|
219931
|
8.8 |
HIGH
Adjacent
|
linux redhat canonical netapp fedoraproject debian opensuse
|
linux_kernel enterprise_linux ubuntu_linux a700s_firmware cn1610_firmware h610s_firmware solidfire hci_management_node active_iq_unified_manager_for_vmware_vsphere fedora
|
A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network.
|
-
|
CVE-2019-3846
|
2024-11-21 13:42 |
2019-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219932
|
8.1 |
HIGH
Network
|
linuxfoundation
|
osquery
|
In some configurations an attacker can inject a new executable path into the extensions.load file for osquery and hard link a parent folder of a malicious binary to a folder with known 'safe' permiss…
|
CWE-59
Link Following
|
CVE-2019-3567
|
2024-11-21 13:42 |
2019-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219933
|
5.3 |
MEDIUM
Network
|
pivotal_software
|
spring_data_java_persistance_api
|
This affects Spring Data JPA in versions up to and including 2.1.6, 2.0.14 and 1.11.20. ExampleMatcher using ExampleMatcher.StringMatcher.STARTING, ExampleMatcher.StringMatcher.ENDING or ExampleMatch…
|
NVD-CWE-Other
|
CVE-2019-3802
|
2024-11-21 13:42 |
2019-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219934
|
9.1 |
CRITICAL
Network
|
atlassian
|
bitbucket
|
Atlassian Bitbucket Data Center licensed instances starting with version 5.13.0 before 5.13.6 (the fixed version for 5.13.x), from 5.14.0 before 5.14.4 (fixed version for 5.14.x), from 5.15.0 before …
|
CWE-22
Path Traversal
|
CVE-2019-3397
|
2024-11-21 13:42 |
2019-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219935
|
5.3 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The /rest/api/2/user/picker rest resource in Jira before version 7.13.3, from version 8.0.0 before version 8.0.4, and from version 8.1.0 before version 8.1.1 allows remote attackers to enumerate user…
|
CWE-863
Incorrect Authorization
|
CVE-2019-3403
|
2024-11-21 13:42 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219936
|
6.1 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The ConfigurePortalPages.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site script…
|
CWE-79
Cross-site Scripting
|
CVE-2019-3402
|
2024-11-21 13:42 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219937
|
5.3 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The ManageFilters.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to enumerate usernames via an incorrect authorisation check.
|
CWE-863
Incorrect Authorization
|
CVE-2019-3401
|
2024-11-21 13:42 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219938
|
7.8 |
HIGH
Local
|
artifex debian opensuse fedoraproject canonical redhat
|
ghostscript debian_linux leap fedora ubuntu_linux enterprise_linux
|
It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript file could use this flaw in order to, fo…
|
NVD-CWE-noinfo
|
CVE-2019-3839
|
2024-11-21 13:42 |
2019-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219939
|
6.7 |
MEDIUM
Local
|
dell
|
emc_recoverpoint recoverpoint_for_virtual_machines
|
Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an OS command injection vulnerability in the installation feature of Boxmgmt CLI. A malicious …
|
CWE-78
OS Command
|
CVE-2019-3727
|
2024-11-21 13:42 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219940
|
9.8 |
CRITICAL
Network
|
rsa
|
security_analytics netwitness
|
RSA Netwitness Platform versions prior to 11.2.1.1 and RSA Security Analytics versions prior to 10.6.6.1 are vulnerable to a Command Injection vulnerability due to missing input validation in the pro…
|
CWE-78
OS Command
|
CVE-2019-3725
|
2024-11-21 13:42 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|