|
222381
|
9.8 |
CRITICAL
Network
|
alfresco
|
alfresco
|
The Alfresco application before 1.8.7 for Android allows SQL injection in HistorySearchProvider.java.
|
CWE-89
SQL Injection
|
CVE-2019-15566
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222382
|
9.8 |
CRITICAL
Network
|
webimpacto
|
icommktconnector
|
The ICOMMKT connector before 1.0.7 for PrestaShop allows SQL injection in icommktconnector.php.
|
CWE-89
SQL Injection
|
CVE-2019-15565
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222383
|
9.8 |
CRITICAL
Network
|
compassionuk
|
compassion_switzerland
|
The Compassion Switzerland addons 10.01.4 for Odoo allow SQL injection in models/partner_compassion.py.
|
CWE-89
SQL Injection
|
CVE-2019-15564
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222384
|
9.8 |
CRITICAL
Network
|
ohdsi
|
webapi
|
Observational Health Data Sciences and Informatics (OHDSI) WebAPI before 2.7.2 allows SQL injection in FeatureExtractionService.java.
|
CWE-89
SQL Injection
|
CVE-2019-15563
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222385
|
9.8 |
CRITICAL
Network
|
servo
|
smallvec
|
An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is memory corruption for certain grow attempts with less than the current capacity.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-15554
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222386
|
9.8 |
CRITICAL
Network
|
gorm
|
gorm
|
GORM before 1.9.10 allows SQL injection via incomplete parentheses. NOTE: Misusing Gorm by passing untrusted user input where Gorm expects trusted SQL fragments is a vulnerability in the application,…
|
CWE-89
SQL Injection
|
CVE-2019-15562
|
2024-11-21 13:29 |
2019-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222387
|
9.8 |
CRITICAL
Network
|
flashlingo_project
|
flashlingo
|
FlashLingo before 2019-06-12 allows SQL injection, related to flashlingo.js and db.js.
|
CWE-89
SQL Injection
|
CVE-2019-15561
|
2024-11-21 13:29 |
2019-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222388
|
9.8 |
CRITICAL
Network
|
social_network_project
|
social_network
|
Pvanloon1983 social_network before 2019-07-03 allows SQL injection in includes/form_handlers/register_handler.php.
|
CWE-89
SQL Injection
|
CVE-2019-15556
|
2024-11-21 13:29 |
2019-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222389
|
9.1 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-15167
|
2024-11-21 13:28 |
2022-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222390
|
5.3 |
MEDIUM
Network
|
linbit debian
|
csync2 debian_linux
|
An issue was discovered in LINBIT csync2 through 2.0. It does not correctly check for the return value GNUTLS_E_WARNING_ALERT_RECEIVED of the gnutls_handshake() function. It neglects to call this fun…
|
CWE-252
Unchecked Return Value
|
CVE-2019-15523
|
2024-11-21 13:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|