Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2019-11-01 CVE-2019-15588 OS Command Injection vulnerability in Sonatype Nexus Repository Manager
There is an OS Command Injection in Nexus Repository Manager <= 2.14.14 (bypass CVE-2019-5475) that could allow an attacker a Remote Code Execution (RCE).
network
low complexity
sonatype CWE-78
7.2
2019-11-01 CVE-2012-2979 Incorrect Resource Transfer Between Spheres vulnerability in Freebsd Name Server Daemon
FreeBSD NSD before 3.2.13 allows remote attackers to crash a NSD child server process (SIGSEGV) and cause a denial of service in the NSD server.
network
low complexity
freebsd CWE-669
7.5
2019-11-01 CVE-2013-4751 Improper Input Validation vulnerability in multiple products
php-symfony2-Validator has loss of information during serialization
network
low complexity
sensiolabs fedoraproject redhat CWE-20
8.1
2019-11-01 CVE-2013-2600 Information Exposure vulnerability in multiple products
MiniUPnPd has information disclosure use of snprintf()
network
low complexity
miniupnp-project debian CWE-200
7.5
2019-10-31 CVE-2019-18230 Missing Authentication for Critical Function vulnerability in Honeywell products
Honeywell equIP and Performance series IP cameras, multiple versions, A vulnerability exists where the affected product allows unauthenticated access to audio streaming over HTTP.
network
low complexity
honeywell CWE-306
7.5
2019-10-31 CVE-2019-18228 Improper Input Validation vulnerability in Honeywell products
Honeywell equIP series IP cameras Multiple equIP Series Cameras, A vulnerability exists in the affected products where a specially crafted HTTP packet request could result in a denial of service.
network
low complexity
honeywell CWE-20
7.5
2019-10-31 CVE-2019-18227 XXE vulnerability in Advantech Wise-Paas/Rmm 3.3.29
Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior.
network
low complexity
advantech CWE-611
7.5
2019-10-31 CVE-2019-16906 Missing Authorization vulnerability in Infosysta In-App & Desktop Notifications 1.6.13J8
An issue was discovered in the Infosysta "In-App & Desktop Notifications" app 1.6.13_J8 for Jira.
network
low complexity
infosysta CWE-862
7.5
2019-10-31 CVE-2019-16675 Out-of-bounds Read vulnerability in Phoenixcontact Config+ and PC Worx Express
An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86.
local
low complexity
phoenixcontact CWE-125
7.8
2019-10-31 CVE-2019-5043 Allocation of Resources Without Limits or Throttling vulnerability in Google Nest CAM IQ Indoor Firmware 4620002
An exploitable denial-of-service vulnerability exists in the Weave daemon of the Nest Cam IQ Indoor, version 4620002.
network
low complexity
google CWE-770
7.5