|
223111
|
5.4 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.2 has stored XSS in the WHM Tomcat Manager interface (SEC-504).
|
CWE-79
Cross-site Scripting
|
CVE-2019-14386
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223112
|
7.5 |
HIGH
Network
|
openmpt
|
libopenmpt
|
libopenmpt before 0.4.3 allows a crash due to a NULL pointer dereference when doing a portamento from an OPL instrument to an empty instrument note map slot.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-14381
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223113
|
6.5 |
MEDIUM
Network
|
custom_simple_rss_project
|
custom_simple_rss
|
A CSRF vulnerability in Settings form in the Custom Simple Rss plugin 2.0.6 for WordPress allows attackers to change the plugin settings.
|
CWE-352
Origin Validation Error
|
CVE-2019-14327
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223114
|
9.8 |
CRITICAL
Network
|
matrixssl
|
matrixssl
|
In MatrixSSL 3.8.3 Open through 4.2.1 Open, the DTLS server mishandles incoming network messages leading to a heap-based buffer overflow of up to 256 bytes and possible Remote Code Execution in parse…
|
CWE-787 CWE-755
Out-of-bounds Write Improper Handling of Exceptional Conditions
|
CVE-2019-14431
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223115
|
8.8 |
HIGH
Network
|
veritas
|
resiliency_platform
|
An issue was discovered in Veritas Resiliency Platform (VRP) before 3.4 HF1. When uploading an application bundle, a directory traversal vulnerability allows a VRP user with sufficient privileges to …
|
CWE-22
Path Traversal
|
CVE-2019-14418
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223116
|
7.5 |
HIGH
Network
|
fasterxml debian fedoraproject apache redhat oracle
|
jackson-databind debian_linux fedora drill jboss_middleware_text-only_advisories retail_xstore_point_of_service banking_platform jd_edwards_enterpriseone_tools primavera_gatew…
|
A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.x before 2.9.9.2. This occurs when Default Typing is enabled (either globally or for a specific property) for an externally e…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2019-14439
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223117
|
7.2 |
HIGH
Network
|
veritas
|
resiliency_platform
|
An issue was discovered in Veritas Resiliency Platform (VRP) before 3.4 HF1. An arbitrary command execution vulnerability allows a malicious VRP user to execute commands with root privilege within th…
|
NVD-CWE-noinfo
|
CVE-2019-14417
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223118
|
7.2 |
HIGH
Network
|
veritas
|
resiliency_platform
|
An issue was discovered in Veritas Resiliency Platform (VRP) before 3.4 HF1. An arbitrary command execution vulnerability allows a malicious VRP user to execute commands with root privilege within th…
|
NVD-CWE-noinfo
|
CVE-2019-14416
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223119
|
4.8 |
MEDIUM
Network
|
veritas
|
resiliency_platform
|
An issue was discovered in Veritas Resiliency Platform (VRP) before 3.4 HF1. A persistent cross-site scripting (XSS) vulnerability allows a malicious VRP user to inject malicious script into another …
|
CWE-79
Cross-site Scripting
|
CVE-2019-14415
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223120
|
9.8 |
CRITICAL
Network
|
docker debian opensuse
|
docker debian_linux leap
|
In Docker 19.03.x before 19.03.1 linked against the GNU C Library (aka glibc), code injection can occur when the nsswitch facility dynamically loads a library inside a chroot that contains the conten…
|
CWE-665
Improper Initialization
|
CVE-2019-14271
|
2024-11-21 13:26 |
2019-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|