Show filters
70 Total Results
Displaying 51-60 of 70
Sort by:
Attacker Value
Unknown

CVE-2019-8458

Disclosure Date: June 20, 2019 (last updated November 27, 2024)
Check Point Endpoint Security Client for Windows, with Anti-Malware blade installed, before version E81.00, tries to load a non-existent DLL during an update initiated by the UI. An attacker with administrator privileges can leverage this to gain code execution within a Check Point Software Technologies signed binary, where under certain circumstances may cause the client to terminate.
Attacker Value
Unknown

CVE-2019-8459

Disclosure Date: June 20, 2019 (last updated November 27, 2024)
Check Point Endpoint Security Client for Windows, with the VPN blade, before version E80.83, starts a process without using quotes in the path. This can cause loading of a previously placed executable with a name similar to the parts of the path, instead of the intended one.
0
Attacker Value
Unknown

CVE-2019-19967

Disclosure Date: February 28, 2019 (last updated November 27, 2024)
The Administration page on Connect Box EuroDOCSIS 3.0 Voice Gateway CH7465LG-NCIP-6.12.18.25-2p6-NOSH devices accepts a cleartext password in a POST request on port 80, as demonstrated by the Password field to the xml/setter.xml URI.
Attacker Value
Unknown

CVE-2018-15502

Disclosure Date: September 12, 2018 (last updated November 27, 2024)
Insecure permissions in Lone Wolf Technologies loadingDOCS 2018-08-13 allow remote attackers to download any confidential files via https requests for predictable URLs.
0
Attacker Value
Unknown

CVE-2017-11502

Disclosure Date: July 20, 2017 (last updated November 26, 2024)
Technicolor DPC3928AD DOCSIS devices allow remote attackers to read arbitrary files via a request starting with "GET /../" on TCP port 4321.
0
Attacker Value
Unknown

CVE-2016-1326

Disclosure Date: March 09, 2016 (last updated November 25, 2024)
The administration interface on Cisco DPQ3925 devices with firmware r1 allows remote attackers to cause a denial of service (device restart) via a crafted HTTP request, aka Bug ID CSCup48105.
0
Attacker Value
Unknown

CVE-2015-6428

Disclosure Date: December 18, 2015 (last updated October 05, 2023)
Cisco DPQ3925 devices with EDVA r1 Base allow remote attackers to obtain sensitive information via a crafted HTTP request, aka Bug ID CSCuv03958.
0
Attacker Value
Unknown

CVE-2015-6402

Disclosure Date: December 14, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the management interface on Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allows remote attackers to inject arbitrary web script or HTML via an unspecified value, aka Bug ID CSCux24935.
0
Attacker Value
Unknown

CVE-2015-6401

Disclosure Date: December 14, 2015 (last updated October 05, 2023)
Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication requirement and execute unspecified administrative functions via a crafted HTTP request, aka Bug ID CSCux24941.
0
Attacker Value
Unknown

CVE-2015-6378

Disclosure Date: December 14, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability on Cisco DPQ3925 devices with EDVA 5.5.2 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuv05943.
0