|
223281
|
6.1 |
MEDIUM
Network
|
webcraftic
|
simple_301_redirects
|
The simple-301-redirects-addon-bulk-uploader plugin through 1.2.4 for WordPress has no requirement for authentication for action=bulk301export or action=bulk301clearlist.
|
CWE-601
Open Redirect
|
CVE-2019-15818
|
2024-11-21 13:29 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223282
|
6.1 |
MEDIUM
Network
|
realestateconnected
|
easy_property_listings
|
The easy-property-listings plugin before 3.4 for WordPress has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2019-15817
|
2024-11-21 13:29 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223283
|
7.5 |
HIGH
Network
|
wpexpertdeveloper
|
wp_private_content_plus
|
The wp-private-content-plus plugin before 2.0 for WordPress has no protection against option changes via save_settings_page and other save_ functions.
|
CWE-79 CWE-601
Cross-site Scripting Open Redirect
|
CVE-2019-15816
|
2024-11-21 13:29 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223284
|
6.1 |
MEDIUM
Network
|
domainmod
|
domainmod
|
In DomainMOD through 4.13, the parameter daterange in the file reporting/domains/cost-by-month.php has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2019-15811
|
2024-11-21 13:29 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223285
|
4.7 |
MEDIUM
Local
|
linux redhat debian
|
linux_kernel enterprise_linux debian_linux
|
In the Linux kernel before 5.1.13, there is a memory leak in drivers/scsi/libsas/sas_expander.c when SAS expander discovery fails. This will cause a BUG and denial of service.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-15807
|
2024-11-21 13:29 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223286
|
9.8 |
CRITICAL
Network
|
commscope
|
tr4400_firmware
|
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded passwo…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2019-15806
|
2024-11-21 13:29 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223287
|
9.8 |
CRITICAL
Network
|
commscope
|
tr4400_firmware
|
CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded passwo…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2019-15805
|
2024-11-21 13:29 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223288
|
9.8 |
CRITICAL
Network
|
irssi canonical
|
irssi ubuntu_linux
|
Irssi 1.2.x before 1.2.2 has a use-after-free if the IRC server sends a double CAP.
|
CWE-416
Use After Free
|
CVE-2019-15717
|
2024-11-21 13:29 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223289
|
9.8 |
CRITICAL
Network
|
nvidia
|
clara_genomics_analysis
|
Clara Genomics Analysis before 0.2.0 has an integer overflow for cudapoa memory management in allocate_block.cpp.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-15788
|
2024-11-21 13:29 |
2019-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223290
|
9.8 |
CRITICAL
Network
|
robotis
|
dynamixel_sdk
|
ROBOTIS Dynamixel SDK through 3.7.11 has a buffer overflow via a large rxpacket.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-15786
|
2024-11-21 13:29 |
2019-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|