Latest CVE Feed
-
5.5
MEDIUMCVE-2019-2001
The permissions on /proc/iomem were world-readable. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Feb. 28, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-19260
GitLab Community Edition (CE) and Enterprise Edition (EE) through 12.5 has Incorrect Access Control (issue 2 of 2).... Read more
Affected Products : gitlab- EPSS Score: %0.07
- Published: Jan. 03, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-19151
On BIG-IP versions 15.0.0-15.1.0, 14.0.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IQ versions 7.0.0, 6.0.0-6.1.0, and 5.0.0-5.4.0, iWorkflow version 2.3.0, and Enterprise Manager version 3.1.1, authenticated users granted TMOS Sh... Read more
Affected Products : big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system big-ip_fraud_protection_service big-ip_global_traffic_manager big-ip_link_controller big-ip_local_traffic_manager +6 more products- EPSS Score: %0.18
- Published: Dec. 23, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-10177
Pillow before 7.1.0 has multiple out-of-bounds reads in libImaging/FliDecode.c.... Read more
- EPSS Score: %0.28
- Published: Jun. 25, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-30213
Windows GDI+ Information Disclosure Vulnerability... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 +12 more products- EPSS Score: %0.66
- Published: Jul. 12, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2025-38049
In the Linux kernel, the following vulnerability has been resolved: x86/resctrl: Fix allocation of cleanest CLOSID on platforms with no monitors Commit 6eac36bb9eb0 ("x86/resctrl: Allocate the cleanest CLOSID by searching closid_num_dirty_rmid") add... Read more
Affected Products : linux_kernel- Published: Apr. 18, 2025
- Modified: Apr. 29, 2025
- Vuln Type: Misconfiguration
-
5.5
MEDIUMCVE-2019-16927
Xpdf 4.01.01 has an out-of-bounds write in the vertProfile part of the TextPage::findGaps function in TextOutputDev.cc, a different vulnerability than CVE-2019-9877.... Read more
- EPSS Score: %0.16
- Published: Sep. 27, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-16025
A vulnerability in the web framework of Cisco Emergency Responder could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. The vulnerability is due to insufficient v... Read more
Affected Products : emergency_responder- EPSS Score: %0.16
- Published: Sep. 23, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-15877
In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in the ixl network driver failed to check whether the caller has sufficient privileges allowing unprivileged users to trigger updates to ... Read more
Affected Products : freebsd- EPSS Score: %0.05
- Published: Apr. 28, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-15876
In FreeBSD 12.1-STABLE before r356089, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r356090, and 11.3-RELEASE before 11.3-RELEASE-p7, driver specific ioctl command handlers in the oce network driver failed to check whether the caller has suffic... Read more
Affected Products : freebsd- EPSS Score: %0.12
- Published: Apr. 28, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39633
In gre_handle_offloads of ip_gre.c, there is a possible page fault due to an invalid memory access. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: An... Read more
Affected Products : android- EPSS Score: %0.06
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-14939
An issue was discovered in the mysql (aka mysqljs) module 2.17.1 for Node.js. The LOAD DATA LOCAL INFILE option is open by default.... Read more
Affected Products : mysql- EPSS Score: %0.06
- Published: Aug. 12, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-14663
Brandy 1.20.1 has a stack-based buffer overflow in fileio_openin in fileio.c via crafted BASIC source code.... Read more
Affected Products : brandy- EPSS Score: %0.18
- Published: Aug. 05, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-14662
Brandy 1.20.1 has a stack-based buffer overflow in fileio_openout in fileio.c via crafted BASIC source code.... Read more
Affected Products : brandy- EPSS Score: %0.18
- Published: Aug. 05, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-14295
An Integer overflow in the getElfSections function in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an allocation... Read more
- EPSS Score: %0.25
- Published: Jul. 27, 2019
- Modified: Apr. 11, 2025
-
5.5
MEDIUMCVE-2021-46664
MariaDB through 10.5.9 allows an application crash in sub_select_postjoin_aggr for a NULL value of aggr.... Read more
- EPSS Score: %0.05
- Published: Feb. 01, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-1363
An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka 'Windows GDI Information Disclosure Vulnerabilit... Read more
- EPSS Score: %1.62
- Published: Oct. 10, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-1361
An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft Graphics Components Information Disclosure Vulnerability'.... Read more
- EPSS Score: %27.23
- Published: Oct. 10, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-13318
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Reader 9.5.0.20723. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicio... Read more
- EPSS Score: %0.91
- Published: Oct. 04, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-13218
Division by zero in the predict_point function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.... Read more
- EPSS Score: %0.17
- Published: Aug. 15, 2019
- Modified: Nov. 21, 2024