|
213161
|
7.5 |
HIGH
Network
|
emsisoft
|
anti-malware
|
EPP.sys in Emsisoft Anti-Malware prior to version 2018.12 allows an attacker to bypass ACLs because Interpreted Device Characteristics lacks FILE_DEVICE_SECURE_OPEN and therefore files and directorie…
|
NVD-CWE-noinfo
|
CVE-2019-7651
|
2024-11-21 13:48 |
2019-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213162
|
7.5 |
HIGH
Network
|
hotels_server_project
|
hotels_server
|
controller/fetchpwd.php and controller/doAction.php in Hotels_Server through 2018-11-05 rely on base64 in an attempt to protect password storage.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2019-7648
|
2024-11-21 13:48 |
2019-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213163
|
8.1 |
HIGH
Network
|
fedoraproject gsi-openssh_project
|
fedora gsi-openssh
|
An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect passw…
|
CWE-863
Incorrect Authorization
|
CVE-2019-7639
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213164
|
8.8 |
HIGH
Network
|
libsdl debian opensuse fedoraproject canonical
|
simple_directmedia_layer debian_linux leap fedora ubuntu_linux
|
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Map1toN in video/SDL_pixels.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-7638
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213165
|
8.8 |
HIGH
Network
|
libsdl debian opensuse fedoraproject canonical
|
simple_directmedia_layer debian_linux leap fedora ubuntu_linux
|
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in SDL_FillRect in video/SDL_surface.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7637
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213166
|
8.1 |
HIGH
Network
|
libsdl opensuse debian fedoraproject canonical
|
simple_directmedia_layer leap debian_linux fedora ubuntu_linux
|
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in SDL_GetRGB in video/SDL_pixels.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-7636
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213167
|
8.1 |
HIGH
Network
|
libsdl opensuse debian fedoraproject canonical
|
simple_directmedia_layer leap backports_sle debian_linux fedora ubuntu_linux
|
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Blit1to4 in video/SDL_blit_1.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-7635
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213168
|
8.8 |
HIGH
Network
|
lifesize
|
team_220_firmware passport_220_firmware networker_220_firmware room_220_firmware
|
LifeSize Team, Room, Passport, and Networker 220 devices allow Authenticated Remote OS Command Injection, as demonstrated by shell metacharacters in the support/mtusize.php mtu_size parameter. The li…
|
CWE-78
OS Command
|
CVE-2019-7632
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213169
|
5.9 |
MEDIUM
Network
|
redhat
|
pagure
|
Pagure 5.2 leaks API keys by e-mailing them to users. Few e-mail servers validate TLS certificates, so it is easy for man-in-the-middle attackers to read these e-mails and gain access to Pagure on be…
|
CWE-200
Information Exposure
|
CVE-2019-7628
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213170
|
9.8 |
CRITICAL
Network
|
nginx
|
unit
|
NGINX Unit before 1.7.1 might allow an attacker to cause a heap-based buffer overflow in the router process with a specially crafted request. This may result in a denial of service (router process cr…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7401
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|