|
223571
|
6.1 |
MEDIUM
Network
|
watchguard
|
xmt515_firmware
|
A DOM based XSS vulnerability has been identified on the WatchGuard XMT515 through 12.1.3, allowing a remote attacker to execute JavaScript in the victim's browser by tricking the victim into clickin…
|
CWE-79
Cross-site Scripting
|
CVE-2019-18652
|
2024-11-21 13:33 |
2020-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223572
|
8.7 |
HIGH
Network
|
unisys
|
mcp_firmware
|
Systems management on Unisys ClearPath Forward Libra and ClearPath MCP Software Series can fault and have other unspecified impact when receiving specifically crafted message payloads over a systems …
|
NVD-CWE-noinfo
|
CVE-2019-18386
|
2024-11-21 13:33 |
2020-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223573
|
6.1 |
MEDIUM
Network
|
usriot
|
usr-wifi232-s_firmware usr-wifi232-t_firmware usr-wifi232-g2_firmware usr-wifi232-h_firmware
|
A cross-site scripting (XSS) vulnerability in the configuration web interface of the Jinan USR IOT USR-WIFI232-S/T/G2/H Low Power WiFi Module with web version 1.2.2 allows attackers to leak credentia…
|
CWE-79
Cross-site Scripting
|
CVE-2019-18842
|
2024-11-21 13:33 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223574
|
7.5 |
HIGH
Network
|
oisf debian
|
suricata debian_linux
|
An issue was discovered in Suricata 5.0.0. It was possible to bypass/evade any tcp based signature by faking a closed TCP session using an evil server. After the TCP SYN packet, it is possible to inj…
|
NVD-CWE-noinfo
|
CVE-2019-18625
|
2024-11-21 13:33 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223575
|
9.1 |
CRITICAL
Network
|
oisf debian
|
suricata debian_linux
|
An issue was discovered in Suricata 5.0.0. It is possible to bypass/evade any tcp based signature by overlapping a TCP segment with a fake FIN packet. The fake FIN packet is injected just before the …
|
CWE-436
Interpretation Conflict
|
CVE-2019-18792
|
2024-11-21 13:33 |
2020-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223576
|
8.8 |
HIGH
Local
|
avira
|
free_antivirus
|
Avira Free Antivirus 15.0.1907.1514 is prone to a local privilege escalation through the execution of kernel code from a restricted user.
|
NVD-CWE-noinfo
|
CVE-2019-18568
|
2024-11-21 13:33 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223577
|
5.5 |
MEDIUM
Local
|
virglrenderer_project redhat opensuse debian
|
virglrenderer enterprise_linux leap debian_linux
|
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_RES…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-18391
|
2024-11-21 13:33 |
2019-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223578
|
7.1 |
HIGH
Local
|
virglrenderer_project redhat opensuse debian
|
virglrenderer enterprise_linux leap debian_linux
|
An out-of-bounds read in the vrend_blit_need_swizzle function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_BLIT commands.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-18390
|
2024-11-21 13:33 |
2019-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223579
|
7.8 |
HIGH
Local
|
virglrenderer_project redhat opensuse debian
|
virglrenderer enterprise_linux leap debian_linux
|
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service, or QEMU guest-to-…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-18389
|
2024-11-21 13:33 |
2019-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223580
|
5.5 |
MEDIUM
Local
|
virglrenderer_project opensuse debian
|
virglrenderer leap debian_linux
|
A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via malformed commands.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-18388
|
2024-11-21 13:33 |
2019-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|