• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2019-7537
2019-03-26
N/A
9.8 CRITICAL
An issue was discovered in Donfig 0.3.0. There is a vulnerability in the collect_yaml method in config_obj.py. It can execute arbitrary Python commands, resulting in command execution.
CVE-2019-7535
2019-02-08
N/A
5.3 MEDIUM
index.php in Gurock TestRail 5.3.0.3603 returns potentially sensitive information for an invalid request, as demonstrated by full path disclosure and the identification of PHP as the backend technology.
CVE-2019-7524
2019-06-14
N/A
7.8 HIGH
In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.
CVE-2019-7489
2020-01-02
N/A
9.8 CRITICAL
A vulnerability in SonicWall Email Security appliance allow an unauthenticated user to perform remote code execution. This vulnerability affected Email Security Appliance version 10.0.2 and earlier.
CVE-2019-7488
2020-01-02
N/A
9.8 CRITICAL
Weak default password cause vulnerability in SonicWall Email Security appliance which leads to attacker gain access to appliance database. This vulnerability affected Email Security Appliance version 10.0.2 and earlier.
CVE-2019-7487
Sonicos Sslvpn Nacagent, Sonicwall
Sma_100_firmware, Sma_100, Sonicos_sslvpn_nacagent, 6200, 6200_firmware, 6210, 6210_firmware, 6bk1602-0aa12-0tp0, 6bk1602-0aa12-0tp0_firmware, 6bk1602-0aa22-0tp0
2020-01-08
N/A
7.8 HIGH
Installation of the SonicOS SSLVPN NACagent 3.5 on the Windows operating system, an autorun value is created does not put the path in quotes, so if a malicious binary by an attacker within the parent path could allow code execution.
CVE-2019-7486
Sma 100 Firmware, Sonicwall
Sma_100_firmware, Sma_100, Sonicos_sslvpn_nacagent, 6200, 6200_firmware, 6210, 6210_firmware, 6bk1602-0aa12-0tp0, 6bk1602-0aa12-0tp0_firmware, 6bk1602-0aa22-0tp0
2019-12-31
N/A
8.8 HIGH
Code injection in SonicWall SMA100 allows an authenticated user to execute arbitrary code in viewcacert CGI script. This vulnerability impacted SMA100 version 9.0.0.4 and earlier.
CVE-2019-7485
Sma 100 Firmware, Sonicwall
Sma_100_firmware, Sma_100, Sonicos_sslvpn_nacagent, 6200, 6200_firmware, 6210, 6210_firmware, 6bk1602-0aa12-0tp0, 6bk1602-0aa12-0tp0_firmware, 6bk1602-0aa22-0tp0
2019-12-31
N/A
8.8 HIGH
Buffer overflow in SonicWall SMA100 allows an authenticated user to execute arbitrary code in DEARegister CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earlier.
CVE-2019-7484
Sma 100 Firmware, Sonicwall
Sma_100_firmware, Sma_100, Sonicos_sslvpn_nacagent, 6200, 6200_firmware, 6210, 6210_firmware, 6bk1602-0aa12-0tp0, 6bk1602-0aa12-0tp0_firmware, 6bk1602-0aa22-0tp0
2019-12-31
N/A
6.5 MEDIUM
Authenticated SQL Injection in SonicWall SMA100 allow user to gain read-only access to unauthorized resources using viewcacert CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earlier.
CVE-2019-7483
Sma 100 Firmware, Sonicwall
Sma_100_firmware, Sma_100, Sonicos_sslvpn_nacagent, 6200, 6200_firmware, 6210, 6210_firmware, 6bk1602-0aa12-0tp0, 6bk1602-0aa12-0tp0_firmware, 6bk1602-0aa22-0tp0
2019-12-31
N/A
7.5 HIGH
In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a file on the server.
« Previous 1 … 5,246 5,247 5,248 5,249 5,250 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE