|
222721
|
6.5 |
MEDIUM
Network
|
libav debian
|
libav debian_linux
|
An issue was discovered in Libav 12.3. Division by zero in range_decode_culshift in libavcodec/apedec.c allows remote attackers to cause a denial of service (application crash), as demonstrated by av…
|
CWE-369
Divide By Zero
|
CVE-2019-14443
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222722
|
6.5 |
MEDIUM
Network
|
libav debian
|
libav debian_linux
|
In mpc8_read_header in libavformat/mpc8.c in Libav 12.3, an input file can result in an avio_seek infinite loop and hang, with 100% CPU consumption. Attackers could leverage this vulnerability to cau…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2019-14442
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222723
|
6.5 |
MEDIUM
Network
|
libav
|
libav
|
An issue was discovered in Libav 12.3. An access violation allows remote attackers to cause a denial of service (application crash), as demonstrated by avconv. This is related to ff_mpa_synth_filter_…
|
NVD-CWE-noinfo
|
CVE-2019-14441
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222724
|
3.3 |
LOW
Local
|
cpanel
|
cpanel
|
cPanel before 82.0.2 does not properly enforce Reseller package creation ACLs (SEC-514).
|
NVD-CWE-noinfo
|
CVE-2019-14391
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222725
|
5.4 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.2 has stored XSS in the WHM Modify Account interface (SEC-512).
|
CWE-79
Cross-site Scripting
|
CVE-2019-14390
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222726
|
7.8 |
HIGH
Local
|
cpanel
|
cpanel
|
cPanel before 82.0.2 allows local users to discover the MySQL root password (SEC-510).
|
NVD-CWE-noinfo
|
CVE-2019-14389
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222727
|
7.5 |
HIGH
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.2 allows unauthenticated file creation because Exim log parsing is mishandled (SEC-507).
|
NVD-CWE-noinfo
|
CVE-2019-14388
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222728
|
6.1 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.2 has Self XSS in the cPanel and webmail master templates (SEC-506).
|
CWE-79
Cross-site Scripting
|
CVE-2019-14387
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222729
|
5.4 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.2 has stored XSS in the WHM Tomcat Manager interface (SEC-504).
|
CWE-79
Cross-site Scripting
|
CVE-2019-14386
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222730
|
7.5 |
HIGH
Network
|
openmpt
|
libopenmpt
|
libopenmpt before 0.4.3 allows a crash due to a NULL pointer dereference when doing a portamento from an OPL instrument to an empty instrument note map slot.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-14381
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|