Show filters
323 Total Results
Displaying 121-130 of 323
Sort by:
Attacker Value
Unknown

CVE-2015-2060

Disclosure Date: November 29, 2019 (last updated November 27, 2024)
cabextract before 1.6 does not properly check for leading slashes when extracting files, which allows remote attackers to conduct absolute directory traversal attacks via a malformed UTF-8 character that is changed to a UTF-8 encoded slash.
Attacker Value
Unknown

CVE-2019-9597

Disclosure Date: October 23, 2019 (last updated November 27, 2024)
Darktrace Enterprise Immune System before 3.1 allows CSRF via the /config endpoint.
Attacker Value
Unknown

CVE-2019-9596

Disclosure Date: October 23, 2019 (last updated November 27, 2024)
Darktrace Enterprise Immune System before 3.1 allows CSRF via the /whitelisteddomains endpoint.
Attacker Value
Unknown

CVE-2017-18554

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
The analytics-tracker plugin before 1.1.1 for WordPress has XSS via a search event.
0
Attacker Value
Unknown

CF CLI writes the client id and secret to config file

Disclosure Date: August 05, 2019 (last updated November 27, 2024)
CF CLI version prior to v6.45.0 (bosh release version 1.16.0) writes the client id and secret to its config file when the user authenticates with --client-credentials flag. A local authenticated malicious user with access to the CF CLI config file can act as that client, who is the owner of the leaked credentials.
0
Attacker Value
Unknown

CVE-2019-14524

Disclosure Date: August 02, 2019 (last updated November 27, 2024)
An issue was discovered in Schism Tracker through 20190722. There is a heap-based buffer overflow via a large number of song patterns in fmt_mtm_load_song in fmt/mtm.c, a different vulnerability than CVE-2019-14465.
Attacker Value
Unknown

CVE-2019-14523

Disclosure Date: August 02, 2019 (last updated November 27, 2024)
An issue was discovered in Schism Tracker through 20190722. There is an integer underflow via a large plen in fmt_okt_load_song in the Amiga Oktalyzer parser in fmt/okt.c.
Attacker Value
Unknown

CVE-2019-14497

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02.00 has a heap-based buffer overflow.
Attacker Value
Unknown

CVE-2019-14496

Disclosure Date: August 01, 2019 (last updated November 27, 2024)
LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-based buffer overflow.
Attacker Value
Unknown

CVE-2019-14464

Disclosure Date: July 31, 2019 (last updated November 08, 2023)
XMFile::read in XMFile.cpp in milkyplay in MilkyTracker 1.02.00 has a heap-based buffer overflow.