CVE-2019-19956
- EPSS 0.15%
- Published 24.12.2019 16:15:11
- Last modified 21.11.2024 04:35:44
xmlParseBalancedChunkMemoryRecover in parser.c in libxml2 before 2.9.10 has a memory leak related to newDoc->oldNs.
CVE-2019-19603
- EPSS 0.65%
- Published 09.12.2019 19:15:14
- Last modified 21.11.2024 04:35:01
SQLite 3.30.1 mishandles certain SELECT statements with a nonexistent VIEW, leading to an application crash.
CVE-2019-19646
- EPSS 9.46%
- Published 09.12.2019 19:15:14
- Last modified 21.11.2024 04:35:07
pragma.c in SQLite through 3.30.1 mishandles NOT NULL in an integrity_check PRAGMA command in certain cases of generated columns.
CVE-2019-19645
- EPSS 0.3%
- Published 09.12.2019 16:15:10
- Last modified 21.11.2024 04:35:07
alter.c in SQLite through 3.30.1 allows attackers to trigger infinite recursion via certain types of self-referential views in conjunction with ALTER TABLE statements.
CVE-2019-19317
- EPSS 0.99%
- Published 05.12.2019 14:15:09
- Last modified 21.11.2024 04:34:33
lookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which allows attackers to cause a denial of service or possibly have unspecified other impact.
CVE-2019-5509
- EPSS 1.55%
- Published 21.11.2019 16:15:13
- Last modified 21.11.2024 04:45:04
ONTAP Select Deploy administration utility versions 2.11.2 through 2.12.2 are susceptible to a code injection vulnerability which when successfully exploited could allow an unauthenticated remote attacker to enable and use a privileged user account.
CVE-2019-17272
- EPSS 0.46%
- Published 21.11.2019 16:15:12
- Last modified 21.11.2024 04:32:00
All versions of ONTAP Select Deploy administration utility are susceptible to a vulnerability which when successfully exploited could allow an administrative user to escalate their privileges.
CVE-2019-17498
- EPSS 1.25%
- Published 21.10.2019 22:15:10
- Last modified 21.11.2024 04:32:22
In libssh2 v1.9.0 and earlier versions, the SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check, enabling an attacker to specify an arbitrary (out-of-bounds) offset for a subsequent memory read. A crafted SSH server may be ...
CVE-2019-5504
- EPSS 1.24%
- Published 24.09.2019 20:15:12
- Last modified 21.11.2024 04:45:04
ONTAP Select Deploy administration utility versions 2.12 & 2.12.1 ship with an HTTP service bound to the network allowing unauthenticated remote attackers to perform administrative actions.
CVE-2019-5505
- EPSS 0.16%
- Published 24.09.2019 20:15:12
- Last modified 21.11.2024 04:45:04
ONTAP Select Deploy administration utility versions 2.2 through 2.12.1 transmit credentials in plaintext.