|
212611
|
6.5 |
MEDIUM
Network
|
zohocorp
|
manageengine_servicedesk_plus
|
Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via login page customization.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-8394
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212612
|
7.5 |
HIGH
Network
|
dlink
|
dir-823g_firmware
|
An issue was discovered on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access control allowing remote attackers to enable Guest Wi-Fi via the SetWLanRadioSettings HNAP API to th…
|
NVD-CWE-noinfo
|
CVE-2019-8392
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212613
|
8.1 |
HIGH
Adjacent
|
musicloud_project
|
musicloud
|
A file-read vulnerability was identified in the Wi-Fi transfer feature of Musicloud 1.6. By default, the application runs a transfer service on port 8080, accessible by everyone on the same Wi-Fi net…
|
CWE-22
Path Traversal
|
CVE-2019-8389
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212614
|
7.8 |
HIGH
Local
|
advancemame debian fedoraproject redhat
|
advancecomp debian_linux fedora enterprise_linux_workstation enterprise_linux_server enterprise_linux_for_power_little_endian
|
An issue was discovered in AdvanceCOMP through 2.1. An invalid memory address occurs in the function adv_png_unfilter_8 in lib/png.c. It can be triggered by sending a crafted file to a binary. It all…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-8383
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212615
|
8.8 |
HIGH
Network
|
axiosys
|
bento4
|
An issue was discovered in Bento4 1.5.1-628. A NULL pointer dereference occurs in the function AP4_List:Find located in Core/Ap4List.h when called from Core/Ap4Movie.cpp. It can be triggered by sendi…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-8382
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212616
|
7.8 |
HIGH
Local
|
broadcom fedoraproject
|
tcpreplay fedora
|
An issue was discovered in Tcpreplay 4.3.1. An invalid memory access occurs in do_checksum in checksum.c. It can be triggered by sending a crafted pcap file to the tcpreplay-edit binary. It allows an…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-8381
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212617
|
8.8 |
HIGH
Network
|
axiosys
|
bento4
|
An issue was discovered in Bento4 1.5.1-628. A NULL pointer dereference occurs in AP4_Track::GetSampleIndexForTimeStampMs() located in Core/Ap4Track.cpp. It can triggered by sending a crafted file to…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-8380
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212618
|
7.8 |
HIGH
Local
|
advancemame debian fedoraproject redhat
|
advancecomp debian_linux fedora enterprise_linux_workstation enterprise_linux_server enterprise_linux_for_power_little_endian
|
An issue was discovered in AdvanceCOMP through 2.1. A NULL pointer dereference exists in the function be_uint32_read() located in endianrw.h. It can be triggered by sending a crafted file to a binary…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-8379
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212619
|
8.8 |
HIGH
Network
|
axiosys
|
bento4
|
An issue was discovered in Bento4 1.5.1-628. A heap-based buffer over-read exists in AP4_BitStream::ReadBytes() in Codecs/Ap4BitStream.cpp, a similar issue to CVE-2017-14645. It can be triggered by s…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-8378
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212620
|
7.8 |
HIGH
Local
|
broadcom fedoraproject
|
tcpreplay fedora
|
An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_ipv6_l4proto() located at get.c. This can be triggered by sending a crafted pcap file to the tcprep…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-8377
|
2024-11-21 13:49 |
2019-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|