|
223171
|
5.4 |
MEDIUM
Network
|
samba canonical opensuse debian
|
samba ubuntu_linux leap debian_linux
|
There is an issue in all samba 4.11.x versions before 4.11.5, all samba 4.10.x versions before 4.10.12 and all samba 4.9.x versions before 4.9.18, where the removal of the right to create or modify a…
|
NVD-CWE-noinfo
|
CVE-2019-14902
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223172
|
6.5 |
MEDIUM
Network
|
fedoraproject samba redhat canonical synology debian
|
fedora samba enterprise_linux storage ubuntu_linux skynas diskstation_manager directory_server router_manager debian_linux
|
All samba versions 4.9.x before 4.9.18, 4.10.x before 4.10.12 and 4.11.x before 4.11.5 have an issue where if it is set with "log level = 3" (or above) then the string obtained from the client, after…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-14907
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223173
|
8.8 |
HIGH
Network
|
dimo-crm
|
yellowbox_crm
|
An Arbitrary File Upload issue in the file browser of DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to deploy a new WebApp WAR file to the Tomcat server via Path Traversal, all…
|
CWE-22
Path Traversal
|
CVE-2019-14768
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223174
|
7.5 |
HIGH
Network
|
dimo-crm
|
yellowbox_crm
|
In DIMO YellowBox CRM before 6.3.4, Path Traversal in images/Apparence (dossier=../) and servletrecuperefichier (document=../) allows an unauthenticated user to download arbitrary files from the serv…
|
CWE-22
Path Traversal
|
CVE-2019-14767
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223175
|
6.5 |
MEDIUM
Network
|
dimo-crm
|
yellowbox_crm
|
Path Traversal in the file browser of DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to browse the server filesystem.
|
CWE-22
Path Traversal
|
CVE-2019-14766
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223176
|
8.8 |
HIGH
Network
|
dimo-crm
|
yellowbox_crm
|
Incorrect Access Control in AfficheExplorateurParam() in DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to use administrative controllers.
|
NVD-CWE-noinfo
|
CVE-2019-14765
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223177
|
5.5 |
MEDIUM
Local
|
intel
|
data_analytics_acceleration_library
|
Improper permissions in Intel(R) DAAL before version 2020 Gold may allow an authenticated user to potentially enable information disclosure via local access.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-14629
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223178
|
5.5 |
MEDIUM
Local
|
canonical intel
|
ubuntu_linux celeron_n celeron celeron_g4900t celeron_g4920 celeron_g4930 celeron_g4930t celeron_g4950 celeron_j atom_x5-z8330 atom_x5-z8500 atom_x7-z8700 atom_x5-…
|
Insufficient control flow in certain data structures for some Intel(R) Processors with Intel(R) Processor Graphics may allow an unauthenticated user to potentially enable information disclosure via l…
|
NVD-CWE-noinfo
|
CVE-2019-14615
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223179
|
7.8 |
HIGH
Local
|
intel
|
vtune_profiler
|
Improper access control in driver for Intel(R) VTune(TM) Amplifier for Windows* before update 8 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
NVD-CWE-noinfo
|
CVE-2019-14613
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223180
|
7.8 |
HIGH
Local
|
intel
|
raid_web_console_3
|
Improper permissions in the installer for Intel(R) RWC 3 for Windows before version 7.010.009.000 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-14601
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|