CVE-2012-0812
- EPSS 0.58%
- Veröffentlicht 22.11.2019 17:15:11
- Zuletzt bearbeitet 21.11.2024 01:35:46
PostfixAdmin 2.3.4 has multiple XSS vulnerabilities
CVE-2019-18790
- EPSS 7.42%
- Veröffentlicht 22.11.2019 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:33:34
An issue was discovered in channels/chan_sip.c in Sangoma Asterisk 13.x before 13.29.2, 16.x before 16.6.2, and 17.x before 17.0.1, and Certified Asterisk 13.21 before cert5. A SIP request can be sent to Asterisk that can change a SIP peer's IP addre...
CVE-2019-18976
- EPSS 0.17%
- Veröffentlicht 22.11.2019 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:33:55
An issue was discovered in res_pjsip_t38.c in Sangoma Asterisk through 13.x and Certified Asterisk through 13.21-x. If it receives a re-invite initiating T.38 faxing and has a port of 0 and no c line in the SDP, a NULL pointer dereference and crash w...
CVE-2015-5694
- EPSS 0.94%
- Veröffentlicht 22.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 02:33:39
Designate does not enforce the DNS protocol limit concerning record set sizes
CVE-2015-7810
- EPSS 0.11%
- Veröffentlicht 22.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 02:37:26
libbluray MountManager class has a time-of-check time-of-use (TOCTOU) race when expanding JAR files
CVE-2019-10206
- EPSS 0.21%
- Veröffentlicht 22.11.2019 13:15:11
- Zuletzt bearbeitet 21.11.2024 04:18:39
ansible-playbook -k and ansible cli tools, all versions 2.8.x before 2.8.4, all 2.7.x before 2.7.13 and all 2.6.x before 2.6.19, prompt passwords by expanding them from templates as they could contain special characters. Passwords should be wrapped t...
CVE-2019-19221
- EPSS 0.07%
- Veröffentlicht 21.11.2019 23:15:13
- Zuletzt bearbeitet 21.11.2024 04:34:21
In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read because of an incorrect mbrtowc or mbtowc call. For example, bsdtar crashes via a crafted archive.
- EPSS 0.09%
- Veröffentlicht 21.11.2019 23:15:12
- Zuletzt bearbeitet 21.11.2024 02:11:42
xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files. Note: A different vulnerability than CVE-2014-5254.
CVE-2019-19204
- EPSS 8.95%
- Veröffentlicht 21.11.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 04:34:19
An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function fetch_interval_quantifier (formerly known as fetch_range_quantifier) in regparse.c, PFETCH is called without checking PEND. This leads to a heap-based buffer over-read.
CVE-2019-18890
- EPSS 28.95%
- Veröffentlicht 21.11.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:33:47
A SQL injection vulnerability in Redmine through 3.2.9 and 3.3.x before 3.3.10 allows Redmine users to access protected information via a crafted object query.