|
222881
|
6.1 |
MEDIUM
Network
|
knockoutjs redhat oracle
|
knockout decision_manager process_automation business_intelligence goldengate
|
There is a vulnerability in knockout before version 3.5.0-beta, where after escaping the context of the web application, the web application delivers data to its users along with other trusted dynami…
|
-
|
CVE-2019-14862
|
2024-11-21 13:27 |
2020-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222882
|
9.1 |
CRITICAL
Network
|
python-ecdsa_project redhat
|
python-ecdsa ceph_storage openstack virtualization
|
A flaw was found in all python-ecdsa versions before 0.13.3, where it did not correctly verify whether signatures used DER encoding. Without this verification, a malformed signature could be accepted…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2019-14859
|
2024-11-21 13:27 |
2020-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222883
|
6.5 |
MEDIUM
Network
|
yandex
|
clickhouse
|
In all versions of ClickHouse before 19.14.3, an attacker having write access to ZooKeeper and who is able to run a custom server available from the network where ClickHouse runs, can create a custom…
|
NVD-CWE-noinfo
|
CVE-2019-15024
|
2024-11-21 13:27 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222884
|
6.5 |
MEDIUM
Network
|
atlassian
|
confluence confluence_server
|
There was a man-in-the-middle (MITM) vulnerability present in the Confluence Previews plugin in Confluence Server and Confluence Data Center. This plugin was used to facilitate communication with the…
|
CWE-913
Improper Control of Dynamically-Managed Code Resources
|
CVE-2019-15006
|
2024-11-21 13:27 |
2019-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222885
|
4.3 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The WorkflowResource class removeStatus method in Jira before version 7.13.12, from version 8.0.0 before version 8.4.3, and from version 8.5.0 before version 8.5.2 allows authenticated remote attacke…
|
CWE-862
Missing Authorization
|
CVE-2019-15013
|
2024-11-21 13:27 |
2019-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222886
|
6.5 |
MEDIUM
Network
|
control-webpanel
|
webpanel
|
CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.856 through 0.9.8.864 allows an attacker to get a victim's session file name from the /tmp directory, and the victim's token value from /usr/local…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2019-14782
|
2024-11-21 13:27 |
2019-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222887
|
4.3 |
MEDIUM
Network
|
atlassian
|
application_links
|
The ListEntityLinksServlet resource in Application Links before version 5.0.12, from version 5.1.0 before version 5.2.11, from version 5.3.0 before version 5.3.7, from version 5.4.0 before 5.4.13, an…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-15011
|
2024-11-21 13:27 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222888
|
5.3 |
MEDIUM
Local
|
intel
|
xeon_platinum_9282_firmware xeon_platinum_9242_firmware xeon_platinum_9222_firmware xeon_platinum_9221_firmware xeon_platinum_8280m_firmware xeon_platinum_8280l_firmware xeon_platin…
|
Improper conditions check in multiple Intel® Processors may allow an authenticated user to potentially enable partial escalation of privilege, denial of service and/or information disclosure via loca…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2019-14607
|
2024-11-21 13:27 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222889
|
6.7 |
MEDIUM
Local
|
intel
|
nuc_8_mainstream_game_kit_firmware nuc_8_mainstream_game_mini_computer_firmware nuc8i7bek_firmware cd1p64gk_firmware nuc8i3cysm_firmware nuc8i7hnk_firmware nuc7i7dnke_firmware nu…
|
Out of bounds write in firmware for Intel(R) NUC(R) may allow a privileged user to potentially enable escalation of privilege via local access.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14612
|
2024-11-21 13:27 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222890
|
6.7 |
MEDIUM
Local
|
intel
|
nuc_8_mainstream_game_kit_firmware nuc_8_mainstream_game_mini_computer_firmware nuc8i7bek_firmware cd1p64gk_firmware nuc8i3cysm_firmware nuc8i7hnk_firmware nuc7i7dnke_firmware nu…
|
Integer overflow in firmware for Intel(R) NUC(R) may allow a privileged user to potentially enable escalation of privilege via local access.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-14611
|
2024-11-21 13:27 |
2019-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|