|
223121
|
8.8 |
HIGH
Network
|
trendnet
|
tew-827dru_firmware
|
An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication). The command injection exists in the key ip_addr.
|
CWE-77
Command Injection
|
CVE-2019-13150
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223122
|
8.8 |
HIGH
Network
|
trendnet
|
tew-827dru_firmware
|
An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication) via the key passwd in Routing RIP Settings.
|
CWE-78
OS Command
|
CVE-2019-13149
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223123
|
8.8 |
HIGH
Network
|
trendnet
|
tew-827dru_firmware
|
An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication) via the UDP Ports To Open in Add Gaming Rule.
|
CWE-77
Command Injection
|
CVE-2019-13148
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223124
|
6.5 |
MEDIUM
Network
|
audio_file_library_project debian
|
audio_file_library debian_linux
|
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a cr…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-13147
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223125
|
6.5 |
MEDIUM
Network
|
imagemagick debian canonical
|
imagemagick debian_linux ubuntu_linux
|
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadPSImage in coders/ps.c.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-13137
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223126
|
7.8 |
HIGH
Local
|
imagemagick
|
imagemagick
|
ImageMagick before 7.0.8-50 has an integer overflow vulnerability in the function TIFFSeekCustomStream in coders/tiff.c.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-13136
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223127
|
8.8 |
HIGH
Network
|
imagemagick debian canonical f5
|
imagemagick debian_linux ubuntu_linux big-ip_application_acceleration_manager big-ip_webaccelerator
|
ImageMagick before 7.0.8-50 has a "use of uninitialized value" vulnerability in the function ReadCUTImage in coders/cut.c.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2019-13135
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223128
|
5.5 |
MEDIUM
Local
|
imagemagick opensuse
|
imagemagick leap
|
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-13134
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223129
|
5.5 |
MEDIUM
Local
|
imagemagick opensuse
|
imagemagick leap
|
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadBMPImage in coders/bmp.c.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-13133
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223130
|
8.8 |
HIGH
Network
|
centreon
|
centreon
|
Centreon 18.x before 18.10.6, 19.x before 19.04.3, and Centreon web before 2.8.29 allows the attacker to execute arbitrary system commands by using the value "init_script"-"Monitoring Engine Binary" …
|
CWE-77
Command Injection
|
CVE-2019-13024
|
2024-11-21 13:24 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|