|
223711
|
6.5 |
MEDIUM
Network
|
dimo-crm
|
yellowbox_crm
|
Path Traversal in the file browser of DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to browse the server filesystem.
|
CWE-22
Path Traversal
|
CVE-2019-14766
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223712
|
8.8 |
HIGH
Network
|
dimo-crm
|
yellowbox_crm
|
Incorrect Access Control in AfficheExplorateurParam() in DIMO YellowBox CRM before 6.3.4 allows a standard authenticated user to use administrative controllers.
|
NVD-CWE-noinfo
|
CVE-2019-14765
|
2024-11-21 13:27 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223713
|
5.5 |
MEDIUM
Local
|
intel
|
data_analytics_acceleration_library
|
Improper permissions in Intel(R) DAAL before version 2020 Gold may allow an authenticated user to potentially enable information disclosure via local access.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-14629
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223714
|
5.5 |
MEDIUM
Local
|
canonical intel
|
ubuntu_linux celeron_n celeron celeron_g4900t celeron_g4920 celeron_g4930 celeron_g4930t celeron_g4950 celeron_j atom_x5-z8330 atom_x5-z8500 atom_x7-z8700 atom_x5-…
|
Insufficient control flow in certain data structures for some Intel(R) Processors with Intel(R) Processor Graphics may allow an unauthenticated user to potentially enable information disclosure via l…
|
NVD-CWE-noinfo
|
CVE-2019-14615
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223715
|
7.8 |
HIGH
Local
|
intel
|
vtune_profiler
|
Improper access control in driver for Intel(R) VTune(TM) Amplifier for Windows* before update 8 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
NVD-CWE-noinfo
|
CVE-2019-14613
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223716
|
7.8 |
HIGH
Local
|
intel
|
raid_web_console_3
|
Improper permissions in the installer for Intel(R) RWC 3 for Windows before version 7.010.009.000 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-14601
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223717
|
6.7 |
MEDIUM
Local
|
intel
|
snmp_subagent_stand-alone
|
Uncontrolled search path element in the installer for Intel(R) SNMP Subagent Stand-Alone for Windows* may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-14600
|
2024-11-21 13:27 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223718
|
8.8 |
HIGH
Network
|
atlassian
|
bitbucket
|
Bitbucket Server and Bitbucket Data Center from version 4.13. before 5.16.11, from version 6.0.0 before 6.0.11, from version 6.1.0 before 6.1.9, from version 6.2.0 before 6.2.7, from version 6.3.0 be…
|
CWE-269
Improper Privilege Management
|
CVE-2019-15012
|
2024-11-21 13:27 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223719
|
8.8 |
HIGH
Network
|
atlassian
|
bitbucket
|
Bitbucket Server and Bitbucket Data Center versions starting from version 3.0.0 before version 5.16.11, from version 6.0.0 before 6.0.11, from version 6.1.0 before 6.1.9, from version 6.2.0 before 6.…
|
CWE-77
Command Injection
|
CVE-2019-15010
|
2024-11-21 13:27 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223720
|
8.8 |
HIGH
Network
|
billion
|
sg600_r2_firmware
|
Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an authenticated attacker to gain root execution privileges over the device via a hidden etc_ro/web/adm/system_command.asp shell feature.
|
NVD-CWE-noinfo
|
CVE-2019-14920
|
2024-11-21 13:27 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|