|
223571
|
6.1 |
MEDIUM
Network
|
kaiostech
|
kaios
|
An issue was discovered in KaiOS 1.0, 2.5, and 2.5.12.5. The pre-installed Email application is vulnerable to HTML and JavaScript injection attacks. An attacker can send a specially crafted email to …
|
CWE-79
Cross-site Scripting
|
CVE-2019-14756
|
2024-11-21 13:27 |
2020-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223572
|
7.3 |
HIGH
Local
|
redhat debian
|
ansible debian_linux
|
A flaw was found in the solaris_zone module from the Ansible Community modules. When setting the name for the zone on the Solaris host, the zone name is checked by listing the process with the 'ps' b…
|
-
|
CVE-2019-14904
|
2024-11-21 13:27 |
2020-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223573
|
6.5 |
MEDIUM
Adjacent
|
intel
|
ax201_firmware ax200_firmware ac_9560_firmware ac_9462_firmware ac_9461_firmware ac_9260_firmware ac_8265_firmware ac_8260_firmware ac_3168_firmware ac_7265_firmware ac_…
|
Insufficient control flow management for some Intel(R) Wireless Bluetooth(R) products may allow an unprivileged user to potentially enable denial of service via adjacent access.
|
NVD-CWE-noinfo
|
CVE-2019-14620
|
2024-11-21 13:27 |
2020-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223574
|
4.6 |
MEDIUM
Physics
|
intel
|
dsl3310_thunderbolt_firmware dsl3510_thunderbolt_firmware dsl4510_thunderbolt_firmware dsl4410_thunderbolt_firmware dsl5520_thunderbolt_2_firmware dsl5320_thunderbolt_2_firmware dsl…
|
Reliance on untrusted inputs in a security decision in some Intel(R) Thunderbolt(TM) controllers may allow unauthenticated user to potentially enable information disclosure via physical access.
|
NVD-CWE-noinfo
|
CVE-2019-14630
|
2024-11-21 13:27 |
2020-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223575
|
6.5 |
MEDIUM
Network
|
hibernate redhat quarkus
|
hibernate_orm decision_manager openstack single_sign-on jboss_data_grid jboss_middleware_text-only_advisories jboss_enterprise_application_platform build_of_quarkus fuse qu…
|
A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is us…
|
CWE-89
SQL Injection
|
CVE-2019-14900
|
2024-11-21 13:27 |
2020-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223576
|
7.2 |
HIGH
Network
|
redhat
|
cloudforms_management_engine
|
A flaw was found in the CloudForms management engine version 5.10 and CloudForms management version 5.11, which triggered remote code execution through NFS schedule backup. An attacker logged into th…
|
-
|
CVE-2019-14894
|
2024-11-21 13:27 |
2020-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223577
|
7.0 |
HIGH
Local
|
linux redhat
|
linux_kernel enterprise_mrg
|
The fix for CVE-2019-11599, affecting the Linux kernel before 5.0.10 was not complete. A local user could use this flaw to obtain sensitive information, cause a denial of service, or possibly have ot…
|
-
|
CVE-2019-14898
|
2024-11-21 13:27 |
2020-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223578
|
7.5 |
HIGH
Network
|
ushareit
|
shareit
|
SHAREit through 4.0.6.177 does not check the body length from the received packet header (which is used to allocate memory for the next set of data). This could lead to a system denial of service due…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-14941
|
2024-11-21 13:27 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223579
|
7.8 |
HIGH
Local
|
ksh_project debian apple
|
ksh debian_linux mac_os_x
|
In ksh version 20120801, a flaw was found in the way it evaluates certain environment variables. An attacker could use this flaw to override or bypass environment restrictions to execute shell comman…
|
-
|
CVE-2019-14868
|
2024-11-21 13:27 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223580
|
5.6 |
MEDIUM
Local
|
redhat fedoraproject opensuse
|
ansible_engine cloudforms_management_engine ceph_storage ansible_tower openstack fedora leap backports_sle
|
A vulnerability was found in Ansible Engine versions 2.9.x before 2.9.3, 2.8.x before 2.8.8, 2.7.x before 2.7.16 and earlier, where in Ansible's nxos_file_copy module can be used to copy files to a f…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2019-14905
|
2024-11-21 13:27 |
2020-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|