…
|
A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V2.7), SIMATIC HMI Comfort Outdo…
|
-
|
CVE-2019-6575
|
2024-11-21 13:46 |
2019-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218644
|
7.5 |
HIGH
Network
|
siemens
|
cp1604_firmware cp1616_firmware simatic_rf185c_firmware simatic_cp343-1_advanced_firmware simatic_cp443-1_firmware simatic_cp443-1_advanced_firmware simatic_et_200_sp_open_controlle…
|
The webserver of the affected devices contains a vulnerability that may lead to
a denial of service condition. An attacker may cause a denial of service
situation which leads to a restart of the we…
|
-
|
CVE-2019-6568
|
2024-11-21 13:46 |
2019-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218645
|
9.8 |
CRITICAL
Network
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<…
|
Platform dependent weakness. This issue only impacts iSeries platforms. On these platforms, in BIG-IP (LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, FPS, GTM, Link Controller, PEM, WebAccele…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-6609
|
2024-11-21 13:46 |
2019-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218646
|
9.8 |
CRITICAL
Network
|
moxa
|
iks-g6824a_firmware eds-405a_firmware eds-408a_firmware eds-510a_firmware
|
Moxa IKS-G6824A series Versions 4.5 and prior, EDS-405A series Version 3.8 and prior, EDS-408A series Version 3.8 and prior, and EDS-510A series Version 3.8 and prior use plaintext transmission of se…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2019-6526
|
2024-11-21 13:46 |
2019-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218647
|
7.8 |
HIGH
Local
|
gemalto
|
sentinel_ultrapro_client_library
|
The uncontrolled search path element vulnerability in Gemalto Sentinel UltraPro Client Library ux32w.dll Versions 1.3.0, 1.3.1, and 1.3.2 enables an attacker to load and execute a malicious file.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-6534
|
2024-11-21 13:46 |
2019-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218648
|
8.8 |
HIGH
Network
|
aveva
|
wonderware_system_platform
|
AVEVA Wonderware System Platform 2017 Update 2 and prior uses an ArchestrA network user account for authentication of system processes and inter-node communications. A user with low privileges could …
|
CWE-269
Improper Privilege Management
|
CVE-2019-6525
|
2024-11-21 13:46 |
2019-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218649
|
5.5 |
MEDIUM
Local
|
iobit
|
smart_defrag
|
SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user defined bytes and size when IOCTL 0x9C401CC0 is called. This kernel pointer can b…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-6493
|
2024-11-21 13:46 |
2019-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218650
|
8.6 |
HIGH
Network
|
f5
|
big-ip_access_policy_manager
|
On BIG-IP versions 14.0.0-14.0.0.4, 13.0.0-13.1.1.1, 12.1.0-12.1.4, 11.6.0-11.6.3.4, and 11.5.1-11.5.8, the system is vulnerable to a denial of service attack when performing URL classification.
|
NVD-CWE-noinfo
|
CVE-2019-6610
|
2024-11-21 13:46 |
2019-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|