|
223051
|
5.3 |
MEDIUM
Network
|
fanucamerica
|
robotics_virtual_robot_controller
|
The remote admin webserver on FANUC Robotics Virtual Robot Controller 8.23 allows Directory Traversal via a forged HTTP request.
|
CWE-22
Path Traversal
|
CVE-2019-13584
|
2024-11-21 13:25 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223052
|
9.8 |
CRITICAL
Network
|
tp-link
|
archer_c1200_firmware
|
CMD_SET_CONFIG_COUNTRY in the TP-Link Device Debug protocol in TP-Link Archer C1200 1.0.0 Build 20180502 rel.45702 and earlier is prone to a stack-based buffer overflow, which allows a remote attacke…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13614
|
2024-11-21 13:25 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223053
|
9.8 |
CRITICAL
Network
|
tp-link
|
archer_c1200_firmware
|
CMD_FTEST_CONFIG in the TP-Link Device Debug protocol in TP-Link Wireless Router Archer Router version 1.0.0 Build 20180502 rel.45702 (EU) and earlier is prone to a stack-based buffer overflow, which…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13613
|
2024-11-21 13:25 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223054
|
6.5 |
MEDIUM
Network
|
libsdl fedoraproject debian opensuse
|
libsdl fedora debian_linux leap
|
SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-13626
|
2024-11-21 13:25 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223055
|
9.8 |
CRITICAL
Network
|
foliovision
|
fv_flowplayer_video_player
|
A SQL injection vulnerability exists in the FolioVision FV Flowplayer Video Player plugin before 7.3.19.727 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker …
|
CWE-89
SQL Injection
|
CVE-2019-13573
|
2024-11-21 13:25 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223056
|
9.1 |
CRITICAL
Network
|
nsa
|
ghidra
|
NSA Ghidra before 9.0.1 allows XXE when a project is opened or restored, or a tool is imported, as demonstrated by a project.prp file.
|
CWE-611
XXE
|
CVE-2019-13625
|
2024-11-21 13:25 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223057
|
9.8 |
CRITICAL
Network
|
onosproject
|
onos
|
In ONOS 1.15.0, apps/yang/web/src/main/java/org/onosproject/yang/web/YangWebResource.java mishandles backquote characters within strings that can be used in a shell command.
|
CWE-19
Data Processing Errors
|
CVE-2019-13624
|
2024-11-21 13:25 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223058
|
7.8 |
HIGH
Local
|
nsa
|
ghidra
|
In NSA Ghidra before 9.1, path traversal can occur in RestoreTask.java (from the package ghidra.app.plugin.core.archive) via an archive with an executable file that has an initial ../ in its filename…
|
CWE-22
Path Traversal
|
CVE-2019-13623
|
2024-11-21 13:25 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223059
|
7.5 |
HIGH
Network
|
gpac
|
gpac
|
In GPAC before 0.8.0, isomedia/isom_read.c in libgpac.a has a heap-based buffer over-read, as demonstrated by a crash in gf_m2ts_sync in media_tools/mpegts.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-13618
|
2024-11-21 13:25 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223060
|
6.5 |
MEDIUM
Network
|
f5
|
njs
|
njs through 0.3.3, used in NGINX, has a heap-based buffer over-read in nxt_vsprintf in nxt/nxt_sprintf.c during error handling, as demonstrated by an njs_regexp_literal call that leads to an njs_pars…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-13617
|
2024-11-21 13:25 |
2019-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|