Show filters
570 Total Results
Displaying 321-330 of 570
Sort by:
Attacker Value
Unknown
CVE-2019-0172
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
A logic issue in Intel Unite(R) Client for Android prior to version 4.0 may allow a remote attacker to potentially enable escalation of privilege via network access.
0
Attacker Value
Unknown
Using a specially crafted fallback art property, scopes can execute arbitrary Q…
Disclosure Date: April 22, 2019 (last updated November 27, 2024)
Versions of Unity8 before 8.11+16.04.20160122-0ubuntu1 file plugins/Dash/CardCreator.js will execute any code found in place of a fallback image supplied by a scope.
0
Attacker Value
Unknown
Unity8 converged application lifecycle allows background applications to use on…
Disclosure Date: April 22, 2019 (last updated November 27, 2024)
In all versions of Unity8 a running but not active application on a large-screen device could talk with Maliit and consume keyboard input.
0
Attacker Value
Unknown
CVE-2019-18263
Disclosure Date: April 18, 2019 (last updated November 27, 2024)
An issue was found in Philips Veradius Unity, Pulsera, and Endura Dual WAN Router, Veradius Unity (718132) with wireless option (shipped between 2016-August 2018), Veradius Unity (718132) with ViewForum option (shipped between 2016-August 2018), Pulsera (718095) and Endura (718075) with wireless option (shipped between 26-June-2017 through 07-August 2018), Pulsera (718095) and Endura (718075) with ViewForum option (shipped between 26-June-2017 through 07-August 2018). The router software uses an encryption scheme that is not strong enough for the level of protection required.
0
Attacker Value
Unknown
CVE-2019-6528
Disclosure Date: March 05, 2019 (last updated November 27, 2024)
PSI GridConnect GmbH Telecontrol Gateway and Smart Telecontrol Unit family, IEC104 Security Proxy versions Telecontrol Gateway 3G Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Telecontrol Gateway XS-MU Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Telecontrol Gateway VM Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Smart Telecontrol Unit TCG Versions 5.0.27, 5.1.19, 6.0.16 and prior, and IEC104 Security Proxy Version 2.2.10 and prior The web application browser interprets input as active HTML, JavaScript, or VBScript, which could allow an attacker to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2018-20146
Disclosure Date: February 21, 2019 (last updated November 27, 2024)
An issue was discovered in Liquidware ProfileUnity before 6.8.0 with Liquidware FlexApp before 6.8.0. A local user could obtain administrator rights, as demonstrated by use of PowerShell.
0
Attacker Value
Unknown
CVE-2019-1685
Disclosure Date: February 21, 2019 (last updated November 27, 2024)
A vulnerability in the Security Assertion Markup Language (SAML) single sign-on (SSO) interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information. Version 12.5 is affected.
0
Attacker Value
Unknown
CVE-2019-0101
Disclosure Date: February 18, 2019 (last updated November 27, 2024)
Authentication bypass in the Intel Unite(R) solution versions 3.2 through 3.3 may allow an unauthenticated user to potentially enable escalation of privilege to the Intel Unite(R) Solution administrative portal via network access.
0
Attacker Value
Unknown
CVE-2019-7401
Disclosure Date: February 08, 2019 (last updated November 27, 2024)
NGINX Unit before 1.7.1 might allow an attacker to cause a heap-based buffer overflow in the router process with a specially crafted request. This may result in a denial of service (router process crash) or possibly have unspecified other impact.
0
Attacker Value
Unknown
CVE-2019-2493
Disclosure Date: January 16, 2019 (last updated November 27, 2024)
Vulnerability in the PeopleSoft Enterprise CS Campus Community component of Oracle PeopleSoft Products (subcomponent: Frameworks). Supported versions that are affected are 9.0 and 9.2. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise CS Campus Community. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise CS Campus Community accessible data. CVSS 3.0 Base Score 3.1 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N).
0