|
222621
|
9.8 |
CRITICAL
Network
|
microdigital
|
mdc-n4090_firmware mdc-n4090w_firmware mdc-n2190v_firmware
|
An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. In a CGI program running under the HTTPD web server, a buffer overflow in the param parameter leads to remot…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-14698
|
2024-11-21 13:27 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222622
|
9.8 |
CRITICAL
Network
|
musl-libc
|
musl
|
musl libc through 1.1.23 has an x87 floating-point stack adjustment imbalance, related to the math/i386/ directory. In some cases, use of this library could introduce out-of-bounds writes that are no…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14697
|
2024-11-21 13:27 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222623
|
6.1 |
MEDIUM
Network
|
open-school
|
open-school
|
Open-School 3.0, and Community Edition 2.3, allows XSS via the osv/index.php?r=students/guardians/create id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2019-14696
|
2024-11-21 13:27 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222624
|
9.8 |
CRITICAL
Network
|
sygnoos
|
popup_builder
|
A SQL injection vulnerability exists in the Sygnoos Popup Builder plugin before 3.45 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQ…
|
CWE-89
SQL Injection
|
CVE-2019-14695
|
2024-11-21 13:27 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222625
|
8.8 |
HIGH
Network
|
adplug_project fedoraproject
|
adplug fedora
|
AdPlug 2.3.1 has a heap-based buffer overflow in CmkjPlayer::load() in mkj.cpp.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14692
|
2024-11-21 13:27 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222626
|
8.8 |
HIGH
Network
|
adplug_project fedoraproject
|
adplug fedora
|
AdPlug 2.3.1 has a heap-based buffer overflow in CdtmLoader::load() in dtm.cpp.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14691
|
2024-11-21 13:27 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222627
|
8.8 |
HIGH
Network
|
adplug_project fedoraproject
|
adplug fedora
|
AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::__bmf_convert_stream() in bmf.cpp.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14690
|
2024-11-21 13:27 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222628
|
5.4 |
MEDIUM
Network
|
firefly-iii
|
firefly_iii
|
Firefly III 4.7.17.5 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the liability name field. The JavaScript code is executed upon an error condition during a visi…
|
CWE-79
Cross-site Scripting
|
CVE-2019-14672
|
2024-11-21 13:27 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222629
|
3.3 |
LOW
Local
|
firefly-iii
|
firefly_iii
|
Firefly III 4.7.17.3 is vulnerable to local file enumeration. An attacker can enumerate local files due to the lack of protocol scheme sanitization, such as for file:/// URLs. This is related to fint…
|
CWE-20
Improper Input Validation
|
CVE-2019-14671
|
2024-11-21 13:27 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222630
|
5.4 |
MEDIUM
Network
|
firefly-iii
|
firefly_iii
|
Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the bill name field. The JavaScript code is executed during rule-from-bill creation.
|
CWE-79
Cross-site Scripting
|
CVE-2019-14670
|
2024-11-21 13:27 |
2019-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|