|
222791
|
5.4 |
MEDIUM
Network
|
moodle
|
moodle
|
A flaw was found in Moodle versions 3.6 to 3.6.1, 3.5 to 3.5.3, 3.4 to 3.4.6, 3.1 to 3.1.15 and earlier unsupported versions. The 'manage groups' capability did not have the 'XSS risk' flag assigned …
|
CWE-79
Cross-site Scripting
|
CVE-2019-3808
|
2024-11-21 13:42 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222792
|
7.8 |
HIGH
Local
|
hp
|
arcsight_logger
|
Mitigates a remote code execution issue in ArcSight Logger versions prior to 6.7.
|
NVD-CWE-noinfo
|
CVE-2019-3484
|
2024-11-21 13:42 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222793
|
6.5 |
MEDIUM
Network
|
hp
|
arcsight_logger
|
Mitigates a potential information leakage issue in ArcSight Logger versions prior to 6.7.
|
NVD-CWE-noinfo
|
CVE-2019-3483
|
2024-11-21 13:42 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222794
|
6.5 |
MEDIUM
Network
|
hp
|
arcsight_logger
|
Mitigates a directory traversal issue in ArcSight Logger versions prior to 6.7.
|
CWE-22
Path Traversal
|
CVE-2019-3482
|
2024-11-21 13:42 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222795
|
7.1 |
HIGH
Network
|
hp
|
arcsight_logger
|
Mitigates a XML External Entity Parsing issue in ArcSight Logger versions prior to 6.7.
|
CWE-611
XXE
|
CVE-2019-3481
|
2024-11-21 13:42 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222796
|
6.1 |
MEDIUM
Network
|
hp
|
arcsight_logger
|
Mitigates a stored/reflected XSS issue in ArcSight Logger versions prior to 6.7.
|
CWE-79
Cross-site Scripting
|
CVE-2019-3480
|
2024-11-21 13:42 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222797
|
9.8 |
CRITICAL
Network
|
hp
|
arcsight_logger
|
Mitigates a potential remote code execution issue in ArcSight Logger versions prior to 6.7.
|
NVD-CWE-noinfo
|
CVE-2019-3479
|
2024-11-21 13:42 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222798
|
9.8 |
CRITICAL
Network
|
microfocus
|
data_protector
|
Remote arbitrary code execution in Micro Focus Data Protector, version 10.03 this vulnerability could allow remote arbitrary code execution.
|
NVD-CWE-noinfo
|
CVE-2019-3476
|
2024-11-21 13:42 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222799
|
8.8 |
HIGH
Network
|
powerdns fedoraproject
|
authoritative_server fedora
|
A vulnerability was found in PowerDNS Authoritative Server before 4.0.7 and before 4.1.7. An insufficient validation of data coming from the user when building a HTTP request from a DNS query in the …
|
CWE-20
Improper Input Validation
|
CVE-2019-3871
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222800
|
9.1 |
CRITICAL
Network
|
libssh2 fedoraproject debian netapp opensuse
|
libssh2 fedora debian_linux ontap_select_deploy_administration_utility leap
|
An out of bounds read flaw was discovered in libssh2 before 1.8.1 when a specially crafted SFTP packet is received from the server. A remote attacker who compromises a SSH server may be able to cause…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-3858
|
2024-11-21 13:42 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|