|
223421
|
8.8 |
HIGH
Network
|
trendnet
|
tew-827dru_firmware
|
An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication) via the IP Address in Add Gaming Rule.
|
CWE-77
Command Injection
|
CVE-2019-13152
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223422
|
8.8 |
HIGH
Network
|
trendnet
|
tew-827dru_firmware
|
An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication) via the action set_sta_enrollee_pin_5g and the key …
|
CWE-78
OS Command
|
CVE-2019-13151
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223423
|
8.8 |
HIGH
Network
|
trendnet
|
tew-827dru_firmware
|
An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication). The command injection exists in the key ip_addr.
|
CWE-77
Command Injection
|
CVE-2019-13150
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223424
|
8.8 |
HIGH
Network
|
trendnet
|
tew-827dru_firmware
|
An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication) via the key passwd in Routing RIP Settings.
|
CWE-78
OS Command
|
CVE-2019-13149
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223425
|
8.8 |
HIGH
Network
|
trendnet
|
tew-827dru_firmware
|
An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication) via the UDP Ports To Open in Add Gaming Rule.
|
CWE-77
Command Injection
|
CVE-2019-13148
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223426
|
6.5 |
MEDIUM
Network
|
audio_file_library_project debian
|
audio_file_library debian_linux
|
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a cr…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-13147
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223427
|
6.5 |
MEDIUM
Network
|
imagemagick debian canonical
|
imagemagick debian_linux ubuntu_linux
|
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadPSImage in coders/ps.c.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-13137
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223428
|
7.8 |
HIGH
Local
|
imagemagick
|
imagemagick
|
ImageMagick before 7.0.8-50 has an integer overflow vulnerability in the function TIFFSeekCustomStream in coders/tiff.c.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-13136
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223429
|
8.8 |
HIGH
Network
|
imagemagick debian canonical f5
|
imagemagick debian_linux ubuntu_linux big-ip_application_acceleration_manager big-ip_webaccelerator
|
ImageMagick before 7.0.8-50 has a "use of uninitialized value" vulnerability in the function ReadCUTImage in coders/cut.c.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2019-13135
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223430
|
5.5 |
MEDIUM
Local
|
imagemagick opensuse
|
imagemagick leap
|
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-13134
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|