Show filters
164 Total Results
Displaying 141-150 of 164
Sort by:
Attacker Value
Unknown
CVE-2019-19645
Disclosure Date: December 09, 2019 (last updated November 27, 2024)
alter.c in SQLite through 3.30.1 allows attackers to trigger infinite recursion via certain types of self-referential views in conjunction with ALTER TABLE statements.
0
Attacker Value
Unknown
CVE-2019-19317
Disclosure Date: December 05, 2019 (last updated November 27, 2024)
lookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which allows attackers to cause a denial of service or possibly have unspecified other impact.
0
Attacker Value
Unknown
CVE-2019-17272
Disclosure Date: November 21, 2019 (last updated November 27, 2024)
All versions of ONTAP Select Deploy administration utility are susceptible to a vulnerability which when successfully exploited could allow an administrative user to escalate their privileges.
0
Attacker Value
Unknown
CVE-2019-5509
Disclosure Date: November 21, 2019 (last updated November 27, 2024)
ONTAP Select Deploy administration utility versions 2.11.2 through 2.12.2 are susceptible to a code injection vulnerability which when successfully exploited could allow an unauthenticated remote attacker to enable and use a privileged user account.
0
Attacker Value
Unknown
CVE-2019-17498
Disclosure Date: October 21, 2019 (last updated November 08, 2023)
In libssh2 v1.9.0 and earlier versions, the SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check, enabling an attacker to specify an arbitrary (out-of-bounds) offset for a subsequent memory read. A crafted SSH server may be able to disclose sensitive information or cause a denial of service condition on the client system when a user connects to the server.
0
Attacker Value
Unknown
CVE-2019-5504
Disclosure Date: September 24, 2019 (last updated November 27, 2024)
ONTAP Select Deploy administration utility versions 2.12 & 2.12.1 ship with an HTTP service bound to the network allowing unauthenticated remote attackers to perform administrative actions.
0
Attacker Value
Unknown
CVE-2019-5505
Disclosure Date: September 24, 2019 (last updated November 27, 2024)
ONTAP Select Deploy administration utility versions 2.2 through 2.12.1 transmit credentials in plaintext.
0
Attacker Value
Unknown
CVE-2019-16168
Disclosure Date: September 09, 2019 (last updated November 08, 2023)
In SQLite through 3.29.0, whereLoopAddBtreeIndex in sqlite3.c can crash a browser or other application because of missing validation of a sqlite_stat1 sz field, aka a "severe division by zero in the query planner."
0
Attacker Value
Unknown
CVE-2019-13115
Disclosure Date: July 16, 2019 (last updated November 08, 2023)
In libssh2 before 1.9.0, kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has an integer overflow that could lead to an out-of-bounds read in the way packets are read from the server. A remote attacker who compromises a SSH server may be able to disclose sensitive information or cause a denial of service condition on the client system when a user connects to the server. This is related to an _libssh2_check_length mistake, and is different from the various issues fixed in 1.8.1, such as CVE-2019-3855.
0
Attacker Value
Unknown
CVE-2019-13118
Disclosure Date: July 01, 2019 (last updated November 08, 2023)
In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of uninitialized stack data.
0