Show filters
247 Total Results
Displaying 81-90 of 247
Sort by:
Attacker Value
Unknown

CVE-2018-7822

Disclosure Date: May 22, 2019 (last updated November 27, 2024)
An Incorrect Default Permissions (CWE-276) vulnerability exists in SoMachine Basic, all versions, and Modicon M221(all references, all versions prior to firmware V1.10.0.0) which could cause unauthorized access to SoMachine Basic resource files when logged on the system hosting SoMachine Basic.
Attacker Value
Unknown

OS command injection vulnerability

Disclosure Date: May 15, 2019 (last updated November 27, 2024)
Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an OS command injection vulnerability in the installation feature of Boxmgmt CLI. A malicious boxmgmt user may potentially be able to execute arbitrary commands as root.
0
Attacker Value
Unknown

CVE-2019-1003065

Disclosure Date: April 04, 2019 (last updated October 26, 2023)
Jenkins CloudShare Docker-Machine Plugin stores credentials unencrypted in its global configuration file on the Jenkins master where they can be viewed by users with access to the master file system.
Attacker Value
Unknown

CVE-2019-8277

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1211 contains multiple memory leaks (CWE-665) in VNC server code, which allows an attacker to read stack memory and can be abused for information disclosure. Combined with another vulnerability, it can be used to leak stack memory and bypass ASLR. This attack appears to be exploitable via network connectivity. These vulnerabilities have been fixed in revision 1212.
Attacker Value
Unknown

CVE-2019-8268

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1206 has multiple off-by-one vulnerabilities in VNC client code connected with improper usage of ClientConnection::ReadString function, which can potentially result code execution. This attack appears to be exploitable via network connectivity. These vulnerabilities have been fixed in revision 1207.
Attacker Value
Unknown

CVE-2019-8273

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer request handler, which can potentially result in code execution. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1212.
Attacker Value
Unknown

CVE-2019-8276

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1211 has a stack buffer overflow vulnerability in VNC server code inside file transfer request handler, which can result in Denial of Service (DoS). This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1212.
Attacker Value
Unknown

CVE-2019-8271

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer handler, which can potentially result code execution. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1212.
Attacker Value
Unknown

CVE-2019-8274

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer offer handler, which can potentially in result code execution. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1212.
Attacker Value
Unknown

CVE-2019-8272

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1211 has multiple off-by-one vulnerabilities in VNC server code, which can potentially result in code execution. This attack appears to be exploitable via network connectivity. These vulnerabilities have been fixed in revision 1212.