|
224471
|
9.8 |
CRITICAL
Network
|
siemens
|
sppa-t3000_ms3000_migration_server
|
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could trigger a Denial-of-Service condition and potentia…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-18289
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224472
|
8.8 |
HIGH
Network
|
siemens
|
sppa-t3000_application_server
|
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with valid authentication at the RMI interface could be able to gain remote co…
|
CWE-787 CWE-434
Out-of-bounds Write Unrestricted Upload of File with Dangerous Type
|
CVE-2019-18288
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224473
|
5.3 |
MEDIUM
Network
|
siemens
|
sppa-t3000_application_server
|
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Application Server exposes directory listings and files containing sensitive informati…
|
CWE-200
Information Exposure
|
CVE-2019-18287
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224474
|
5.3 |
MEDIUM
Network
|
siemens
|
sppa-t3000_application_server
|
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Application Server exposes directory listings and files containing sensitive informati…
|
CWE-200
Information Exposure
|
CVE-2019-18286
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224475
|
5.9 |
MEDIUM
Network
|
siemens
|
sppa-t3000_application_server
|
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The RMI communication between the client and the Application Server is unencrypted. An att…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2019-18285
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224476
|
9.8 |
CRITICAL
Network
|
siemens
|
sppa-t3000_application_server
|
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The AdminService is available without authentication on the Application Server. An attacke…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-18284
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224477
|
9.8 |
CRITICAL
Network
|
siemens
|
sppa-t3000_application_server
|
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The AdminService is available without authentication on the Application Server. An attacke…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-18283
|
2024-11-21 13:32 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224478
|
7.8 |
HIGH
Local
|
reliablecontrols
|
rc-licensemanager
|
Reliable Controls LicenseManager versions 3.4 and prior may allow an authenticated user to insert malicious code into the system root path, which may allow execution of code with elevated privileges …
|
CWE-428
Unquoted Search Path or Element
|
CVE-2019-18245
|
2024-11-21 13:32 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224479
|
7.8 |
HIGH
Local
|
gemalto
|
sentinel_ldk_license_manager
|
SafeNet Sentinel LDK License Manager, all versions prior to 7.101(only Microsoft Windows versions are affected) is vulnerable when configured as a service. This vulnerability may allow an attacker wi…
|
CWE-59
Link Following
|
CVE-2019-18232
|
2024-11-21 13:32 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224480
|
9.8 |
CRITICAL
Network
|
yachtcontrol
|
yachtcontrol
|
Yachtcontrol through 2019-10-06: It's possible to perform direct Operating System commands as an unauthenticated user via the "/pages/systemcall.php?command={COMMAND}" page and parameter, where {COMM…
|
CWE-78
OS Command
|
CVE-2019-17270
|
2024-11-21 13:32 |
2019-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|