|
218881
|
8.8 |
HIGH
Network
|
youphptube
|
youphptube
|
SQL injection vulnerabilities exists in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cause SQL injections. An attacker can send a web request with Parameter uuid in /o…
|
CWE-89
SQL Injection
|
CVE-2019-5121
|
2024-11-21 13:44 |
2019-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218882
|
8.8 |
HIGH
Network
|
youphptube
|
youphptube
|
An exploitable SQL injection vulnerability exists in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cause SQL injections. An attacker can send a web request with paramet…
|
CWE-89
SQL Injection
|
CVE-2019-5120
|
2024-11-21 13:44 |
2019-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218883
|
8.8 |
HIGH
Network
|
youphptube
|
youphptube
|
An exploitable SQL injection vulnerability exist in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cause SQL injections. An attacker can send a web request with paramete…
|
CWE-89
SQL Injection
|
CVE-2019-5119
|
2024-11-21 13:44 |
2019-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218884
|
8.8 |
HIGH
Network
|
youphptube
|
youphptube
|
Exploitable SQL injection vulnerabilities exists in the authenticated portion of YouPHPTube 7.6. Specially crafted web requests can cause SQL injections. An attacker can send a web request with param…
|
CWE-89
SQL Injection
|
CVE-2019-5117
|
2024-11-21 13:44 |
2019-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218885
|
8.8 |
HIGH
Network
|
youphptube
|
youphptube
|
An exploitable SQL injection vulnerability exists in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cause a SQL injection. An attacker can send a web request with parame…
|
CWE-89
SQL Injection
|
CVE-2019-5116
|
2024-11-21 13:44 |
2019-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218886
|
9.9 |
CRITICAL
Network
|
youphptube
|
youphptube
|
An exploitable SQL injection vulnerability exists in the authenticated portion of YouPHPTube 7.6. Specially crafted web requests can cause SQL injections. An attacker can send a web request with para…
|
CWE-89
SQL Injection
|
CVE-2019-5114
|
2024-11-21 13:44 |
2019-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218887
|
7.8 |
HIGH
Local
|
wacom
|
driver
|
An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the start/stopLaunchDProcess command. The command takes a user-supplied string…
|
CWE-88
Argument Injection
|
CVE-2019-5013
|
2024-11-21 13:44 |
2019-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218888
|
7.8 |
HIGH
Local
|
wacom
|
driver
|
An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the startProcess command. The command takes a user-supplied script argument an…
|
CWE-88
Argument Injection
|
CVE-2019-5012
|
2024-11-21 13:44 |
2019-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218889
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF. A specially crafted PDF can cause a type confusion, resulting in a use-after-free condition. An attacker…
|
CWE-416
Use After Free
|
CVE-2019-5053
|
2024-11-21 13:44 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218890
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory manipulation, this can lead to arbitrary code execution. In order to trigger thi…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5050
|
2024-11-21 13:44 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|