|
213441
|
8.8 |
HIGH
Network
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit PhantomPDF. User interaction is required to exploit this vulnerability in that the target mus…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-6731
|
2024-11-21 13:47 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213442
|
7.8 |
HIGH
Local
|
barracuda
|
vpn_client
|
The barracudavpn component of the Barracuda VPN Client prior to version 5.0.2.7 for Linux, macOS, and OpenBSD runs as a privileged process and can allow an unprivileged local attacker to load a malic…
|
CWE-426
Untrusted Search Path
|
CVE-2019-6724
|
2024-11-21 13:47 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213443
|
9.4 |
CRITICAL
Network
|
logonbox
|
nervepoint_access_manager
|
An unauthenticated Insecure Direct Object Reference (IDOR) in Wicket Core in LogonBox Nervepoint Access Manager 2013 through 2017 allows a remote attacker to enumerate internal Active Directory usern…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2019-6716
|
2024-11-21 13:47 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213444
|
8.8 |
HIGH
Network
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target must vi…
|
CWE-416
Use After Free
|
CVE-2019-6730
|
2024-11-21 13:47 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213445
|
8.8 |
HIGH
Network
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target must vi…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-6729
|
2024-11-21 13:47 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213446
|
6.5 |
MEDIUM
Network
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-6728
|
2024-11-21 13:47 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213447
|
8.8 |
HIGH
Network
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target must vi…
|
CWE-416
Use After Free
|
CVE-2019-6727
|
2024-11-21 13:47 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213448
|
7.5 |
HIGH
Network
|
imagemagick opensuse debian canonical
|
imagemagick leap debian_linux ubuntu_linux
|
In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage in coders/pcd.c.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-7175
|
2024-11-21 13:47 |
2019-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213449
|
5.5 |
MEDIUM
Local
|
avaya
|
one-x_communicator
|
Avaya one-X Communicator uses weak cryptographic algorithms in the client authentication component that could allow a local attacker to decrypt sensitive information. Affected versions include all 6.…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2019-7006
|
2024-11-21 13:47 |
2019-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213450
|
9.8 |
CRITICAL
Network
|
sqlalchemy debian opensuse redhat oracle
|
sqlalchemy debian_linux leap backports_sle enterprise_linux_eus enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux communications_operations_monitor
|
SQLAlchemy through 1.2.17 and 1.3.x through 1.3.0b2 allows SQL Injection via the order_by parameter.
|
CWE-89
SQL Injection
|
CVE-2019-7164
|
2024-11-21 13:47 |
2019-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|