|
222961
|
6.5 |
MEDIUM
Network
|
samba canonical synology opensuse
|
samba ubuntu_linux skynas diskstation_manager directory_server router_manager leap
|
There is a use-after-free issue in all samba 4.9.x versions before 4.9.18, all samba 4.10.x versions before 4.10.12 and all samba 4.11.x versions before 4.11.5, essentially due to a call to realloc()…
|
CWE-416
Use After Free
|
CVE-2019-19344
|
2024-11-21 13:34 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222962
|
9.8 |
CRITICAL
Network
|
fordnn
|
usersexportimport
|
The forDNN.UsersExportImport module before 1.2.0 for DNN (formerly DotNetNuke) allows an unprivileged user to import (create) new users with Administrator privileges, as demonstrated by Roles="Admini…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-19392
|
2024-11-21 13:34 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222963
|
6.5 |
MEDIUM
Local
|
redhat
|
enterprise_linux enterprise_linux_eus
|
It was found that the Red Hat Enterprise Linux 8 kpatch update did not include the complete fix for CVE-2018-12207. A flaw was found in the way Intel CPUs handle inconsistency between, virtual to phy…
|
NVD-CWE-noinfo
|
CVE-2019-19339
|
2024-11-21 13:34 |
2020-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222964
|
7.5 |
HIGH
Network
|
intelbras
|
wrn_240_firmware
|
Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmware.cfg URI.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-19142
|
2024-11-21 13:34 |
2020-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222965
|
6.8 |
MEDIUM
Physics
|
siemens
|
sinamics_perfect_harmony_gh180_firmware
|
A vulnerability has been identified in SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR32..-.....-.... MLFB 6SR4...-.....-.... MLFB 6SR5...-.....-.... With option A30 (HMIs 12 inches or larger) (All ve…
|
CWE-362
Race Condition
|
CVE-2019-19278
|
2024-11-21 13:34 |
2020-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222966
|
7.8 |
HIGH
Local
|
norton
|
power_eraser
|
Norton Power Eraser, prior to 5.3.0.67, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to …
|
NVD-CWE-noinfo
|
CVE-2019-19548
|
2024-11-21 13:34 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222967
|
6.1 |
MEDIUM
Network
|
symantec fedoraproject
|
endpoint_detection_and_response fedora
|
Symantec Endpoint Detection and Response (SEDR), prior to 4.3.0, may be susceptible to a cross site scripting (XSS) issue. XSS is a type of issue that can enable attackers to inject client-side scrip…
|
CWE-79
Cross-site Scripting
|
CVE-2019-19547
|
2024-11-21 13:34 |
2020-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222968
|
8.8 |
HIGH
Network
|
zohocorp
|
manageengine_applications_manager
|
An issue was discovered in ManageEngine Applications Manager 14 with Build 14360. Integrated PostgreSQL which is built-in in Applications Manager is prone to attack due to lack of file permission sec…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-19475
|
2024-11-21 13:34 |
2020-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222969
|
6.1 |
MEDIUM
Local
|
linux redhat
|
linux_kernel enterprise_linux
|
An out-of-bounds memory write issue was found in the Linux Kernel, version 3.13 through 5.4, in the way the Linux kernel's KVM hypervisor handled the 'KVM_GET_EMULATED_CPUID' ioctl(2) request to get …
|
-
|
CVE-2019-19332
|
2024-11-21 13:34 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222970
|
8.8 |
HIGH
Network
|
sagemcom netgear technicolor compal
|
f\@st_3890_firmware f\@st_3686_firmware cg3700emr_firmware c6250emr_firmware tc7230_steb_firmware 7284e_firmware 7486e_firmware
|
Broadcom based cable modems across multiple vendors are vulnerable to a buffer overflow, which allows a remote attacker to execute arbitrary code at the kernel level via JavaScript run in a victim's …
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-19494
|
2024-11-21 13:34 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|