|
219071
|
8.8 |
HIGH
Network
|
youphptube
|
youphptube
|
An exploitable SQL injection vulnerability exists in the authenticated part of YouPHPTube 7.6. Specially crafted web requests can cause a SQL injection. An attacker can send a web request with parame…
|
CWE-89
SQL Injection
|
CVE-2019-5116
|
2024-11-21 13:44 |
2019-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219072
|
9.9 |
CRITICAL
Network
|
youphptube
|
youphptube
|
An exploitable SQL injection vulnerability exists in the authenticated portion of YouPHPTube 7.6. Specially crafted web requests can cause SQL injections. An attacker can send a web request with para…
|
CWE-89
SQL Injection
|
CVE-2019-5114
|
2024-11-21 13:44 |
2019-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219073
|
7.8 |
HIGH
Local
|
wacom
|
driver
|
An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the start/stopLaunchDProcess command. The command takes a user-supplied string…
|
CWE-88
Argument Injection
|
CVE-2019-5013
|
2024-11-21 13:44 |
2019-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219074
|
7.8 |
HIGH
Local
|
wacom
|
driver
|
An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the startProcess command. The command takes a user-supplied script argument an…
|
CWE-88
Argument Injection
|
CVE-2019-5012
|
2024-11-21 13:44 |
2019-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219075
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF. A specially crafted PDF can cause a type confusion, resulting in a use-after-free condition. An attacker…
|
CWE-416
Use After Free
|
CVE-2019-5053
|
2024-11-21 13:44 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219076
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory manipulation, this can lead to arbitrary code execution. In order to trigger thi…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5050
|
2024-11-21 13:44 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219077
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522. With careful memory manipulation, this can lead to arbitrary code execution. In order to trigger thi…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5048
|
2024-11-21 13:44 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219078
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
An exploitable Use After Free vulnerability exists in the CharProcs parsing functionality of NitroPDF. A specially crafted PDF can cause a type confusion, resulting in a Use After Free. An attacker c…
|
CWE-416 CWE-843
Use After Free Type Confusion
|
CVE-2019-5047
|
2024-11-21 13:44 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219079
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in NitroPDF 12.12.1.522. With careful memory manipulation, this can lead to arbit…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5046
|
2024-11-21 13:44 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219080
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in NitroPDF 12.12.1.522. With careful memory manipulation, this can lead to arbit…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5045
|
2024-11-21 13:44 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|