|
225361
|
5.4 |
MEDIUM
Network
|
lenovo
|
xclarity_administrator
|
An internal product security audit of Lenovo XClarity Administrator (LXCA) discovered a Document Object Model (DOM) based cross-site scripting vulnerability in versions prior to 2.6.6 that could allo…
|
CWE-79
Cross-site Scripting
|
CVE-2019-19757
|
2024-11-21 13:35 |
2020-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225362
|
7.0 |
HIGH
Local
|
linuxfoundation debian opensuse canonical redhat
|
runc debian_linux leap ubuntu_linux openshift_container_platform
|
runc through 1.0.0-rc9 has Incorrect Access Control leading to Escalation of Privileges, related to libcontainer/rootfs_linux.go. To exploit this, an attacker must be able to spawn two containers wit…
|
CWE-706
Use of Incorrectly-Resolved Name or Reference
|
CVE-2019-19921
|
2024-11-21 13:35 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225363
|
4.3 |
MEDIUM
Network
|
maxum
|
rumpus_ftp
|
A CSRF vulnerability exists in the File Types component of Web File Manager in Rumpus FTP 8.2.9.1 that allows an attacker to add or delete the file types that are used on the server via RAPR/TriggerS…
|
CWE-352
Origin Validation Error
|
CVE-2019-19668
|
2024-11-21 13:35 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225364
|
6.1 |
MEDIUM
Network
|
maxum
|
rumpus_ftp
|
A HTTP Response Splitting vulnerability was identified in the Web Settings Component of Web File Manager in Rumpus FTP Server 8.2.9.1. A successful exploit can result in stored XSS, website defacemen…
|
NVD-CWE-Other
|
CVE-2019-19670
|
2024-11-21 13:35 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225365
|
6.5 |
MEDIUM
Network
|
maxum
|
rumpus_ftp
|
A CSRF vulnerability exists in the Upload Center Forms Component of Web File Manager in Rumpus FTP 8.2.9.1. This could allow an attacker to delete, create, and update the upload forms via RAPR/Trigge…
|
CWE-352
Origin Validation Error
|
CVE-2019-19669
|
2024-11-21 13:35 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225366
|
5.4 |
MEDIUM
Network
|
maxum
|
rumpus_ftp
|
A CSRF vulnerability exists in the Block Clients component of Web File Manager in Rumpus FTP 8.2.9.1 that could allow an attacker to whitelist or block any IP address via RAPR/BlockedClients.html.
|
CWE-352
Origin Validation Error
|
CVE-2019-19667
|
2024-11-21 13:35 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225367
|
4.3 |
MEDIUM
Network
|
maxum
|
rumpus_ftp
|
A CSRF vulnerability exists in the Event Notices Settings of Web File Manager in Rumpus FTP 8.2.9.1. An attacker can create/update event notices via RAPR/EventNoticesSet.html.
|
CWE-352
Origin Validation Error
|
CVE-2019-19666
|
2024-11-21 13:35 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225368
|
6.1 |
MEDIUM
Network
|
maxum
|
rumpus_ftp
|
A Cookie based reflected XSS exists in the Web File Manager of Rumpus FTP Server 8.2.9.1, related to RumpusLoginUserName and snp.
|
CWE-79
Cross-site Scripting
|
CVE-2019-19661
|
2024-11-21 13:35 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225369
|
7.1 |
HIGH
Network
|
maxum
|
rumpus_ftp
|
A CSRF vulnerability exists in the Web Settings of Web File Manager in Rumpus FTP 8.2.9.1. Exploitation of this vulnerability can result in manipulation of Server Web settings at RAPR/WebSettingsGene…
|
CWE-352
Origin Validation Error
|
CVE-2019-19664
|
2024-11-21 13:35 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225370
|
6.5 |
MEDIUM
Network
|
maxum
|
rumpus_ftp
|
A CSRF vulnerability exists in the Web File Manager's Create/Delete Accounts functionality of Rumpus FTP Server 8.2.9.1. By exploiting it, an attacker can Create and Delete accounts via RAPR/TriggerS…
|
CWE-352
Origin Validation Error
|
CVE-2019-19662
|
2024-11-21 13:35 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|