CVE-2011-2726
- EPSS 0.38%
- Veröffentlicht 15.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:28:50
An access bypass issue was found in Drupal 7.x before version 7.5. If a Drupal site has the ability to attach File upload fields to any entity type in the system or has the ability to point individual File upload fields to the private file directory ...
CVE-2013-7087
- EPSS 0.49%
- Veröffentlicht 15.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 02:00:19
ClamAV before 0.97.7 has WWPack corrupt heap memory
CVE-2013-7088
- EPSS 0.51%
- Veröffentlicht 15.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 02:00:19
ClamAV before 0.97.7 has buffer overflow in the libclamav component
CVE-2013-7089
- EPSS 0.47%
- Veröffentlicht 15.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 02:00:19
ClamAV before 0.97.7: dbg_printhex possible information leak
CVE-2014-0021
- EPSS 2.37%
- Veröffentlicht 15.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 02:01:11
Chrony before 1.29.1 has traffic amplification in cmdmon protocol
CVE-2019-14869
- EPSS 0.27%
- Veröffentlicht 15.11.2019 12:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:32
A flaw was found in all versions of ghostscript 9.x before 9.50, where the `.charkeys` procedure, where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating ...
CVE-2019-18928
- EPSS 0.5%
- Veröffentlicht 15.11.2019 04:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:51
Cyrus IMAP 2.5.x before 2.5.14 and 3.x before 3.0.12 allows privilege escalation because an HTTP request may be interpreted in the authentication context of an unrelated previous request that arrived over the same connection.
CVE-2018-12207
- EPSS 0.26%
- Veröffentlicht 14.11.2019 20:15:11
- Zuletzt bearbeitet 21.11.2024 03:44:45
Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host system via local access.
CVE-2019-11135
- EPSS 0.32%
- Veröffentlicht 14.11.2019 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:20:35
TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.
CVE-2019-14818
- EPSS 1.14%
- Veröffentlicht 14.11.2019 17:15:14
- Zuletzt bearbeitet 21.11.2024 04:27:25
A flaw was found in all dpdk version 17.x.x before 17.11.8, 16.x.x before 16.11.10, 18.x.x before 18.11.4 and 19.x.x before 19.08.1 where a malicious master, or a container with access to vhost_user socket, can send specially crafted VRING_SET_NUM me...