|
219801
|
8.8 |
HIGH
Network
|
powerdns fedoraproject
|
authoritative_server fedora
|
A vulnerability was found in PowerDNS Authoritative Server before 4.0.7 and before 4.1.7. An insufficient validation of data coming from the user when building a HTTP request from a DNS query in the …
|
CWE-20
Improper Input Validation
|
CVE-2019-3871
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219802
|
9.1 |
CRITICAL
Network
|
libssh2 fedoraproject debian netapp opensuse
|
libssh2 fedora debian_linux ontap_select_deploy_administration_utility leap
|
An out of bounds read flaw was discovered in libssh2 before 1.8.1 when a specially crafted SFTP packet is received from the server. A remote attacker who compromises a SSH server may be able to cause…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-3858
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219803
|
8.8 |
HIGH
Network
|
libssh2 fedoraproject debian netapp redhat opensuse apple oracle
|
libssh2 fedora debian_linux ontap_select_deploy_administration_utility enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus
|
An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way packets are read from the server. A remote attacker who compromises a SSH server …
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-3855
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219804
|
9.1 |
CRITICAL
Network
|
libssh2 fedoraproject debian netapp opensuse
|
libssh2 fedora debian_linux ontap_select_deploy_administration_utility leap
|
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SSH_MSG_CHANNEL_REQUEST packets with an exit status message and no payload are parsed. A remote attacker who compromises a…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-3862
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219805
|
9.1 |
CRITICAL
Network
|
libssh2 fedoraproject debian netapp opensuse
|
libssh2 fedora debian_linux ontap_select_deploy_administration_utility leap
|
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the _libssh2_packet_require and _libssh2_packet_requirev functions. A remote attacker who compromises a SSH server may be able to …
|
CWE-125
Out-of-bounds Read
|
CVE-2019-3859
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219806
|
5.5 |
MEDIUM
Local
|
libsndfile_project debian canonical
|
libsndfile debian_linux ubuntu_linux
|
It was discovered the fix for CVE-2018-19758 (libsndfile) was not complete and still allows a read beyond the limits of a buffer in wav_write_header() function in wav.c. A local attacker may use this…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-3832
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219807
|
8.8 |
HIGH
Network
|
indionetworks
|
unibox_firmware
|
An issue was discovered on Wifi-soft UniBox controller 0.x through 2.x devices. The tools/ping Ping feature of the Diagnostic Tools component is vulnerable to Remote Command Execution, allowing an at…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-3497
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219808
|
8.8 |
HIGH
Network
|
indionetworks
|
unibox_firmware
|
An issue was discovered on Wifi-soft UniBox controller 3.x devices. The tools/controller/diagnostic_tools_controller Diagnostic Tools Controller is vulnerable to Remote Command Execution, allowing an…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-3496
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219809
|
8.8 |
HIGH
Network
|
indionetworks
|
unibox_firmware
|
An issue was discovered on Wifi-soft UniBox controller 0.x through 2.x devices. network/mesh/edit-nds.php is vulnerable to arbitrary file upload, allowing an attacker to upload .php files and execute…
|
CWE-798 CWE-434
Use of Hard-coded Credentials Unrestricted Upload of File with Dangerous Type
|
CVE-2019-3495
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219810
|
7.5 |
HIGH
Network
|
openwsman_project fedoraproject opensuse
|
openwsman fedora leap
|
Openwsman, versions up to and including 2.6.9, are vulnerable to infinite loop in process_connection() when parsing specially crafted HTTP requests. A remote, unauthenticated attacker can exploit thi…
|
-
|
CVE-2019-3833
|
2024-11-21 13:42 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|