Show filters
45 Total Results
Displaying 31-40 of 45
Sort by:
Attacker Value
Unknown
CVE-2019-19880
Disclosure Date: December 18, 2019 (last updated November 27, 2024)
exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because constant integer values in ORDER BY clauses of window definitions are mishandled.
0
Attacker Value
Unknown
CVE-2019-14889
Disclosure Date: December 10, 2019 (last updated November 08, 2023)
A flaw was found with the libssh API function ssh_scp_new() in versions before 0.9.3 and before 0.8.8. When the libssh SCP client connects to a server, the scp command, which includes a user-provided path, is executed on the server-side. In case the library is used in a way where users can influence the third parameter of the function, it would become possible for an attacker to inject arbitrary commands, leading to a compromise of the remote target.
0
Attacker Value
Unknown
CVE-2019-19603
Disclosure Date: December 09, 2019 (last updated November 08, 2023)
SQLite 3.30.1 mishandles certain SELECT statements with a nonexistent VIEW, leading to an application crash.
0
Attacker Value
Unknown
CVE-2019-19646
Disclosure Date: December 09, 2019 (last updated November 27, 2024)
pragma.c in SQLite through 3.30.1 mishandles NOT NULL in an integrity_check PRAGMA command in certain cases of generated columns.
0
Attacker Value
Unknown
CVE-2019-19645
Disclosure Date: December 09, 2019 (last updated November 27, 2024)
alter.c in SQLite through 3.30.1 allows attackers to trigger infinite recursion via certain types of self-referential views in conjunction with ALTER TABLE statements.
0
Attacker Value
Unknown
CVE-2019-19317
Disclosure Date: December 05, 2019 (last updated November 27, 2024)
lookupName in resolve.c in SQLite 3.30.1 omits bits from the colUsed bitmask in the case of a generated column, which allows attackers to cause a denial of service or possibly have unspecified other impact.
0
Attacker Value
Unknown
CVE-2019-19242
Disclosure Date: November 27, 2019 (last updated November 27, 2024)
SQLite 3.30.1 mishandles pExpr->y.pTab, as demonstrated by the TK_COLUMN case in sqlite3ExprCodeTarget in expr.c.
0
Attacker Value
Unknown
CVE-2019-19244
Disclosure Date: November 25, 2019 (last updated November 27, 2024)
sqlite3Select in select.c in SQLite 3.30.1 allows a crash if a sub-select uses both DISTINCT and window functions, and also has certain ORDER BY usage.
0
Attacker Value
Unknown
CVE-2019-10219
Disclosure Date: November 08, 2019 (last updated November 08, 2023)
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
0
Attacker Value
Unknown
CVE-2018-14550
Disclosure Date: July 10, 2019 (last updated November 27, 2024)
An issue has been found in third-party PNM decoding associated with libpng 1.6.35. It is a stack-based buffer overflow in the function get_token in pnm2png.c in pnm2png.
0