|
223921
|
9.8 |
CRITICAL
Network
|
newbee-mall_project
|
newbee-mall
|
main/resources/mapper/NewBeeMallGoodsMapper.xml in newbee-mall (aka New Bee) before 2019-10-23 allows search?goodsCategoryId=&keyword= SQL Injection.
|
CWE-89
SQL Injection
|
CVE-2019-19113
|
2024-11-21 13:34 |
2019-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223922
|
5.4 |
MEDIUM
Network
|
octopus
|
server
|
A persistent cross-site scripting (XSS) vulnerability in Octopus Server 3.4.0 through 2019.10.5 allows remote authenticated attackers to inject arbitrary web script or HTML.
|
CWE-79
Cross-site Scripting
|
CVE-2019-19085
|
2024-11-21 13:34 |
2019-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223923
|
4.3 |
MEDIUM
Network
|
octopus
|
octopus_deploy
|
In Octopus Deploy 3.3.0 through 2019.10.4, an authenticated user with PackagePush permission to upload packages could upload a maliciously crafted package, triggering an exception that exposes underl…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-19084
|
2024-11-21 13:34 |
2019-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223924
|
5.9 |
MEDIUM
Network
|
linux redhat opensuse
|
linux_kernel enterprise_linux leap
|
A memory leak in the nfp_flower_spawn_vnic_reprs() function in drivers/net/ethernet/netronome/nfp/flower/main.c in the Linux kernel before 5.3.4 allows attackers to cause a denial of service (memory …
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-19081
|
2024-11-21 13:34 |
2019-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223925
|
5.9 |
MEDIUM
Network
|
linux opensuse
|
linux_kernel leap
|
Four memory leaks in the nfp_flower_spawn_phy_reprs() function in drivers/net/ethernet/netronome/nfp/flower/main.c in the Linux kernel before 5.3.4 allow attackers to cause a denial of service (memor…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-19080
|
2024-11-21 13:34 |
2019-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223926
|
7.5 |
HIGH
Network
|
linux canonical
|
linux_kernel ubuntu_linux
|
A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before 5.3 allows attackers to cause a denial of service (memory consumption), aka CID-a21b7f0cff19.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-19079
|
2024-11-21 13:34 |
2019-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223927
|
4.7 |
MEDIUM
Local
|
linux canonical opensuse
|
linux_kernel ubuntu_linux leap
|
Memory leaks in *clock_source_create() functions under drivers/gpu/drm/amd/display/dc in the Linux kernel before 5.3.8 allow attackers to cause a denial of service (memory consumption). This affects …
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-19083
|
2024-11-21 13:34 |
2019-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223928
|
4.7 |
MEDIUM
Local
|
linux canonical opensuse
|
linux_kernel ubuntu_linux leap
|
Memory leaks in *create_resource_pool() functions under drivers/gpu/drm/amd/display/dc in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption). This affec…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-19082
|
2024-11-21 13:34 |
2019-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223929
|
7.5 |
HIGH
Network
|
linux canonical
|
linux_kernel ubuntu_linux
|
A memory leak in the ath10k_usb_hif_tx_sg() function in drivers/net/wireless/ath/ath10k/usb.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by …
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-19078
|
2024-11-21 13:34 |
2019-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223930
|
5.5 |
MEDIUM
Local
|
linux canonical opensuse
|
linux_kernel ubuntu_linux leap
|
A memory leak in the bnxt_re_create_srq() function in drivers/infiniband/hw/bnxt_re/ib_verbs.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-19077
|
2024-11-21 13:34 |
2019-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|