|
219021
|
7.8 |
HIGH
Local
|
rapid7
|
insightappsec
|
The Rapid7 InsightAppSec broker suffers from a DLL injection vulnerability in the 'prunsrv.exe' component of the product. If exploited, a local user of the system (who must already be authenticated t…
|
CWE-426
Untrusted Search Path
|
CVE-2019-5631
|
2024-11-21 13:45 |
2019-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219022
|
9.8 |
CRITICAL
Network
|
nokogiri canonical debian
|
nokogiri ubuntu_linux debian_linux
|
A command injection vulnerability in Nokogiri v1.10.3 and earlier allows commands to be executed in a subprocess via Ruby's `Kernel.open` method. Processes are vulnerable only if the undocumented met…
|
CWE-78
OS Command
|
CVE-2019-5477
|
2024-11-21 13:45 |
2019-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219023
|
7.8 |
HIGH
Local
|
nvidia
|
shield_experience
|
NVIDIA Shield TV Experience prior to v8.0, contains a vulnerability in the custom NVIDIA API used in the mount system service where user data could be overridden, which may lead to code execution, de…
|
NVD-CWE-noinfo
|
CVE-2019-5681
|
2024-11-21 13:45 |
2019-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219024
|
6.5 |
MEDIUM
Network
|
netapp
|
oncommand_insight
|
OnCommand Insight versions through 7.3.6 may disclose sensitive account information to an authenticated user.
|
NVD-CWE-noinfo
|
CVE-2019-5498
|
2024-11-21 13:45 |
2019-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219025
|
9.8 |
CRITICAL
Network
|
nextcloud
|
lookup-server
|
An SQL Injection in the Nextcloud Lookup-Server < v0.3.0 (running on https://lookup.nextcloud.com) caused unauthenticated users to be able to execute arbitrary SQL commands.
|
CWE-89
SQL Injection
|
CVE-2019-5476
|
2024-11-21 13:45 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219026
|
7.1 |
HIGH
Local
|
nvidia
|
gpu_driver
|
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape in which an incorrect use of default permissions for an obj…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-5687
|
2024-11-21 13:45 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219027
|
5.5 |
MEDIUM
Local
|
nvidia
|
gpu_driver
|
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape in which the software uses an API function or data structur…
|
NVD-CWE-noinfo
|
CVE-2019-5686
|
2024-11-21 13:45 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219028
|
9.8 |
CRITICAL
Network
|
nvidia
|
gpu_driver
|
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause an out of bounds access to a shader local temporary array, …
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5685
|
2024-11-21 13:45 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219029
|
10.0 |
CRITICAL
Network
|
nvidia
|
gpu_driver
|
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause an out of bounds access of an input texture array, which ma…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5684
|
2024-11-21 13:45 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219030
|
7.8 |
HIGH
Local
|
nvidia
|
gpu_driver
|
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in the user mode video driver trace logger component. When an attacker has access to the system and creates a hard link, the …
|
CWE-59
Link Following
|
CVE-2019-5683
|
2024-11-21 13:45 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|