Vulnerabilities > Debian > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-07-10 CVE-2019-12469 Missing Authorization vulnerability in multiple products
MediaWiki through 1.32.1 has Incorrect Access Control.
network
low complexity
mediawiki debian CWE-862
6.5
2019-07-10 CVE-2019-12471 Cross-site Scripting vulnerability in multiple products
Wikimedia MediaWiki 1.30.0 through 1.32.1 has XSS.
network
low complexity
mediawiki debian CWE-79
6.1
2019-07-10 CVE-2019-12467 MediaWiki through 1.32.1 has Incorrect Access Control (issue 1 of 3).
network
low complexity
mediawiki debian
5.3
2019-07-09 CVE-2019-13454 Divide By Zero vulnerability in multiple products
ImageMagick 7.0.8-54 Q16 allows Division by Zero in RemoveDuplicateLayers in MagickCore/layer.c.
network
low complexity
imagemagick debian canonical opensuse CWE-369
6.5
2019-07-08 CVE-2018-11563 An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.7.
network
low complexity
otrs debian
4.6
2019-07-05 CVE-2019-13345 Cross-site Scripting vulnerability in multiple products
The cachemgr.cgi web module of Squid through 4.7 has XSS via the user_name or auth parameter.
network
low complexity
squid-cache debian CWE-79
6.1
2019-07-05 CVE-2019-13311 Memory Leak vulnerability in multiple products
ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of a wand/mogrify.c error.
network
low complexity
imagemagick canonical debian opensuse CWE-401
6.5
2019-07-05 CVE-2019-13309 Memory Leak vulnerability in multiple products
ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of mishandling the NoSuchImage error in CLIListOperatorImages in MagickWand/operation.c.
network
low complexity
imagemagick debian canonical opensuse CWE-401
6.5
2019-07-05 CVE-2019-13301 Memory Leak vulnerability in multiple products
ImageMagick 7.0.8-50 Q16 has memory leaks in AcquireMagickMemory because of an AnnotateImage error.
network
low complexity
imagemagick debian canonical opensuse CWE-401
6.5
2019-07-02 CVE-2019-13147 NULL Pointer Dereference vulnerability in multiple products
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a crafted file.
network
low complexity
audio-file-library-project debian CWE-476
6.5