|
223711
|
9.8 |
CRITICAL
Network
|
omron
|
plc_nj_firmware plc_cs_firmware plc_cj_firmware
|
In Omron PLC CS series, all versions, Omron PLC CJ series, all versions, and Omron PLC NJ series, all versions, the software does not implement sufficient measures to prevent multiple failed authenti…
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2019-18261
|
2024-11-21 13:32 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223712
|
9.8 |
CRITICAL
Network
|
omron
|
plc_cs_firmware plc_cj_firmware
|
In Omron PLC CJ series, all versions and Omron PLC CS series, all versions, an attacker could spoof arbitrary messages or execute commands.
|
CWE-290
Authentication Bypass by Spoofing
|
CVE-2019-18259
|
2024-11-21 13:32 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223713
|
9.8 |
CRITICAL
Network
|
skymee petwant
|
petalk_ai_firmware pf-103_firmware
|
The processCommandUploadLog() function of libcommon.so in Petwant PF-103 firmware 4.22.2.42 and Petalk AI 3.2.2.30 allows remote attackers to execute arbitrary system commands as the root user.
|
CWE-78
OS Command
|
CVE-2019-17364
|
2024-11-21 13:32 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223714
|
6.1 |
MEDIUM
Network
|
expresstech
|
quiz_and_survey_master
|
The quiz-master-next (aka Quiz And Survey Master) plugin before 6.3.5 for WordPress is affected by: Cross Site Scripting (XSS). The impact is: Allows an attacker to execute arbitrary HTML and JavaScr…
|
CWE-79
Cross-site Scripting
|
CVE-2019-17599
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223715
|
7.8 |
HIGH
Local
|
siemens
|
sppa-t3000_ms3000_migration_server
|
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with local access to the MS3000 Server and low privileges could gain root privileges by sending s…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-18297
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223716
|
5.9 |
MEDIUM
Network
|
intesync
|
solismed
|
An issue was discovered in Intesync Solismed 3.3sp1. An flaw in the encryption implementation exists, allowing for all encrypted data stored within the database to be decrypted.
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2019-17428
|
2024-11-21 13:32 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223717
|
8.1 |
HIGH
Network
|
cacti debian opensuse
|
cacti debian_linux leap
|
Cacti through 1.2.7 is affected by multiple instances of lib/functions.php unsafe deserialization of user-controlled data to populate arrays. An authenticated attacker could use this to influence obj…
|
CWE-787 CWE-502
Out-of-bounds Write Deserialization of Untrusted Data
|
CVE-2019-17358
|
2024-11-21 13:32 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223718
|
7.5 |
HIGH
Network
|
siemens
|
sppa-t3000_ms3000_migration_server
|
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could trigger a Denial-of-Service condition by sending s…
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-18298
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223719
|
9.8 |
CRITICAL
Network
|
siemens
|
sppa-t3000_ms3000_migration_server
|
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could trigger a Denial-of-Service condition and potentia…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-18296
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223720
|
9.8 |
CRITICAL
Network
|
siemens
|
sppa-t3000_ms3000_migration_server
|
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could trigger a Denial-of-Service condition and potentia…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-18295
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|