|
222881
|
6.1 |
MEDIUM
Network
|
northern.tech
|
cfengine
|
Northern.tech CFEngine Enterprise before 3.10.7, 3.11.x and 3.12.x before 3.12.3, 3.13.x, and 3.14.x allows XSS. This is fixed in 3.10.7, 3.12.3, and 3.15.0.
|
CWE-79
Cross-site Scripting
|
CVE-2019-19394
|
2024-11-21 13:34 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222882
|
5.4 |
MEDIUM
Network
|
matrix42
|
workspace_management
|
The Search parameter of the Software Catalogue section of Matrix42 Workspace Management 9.1.2.2765 and below accepts unfiltered parameters that lead to multiple reflected XSS issues.
|
CWE-79
Cross-site Scripting
|
CVE-2019-19390
|
2024-11-21 13:34 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222883
|
5.4 |
MEDIUM
Network
|
matrix42
|
workspace_management
|
Matrix42 Workspace Management 9.1.2.2765 and below allows stored XSS via unfiltered description parameters, as demonstrated by the comment field of a special order for individual software.
|
CWE-79
Cross-site Scripting
|
CVE-2019-19500
|
2024-11-21 13:34 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222884
|
7.5 |
HIGH
Network
|
siemens
|
scalance_xc-200_firmware scalance_xf-200_firmware scalance_xp-200_firmware scalance_xb-200_firmware scalance_x-200irt_firmware scalance_x-200irt_pro_firmware scalance_xr-300wg_firmw…
|
A vulnerability has been identified in SCALANCE X200-4P IRT, SCALANCE X201-3P IRT, SCALANCE X201-3P IRT PRO, SCALANCE X202-2IRT, SCALANCE X202-2P IRT, SCALANCE X202-2P IRT PRO, SCALANCE X204-2, SCALA…
|
-
|
CVE-2019-19301
|
2024-11-21 13:34 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222885
|
7.5 |
HIGH
Network
|
siemens
|
ktk_ate530s_firmware sidoor_atd430w_firmware sidoor_ate530s_coated_firmware sidoor_ate531s_firmware simatic_et_200sp_open_controller_cpu_1515sp_pc_firmware simatic_et_200sp_open_contro…
|
A vulnerability has been identified in Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P, KTK ATE530S, SIDOOR ATD430W, SIDOOR ATE53…
|
-
|
CVE-2019-19300
|
2024-11-21 13:34 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222886
|
7.0 |
HIGH
Local
|
redhat
|
openshift
|
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/apb-base, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4. An attacke…
|
CWE-269
Improper Privilege Management
|
CVE-2019-19348
|
2024-11-21 13:34 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222887
|
7.0 |
HIGH
Local
|
redhat
|
openshift
|
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mariadb-apb, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4 . An att…
|
CWE-269
Improper Privilege Management
|
CVE-2019-19346
|
2024-11-21 13:34 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222888
|
7.5 |
HIGH
Network
|
hitachienergy
|
esoms
|
ABB eSOMS versions 4.0 to 6.0.3 accept connections using medium strength ciphers. If a connection is enabled using such a cipher, an attacker might be able to eavesdrop and/or intercept the connectio…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2019-19097
|
2024-11-21 13:34 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222889
|
6.1 |
MEDIUM
Local
|
hitachienergy
|
esoms
|
The Redis data structure component used in ABB eSOMS versions 6.0 to 6.0.2 stores credentials in clear text. If an attacker has file system access, this can potentially compromise the credentials' co…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-19096
|
2024-11-21 13:34 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222890
|
5.4 |
MEDIUM
Network
|
hitachienergy
|
esoms
|
Lack of adequate input/output validation for ABB eSOMS versions 4.0 to 6.0.2 might allow an attacker to attack such as stored cross-site scripting by storing malicious content in the database.
|
CWE-79
Cross-site Scripting
|
CVE-2019-19095
|
2024-11-21 13:34 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|