|
212881
|
7.2 |
HIGH
Network
|
pexip
|
pexip_infinity
|
Pexip Infinity before 20.1 allows privilege escalation by restoring a system backup.
|
CWE-20
Improper Input Validation
|
CVE-2019-7178
|
2024-11-21 13:47 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212882
|
7.2 |
HIGH
Network
|
pexip
|
pexip_infinity
|
Pexip Infinity before 20.1 allows Code Injection onto nodes via an admin.
|
CWE-94
Code Injection
|
CVE-2019-7177
|
2024-11-21 13:47 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212883
|
7.5 |
HIGH
Network
|
avaya
|
ip_office
|
A vulnerability was discovered in the web interface component of IP Office that may potentially allow a remote, unauthenticated user with network access to gain sensitive information. Affected versio…
|
NVD-CWE-noinfo
|
CVE-2019-7005
|
2024-11-21 13:47 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212884
|
9.8 |
CRITICAL
Network
|
amd
|
overdrive
|
An issue was discovered in AODDriver2.sys in AMD OverDrive. The vulnerable driver exposes a wrmsr instruction via IOCTL 0x81112ee0 and does not properly filter the Model Specific Register (MSR). Allo…
|
NVD-CWE-noinfo
|
CVE-2019-7247
|
2024-11-21 13:47 |
2020-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212885
|
6.7 |
MEDIUM
Local
|
amd
|
atillk64
|
An issue was discovered in atillk64.sys in AMD ATI Diagnostics Hardware Abstraction Sys/Overclocking Utility 5.11.9.0. The vulnerable driver exposes a wrmsr instruction and does not properly filter t…
|
NVD-CWE-noinfo
|
CVE-2019-7246
|
2024-11-21 13:47 |
2020-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212886
|
7.5 |
HIGH
Network
|
schneider-electric
|
bmx_p34x_firmware bmx_noe_0100_firmware bmx_noe_0110_firmware bmx_noc_0401_firmware tsx_p57x_firmware tsx_ety_x103_firmware 140_cpu6x_firmware 140_noe_771x1_firmware 140_noc_7…
|
A CWE-798: Use of Hardcoded Credentials vulnerability exists in Modicon Controllers (All versions of the following CPUs and Communication Module product references listed in the Security Notification…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-6859
|
2024-11-21 13:47 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212887
|
7.5 |
HIGH
Network
|
byobu canonical
|
byobu ubuntu_linux
|
Byobu Apport hook may disclose sensitive information since it automatically uploads the local user's .screenrc which may contain private hostnames, usernames and passwords. This issue affects: byobu
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2019-7306
|
2024-11-21 13:47 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212888
|
9.8 |
CRITICAL
Network
|
extplorer
|
extplorer
|
Information Exposure vulnerability in eXtplorer makes the /usr/ and /etc/extplorer/ system directories world-accessible over HTTP. Introduced in the Makefile patch file debian/patches/debian-changes-…
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2019-7305
|
2024-11-21 13:47 |
2020-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212889
|
7.2 |
HIGH
Network
|
techpowerup
|
gpu-z
|
An issue was discovered in GPU-Z.sys in TechPowerUp GPU-Z before 2.23.0. The vulnerable driver exposes a wrmsr instruction via an IOCTL and does not properly filter the Model Specific Register (MSR).…
|
CWE-665
Improper Initialization
|
CVE-2019-7245
|
2024-11-21 13:47 |
2020-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212890
|
7.2 |
HIGH
Network
|
aida64
|
aida64
|
An issue was discovered in kerneld.sys in AIDA64 before 5.99. The vulnerable driver exposes a wrmsr instruction via IOCTL 0x80112084 and does not properly filter the Model Specific Register (MSR). Al…
|
CWE-665
Improper Initialization
|
CVE-2019-7244
|
2024-11-21 13:47 |
2020-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|