|
222921
|
7.1 |
HIGH
Local
|
ibus_project redhat canonical oracle
|
ibus enterprise_linux ubuntu_linux zfs_storage_appliance_kit
|
A flaw was discovered in ibus in versions before 1.5.22 that allows any unprivileged user to monitor and send method calls to the ibus bus of another user due to a misconfiguration in the DBus server…
|
CWE-862
Missing Authorization
|
CVE-2019-14822
|
2024-11-21 13:27 |
2019-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222922
|
5.0 |
MEDIUM
Network
|
kubernetes fedoraproject redhat
|
cri-o fedora openshift_container_platform
|
A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can result in container management (conmon) processes being killed if a workload proce…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2019-14891
|
2024-11-21 13:27 |
2019-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222923
|
7.8 |
HIGH
Local
|
linux redhat netapp
|
linux_kernel enterprise_linux enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux_for_ibm_z_systems_eus enterprise_linux_for_real_time_for_nfv_tus enterprise_li…
|
A vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params() function of Marvell Wifi Driver.
|
-
|
CVE-2019-14815
|
2024-11-21 13:27 |
2019-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222924
|
6.1 |
MEDIUM
Network
|
openfind
|
mail2000
|
An Open Redirect vulnerability for all browsers in MAIL2000 through version 6.0 and 7.0, which will redirect to a malicious site without authentication. This vulnerability affects many mail system of…
|
CWE-601
Open Redirect
|
CVE-2019-15073
|
2024-11-21 13:27 |
2019-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222925
|
6.1 |
MEDIUM
Network
|
openfind
|
mail2000
|
The login feature in "/cgi-bin/portal" in MAIL2000 through version 6.0 and 7.0 has a cross-site scripting (XSS) vulnerability, allowing execution of arbitrary code via any parameter. This vulnerabili…
|
CWE-79
Cross-site Scripting
|
CVE-2019-15072
|
2024-11-21 13:27 |
2019-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222926
|
6.1 |
MEDIUM
Network
|
openfind
|
mail2000
|
The "/cgi-bin/go" page in MAIL2000 through version 6.0 and 7.0 has a cross-site scripting (XSS) vulnerability, allowing execution of arbitrary code via ACTION parameter without authentication. The co…
|
CWE-79
Cross-site Scripting
|
CVE-2019-15071
|
2024-11-21 13:27 |
2019-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222927
|
6.1 |
MEDIUM
Network
|
getmailbird
|
mailbird
|
Multiple cross-site scripting (XSS) vulnerabilities in Mailbird before 2.7.5.0 r allow remote attackers to execute arbitrary JavaScript in a privileged context via a crafted HTML mail message. This v…
|
CWE-79
Cross-site Scripting
|
CVE-2019-15054
|
2024-11-21 13:27 |
2019-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222928
|
8.8 |
HIGH
Network
|
artifex fedoraproject opensuse
|
ghostscript fedora leap
|
A flaw was found in all versions of ghostscript 9.x before 9.50, where the `.charkeys` procedure, where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restricti…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-14869
|
2024-11-21 13:27 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222929
|
10.0 |
CRITICAL
Network
|
sas
|
xml_mapper base_sas
|
SAS XML Mapper 9.45 has an XML External Entity (XXE) vulnerability that can be leveraged by malicious attackers in multiple ways. Examples are Local File Reading, Out Of Band File Exfiltration, Serve…
|
CWE-611
XXE
|
CVE-2019-14678
|
2024-11-21 13:27 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222930
|
7.5 |
HIGH
Network
|
dpdk redhat fedoraproject
|
data_plane_development_kit enterprise_linux_fast_datapath openstack virtualization_eus fedora
|
A flaw was found in all dpdk version 17.x.x before 17.11.8, 16.x.x before 16.11.10, 18.x.x before 18.11.4 and 19.x.x before 19.08.1 where a malicious master, or a container with access to vhost_user …
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-14818
|
2024-11-21 13:27 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|