|
219631
|
6.5 |
MEDIUM
Network
|
videolan
|
vlc_media_player
|
A Buffer Overflow in VLC Media Player < 3.0.7 causes a crash which can possibly be further developed into a remote code execution exploit.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-5439
|
2024-11-21 13:44 |
2019-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219632
|
6.1 |
MEDIUM
Network
|
huawei
|
hedex_lite
|
There is a reflection XSS vulnerability in the HedEx products. Remote attackers send malicious links to users and trick users to click. Successfully exploit cloud allow the attacker to initiate XSS a…
|
CWE-79
Cross-site Scripting
|
CVE-2019-5286
|
2024-11-21 13:44 |
2019-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219633
|
5.3 |
MEDIUM
Local
|
huawei
|
hisuite
|
HiSuite 9.1.0.300 versions and earlier contains a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this D…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-5245
|
2024-11-21 13:44 |
2019-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219634
|
7.5 |
HIGH
Network
|
pippo
|
pippo
|
XML Entity Expansion (Billion Laughs Attack) on Pippo 1.12.0 results in Denial of Service.Entities are created recursively and large amounts of heap memory is taken. Eventually, the JVM process will …
|
CWE-776
XML Entity Expansion
|
CVE-2019-5442
|
2024-11-21 13:44 |
2019-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219635
|
4.3 |
MEDIUM
Network
|
huawei
|
hg255s_firmware
|
There is a Clickjacking vulnerability in Huawei HG255s product. An attacker may trick user to click a link and affect the integrity of a device by exploiting this vulnerability.
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2019-5243
|
2024-11-21 13:44 |
2019-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219636
|
5.5 |
MEDIUM
Local
|
huawei
|
mate_10_firmware
|
The image processing module of some Huawei Mate 10 smartphones versions before ALP-L29 9.0.0.159(C185) has a memory double free vulnerability. An attacker tricks a user into installing a malicious ap…
|
CWE-415
Double Free
|
CVE-2019-5305
|
2024-11-21 13:44 |
2019-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219637
|
6.4 |
MEDIUM
Physics
|
huawei
|
honor_view_10_firmware
|
Huawei Honor V10 smartphones versions earlier than Berkeley-AL20 9.0.0.125(C00E125R2P14T8) have an authorization bypass vulnerability. Due to improper authorization implementation logic, attackers ca…
|
NVD-CWE-noinfo
|
CVE-2019-5295
|
2024-11-21 13:44 |
2019-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219638
|
7.8 |
HIGH
Local
|
huawei
|
pcmanager
|
There is a code execution vulnerability in Huawei PCManager versions earlier than PCManager 9.0.1.50. The attacker can tricking a user to install and run a malicious application to exploit this vulne…
|
NVD-CWE-noinfo
|
CVE-2019-5242
|
2024-11-21 13:44 |
2019-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219639
|
7.8 |
HIGH
Local
|
huawei
|
pcmanager
|
There is a privilege escalation vulnerability in Huawei PCManager versions earlier than PCManager 9.0.1.50. The attacker can tricking a user to install and run a malicious application to exploit this…
|
NVD-CWE-noinfo
|
CVE-2019-5241
|
2024-11-21 13:44 |
2019-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219640
|
5.5 |
MEDIUM
Local
|
huawei
|
mate_10_firmware
|
There is a double free vulnerability on certain drivers of Huawei Mate10 smartphones versions earlier than ALP-AL00B 9.0.0.181(C00E87R2P20T8). An attacker tricks the user into installing a malicious …
|
CWE-415
Double Free
|
CVE-2019-5219
|
2024-11-21 13:44 |
2019-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|