CVEs (10,001)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Phpmyadmin2Debian Linux PhpmyadminJun 17, 2026 Dec 6, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 phpMyAdmin before 4.9.2 does not escape certain Git information, related to libraries/classes/Display/GitRevision.php and libraries/classes/Footer.php. |
3Debian FedoraprojectLdap Account Manager3Debian Linux FedoraLdap Account ManagerNov 21, 2024 Dec 5, 2019 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the export, add_value_form, and dn parameters to cmd.php. |
3Debian FedoraprojectLdap Account Manager3Debian Linux FedoraLdap Account ManagerNov 21, 2024 Dec 5, 2019 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the filter parameter to cmd.php in an export and exporter_id action. and the filteruid parameter to list.php. |
In Puma before versions 3.12.2 and 4.3.1, a poorly-behaved client could use keepalive requests to monopolize Puma's reactor and create a denial of service attack. If more keepalive connections to Puma are opened than the...Show more |
3Apereo DebianFedoraproject3Debian Linux FedoraPhpcasNov 21, 2024 Dec 5, 2019 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 An Information Disclosure vulnerability exists in the Jasig Project php-pear-CAS 1.2.2 package in the /tmp directory. The Central Authentication Service client library archives the debug logging file in an insecure manne...Show more |
2Apereo Debian2Debian Linux PhpcasNov 21, 2024 Dec 5, 2019 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A Security Bypass vulnerability exists in the phpCAS 1.2.2 library from the jasig project due to the way proxying of services are managed. |
2Debian Openstack2Debian Linux NovaNov 21, 2024 Dec 5, 2019 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 OpenStack nova base images permissions are world readable |
4Debian OpensuseOracle+1 more5Debian Linux LeapSolaris+2 moreJun 17, 2026 Dec 5, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Wireshark 3.0.0 to 3.0.6 and 2.6.0 to 2.6.12, the CMS dissector could crash. This was addressed in epan/dissectors/asn1/cms/packet-cms-template.c by ensuring that an object identifier is set to NULL after a ContentInf...Show more |
2Debian Minidlna Project2Debian Linux MinidlnaNov 21, 2024 Dec 4, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An SQL Injection vulnerability exists in MiniDLNA prior to 1.1.0 |
3Aquamaniac DebianOpensuse3Debian Linux GwenhywfarLeapNov 21, 2024 Dec 3, 2019 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A vulnerability exists in libgwenhywfar through 4.12.0 due to the usage of outdated bundled CA certificates. |
An issue exists in uscan in devscripts before 2.13.19, which could let a remote malicious user execute arbitrary code via a crafted tarball. |
3Debian LinuxOpensuse3Debian Linux LeapLinux KernelJun 17, 2026 Dec 3, 2019 N/A· v4 4.6 MEDIUM· v3 2.1 LOW· v2 In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_pro.c driver, aka CID-ead16e53c2f0. |
4Debian LinuxOpensuse+1 more4Debian Linux LeapLinux Kernel+1 moreJun 17, 2026 Dec 3, 2019 N/A· v4 4.6 MEDIUM· v3 2.1 LOW· v2 In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_fd.c driver, aka CID-30a8beeb3042. |
3Canonical DebianLinux3Debian Linux Linux KernelUbuntu LinuxJun 17, 2026 Dec 3, 2019 N/A· v4 2.4 LOW· v3 2.1 LOW· v2 In the Linux kernel before 5.3.11, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_core.c driver, aka CID-f7a1337f0d29. |
3Debian LinuxOpensuse3Debian Linux LeapLinux KernelJun 17, 2026 Dec 3, 2019 N/A· v4 6.8 MEDIUM· v3 4.6 MEDIUM· v2 In the Linux kernel before 5.2.9, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/yurex.c driver, aka CID-fc05481b2fca. |
3Debian LinuxOpensuse3Debian Linux LeapLinux KernelJun 17, 2026 Dec 3, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/class/cdc-acm.c driver, aka CID-c52873e5a1ef. |
3Debian LinuxOpensuse3Debian Linux LeapLinux KernelJun 17, 2026 Dec 3, 2019 N/A· v4 6.8 MEDIUM· v3 7.2 HIGH· v2 In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/hid/usbhid/hiddev.c driver, aka CID-9c09b214f30e. |
3Debian LinuxOpensuse3Debian Linux LeapLinux KernelJun 17, 2026 Dec 3, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 In the Linux kernel before 5.3.6, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/net/ieee802154/atusb.c driver, aka CID-7fd25e6fc035. |
3Canonical DebianLinux3Debian Linux Linux KernelUbuntu LinuxJun 17, 2026 Dec 3, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 In the Linux kernel before 5.3.12, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/input/ff-memless.c driver, aka CID-fa3a5a1880c9. |
3Debian LinuxOpensuse3Debian Linux LeapLinux KernelJun 17, 2026 Dec 3, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/adutux.c driver, aka CID-44efc269db79. |