|
223051
|
9.8 |
CRITICAL
Network
|
openbsd
|
openbsd
|
libc in OpenBSD 6.6 allows authentication bypass via the -schallenge username, as demonstrated by smtpd, ldapd, or radiusd. This is related to gen/auth_subr.c and gen/authenticate.c in libc (and logi…
|
CWE-287
Improper Authentication
|
CVE-2019-19521
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223052
|
7.8 |
HIGH
Local
|
openbsd
|
openbsd
|
xlock in OpenBSD 6.6 allows local users to gain the privileges of the auth group by providing a LIBGL_DRIVERS_PATH environment variable, because xenocara/lib/mesa/src/loader/loader.c mishandles dlope…
|
CWE-863
Incorrect Authorization
|
CVE-2019-19520
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223053
|
7.8 |
HIGH
Local
|
openbsd
|
openbsd
|
In OpenBSD 6.6, local users can use the su -L option to achieve any login class (often excluding root) because there is a logic error in the main function in su/su.c.
|
CWE-287
Improper Authentication
|
CVE-2019-19519
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223054
|
7.8 |
HIGH
Local
|
sony
|
catalyst_browse catalyst_production_suite
|
A weak malicious user can escalate its privilege whenever CatalystProductionSuite.2019.1.exe (version 1.1.0.21) and CatalystBrowseSuite.2019.1.exe (version 1.1.0.21) installers run. The vulnerability…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-19364
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223055
|
6.1 |
MEDIUM
Network
|
csshero
|
csshero
|
The CSS Hero plugin through 4.0.3 for WordPress is prone to reflected XSS via the URI in a csshero_action=edit_page request because it fails to sufficiently sanitize user-supplied input. An attacker …
|
CWE-79
Cross-site Scripting
|
CVE-2019-19133
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223056
|
6.8 |
MEDIUM
Physics
|
xen fedoraproject
|
xen fedora
|
An issue was discovered in Xen through 4.12.x allowing attackers to gain host OS privileges via DMA in a situation where an untrusted domain has access to a physical device (and assignable-add is not…
|
CWE-20
Improper Input Validation
|
CVE-2019-19579
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223057
|
6.5 |
MEDIUM
Network
|
fronius
|
datamanager_box_2.0_firmware eco_25.0-3-s_firmware eco_27.0-3-s_firmware galvo_1.5-1_firmware galvo_1.5-1_208-240_firmware galvo_2.0-1_firmware galvo_2.0-1_208-240_firmware galvo…
|
admincgi-bin/service.fcgi on Fronius Solar Inverter devices before 3.14.1 (HM 1.12.1) allows action=download&filename= Directory Traversal.
|
CWE-22
Path Traversal
|
CVE-2019-19229
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223058
|
9.8 |
CRITICAL
Network
|
verot_project getk2
|
verot k2
|
class.upload.php in verot.net class.upload before 1.0.3 and 2.x before 2.0.4, as used in the K2 extension for Joomla! and other products, omits .phar from the set of dangerous file extensions.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2019-19576
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223059
|
9.8 |
CRITICAL
Network
|
fronius
|
datamanager_box_2.0_firmware eco_25.0-3-s_firmware eco_27.0-3-s_firmware galvo_1.5-1_firmware galvo_1.5-1_208-240_firmware galvo_2.0-1_firmware galvo_2.0-1_208-240_firmware galvo…
|
Fronius Solar Inverter devices before 3.14.1 (HM 1.12.1) allow attackers to bypass authentication because the password for the today account is stored in the /tmp/web_users.conf file.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2019-19228
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223060
|
5.5 |
MEDIUM
Local
|
xfig_project
|
xfig
|
read_textobject in read.c in Xfig fig2dev 3.2.7b has a stack-based buffer overflow because of an incorrect sscanf.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-19555
|
2024-11-21 13:34 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|