|
222841
|
7.2 |
HIGH
Network
|
tigervnc opensuse
|
tigervnc leap
|
TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow, which could be triggered from DecodeManager::decodeRect. Vulnerability occurs due to the signdness error in processing MemOutSt…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-15694
|
2024-11-21 13:29 |
2019-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222842
|
7.2 |
HIGH
Network
|
tigervnc
|
tigervnc
|
TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow, which occurs in TightDecoder::FilterGradient. Exploitation of this vulnerability could potentially result into remote code exec…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-15693
|
2024-11-21 13:29 |
2019-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222843
|
7.2 |
HIGH
Network
|
tigervnc opensuse
|
tigervnc leap
|
TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow. Vulnerability could be triggered from CopyRectDecoder due to incorrect value checks. Exploitation of this vulnerability could p…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-15692
|
2024-11-21 13:29 |
2019-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222844
|
7.2 |
HIGH
Network
|
tigervnc opensuse
|
tigervnc leap
|
TigerVNC version prior to 1.10.1 is vulnerable to stack use-after-return, which occurs due to incorrect usage of stack memory in ZRLEDecoder. If decoding routine would throw an exception, ZRLEDecoder…
|
CWE-672
Operation on a Resource after Expiration or Release
|
CVE-2019-15691
|
2024-11-21 13:29 |
2019-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222845
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
A denial of service exists in gitlab <v12.3.2, <v12.2.6, and <v12.1.10 that would let an attacker bypass input validation in markdown fields take down the affected page.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2019-15584
|
2024-11-21 13:29 |
2019-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222846
|
7.5 |
HIGH
Network
|
mi
|
dgnwg03lm_firmware zncz03lm_firmware mccgq01lm_firmware rtcgq01lm_firmware
|
An issue was discovered on Xiaomi DGNWG03LM, ZNCZ03LM, MCCGQ01LM, RTCGQ01LM devices. Attackers can utilize the "discover ZigBee network procedure" to perform a denial of service attack.
|
CWE-20
Improper Input Validation
|
CVE-2019-15915
|
2024-11-21 13:29 |
2019-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222847
|
7.5 |
HIGH
Network
|
mi
|
dgnwg03lm_firmware zncz03lm_firmware mccgq01lm_firmware wsdcgq01lm_firmware rtcgq01lm_firmware
|
An issue was discovered on Xiaomi DGNWG03LM, ZNCZ03LM, MCCGQ01LM, WSDCGQ01LM, RTCGQ01LM devices. Attackers can use the ZigBee trust center rejoin procedure to perform mutiple denial of service attack…
|
CWE-20
Improper Input Validation
|
CVE-2019-15914
|
2024-11-21 13:29 |
2019-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222848
|
9.8 |
CRITICAL
Network
|
mi
|
dgnwg03lm_firmware zncz03lm_firmware mccgq01lm_firmware wsdcgq01lm_firmware rtcgq01lm_firmware
|
An issue was discovered on Xiaomi DGNWG03LM, ZNCZ03LM, MCCGQ01LM, WSDCGQ01LM, RTCGQ01LM devices. Because of insecure key transport in ZigBee communication, causing attackers to gain sensitive informa…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2019-15913
|
2024-11-21 13:29 |
2019-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222849
|
7.5 |
HIGH
Network
|
asus
|
hg100_firmware mw100_firmware ws-101_firmware ts-101_firmware as-101_firmware ms-101_firmware dl-101_firmware
|
An issue was discovered on ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, DL-101 devices using ZigBee PRO. Attackers can use the ZigBee trust center rejoin procedure to perform mutiple denial of …
|
CWE-20
Improper Input Validation
|
CVE-2019-15912
|
2024-11-21 13:29 |
2019-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222850
|
9.8 |
CRITICAL
Network
|
asus
|
hg100_firmware mw100_firmware ws-101_firmware ts-101_firmware as-101_firmware ms-101_firmware dl-101_firmware
|
An issue was discovered on ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, DL-101 devices using ZigBee PRO. Because of insecure key transport in ZigBee communication, attackers can obtain sensitiv…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2019-15911
|
2024-11-21 13:29 |
2019-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|