CVE-Datenbank
Archiv bekannter Schwachstellen (CVEs) mit CVSS-Wert, Schweregrad, betroffenen Produkten und Herstellern. Nach Jahr und Schweregrad filterbar.
- CVE-2019-1215Hoch7.8
An elevation of privilege vulnerability exists in the way that ws2ifsl.sys (Winsock) handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1253, CVE-2019-1278, CVE-2019-1303.
- CVE-2019-1214Hoch7.8
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka 'Windows Common Log File System Driver Elevation of Privilege Vulnerability'.
- CVE-2019-16098Hoch7.8
Der Treiber in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys und RTCore32.sys) ermöglicht es jedem authentifizierten Benutzer, beliebigen Speicher, I/O-Ports und MSRs zu lesen und zu schreiben. Dies kann für Privilegieneskalation, Codeausführung unter hohen Privilegien und Offenlegung von Informationen ausgenutzt werden. Diese signierten Treiber können auch dazu verwendet werden, die Microsoft-Richtlinie zur Treibersignierung zu umgehen, um Schadcode bereitzustellen.
- CVE-2019-15949Hoch8.8
Nagios XI before 5.6.6 allows remote command execution as root. The exploit requires access to the server as the nagios user, or access as the admin user via the web interface. The getprofile.sh script, invoked by downloading a system profile (profile.php?cmd=download), is executed as root via a passwordless sudo entry; the script executes check_plugin, which is owned by the nagios user. A user logged into Nagios XI with permissions to modify plugins, or the nagios user on the server, can modify the check_plugin executable and insert malicious commands to execute as root.
- CVE-2019-13608Hoch7.5
Citrix StoreFront Server before 1903, 7.15 LTSR before CU4 (3.12.4000), and 7.6 LTSR before CU8 (3.0.8000) allows XXE attacks.
- CVE-2019-15752Hoch7.8
Docker Desktop Community Edition before 2.1.0.1 allows local users to gain privileges by placing a Trojan horse docker-credential-wincred.exe file in %PROGRAMDATA%\DockerDesktop\version-bin\ as a low-privilege user, and then waiting for an admin or service user to authenticate with Docker, restart Docker, or run 'docker login' to force the command.
- CVE-2019-15107Kritisch9.8
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnerability.
- CVE-2019-0344Kritisch9.8
Due to unsafe deserialization used in SAP Commerce Cloud (virtualjdbc extension), versions 6.4, 6.5, 6.6, 6.7, 1808, 1811, 1905, it is possible to execute arbitrary code on a target machine with 'Hybris' user rights, resulting in Code Injection.
- CVE-2019-11581Kritisch9.8
There was a server-side template injection vulnerability in Jira Server and Data Center, in the ContactAdministrators and the SendBulkMail actions. An attacker is able to remotely execute code on systems that run a vulnerable version of Jira Server or Data Center. All versions of Jira Server and Data Center from 4.4.0 before 7.6.14, from 7.7.0 before 7.13.5, from 8.0.0 before 8.0.3, from 8.1.0 before 8.1.2, and from 8.2.0 before 8.2.3 are affected by this vulnerability.
- CVE-2019-0193Hoch7.2
In Apache Solr, the DataImportHandler, an optional but popular module to pull in data from databases and other sources, has a feature in which the whole DIH configuration can come from a request's "dataConfig" parameter. The debug mode of the DIH admin screen uses this to allow convenient debugging / development of a DIH config. Since a DIH config can contain scripts, this parameter is a security risk. Starting with version 8.2.0 of Solr, use of this parameter requires setting the Java System property "enable.dih.dataConfigParam" to true.
- CVE-2019-11708Kritisch10.0
Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process opening web content chosen by a compromised child process. When combined with additional vulnerabilities this could result in executing arbitrary code on the user's computer. This vulnerability affects Firefox ESR < 60.7.2, Firefox < 67.0.4, and Thunderbird < 60.7.2.
- CVE-2019-11707Hoch8.8
A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 60.7.1, Firefox < 67.0.3, and Thunderbird < 60.7.2.
- CVE-2019-1579Hoch8.1
Remote Code Execution in PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11-h1 and earlier, and PAN-OS 8.1.2 and earlier with GlobalProtect Portal or GlobalProtect Gateway Interface enabled may allow an unauthenticated remote attacker to execute arbitrary code.
- CVE-2019-13272Hoch7.8
Im Linux-Kernel vor 5.1.17 behandelt ptrace_link in kernel/ptrace.c die Aufzeichnung der Credentials eines Prozesses, der eine ptrace-Beziehung erstellen will, fehlerhaft, wodurch lokale Benutzer Root-Zugriff erlangen können, indem sie bestimmte Szenarien mit einer Eltern-Kind-Prozessbeziehung ausnutzen, bei denen ein Elternprozess Privilegien abgibt und execve aufruft (was möglicherweise Kontrolle durch einen Angreifer ermöglicht). Ein beitragender Faktor ist ein Problem mit der Objektlebensdauer (das auch einen Panic verursachen kann). Ein weiterer beitragender Faktor ist die falsche Kennzeichnung einer ptrace-Beziehung als privilegiert, die über (zum Beispiel) den pkexec-Helper von Polkit mit PTRACE_TRACEME ausnutzbar ist. HINWEIS: SELinux deny_ptrace könnte in einigen Umgebungen als Workaround dienen.
- CVE-2019-12991Hoch8.8
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 5 of 6).
- CVE-2019-12989Kritisch9.8
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow SQL Injection.
- CVE-2019-1132Hoch7.8
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.
- CVE-2019-1130Hoch7.8
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1129.
- CVE-2019-1129Hoch7.8
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1130.
- CVE-2019-1068Hoch8.8
Es besteht eine Schwachstelle zur Remotecodeausführung in Microsoft SQL Server, wenn die Verarbeitung interner Funktionen nicht korrekt gehandhabt wird, auch bekannt als 'Microsoft SQL Server Remote Code Execution Vulnerability'.
This product uses the NVD API but is not endorsed or certified by the NVD.