|
218901
|
6.1 |
MEDIUM
Local
|
forticlient
|
forticlient
|
An improper access control vulnerability in FortiClientMac before 6.0.5 may allow an attacker to affect the application's performance via modifying the contents of a file used by several FortiClientM…
|
NVD-CWE-noinfo
|
CVE-2019-5585
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218902
|
5.3 |
MEDIUM
Network
|
vmware
|
horizon
|
VMware Horizon Connection Server (7.x before 7.8, 7.5.x before 7.5.2, 6.x before 6.2.8) contains an information disclosure vulnerability. Successful exploitation of this issue may allow disclosure of…
|
NVD-CWE-noinfo
|
CVE-2019-5513
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218903
|
8.8 |
HIGH
Local
|
vmware
|
workstation
|
VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) running on Windows does not handle COM classes appropriately. Successful exploitation of this issue may allow hijacking of COM classes used…
|
NVD-CWE-noinfo
|
CVE-2019-5512
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218904
|
8.8 |
HIGH
Local
|
vmware
|
workstation
|
VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) running on Windows does not handle paths appropriately. Successful exploitation of this issue may allow the path to the VMX executable, on …
|
NVD-CWE-noinfo
|
CVE-2019-5511
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218905
|
6.1 |
MEDIUM
Network
|
wpape
|
ape_gallery
|
The wpape APE GALLERY plugin 1.6.14 for WordPress has stored XSS via the classGallery.php getCategories function.
|
CWE-79
Cross-site Scripting
|
CVE-2019-6117
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218906
|
6.5 |
MEDIUM
Network
|
rapid7
|
insightvm
|
Users with Site-level permissions can access files containing the username-encrypted passwords of Security Console Global Administrators and clear-text passwords for restoring backups, as well as the…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-5615
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218907
|
8.8 |
HIGH
Network
|
vmware
|
fusion workstation
|
VMware Workstation (14.x before 14.1.6) and Fusion (10.x before 10.1.6) contain an out-of-bounds write vulnerability in the e1000 virtual network adapter. This issue may allow a guest to execute code…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5524
|
2024-11-21 13:45 |
2019-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218908
|
8.8 |
HIGH
Network
|
vmware
|
fusion workstation
|
VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) and Fusion (11.x before 11.0.3, 10.x before 10.1.6) updates address an out-of-bounds write vulnerability in the e1000 and e1000e virtual ne…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5515
|
2024-11-21 13:45 |
2019-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218909
|
6.8 |
MEDIUM
Physics
|
vmware
|
fusion workstation esxi
|
VMware ESXi (6.7 before ESXi670-201903001, 6.5 before ESXi650-201903001, 6.0 before ESXi600-201903001), Workstation (15.x before 15.0.4, 14.x before 14.1.7), Fusion (11.x before 11.0.3, 10.x before 1…
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2019-5519
|
2024-11-21 13:45 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218910
|
8.8 |
HIGH
Network
|
vmware
|
fusion
|
VMware VMware Fusion (11.x before 11.0.3) contains a security vulnerability due to certain unauthenticated APIs accessible through a web socket. An attacker may exploit this issue by tricking the hos…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-5514
|
2024-11-21 13:45 |
2019-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|