|
210171
|
5.3 |
MEDIUM
Network
|
siemens
|
siveillance_video_client
|
A vulnerability has been identified in Siveillance Video Client (All versions). In environments where Windows NTLM authentication is enabled the affected client application transmits usernames to the…
|
-
|
CVE-2020-15785
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210172
|
5.3 |
MEDIUM
Network
|
siemens
|
spectrum_power_4
|
A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). Insecure storage of sensitive information in the configuration files could allow the retrieval of user names.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2020-15784
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210173
|
6.5 |
MEDIUM
Adjacent
|
philips
|
performancebridge_focal_point patient_information_center_ix intellivue_mp2-mp90_firmware intellivue_mx100_firmware intellivue_mx400_firmware intellivue_mx850_firmware intellivue_x2_…
|
In IntelliVue patient monitors MX100, MX400-550, MX600, MX700, MX750,
MX800, MX850, MP2-MP90, and IntelliVue X2 and X3 Versions N and prior,
the product receives input or data but does not validate…
|
-
|
CVE-2020-16216
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210174
|
5.9 |
MEDIUM
Network
|
bluetooth
|
bluetooth_core_specification
|
Devices supporting Bluetooth before 5.1 may allow man-in-the-middle attacks, aka BLURtooth. Cross Transport Key Derivation in Bluetooth Core Specification v4.2 and v5.0 may permit an unauthenticated …
|
CWE-287
Improper Authentication
|
CVE-2020-15802
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210175
|
6.4 |
MEDIUM
Adjacent
|
philips
|
performancebridge_focal_point patient_information_center_ix intellivue_mp2-mp90_firmware intellivue_mx100_firmware intellivue_mx400_firmware intellivue_mx850_firmware intellivue_x2_…
|
In Patient Information Center iX (PICiX) Versions C.02 and C.03,
PerformanceBridge Focal Point Version A.01, IntelliVue patient monitors
MX100, MX400-MX550, MX750, MX850, and IntelliVue X3 Versions…
|
-
|
CVE-2020-16228
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210176
|
6.5 |
MEDIUM
Adjacent
|
siemens
|
simatic_s7-300_cpu_312_firmware simatic_s7-300_cpu_314_firmware simatic_s7-300_cpu_315-2_dp_firmware simatic_s7-300_cpu_315-2_pn_firmware simatic_s7-300_cpu_317-2_pn_firmware simatic_s…
|
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 CPU family (incl. SIPLUS variants) (All versions), SIMAT…
|
-
|
CVE-2020-15791
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210177
|
8.1 |
HIGH
Network
|
siemens
|
polarion_subversion_webclient
|
A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into a…
|
CWE-352
Origin Validation Error
|
CVE-2020-15789
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210178
|
6.1 |
MEDIUM
Network
|
siemens
|
polarion_subversion_webclient
|
A vulnerability has been identified in Polarion Subversion Webclient (All versions). The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If…
|
CWE-79
Cross-site Scripting
|
CVE-2020-15788
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210179
|
9.8 |
CRITICAL
Network
|
siemens
|
simatic_hmi_basic_panels_2nd_generation_firmware simatic_hmi_comfort_panels_firmware simatic_hmi_mobile_panels_firmware simatic_hmi_united_comfort_panels_firmware
|
A vulnerability has been identified in SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions < V16), SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions <= V16), …
|
-
|
CVE-2020-15786
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210180
|
5.5 |
MEDIUM
Local
|
canonical
|
add-apt-repository
|
Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20.10, and 0.92.37.8ubuntu0.1~esm1, printed a PPA (personal package archive) description to the terminal as-is, which allowed PPA o…
|
NVD-CWE-noinfo
|
CVE-2020-15709
|
2024-11-21 14:06 |
2020-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|