|
222891
|
6.5 |
MEDIUM
Network
|
openmpt debian
|
libopenmpt debian_linux
|
libopenmpt before 0.4.5 allows a crash during playback due to an out-of-bounds read in XM and MT2 files.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-14380
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222892
|
9.8 |
CRITICAL
Network
|
10web
|
photo_gallery
|
A SQL injection vulnerability exists in the 10Web Photo Gallery plugin before 1.5.31 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQ…
|
CWE-89
SQL Injection
|
CVE-2019-14313
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222893
|
6.7 |
MEDIUM
Local
|
bitdefender
|
antivirus_plus endpoint_security_tool internet_security total_security
|
An issue was discovered in Bitdefender products for Windows (Bitdefender Endpoint Security Tool versions prior to 6.6.8.115; and Bitdefender Antivirus Plus, Bitdefender Internet Security, and Bitdefe…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-14242
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222894
|
5.9 |
MEDIUM
Network
|
cryptopp
|
crypto\+\+
|
Crypto++ 8.3.0 and earlier contains a timing side channel in ECDSA signature generation. This allows a local or remote attacker, able to measure the duration of hundreds to thousands of signing opera…
|
CWE-417
Channel and Path Errors
|
CVE-2019-14318
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222895
|
3.3 |
LOW
Local
|
cpanel
|
cpanel
|
In cPanel before 78.0.2, a Userdata cache temporary file can conflict with domains (SEC-478).
|
NVD-CWE-noinfo
|
CVE-2019-14414
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222896
|
4.3 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 78.0.2 allows certain file-write operations as shared users during connection resets (SEC-476).
|
NVD-CWE-noinfo
|
CVE-2019-14413
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222897
|
3.3 |
LOW
Local
|
cpanel
|
cpanel
|
Maketext in cPanel before 78.0.2 allows format-string injection in the DCV check_domains_via_dns UAPI (SEC-474).
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2019-14412
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222898
|
5.3 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 78.0.2 does not properly restrict demo accounts from writing to files via the DCV UAPI (SEC-473).
|
NVD-CWE-noinfo
|
CVE-2019-14411
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222899
|
3.3 |
LOW
Local
|
cpanel
|
cpanel
|
Maketext in cPanel before 78.0.2 allows format-string injection in the Email store_filter UAPI (SEC-472).
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2019-14410
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222900
|
5.5 |
MEDIUM
Local
|
cpanel
|
cpanel
|
cPanel before 78.0.2 allows arbitrary file-read operations via Passenger adminbin (SEC-466).
|
NVD-CWE-noinfo
|
CVE-2019-14409
|
2024-11-21 13:26 |
2019-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|