Show filters
1,310 Total Results
Displaying 461-470 of 1,310
Sort by:
Attacker Value
Unknown

CVE-2019-1003096

Disclosure Date: April 04, 2019 (last updated October 26, 2023)
Jenkins TestFairy Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
Attacker Value
Unknown

CVE-2018-20222

Disclosure Date: April 04, 2019 (last updated November 27, 2024)
XXE issue in Airsonic before 10.1.2 during parse.
0
Attacker Value
Unknown

CVE-2019-10231

Disclosure Date: March 27, 2019 (last updated November 27, 2024)
Teclib GLPI before 9.4.1.1 is affected by a PHP type juggling vulnerability allowing bypass of authentication. This occurs in Auth::checkPassword() (inc/auth.class.php).
0
Attacker Value
Unknown

CVE-2019-10232

Disclosure Date: March 27, 2019 (last updated November 27, 2024)
Teclib GLPI through 9.3.3 has SQL injection via the "cycle" parameter in /scripts/unlock_tasks.php.
0
Attacker Value
Unknown

CVE-2019-6967

Disclosure Date: March 21, 2019 (last updated November 27, 2024)
AirTies Air5341 1.0.0.12 devices allow cgi-bin/login CSRF.
0
Attacker Value
Unknown

CVE-2019-9831

Disclosure Date: March 15, 2019 (last updated November 27, 2024)
The AirMore application through 1.6.1 for Android allows remote attackers to cause a denial of service (system hang) via many simultaneous /?Key=PhoneRequestAuthorization requests.
0
Attacker Value
Unknown

CVE-2019-9832

Disclosure Date: March 15, 2019 (last updated November 27, 2024)
The AirDrop application through 2.0 for Android allows remote attackers to cause a denial of service via a client that makes many socket connections through a configured port.
0
Attacker Value
Unknown

CVE-2019-9599

Disclosure Date: March 06, 2019 (last updated November 27, 2024)
The AirDroid application through 4.2.1.6 for Android allows remote attackers to cause a denial of service (service crash) via many simultaneous sdctl/comm/lite_auth/ requests.
0
Attacker Value
Unknown

CVE-2018-20244

Disclosure Date: February 27, 2019 (last updated November 08, 2023)
In Apache Airflow before 1.10.2, a malicious admin user could edit the state of objects in the Airflow metadata database to execute arbitrary javascript on certain page views.
0
Attacker Value
Unknown

CVE-2017-0938

Disclosure Date: February 12, 2019 (last updated November 27, 2024)
Denial of Service attack in airMAX < 8.3.2 , airMAX < 6.0.7 and EdgeMAX < 1.9.7 allow attackers to use the Discovery Protocol in amplification attacks.