|
221081
|
8.8 |
HIGH
Network
|
tp-link
|
tl-wdr5620_firmware tl-wdr3500_firmware tl-wdr3600_firmware tl-wdr4300_firmware tl-wdr4900_firmware
|
TP-Link WDR Series devices through firmware v3 (such as TL-WDR5620 V3.0) are affected by command injection (after login) leading to remote code execution, because shell metacharacters can be included…
|
CWE-78
OS Command
|
CVE-2019-6487
|
2024-11-21 13:46 |
2019-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221082
|
6.5 |
MEDIUM
Network
|
cairographics
|
cairo
|
An issue was discovered in cairo 1.16.0. There is an infinite loop in the function _arc_error_normalized in the file cairo-arc.c, related to _arc_max_angle_for_tolerance_normalized.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2019-6462
|
2024-11-21 13:46 |
2019-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221083
|
6.5 |
MEDIUM
Network
|
cairographics
|
cairo
|
An issue was discovered in cairo 1.16.0. There is an assertion problem in the function _cairo_arc_in_direction in the file cairo-arc.c.
|
CWE-617
Reachable Assertion
|
CVE-2019-6461
|
2024-11-21 13:46 |
2019-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221084
|
6.5 |
MEDIUM
Network
|
gnu
|
recutils
|
An issue was discovered in GNU Recutils 1.8. There is a NULL pointer dereference in the function rec_field_set_name() in the file rec-field.c in librec.a.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-6460
|
2024-11-21 13:46 |
2019-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221085
|
6.5 |
MEDIUM
Network
|
gnu
|
recutils
|
An issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_extract_type in rec-utils.c in librec.a.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-6459
|
2024-11-21 13:46 |
2019-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221086
|
6.5 |
MEDIUM
Network
|
gnu
|
recutils
|
An issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_buf_new in rec-buf.c when called from rec_parse_rset in rec-parser.c in librec.a.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-6458
|
2024-11-21 13:46 |
2019-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221087
|
6.5 |
MEDIUM
Network
|
gnu
|
recutils
|
An issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_aggregate_reg_new in rec-aggregate.c in librec.a.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-6457
|
2024-11-21 13:46 |
2019-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221088
|
6.5 |
MEDIUM
Network
|
gnu
|
recutils
|
An issue was discovered in GNU Recutils 1.8. There is a NULL pointer dereference in the function rec_fex_size() in the file rec-fex.c of librec.a.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-6456
|
2024-11-21 13:46 |
2019-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221089
|
6.5 |
MEDIUM
Network
|
gnu
|
recutils
|
An issue was discovered in GNU Recutils 1.8. There is a double-free problem in the function rec_mset_elem_destroy() in the file rec-mset.c.
|
CWE-415
Double Free
|
CVE-2019-6455
|
2024-11-21 13:46 |
2019-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221090
|
8.1 |
HIGH
Adjacent
|
estrongs
|
es_file_explorer_file_manager
|
The ES File Explorer File Manager application through 4.1.9.7.4 for Android allows remote attackers to read arbitrary files or execute applications via TCP port 59777 requests on the local Wi-Fi netw…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-6447
|
2024-11-21 13:46 |
2019-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|