|
219201
|
8.0 |
HIGH
Network
|
openstack redhat
|
octavia openstack
|
An access-control flaw was found in the Octavia service when the cloud platform was deployed using Red Hat OpenStack Platform Director. An attacker could cause new amphorae to run based on any arbitr…
|
NVD-CWE-Other
|
CVE-2019-3895
|
2024-11-21 13:42 |
2019-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219202
|
8.8 |
HIGH
Adjacent
|
linux redhat canonical netapp fedoraproject debian opensuse
|
linux_kernel enterprise_linux ubuntu_linux a700s_firmware cn1610_firmware h610s_firmware solidfire hci_management_node active_iq_unified_manager_for_vmware_vsphere fedora
|
A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network.
|
-
|
CVE-2019-3846
|
2024-11-21 13:42 |
2019-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219203
|
8.1 |
HIGH
Network
|
linuxfoundation
|
osquery
|
In some configurations an attacker can inject a new executable path into the extensions.load file for osquery and hard link a parent folder of a malicious binary to a folder with known 'safe' permiss…
|
CWE-59
Link Following
|
CVE-2019-3567
|
2024-11-21 13:42 |
2019-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219204
|
5.3 |
MEDIUM
Network
|
pivotal_software
|
spring_data_java_persistance_api
|
This affects Spring Data JPA in versions up to and including 2.1.6, 2.0.14 and 1.11.20. ExampleMatcher using ExampleMatcher.StringMatcher.STARTING, ExampleMatcher.StringMatcher.ENDING or ExampleMatch…
|
NVD-CWE-Other
|
CVE-2019-3802
|
2024-11-21 13:42 |
2019-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219205
|
9.1 |
CRITICAL
Network
|
atlassian
|
bitbucket
|
Atlassian Bitbucket Data Center licensed instances starting with version 5.13.0 before 5.13.6 (the fixed version for 5.13.x), from 5.14.0 before 5.14.4 (fixed version for 5.14.x), from 5.15.0 before …
|
CWE-22
Path Traversal
|
CVE-2019-3397
|
2024-11-21 13:42 |
2019-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219206
|
5.3 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The /rest/api/2/user/picker rest resource in Jira before version 7.13.3, from version 8.0.0 before version 8.0.4, and from version 8.1.0 before version 8.1.1 allows remote attackers to enumerate user…
|
CWE-863
Incorrect Authorization
|
CVE-2019-3403
|
2024-11-21 13:42 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219207
|
6.1 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The ConfigurePortalPages.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site script…
|
CWE-79
Cross-site Scripting
|
CVE-2019-3402
|
2024-11-21 13:42 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219208
|
5.3 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The ManageFilters.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to enumerate usernames via an incorrect authorisation check.
|
CWE-863
Incorrect Authorization
|
CVE-2019-3401
|
2024-11-21 13:42 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219209
|
7.8 |
HIGH
Local
|
artifex debian opensuse fedoraproject canonical redhat
|
ghostscript debian_linux leap fedora ubuntu_linux enterprise_linux
|
It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript file could use this flaw in order to, fo…
|
NVD-CWE-noinfo
|
CVE-2019-3839
|
2024-11-21 13:42 |
2019-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219210
|
6.7 |
MEDIUM
Local
|
dell
|
emc_recoverpoint recoverpoint_for_virtual_machines
|
Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an OS command injection vulnerability in the installation feature of Boxmgmt CLI. A malicious …
|
CWE-78
OS Command
|
CVE-2019-3727
|
2024-11-21 13:42 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|