|
212621
|
7.5 |
HIGH
Network
|
mobotix
|
s14_firmware
|
An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. Administrator Credentials are stored in the 13-character DES hash format.
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2019-7673
|
2024-11-21 13:48 |
2019-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212622
|
5.5 |
MEDIUM
Local
|
elfutils_project debian canonical opensuse redhat
|
elfutils debian_linux ubuntu_linux leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_eus enterprise_linux_server_tus enter…
|
In elfutils 0.175, a heap-based buffer over-read was discovered in the function elf32_xlatetom in elf32_xlatetom.c in libelf. A crafted ELF input can cause a segmentation fault leading to denial of s…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-7665
|
2024-11-21 13:48 |
2019-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212623
|
5.5 |
MEDIUM
Local
|
elfutils_project redhat
|
elfutils enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux enterprise_linux_eus enterprise_linux_server_tus enterprise_linux_server_a…
|
In elfutils 0.175, a negative-sized memcpy is attempted in elf_cvt_note in libelf/note_xlate.h because of an incorrect overflow check. Crafted elf input causes a segmentation fault, leading to denial…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7664
|
2024-11-21 13:48 |
2019-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212624
|
6.5 |
MEDIUM
Network
|
libtiff debian canonical opensuse
|
libtiff debian_linux ubuntu_linux leap
|
An Invalid Address dereference was discovered in TIFFWriteDirectoryTagTransferfunction in libtiff/tif_dirwrite.c in LibTIFF 4.0.10, affecting the cpSeparateBufToContigBuf function in tiffcp.c. Remote…
|
NVD-CWE-noinfo
|
CVE-2019-7663
|
2024-11-21 13:48 |
2019-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212625
|
6.5 |
MEDIUM
Network
|
webassembly
|
binaryen
|
An assertion failure was discovered in wasm::WasmBinaryBuilder::getType() in wasm-binary.cpp in Binaryen 1.38.22. This allows remote attackers to cause a denial of service (failed assertion and crash…
|
CWE-617
Reachable Assertion
|
CVE-2019-7662
|
2024-11-21 13:48 |
2019-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212626
|
8.1 |
HIGH
Network
|
genivia debian
|
gsoap debian_linux
|
Genivia gSOAP 2.7.x and 2.8.x before 2.8.75 allows attackers to cause a denial of service (application abort) or possibly have unspecified other impact if a server application is built with the -DWIT…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-7659
|
2024-11-21 13:48 |
2019-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212627
|
9.8 |
CRITICAL
Network
|
rdflib_project debian canonical
|
rdflib debian_linux ubuntu_linux
|
The Debian python-rdflib-tools 4.2.2-1 package for RDFLib 4.2.2 has CLI tools that can load Python modules from the current working directory, allowing code injection, because "python -m" looks in th…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-7653
|
2024-11-21 13:48 |
2019-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212628
|
7.5 |
HIGH
Network
|
emsisoft
|
anti-malware
|
EPP.sys in Emsisoft Anti-Malware prior to version 2018.12 allows an attacker to bypass ACLs because Interpreted Device Characteristics lacks FILE_DEVICE_SECURE_OPEN and therefore files and directorie…
|
NVD-CWE-noinfo
|
CVE-2019-7651
|
2024-11-21 13:48 |
2019-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212629
|
7.5 |
HIGH
Network
|
hotels_server_project
|
hotels_server
|
controller/fetchpwd.php and controller/doAction.php in Hotels_Server through 2018-11-05 rely on base64 in an attempt to protect password storage.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2019-7648
|
2024-11-21 13:48 |
2019-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212630
|
8.1 |
HIGH
Network
|
fedoraproject gsi-openssh_project
|
fedora gsi-openssh
|
An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect passw…
|
CWE-863
Incorrect Authorization
|
CVE-2019-7639
|
2024-11-21 13:48 |
2019-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|