|
218721
|
8.8 |
HIGH
Network
|
easycms
|
easycms
|
An issue was discovered in EasyCMS 1.5. There is CSRF via the index.php?s=/admin/articlem/insert/navTabId/listarticle/callbackType/closeCurrent URI.
|
CWE-352
Origin Validation Error
|
CVE-2019-6294
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218722
|
8.8 |
HIGH
Network
|
dedecms
|
dedecms
|
uploads/include/dialog/select_soft.php in DedeCMS V57_UTF8_SP2 allows remote attackers to execute arbitrary PHP code by uploading with a safe file extension and then renaming with a mixed-case variat…
|
CWE-178 CWE-706
Improper Handling of Case Sensitivity Use of Incorrectly-Resolved Name or Reference
|
CVE-2019-6289
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218723
|
5.5 |
MEDIUM
Local
|
westes
|
flex
|
An issue was discovered in the function mark_beginning_as_normal in nfa.c in flex 2.6.4. There is a stack exhaustion problem caused by the mark_beginning_as_normal function making recursive calls to …
|
CWE-674
Uncontrolled Recursion
|
CVE-2019-6293
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218724
|
6.5 |
MEDIUM
Network
|
yaml-cpp_project
|
yaml-cpp
|
An issue was discovered in singledocparser.cpp in yaml-cpp (aka LibYaml-C++) 0.6.2. Stack Exhaustion occurs in YAML::SingleDocParser, and there is a stack consumption problem caused by recursive stac…
|
CWE-674
Uncontrolled Recursion
|
CVE-2019-6292
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218725
|
5.5 |
MEDIUM
Local
|
nasm
|
netwide_assembler
|
An issue was discovered in the function expr6 in eval.c in Netwide Assembler (NASM) through 2.14.02. There is a stack exhaustion problem caused by the expr6 function making recursive calls to itself …
|
CWE-674
Uncontrolled Recursion
|
CVE-2019-6291
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218726
|
5.5 |
MEDIUM
Local
|
nasm
|
netwide_assembler
|
An infinite recursion issue was discovered in eval.c in Netwide Assembler (NASM) through 2.14.02. There is a stack exhaustion problem resulting from infinite recursion in the functions expr, rexp, be…
|
CWE-674
Uncontrolled Recursion
|
CVE-2019-6290
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218727
|
6.1 |
MEDIUM
Network
|
premiumwpsuite
|
easy_redirect_manager
|
The Premium WP Suite Easy Redirect Manager plugin 28.07-17 for WordPress has XSS via a crafted GET request that is mishandled during log viewing at the templates/admin/redirect-log.php URI.
|
CWE-79
Cross-site Scripting
|
CVE-2019-6267
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218728
|
6.5 |
MEDIUM
Network
|
sass-lang
|
libsass
|
In LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::skip_over_scopes in prelexer.hpp when called from Sass::Parser::parse_import(), a similar issue to CVE-2018-11693.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-6286
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218729
|
6.5 |
MEDIUM
Network
|
yaml-cpp_project
|
yaml-cpp
|
The SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML …
|
CWE-674
Uncontrolled Recursion
|
CVE-2019-6285
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218730
|
6.5 |
MEDIUM
Network
|
sass-lang
|
libsass
|
In LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::alternatives in prelexer.hpp.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-6284
|
2024-11-21 13:46 |
2019-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|