Show filters
733 Total Results
Displaying 321-330 of 733
Sort by:
Attacker Value
Unknown
CVE-2019-7211
Disclosure Date: April 24, 2019 (last updated November 27, 2024)
SmarterTools SmarterMail 16.x before build 6995 has stored XSS. JavaScript code could be executed on the application by opening a malicious email or when viewing a malicious file attachment.
0
Attacker Value
Unknown
CVE-2019-7212
Disclosure Date: April 24, 2019 (last updated November 27, 2024)
SmarterTools SmarterMail 16.x before build 6985 has hardcoded secret keys. An unauthenticated attacker could access other users’ emails and file attachments. It was also possible to interact with mailing lists.
0
Attacker Value
Unknown
CVE-2019-11473
Disclosure Date: April 23, 2019 (last updated November 08, 2023)
coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (out-of-bounds read and application crash) by crafting an XWD image file, a different vulnerability than CVE-2019-11008 and CVE-2019-11009.
0
Attacker Value
Unknown
CVE-2019-11474
Disclosure Date: April 23, 2019 (last updated November 08, 2023)
coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and application crash) by crafting an XWD image file, a different vulnerability than CVE-2019-11008 and CVE-2019-11009.
0
Attacker Value
Unknown
CVE-2019-9056
Disclosure Date: April 11, 2019 (last updated November 27, 2024)
An issue was discovered in CMS Made Simple 2.2.8. In the module FrontEndUsers (in the file class.FrontEndUsersManipulate.php or class.FrontEndUsersManipulator.php), it is possible to reach an unserialize call with an untrusted __FEU__ cookie, and achieve authenticated object injection.
0
Attacker Value
Unknown
CVE-2019-11005
Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a stack-based buffer overflow in the function SVGStartElement of coders/svg.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a quoted font family value.
0
Attacker Value
Unknown
CVE-2019-11008
Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer overflow in the function WriteXWDImage of coders/xwd.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image file.
0
Attacker Value
Unknown
CVE-2019-11007
Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the ReadMNGImage function of coders/png.c, which allows attackers to cause a denial of service or information disclosure via an image colormap.
0
Attacker Value
Unknown
CVE-2019-11009
Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadXWDImage of coders/xwd.c, which allows attackers to cause a denial of service or information disclosure via a crafted image file.
0
Attacker Value
Unknown
CVE-2019-11006
Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadMIFFImage of coders/miff.c, which allows attackers to cause a denial of service or information disclosure via an RLE packet.
0