|
222821
|
4.6 |
MEDIUM
Physics
|
intel
|
dsl3310_thunderbolt_firmware dsl3510_thunderbolt_firmware dsl4510_thunderbolt_firmware dsl4410_thunderbolt_firmware dsl5520_thunderbolt_2_firmware dsl5320_thunderbolt_2_firmware dsl…
|
Reliance on untrusted inputs in a security decision in some Intel(R) Thunderbolt(TM) controllers may allow unauthenticated user to potentially enable information disclosure via physical access.
|
NVD-CWE-noinfo
|
CVE-2019-14630
|
2024-11-21 13:27 |
2020-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222822
|
6.5 |
MEDIUM
Network
|
hibernate redhat quarkus
|
hibernate_orm decision_manager openstack single_sign-on jboss_data_grid jboss_middleware_text-only_advisories jboss_enterprise_application_platform build_of_quarkus fuse qu…
|
A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is us…
|
CWE-89
SQL Injection
|
CVE-2019-14900
|
2024-11-21 13:27 |
2020-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222823
|
7.2 |
HIGH
Network
|
redhat
|
cloudforms_management_engine
|
A flaw was found in the CloudForms management engine version 5.10 and CloudForms management version 5.11, which triggered remote code execution through NFS schedule backup. An attacker logged into th…
|
-
|
CVE-2019-14894
|
2024-11-21 13:27 |
2020-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222824
|
7.0 |
HIGH
Local
|
linux redhat
|
linux_kernel enterprise_mrg
|
The fix for CVE-2019-11599, affecting the Linux kernel before 5.0.10 was not complete. A local user could use this flaw to obtain sensitive information, cause a denial of service, or possibly have ot…
|
-
|
CVE-2019-14898
|
2024-11-21 13:27 |
2020-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222825
|
7.5 |
HIGH
Network
|
ushareit
|
shareit
|
SHAREit through 4.0.6.177 does not check the body length from the received packet header (which is used to allocate memory for the next set of data). This could lead to a system denial of service due…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-14941
|
2024-11-21 13:27 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222826
|
7.8 |
HIGH
Local
|
ksh_project debian apple
|
ksh debian_linux mac_os_x
|
In ksh version 20120801, a flaw was found in the way it evaluates certain environment variables. An attacker could use this flaw to override or bypass environment restrictions to execute shell comman…
|
-
|
CVE-2019-14868
|
2024-11-21 13:27 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222827
|
5.6 |
MEDIUM
Local
|
redhat fedoraproject opensuse
|
ansible_engine cloudforms_management_engine ceph_storage ansible_tower openstack fedora leap backports_sle
|
A vulnerability was found in Ansible Engine versions 2.9.x before 2.9.3, 2.8.x before 2.8.8, 2.7.x before 2.7.16 and earlier, where in Ansible's nxos_file_copy module can be used to copy files to a f…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2019-14905
|
2024-11-21 13:27 |
2020-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222828
|
9.1 |
CRITICAL
Network
|
moodle
|
moodle
|
A vulnerability was found in Moodle versions 3.7 before 3.7.3, 3.6 before 3.6.7, 3.5 before 3.5.9 and earlier. OAuth 2 providers who do not verify users' email address changes require additional veri…
|
NVD-CWE-noinfo
|
CVE-2019-14880
|
2024-11-21 13:27 |
2020-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222829
|
7.5 |
HIGH
Network
|
gnupg fedoraproject canonical
|
gnupg fedora ubuntu_linux
|
A flaw was found in the way certificate signatures could be forged using collisions found in the SHA-1 algorithm. An attacker could use this weakness to create forged certificate signatures. This iss…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2019-14855
|
2024-11-21 13:27 |
2020-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222830
|
6.5 |
MEDIUM
Network
|
newlib_project
|
newlib
|
In the __d2b function of the newlib libc library, all versions prior to 3.3.0 (see newlib/libc/stdlib/mprec.c), Balloc is used to allocate a big integer, however no check is performed to verify if th…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-14878
|
2024-11-21 13:27 |
2020-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|