|
219181
|
6.8 |
MEDIUM
Network
|
vmware
|
fusion workstation esxi
|
VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before ESXi650-201903001), Workstation (15.x before 15.0.3 and 14.x before 14.1.6), Fusion (11.x before 11.0.3 and 10.x before 10.1.6) updates add…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-5516
|
2024-11-21 13:45 |
2019-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219182
|
9.8 |
CRITICAL
Network
|
silverstripe
|
silverstripe
|
All versions of SilverStripe 3 prior to 3.6.7 and 3.7.3, and all versions of SilverStripe 4 prior to 4.0.7, 4.1.5, 4.2.4, and 4.3.1 allows Reflected SQL Injection through Form and DataObject.
|
CWE-89
SQL Injection
|
CVE-2019-5715
|
2024-11-21 13:45 |
2019-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219183
|
6.1 |
MEDIUM
Local
|
nvidia
|
jetson_tx2
|
NVIDIA Jetson TX2 contains a vulnerability in the kernel driver (on all versions prior to R28.3) where the ARM System Memory Management Unit (SMMU) improperly checks for a fault condition, causing tr…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2019-5673
|
2024-11-21 13:45 |
2019-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219184
|
9.1 |
CRITICAL
Network
|
nvidia
|
jetson_tx2 jetson_tx1
|
NVIDIA Jetson TX1 and TX2 contain a vulnerability in the Linux for Tegra (L4T) operating system (on all versions prior to R28.3) where the Secure Shell (SSH) keys provided in the sample rootfs are no…
|
CWE-320
Key Management Errors
|
CVE-2019-5672
|
2024-11-21 13:45 |
2019-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219185
|
6.1 |
MEDIUM
Local
|
forticlient
|
forticlient
|
An improper access control vulnerability in FortiClientMac before 6.0.5 may allow an attacker to affect the application's performance via modifying the contents of a file used by several FortiClientM…
|
NVD-CWE-noinfo
|
CVE-2019-5585
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219186
|
5.3 |
MEDIUM
Network
|
vmware
|
horizon
|
VMware Horizon Connection Server (7.x before 7.8, 7.5.x before 7.5.2, 6.x before 6.2.8) contains an information disclosure vulnerability. Successful exploitation of this issue may allow disclosure of…
|
NVD-CWE-noinfo
|
CVE-2019-5513
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219187
|
8.8 |
HIGH
Local
|
vmware
|
workstation
|
VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) running on Windows does not handle COM classes appropriately. Successful exploitation of this issue may allow hijacking of COM classes used…
|
NVD-CWE-noinfo
|
CVE-2019-5512
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219188
|
8.8 |
HIGH
Local
|
vmware
|
workstation
|
VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) running on Windows does not handle paths appropriately. Successful exploitation of this issue may allow the path to the VMX executable, on …
|
NVD-CWE-noinfo
|
CVE-2019-5511
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219189
|
6.1 |
MEDIUM
Network
|
wpape
|
ape_gallery
|
The wpape APE GALLERY plugin 1.6.14 for WordPress has stored XSS via the classGallery.php getCategories function.
|
CWE-79
Cross-site Scripting
|
CVE-2019-6117
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219190
|
6.5 |
MEDIUM
Network
|
rapid7
|
insightvm
|
Users with Site-level permissions can access files containing the username-encrypted passwords of Security Console Global Administrators and clear-text passwords for restoring backups, as well as the…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-5615
|
2024-11-21 13:45 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|