Show filters
545 Total Results
Displaying 231-240 of 545
Sort by:
Attacker Value
Unknown

CVE-2019-12567

Disclosure Date: December 23, 2019 (last updated November 27, 2024)
Stack-based overflow vulnerability in the logMess function in Open TFTP Server MT 1.65 and earlier allows remote attackers to perform a denial of service or execute arbitrary code via a long TFTP error packet, a different vulnerability than CVE-2018-10387 and CVE-2019-12568.
Attacker Value
Unknown

CVE-2018-10387

Disclosure Date: December 23, 2019 (last updated November 27, 2024)
Heap-based overflow vulnerability in TFTP Server SP 1.66 and earlier allows remote attackers to perform a denial of service or possibly execute arbitrary code via a long TFTP error packet, a different vulnerability than CVE-2008-2161.
Attacker Value
Unknown

CVE-2018-10388

Disclosure Date: December 23, 2019 (last updated November 27, 2024)
Format string vulnerability in the logMess function in TFTP Server SP 1.66 and earlier allows remote attackers to perform a denial of service or execute arbitrary code via format string sequences in a TFTP error packet.
Attacker Value
Unknown

CVE-2019-15600

Disclosure Date: December 18, 2019 (last updated November 27, 2024)
A Path traversal exists in http_server which allows an attacker to read arbitrary system files.
Attacker Value
Unknown

CVE-2019-15596

Disclosure Date: December 18, 2019 (last updated November 27, 2024)
A path traversal in statics-server exists in all version that allows an attacker to perform a path traversal when a symlink is used within the working directory.
Attacker Value
Unknown

CVE-2019-14345

Disclosure Date: November 15, 2019 (last updated November 08, 2023)
TemaTres 3.0 allows remote unprivileged users to create an administrator account
Attacker Value
Unknown

CVE-2019-14343

Disclosure Date: November 15, 2019 (last updated November 08, 2023)
TemaTres 3.0 has stored XSS via the value parameter to the vocab/admin.php?vocabulario_id=list URI.
Attacker Value
Unknown

CVE-2019-14344

Disclosure Date: November 12, 2019 (last updated November 08, 2023)
TemaTres 3.0 has reflected XSS via the replace_string or search_string parameter to the vocab/admin.php?doAdmin=bulkReplace URI.
Attacker Value
Unknown

CVE-2006-4243

Disclosure Date: November 06, 2019 (last updated November 27, 2024)
linux vserver 2.6 before 2.6.17 suffers from privilege escalation in remount code.
Attacker Value
Unknown

CVE-2019-14450

Disclosure Date: October 28, 2019 (last updated November 27, 2024)
A directory traversal vulnerability was discovered in RepetierServer.exe in Repetier-Server 0.8 through 0.91 that allows for the creation of a user controlled XML file at an unintended location. When this is combined with CVE-2019-14451, an attacker can upload an "external command" configuration as a printer configuration, and achieve remote code execution. After exploitation, loading of the external command configuration is dependent on a system reboot or service restart.