|
222841
|
7.5 |
HIGH
Network
|
riot-os
|
riot
|
In RIOT 2019.07, the MQTT-SN implementation (asymcute) mishandles errors occurring during a read operation on a UDP socket. The receive loop ends. This allows an attacker (via a large packet) to prev…
|
NVD-CWE-noinfo
|
CVE-2019-17389
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222842
|
6.1 |
MEDIUM
Network
|
eleopard
|
animate_it\!
|
The animate-it plugin before 2.3.5 for WordPress has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2019-17385
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222843
|
6.1 |
MEDIUM
Network
|
eleopard
|
animate_it\!
|
The animate-it plugin before 2.3.4 for WordPress has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2019-17384
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222844
|
9.8 |
CRITICAL
Network
|
netaddr_project
|
netaddr
|
The netaddr gem before 2.0.4 for Ruby has misconfigured file permissions, such that a gem install may result in 0777 permissions in the target filesystem.
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-17383
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222845
|
6.1 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.15 allows self XSS in the WHM Update Preferences interface (SEC-528).
|
CWE-79
Cross-site Scripting
|
CVE-2019-17380
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222846
|
6.1 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.15 allows self stored XSS in the WHM SSL Storage Manager interface (SEC-527).
|
CWE-79
Cross-site Scripting
|
CVE-2019-17379
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222847
|
6.1 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.15 allows self XSS in the SSL Key Delete interface (SEC-526).
|
CWE-79
Cross-site Scripting
|
CVE-2019-17378
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222848
|
6.1 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.15 allows self XSS in LiveAPI example scripts (SEC-524).
|
CWE-79
Cross-site Scripting
|
CVE-2019-17377
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222849
|
6.1 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.15 allows self XSS in the SSL Certificate Upload interface (SEC-521).
|
CWE-79
Cross-site Scripting
|
CVE-2019-17376
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222850
|
8.8 |
HIGH
Network
|
cpanel
|
cpanel
|
cPanel before 82.0.15 allows API token credentials to persist after an account has been renamed or terminated (SEC-517).
|
CWE-613
Insufficient Session Expiration
|
CVE-2019-17375
|
2024-11-21 13:32 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|