CVE-2019-6109
- EPSS 8.06%
- Published 31.01.2019 18:29:00
- Last modified 21.11.2024 04:45:57
An issue was discovered in OpenSSH 7.9. Due to missing character encoding in the progress display, a malicious server (or Man-in-The-Middle attacker) can employ crafted object names to manipulate the client output, e.g., by using ANSI control codes t...
CVE-2019-6111
- EPSS 57.89%
- Published 31.01.2019 18:29:00
- Last modified 21.11.2024 04:45:57
An issue was discovered in OpenSSH 7.9. Due to the scp implementation being derived from 1983 rcp, the server chooses which files/directories are sent to the client. However, the scp client only performs cursory validation of the object name returned...
CVE-2019-7150
- EPSS 0.1%
- Published 29.01.2019 00:29:00
- Last modified 21.11.2024 04:47:40
An issue was discovered in elfutils 0.175. A segmentation fault can occur in the function elf64_xlatetom in libelf/elf32_xlatetom.c, due to dwfl_segment_report_module not checking whether the dyn data read from a core file is truncated. A crafted inp...
CVE-2019-2529
- EPSS 0.21%
- Published 16.01.2019 19:30:35
- Last modified 21.11.2024 04:41:03
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows low privileged at...
CVE-2019-2530
- EPSS 0.41%
- Published 16.01.2019 19:30:35
- Last modified 21.11.2024 04:41:03
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multipl...
CVE-2019-2531
- EPSS 0.11%
- Published 16.01.2019 19:30:35
- Last modified 21.11.2024 04:41:03
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows high privileged...
CVE-2019-2532
- EPSS 0.12%
- Published 16.01.2019 19:30:35
- Last modified 21.11.2024 04:41:03
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker...
CVE-2019-2533
- EPSS 0.41%
- Published 16.01.2019 19:30:35
- Last modified 21.11.2024 04:41:03
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Security : Privileges). Supported versions that are affected are 8.0.13 and prior. Easily exploitable vulnerability allows low privileged attacker with network access...
CVE-2019-2534
- EPSS 0.21%
- Published 16.01.2019 19:30:35
- Last modified 21.11.2024 04:41:03
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows low privileged ...
CVE-2019-2535
- EPSS 0.16%
- Published 16.01.2019 19:30:35
- Last modified 21.11.2024 04:41:04
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Options). Supported versions that are affected are 8.0.13 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructur...