Show filters
733 Total Results
Displaying 321-330 of 733
Sort by:
Attacker Value
Unknown

CVE-2019-7211

Disclosure Date: April 24, 2019 (last updated November 27, 2024)
SmarterTools SmarterMail 16.x before build 6995 has stored XSS. JavaScript code could be executed on the application by opening a malicious email or when viewing a malicious file attachment.
0
Attacker Value
Unknown

CVE-2019-7212

Disclosure Date: April 24, 2019 (last updated November 27, 2024)
SmarterTools SmarterMail 16.x before build 6985 has hardcoded secret keys. An unauthenticated attacker could access other users’ emails and file attachments. It was also possible to interact with mailing lists.
0
Attacker Value
Unknown

CVE-2019-11473

Disclosure Date: April 23, 2019 (last updated November 08, 2023)
coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (out-of-bounds read and application crash) by crafting an XWD image file, a different vulnerability than CVE-2019-11008 and CVE-2019-11009.
0
Attacker Value
Unknown

CVE-2019-11474

Disclosure Date: April 23, 2019 (last updated November 08, 2023)
coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and application crash) by crafting an XWD image file, a different vulnerability than CVE-2019-11008 and CVE-2019-11009.
Attacker Value
Unknown

CVE-2019-9056

Disclosure Date: April 11, 2019 (last updated November 27, 2024)
An issue was discovered in CMS Made Simple 2.2.8. In the module FrontEndUsers (in the file class.FrontEndUsersManipulate.php or class.FrontEndUsersManipulator.php), it is possible to reach an unserialize call with an untrusted __FEU__ cookie, and achieve authenticated object injection.
0
Attacker Value
Unknown

CVE-2019-11005

Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a stack-based buffer overflow in the function SVGStartElement of coders/svg.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a quoted font family value.
0
Attacker Value
Unknown

CVE-2019-11008

Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer overflow in the function WriteXWDImage of coders/xwd.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image file.
Attacker Value
Unknown

CVE-2019-11007

Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the ReadMNGImage function of coders/png.c, which allows attackers to cause a denial of service or information disclosure via an image colormap.
Attacker Value
Unknown

CVE-2019-11009

Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadXWDImage of coders/xwd.c, which allows attackers to cause a denial of service or information disclosure via a crafted image file.
0
Attacker Value
Unknown

CVE-2019-11006

Disclosure Date: April 08, 2019 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadMIFFImage of coders/miff.c, which allows attackers to cause a denial of service or information disclosure via an RLE packet.
0