Show filters
1,310 Total Results
Displaying 461-470 of 1,310
Sort by:
Attacker Value
Unknown
CVE-2019-1003096
Disclosure Date: April 04, 2019 (last updated October 26, 2023)
Jenkins TestFairy Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
0
Attacker Value
Unknown
CVE-2018-20222
Disclosure Date: April 04, 2019 (last updated November 27, 2024)
XXE issue in Airsonic before 10.1.2 during parse.
0
Attacker Value
Unknown
CVE-2019-10231
Disclosure Date: March 27, 2019 (last updated November 27, 2024)
Teclib GLPI before 9.4.1.1 is affected by a PHP type juggling vulnerability allowing bypass of authentication. This occurs in Auth::checkPassword() (inc/auth.class.php).
0
Attacker Value
Unknown
CVE-2019-10232
Disclosure Date: March 27, 2019 (last updated November 27, 2024)
Teclib GLPI through 9.3.3 has SQL injection via the "cycle" parameter in /scripts/unlock_tasks.php.
0
Attacker Value
Unknown
CVE-2019-6967
Disclosure Date: March 21, 2019 (last updated November 27, 2024)
AirTies Air5341 1.0.0.12 devices allow cgi-bin/login CSRF.
0
Attacker Value
Unknown
CVE-2019-9831
Disclosure Date: March 15, 2019 (last updated November 27, 2024)
The AirMore application through 1.6.1 for Android allows remote attackers to cause a denial of service (system hang) via many simultaneous /?Key=PhoneRequestAuthorization requests.
0
Attacker Value
Unknown
CVE-2019-9832
Disclosure Date: March 15, 2019 (last updated November 27, 2024)
The AirDrop application through 2.0 for Android allows remote attackers to cause a denial of service via a client that makes many socket connections through a configured port.
0
Attacker Value
Unknown
CVE-2019-9599
Disclosure Date: March 06, 2019 (last updated November 27, 2024)
The AirDroid application through 4.2.1.6 for Android allows remote attackers to cause a denial of service (service crash) via many simultaneous sdctl/comm/lite_auth/ requests.
0
Attacker Value
Unknown
CVE-2018-20244
Disclosure Date: February 27, 2019 (last updated November 08, 2023)
In Apache Airflow before 1.10.2, a malicious admin user could edit the state of objects in the Airflow metadata database to execute arbitrary javascript on certain page views.
0
Attacker Value
Unknown
CVE-2017-0938
Disclosure Date: February 12, 2019 (last updated November 27, 2024)
Denial of Service attack in airMAX < 8.3.2 , airMAX < 6.0.7 and EdgeMAX < 1.9.7 allow attackers to use the Discovery Protocol in amplification attacks.
0