|
222501
|
6.5 |
MEDIUM
Network
|
fedoraproject samba redhat canonical synology debian
|
fedora samba enterprise_linux storage ubuntu_linux skynas diskstation_manager directory_server router_manager debian_linux
|
All samba versions 4.9.x before 4.9.18, 4.10.x before 4.10.12 and 4.11.x before 4.11.5 have an issue where if it is set with "log level = 3" (or above) then the string obtained from the client, after…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-14907
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222502
|
8.8 |
HIGH
Network
|
dimo-crm
|
yellowbox_crm
|
An Arbitrary File Upload issue in the file browser of DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to deploy a new WebApp WAR file to the Tomcat server via Path Traversal, all…
|
CWE-22
Path Traversal
|
CVE-2019-14768
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222503
|
7.5 |
HIGH
Network
|
dimo-crm
|
yellowbox_crm
|
In DIMO YellowBox CRM before 6.3.4, Path Traversal in images/Apparence (dossier=../) and servletrecuperefichier (document=../) allows an unauthenticated user to download arbitrary files from the serv…
|
CWE-22
Path Traversal
|
CVE-2019-14767
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222504
|
6.5 |
MEDIUM
Network
|
dimo-crm
|
yellowbox_crm
|
Path Traversal in the file browser of DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to browse the server filesystem.
|
CWE-22
Path Traversal
|
CVE-2019-14766
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222505
|
8.8 |
HIGH
Network
|
dimo-crm
|
yellowbox_crm
|
Incorrect Access Control in AfficheExplorateurParam() in DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to use administrative controllers.
|
NVD-CWE-noinfo
|
CVE-2019-14765
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222506
|
5.5 |
MEDIUM
Local
|
intel
|
data_analytics_acceleration_library
|
Improper permissions in Intel(R) DAAL before version 2020 Gold may allow an authenticated user to potentially enable information disclosure via local access.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-14629
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222507
|
5.5 |
MEDIUM
Local
|
canonical intel
|
ubuntu_linux celeron_n celeron celeron_g4900t celeron_g4920 celeron_g4930 celeron_g4930t celeron_g4950 celeron_j atom_x5-z8330 atom_x5-z8500 atom_x7-z8700 atom_x5-…
|
Insufficient control flow in certain data structures for some Intel(R) Processors with Intel(R) Processor Graphics may allow an unauthenticated user to potentially enable information disclosure via l…
|
NVD-CWE-noinfo
|
CVE-2019-14615
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222508
|
7.8 |
HIGH
Local
|
intel
|
vtune_profiler
|
Improper access control in driver for Intel(R) VTune(TM) Amplifier for Windows* before update 8 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
NVD-CWE-noinfo
|
CVE-2019-14613
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222509
|
7.8 |
HIGH
Local
|
intel
|
raid_web_console_3
|
Improper permissions in the installer for Intel(R) RWC 3 for Windows before version 7.010.009.000 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-14601
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222510
|
6.7 |
MEDIUM
Local
|
intel
|
snmp_subagent_stand-alone
|
Uncontrolled search path element in the installer for Intel(R) SNMP Subagent Stand-Alone for Windows* may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-14600
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|