|
211731
|
8.8 |
HIGH
Network
|
thinkphp opensourcebms zzzcms
|
thinkphp open_source_background_management_system zzzphp
|
ThinkPHP before 3.2.4, as used in Open Source BMS v1.1.1 and other products, allows Remote Command Execution via public//?s=index/\think\app/invokefunction&function=call_user_func_array&vars[0]=syste…
|
CWE-94 CWE-306
Code Injection Missing Authentication for Critical Function
|
CVE-2019-9082
|
2024-11-21 13:50 |
2019-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211732
|
5.4 |
MEDIUM
Network
|
zzcms
|
zzcms
|
zzcms 2019 has XSS via an arbitrary user/ask.php?do=modify parameter because inc/stopsqlin.php does not block a mixed-case string such as sCrIpT.
|
CWE-79
Cross-site Scripting
|
CVE-2019-9078
|
2024-11-21 13:50 |
2019-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211733
|
7.8 |
HIGH
Local
|
gnu netapp canonical f5
|
binutils element_software ubuntu_linux traffix_signaling_delivery_controller
|
An issue was discovered in GNU Binutils 2.32. It is a heap-based buffer overflow in process_mips_specific in readelf.c via a malformed MIPS option section.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-9077
|
2024-11-21 13:50 |
2019-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211734
|
5.5 |
MEDIUM
Local
|
gnu netapp
|
binutils element_software_management
|
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in elf_read_notes in elf.c.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-9076
|
2024-11-21 13:50 |
2019-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211735
|
5.5 |
MEDIUM
Local
|
gnu netapp canonical
|
binutils solidfire hci_management_node ubuntu_linux
|
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an out-of-bounds read leading to a SEGV in bfd_getl32 in libbfd.c, when ca…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-9074
|
2024-11-21 13:50 |
2019-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211736
|
7.8 |
HIGH
Local
|
gnu netapp canonical f5
|
binutils solidfire hci_management_node ubuntu_linux big-ip_edge_gateway big-ip_advanced_firewall_manager big-ip_access_policy_manager big-ip_application_acceleration_manager b…
|
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is a heap-based buffer overflow in _bfd_archive_64_bit_slurp_armap in archive…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-9075
|
2024-11-21 13:50 |
2019-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211737
|
5.5 |
MEDIUM
Local
|
gnu netapp canonical
|
binutils solidfire hci_management_node ubuntu_linux
|
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in _bfd_elf_slurp_version_tables …
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-9073
|
2024-11-21 13:50 |
2019-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211738
|
5.5 |
MEDIUM
Local
|
gnu netapp
|
binutils solidfire hci_management_node
|
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in setup_group in elf.c.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-9072
|
2024-11-21 13:50 |
2019-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211739
|
5.5 |
MEDIUM
Local
|
gnu netapp canonical
|
binutils solidfire hci_management_node ubuntu_linux
|
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a stack consumption issue in d_count_templates_scopes in cp-demangle.c after many recursive calls.
|
CWE-674
Uncontrolled Recursion
|
CVE-2019-9071
|
2024-11-21 13:50 |
2019-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211740
|
7.8 |
HIGH
Local
|
gnu netapp canonical f5
|
binutils element_software_management ubuntu_linux traffix_signaling_delivery_controller
|
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based buffer over-read in d_expression_1 in cp-demangle.c after many recursive calls.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-9070
|
2024-11-21 13:50 |
2019-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|