|
221611
|
8.8 |
HIGH
Network
|
nagios
|
nagios_xi
|
In Nagios XI 5.6.9, an authenticated user is able to execute arbitrary OS commands via shell metacharacters in the id parameter to schedulereport.php, in the context of the web-server user account.
|
CWE-78
OS Command
|
CVE-2019-20197
|
2024-11-21 13:38 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221612
|
7.5 |
HIGH
Network
|
pureftpd fedoraproject
|
pure-ftpd fedora
|
In Pure-FTPd 1.0.49, a stack exhaustion issue was discovered in the listdir function in ls.c.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2019-20176
|
2024-11-21 13:38 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221613
|
7.5 |
HIGH
Network
|
qemu
|
qemu
|
An issue was discovered in ide_dma_cb() in hw/ide/core.c in QEMU 2.4.0 through 4.2.0. The guest system can crash the QEMU process in the host system via a special SCSI_IOCTL_SEND_COMMAND. It hits an …
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2019-20175
|
2024-11-21 13:38 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221614
|
7.8 |
HIGH
Local
|
serenityos
|
serenityos
|
Kernel/VM/MemoryManager.cpp in SerenityOS before 2019-12-30 does not reject syscalls with pointers into the kernel-only virtual address space, which allows local users to gain privileges by overwriti…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-20172
|
2024-11-21 13:38 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221615
|
5.5 |
MEDIUM
Local
|
gpac debian
|
gpac debian_linux
|
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is an invalid pointer dereference in the function GF_IPMPX_AUTH_Delete() in odf/ipmpx_code.c.
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2019-20170
|
2024-11-21 13:38 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221616
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a use-after-free in the function trak_Read() in isomedia/box_code_base.c.
|
CWE-416
Use After Free
|
CVE-2019-20169
|
2024-11-21 13:38 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221617
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a use-after-free in the function gf_isom_box_dump_ex() in isomedia/box_funcs.c.
|
CWE-416
Use After Free
|
CVE-2019-20168
|
2024-11-21 13:38 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221618
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function senc_Parse() in isomedia/box_code_drm.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-20167
|
2024-11-21 13:38 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221619
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function gf_isom_dump() in isomedia/box_dump.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-20166
|
2024-11-21 13:38 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221620
|
5.5 |
MEDIUM
Local
|
gpac debian
|
gpac debian_linux
|
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function ilst_item_Read() in isomedia/box_code_apple.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-20165
|
2024-11-21 13:38 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|