|
219341
|
4.8 |
MEDIUM
Network
|
netgear
|
rbr50_firmware rbs50_firmware rbk50_firmware
|
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.
|
CWE-79
Cross-site Scripting
|
CVE-2019-20639
|
2024-11-21 13:38 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219342
|
6.5 |
MEDIUM
Network
|
netgear
|
mr1100_firmware
|
NETGEAR MR1100 devices before 12.06.08.00 are affected by disclosure of administrative credentials.
|
CWE-200
Information Exposure
|
CVE-2019-20638
|
2024-11-21 13:38 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219343
|
7.5 |
HIGH
Network
|
varnish-cache varnish-software opensuse
|
varnish_cache leap backports_sle
|
An issue was discovered in Varnish Cache before 6.0.5 LTS, 6.1.x and 6.2.x before 6.2.2, and 6.3.x before 6.3.1. It does not clear a pointer between the handling of one client request and the next re…
|
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer
|
CVE-2019-20637
|
2024-11-21 13:38 |
2020-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219344
|
6.7 |
MEDIUM
Local
|
linux netapp
|
linux_kernel cloud_backup steelstore_cloud_integrated_storage solidfire h610s h300s h500s h700s h410s fas_8300 fas_8700 h610c h615c fas_baseboard_management_con…
|
In the Linux kernel before 5.4.12, drivers/input/input.c has out-of-bounds writes via a crafted keycode table, as demonstrated by input_set_keycode, aka CID-cb222aed03d7.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-20636
|
2024-11-21 13:38 |
2020-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219345
|
6.1 |
MEDIUM
Network
|
intland
|
codebeamer
|
codeBeamer before 9.5.0-RC3 does not properly restrict the ability to execute custom Java code and access the Java class loader via computed fields.
|
CWE-470
Unsafe Reflection
|
CVE-2019-20635
|
2024-11-21 13:38 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219346
|
3.7 |
LOW
Network
|
proofpoint
|
email_protection
|
An issue was discovered in Proofpoint Email Protection through 2019-09-08. By collecting scores from Proofpoint email headers, it is possible to build a copy-cat Machine Learning Classification model…
|
CWE-697
Incorrect Comparison
|
CVE-2019-20634
|
2024-11-21 13:38 |
2020-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219347
|
5.5 |
MEDIUM
Local
|
gnu
|
patch
|
GNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of service via a crafted patch file. NOTE: this issue ex…
|
CWE-415
Double Free
|
CVE-2019-20633
|
2024-11-21 13:38 |
2020-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219348
|
3.3 |
LOW
Local
|
google
|
android
|
An issue was discovered on Samsung mobile devices with N(7.1) and O(8.x) (Exynos chipsets) software. The ion debugfs driver allows information disclosure. The Samsung ID is SVE-2018-13427 (February 2…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2019-20625
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219349
|
5.3 |
MEDIUM
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. S-Voice leaks keyboard learned words via the lock screen. The Samsung ID is SVE-2018-12981 (February 2019).
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-20624
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219350
|
3.3 |
LOW
Local
|
google
|
android
|
An issue was discovered on Samsung mobile devices with N(7.1), O(8.x), and P(9.0) software. Gallery has uninitialized memory disclosure. The Samsung ID is SVE-2018-13060 (February 2019).
|
CWE-908
Use of Uninitialized Resource
|
CVE-2019-20623
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|