CVE-2013-1817
- EPSS 1.55%
- Veröffentlicht 20.11.2019 20:15:11
- Zuletzt bearbeitet 21.11.2024 01:50:26
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive information.
CVE-2013-1816
- EPSS 4.1%
- Veröffentlicht 20.11.2019 20:15:10
- Zuletzt bearbeitet 21.11.2024 01:50:26
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially crafted request.
CVE-2015-1606
- EPSS 0.47%
- Veröffentlicht 20.11.2019 19:15:11
- Zuletzt bearbeitet 21.11.2024 02:25:45
The keyring DB in GnuPG before 2.1.2 does not properly handle invalid packets, which allows remote attackers to cause a denial of service (invalid read and use-after-free) via a crafted keyring file.
CVE-2019-3466
- EPSS 0.13%
- Veröffentlicht 20.11.2019 18:15:10
- Zuletzt bearbeitet 21.11.2024 04:42:06
The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation.
CVE-2011-0529
- EPSS 0.45%
- Veröffentlicht 20.11.2019 16:15:12
- Zuletzt bearbeitet 21.11.2024 01:24:13
Weborf before 0.12.5 is affected by a Denial of Service (DOS) due to malformed fields in HTTP.
CVE-2011-1028
- EPSS 0.52%
- Veröffentlicht 20.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 01:25:21
The $smarty.template variable in Smarty3 allows attackers to possibly execute arbitrary PHP code via the sysplugins/smarty_internal_compile_private_special_variable.php file.
CVE-2012-6136
- EPSS 0.03%
- Veröffentlicht 20.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 01:45:53
tuned 2.10.0 creates its PID file with insecure permissions which allows local users to kill arbitrary processes.
CVE-2019-19126
- EPSS 0.02%
- Veröffentlicht 19.11.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:34:14
On the x86-64 architecture, the GNU C Library (aka glibc) before 2.31 fails to ignore the LD_PREFER_MAP_32BIT_EXEC environment variable during program execution after a security transition, allowing local attackers to restrict the possible mapping ad...
CVE-2011-2924
- EPSS 0.13%
- Veröffentlicht 19.11.2019 22:15:10
- Zuletzt bearbeitet 21.11.2024 01:29:17
foomatic-rip filter v4.0.12 and prior used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode was enabled. This flaw may be exploited by a local attacker to conduct symlink attacks by overwriti...
CVE-2011-2923
- EPSS 0.19%
- Veröffentlicht 19.11.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 01:29:17
foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode was enabled. This flaw may be exploited by a local attacker to conduct symlink attacks by overwriting ...