|
219051
|
4.4 |
MEDIUM
Local
|
mesa3d opensuse debian canonical
|
mesa leap debian_linux ubuntu_linux
|
An exploitable shared memory permissions vulnerability exists in the functionality of X11 Mesa 3D Graphics Library 19.1.2. An attacker can access the shared memory without any specific permissions to…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-5068
|
2024-11-21 13:44 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219052
|
7.8 |
HIGH
Local
|
investintech
|
able2extract
|
An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially crafted JPEG file can cause an out-of-bounds memory write, allowing an attacker …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-5089
|
2024-11-21 13:44 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219053
|
7.8 |
HIGH
Local
|
investintech
|
able2extract
|
An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 14.0.7 x64. A specially crafted BMP file can cause an out-of-bounds memory write, allowing a potential …
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5088
|
2024-11-21 13:44 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219054
|
7.5 |
HIGH
Network
|
google
|
nest_cam_iq_indoor_firmware
|
An exploitable denial-of-service vulnerability exists in the Weave daemon of the Nest Cam IQ Indoor, version 4620002. A set of TCP connections can cause unrestricted resource allocation, resulting in…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-5043
|
2024-11-21 13:44 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219055
|
8.8 |
HIGH
Network
|
antennahouse
|
rainbow_pdf_office_server_document_converter
|
A buffer overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server Document Converter V7.0 Pro MR1 (7,0,2019,0220). While parsing a document text info …
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5030
|
2024-11-21 13:44 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219056
|
5.9 |
MEDIUM
Network
|
opensrcsec
|
grsecurity pax
|
An exploitable vulnerability exists in the grsecurity PaX patch for the function read_kmem, in PaX from version pax-linux-4.9.8-test1 to 4.9.24-test7, grsecurity official from version grsecurity-3.1-…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2019-5023
|
2024-11-21 13:44 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219057
|
7.5 |
HIGH
Network
|
python opensuse debian redhat
|
python leap debian_linux enterprise_linux enterprise_linux_eus enterprise_linux_server_tus enterprise_linux_server_aus
|
An exploitable denial-of-service vulnerability exists in the X509 certificate parser of Python.org Python 2.7.11 / 3.6.6. A specially crafted X509 certificate can cause a NULL pointer dereference, re…
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-5010
|
2024-11-21 13:44 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219058
|
9.8 |
CRITICAL
Network
|
youphptube
|
youphptube
|
An exploitable SQL injection vulnerability exist in YouPHPTube 7.7. A specially crafted unauthenticated HTTP request can cause a SQL injection, possibly leading to denial of service, exfiltration of …
|
CWE-89
SQL Injection
|
CVE-2019-5151
|
2024-11-21 13:44 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219059
|
8.1 |
HIGH
Network
|
youphptube
|
youphptube
|
An exploitable SQL injection vulnerability exist in YouPHPTube 7.7. When the "VideoTags" plugin is enabled, a specially crafted unauthenticated HTTP request can cause a SQL injection, possibly leadin…
|
CWE-89
SQL Injection
|
CVE-2019-5150
|
2024-11-21 13:44 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219060
|
4.3 |
MEDIUM
Network
|
tempo
|
tempo
|
An issue summary information disclosure vulnerability exists in Atlassian Jira Tempo plugin, version 4.10.0. Authenticated users can obtain the summary for issues they do not have permission to view …
|
CWE-862
Missing Authorization
|
CVE-2019-5095
|
2024-11-21 13:44 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|