Show filters
275 Total Results
Displaying 151-160 of 275
Sort by:
Attacker Value
Unknown

CVE-2019-20769

Disclosure Date: April 17, 2020 (last updated February 21, 2025)
An issue was discovered in LG PC Suite for LG G3 and earlier (aka LG PC Suite v5.3.27 and earlier). DLL Hijacking can occur via a Trojan horse DLL in the current working directory. The LG ID is LVE-MOT-190001 (November 2019).
Attacker Value
Unknown

CVE-2019-19127

Disclosure Date: March 25, 2020 (last updated February 21, 2025)
An authentication bypass vulnerability is present in the standalone SITS:Vision 9.7.0 component of Tribal SITS in its default configuration, related to unencrypted communications sent by the client each time it is launched. This occurs because the Uniface TLS Driver is not enabled by default. This vulnerability allows attackers to gain access to credentials or execute arbitrary SQL queries on the SITS backend as long as they have access to the client executable or can intercept traffic from a user who does.
Attacker Value
Unknown

CVE-2020-9759

Disclosure Date: March 23, 2020 (last updated February 21, 2025)
A Vulnerability of LG Electronic web OS TV Emulator could allow an attacker to escalate privileges and overwrite certain files. This vulnerability is due to wrong environment setting. An attacker could exploit this vulnerability through crafted configuration files and executable files.
Attacker Value
Unknown

CVE-2020-10057

Disclosure Date: March 04, 2020 (last updated February 21, 2025)
GeniXCMS 1.1.7 is vulnerable to user privilege escalation due to broken access control. This issue exists because of an incomplete fix for CVE-2015-2680, in which "token" is used as a CSRF protection mechanism, but without validation that "token" is associated with an administrative user.
Attacker Value
Unknown

CVE-2019-20000

Disclosure Date: December 26, 2019 (last updated November 27, 2024)
The malware scan function in BullGuard Premium Protection 20.0.371.8 has a TOCTOU issue that enables a symbolic link attack, allowing privileged files to be deleted.
Attacker Value
Unknown

CVE-2011-2935

Disclosure Date: November 12, 2019 (last updated November 27, 2024)
Elgg through 1.7.10 has XSS
Attacker Value
Unknown

CVE-2011-2936

Disclosure Date: November 12, 2019 (last updated November 27, 2024)
Elgg through 1.7.10 has a SQL injection vulnerability
Attacker Value
Unknown

CVE-2019-17050

Disclosure Date: September 30, 2019 (last updated November 27, 2024)
An issue was discovered in the Voyager package through 1.2.7 for Laravel. An attacker with admin privileges and Compass access can read or delete arbitrary files, such as the .env file. NOTE: a software maintainer has suggested a solution in which Compass is switched off in a production environment.
Attacker Value
Unknown

CVE-2018-14839

Disclosure Date: May 14, 2019 (last updated July 17, 2024)
LG N1A1 NAS 3718.510 is affected by: Remote Command Execution. The impact is: execute arbitrary code (remote). The attack vector is: HTTP POST with parameters.
Attacker Value
Unknown

CVE-2019-7404

Disclosure Date: May 13, 2019 (last updated November 27, 2024)
An issue was discovered on LG GAMP-7100, GAPM-7200, and GAPM-8000 routers. An unauthenticated user can read a log file via an HTTP request containing its full pathname, such as http://192.168.0.1/var/gapm7100_${today's_date}.log for reading a filename such as gapm7100_190101.log.
0