|
224031
|
5.5 |
MEDIUM
Local
|
intel netapp
|
graphics_driver cloud_backup steelstore_cloud_integrated_storage data_availability_services solidfire_baseboard_management_controller_firmware
|
Improper access control in the API for the Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable information disclosure via local access.
|
CWE-269
Improper Privilege Management
|
CVE-2019-14590
|
2024-11-21 13:26 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224032
|
5.5 |
MEDIUM
Local
|
intel netapp
|
graphics_driver cloud_backup steelstore_cloud_integrated_storage data_availability_services solidfire_baseboard_management_controller_firmware
|
Out of bounds read in a subsystem for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-14574
|
2024-11-21 13:26 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224033
|
7.8 |
HIGH
Local
|
intel
|
software_guard_extensions_sdk
|
Insufficient input validation in Intel(R) SGX SDK multiple Linux and Windows versions may allow an authenticated user to enable information disclosure, escalation of privilege or denial of service vi…
|
CWE-20
Improper Input Validation
|
CVE-2019-14566
|
2024-11-21 13:26 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224034
|
7.8 |
HIGH
Local
|
intel
|
software_guard_extensions_sdk
|
Insufficient initialization in Intel(R) SGX SDK Windows versions 2.4.100.51291 and earlier, and Linux versions 2.6.100.51363 and earlier, may allow an authenticated user to enable information disclos…
|
CWE-665
Improper Initialization
|
CVE-2019-14565
|
2024-11-21 13:26 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224035
|
7.5 |
HIGH
Network
|
slack-chat_project
|
slack-chat
|
Slack-Chat through 1.5.5 leaks a Slack Access Token in source code. An attacker can obtain a lot of information about the victim's Slack (channels, members, etc.).
|
CWE-200
Information Exposure
|
CVE-2019-14367
|
2024-11-21 13:26 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224036
|
7.5 |
HIGH
Network
|
slack
|
wp_slacksync
|
WP SlackSync plugin through 1.8.5 for WordPress leaks a Slack Access Token in source code. An attacker can obtain a lot of information about the victim's Slack (channels, members, etc.).
|
CWE-200
Information Exposure
|
CVE-2019-14366
|
2024-11-21 13:26 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224037
|
7.5 |
HIGH
Network
|
intercom
|
intercom
|
The Intercom plugin through 1.2.1 for WordPress leaks a Slack Access Token in source code. An attacker can obtain a lot of information about the victim's Slack (channels, members, etc.).
|
CWE-200
Information Exposure
|
CVE-2019-14365
|
2024-11-21 13:26 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224038
|
4.6 |
MEDIUM
Physics
|
hyundai-pay
|
hk-1000
|
On Hyundai Pay Kasse HK-1000 devices, a side channel for the row-based OLED display was found. The power consumption of each row-based display cycle depends on the number of illuminated pixels, allow…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2019-14360
|
2024-11-21 13:26 |
2019-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224039
|
4.6 |
MEDIUM
Physics
|
archos
|
safe-t
|
On Archos Safe-T devices, a side channel for the row-based OLED display was found. The power consumption of each row-based display cycle depends on the number of illuminated pixels, allowing a partia…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2019-14358
|
2024-11-21 13:26 |
2019-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224040
|
5.3 |
MEDIUM
Network
|
coinkite
|
coldcard_mk1_firmware coldcard_mk2_firmware
|
On Coldcard MK1 and MK2 devices, a side channel for the row-based OLED display was found. The power consumption of each row-based display cycle depends on the number of illuminated pixels, allowing a…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2019-14356
|
2024-11-21 13:26 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|