Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2019-11-18 CVE-2012-4438 Improper Input Validation vulnerability in Jenkins
Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers with read access and HTTP access to Jenkins master to insert data and execute arbitrary code.
network
low complexity
jenkins CWE-20
8.8
2019-11-18 CVE-2019-18215 Uncontrolled Search Path Element vulnerability in Comodo Internet Security
An issue was discovered in signmgr.dll 6.5.0.819 in Comodo Internet Security through 12.0.
local
low complexity
comodo CWE-427
7.8
2019-11-18 CVE-2019-3424 Unspecified vulnerability in Ztehome C520V21 Firmware 2.1.14
authentication issues vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices.
network
low complexity
ztehome
8.2
2019-11-18 CVE-2019-10172 A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries.
network
low complexity
fasterxml redhat debian apache
7.5
2019-11-18 CVE-2019-14467 Unrestricted Upload of File with Dangerous Type vulnerability in Infoway Social Photo Gallery 1.0
The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a malicious PHP file in the cover photo album, because the file extension is not checked.
local
low complexity
infoway CWE-434
7.8
2019-11-18 CVE-2019-19079 Memory Leak vulnerability in multiple products
A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before 5.3 allows attackers to cause a denial of service (memory consumption), aka CID-a21b7f0cff19.
network
low complexity
linux canonical CWE-401
7.5
2019-11-18 CVE-2019-19078 Memory Leak vulnerability in multiple products
A memory leak in the ath10k_usb_hif_tx_sg() function in drivers/net/wireless/ath/ath10k/usb.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() failures, aka CID-b8d17e7d93d2.
network
low complexity
linux canonical CWE-401
7.5
2019-11-18 CVE-2019-19075 Memory Leak vulnerability in multiple products
A memory leak in the ca8210_probe() function in drivers/net/ieee802154/ca8210.c in the Linux kernel before 5.3.8 allows attackers to cause a denial of service (memory consumption) by triggering ca8210_get_platform_data() failures, aka CID-6402939ec86e.
network
low complexity
linux canonical CWE-401
7.5
2019-11-18 CVE-2019-19074 Memory Leak vulnerability in multiple products
A memory leak in the ath9k_wmi_cmd() function in drivers/net/wireless/ath/ath9k/wmi.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption), aka CID-728c1e2a05e4.
network
low complexity
linux debian canonical CWE-401
7.5
2019-11-18 CVE-2019-19071 Memory Leak vulnerability in multiple products
A memory leak in the rsi_send_beacon() function in drivers/net/wireless/rsi/rsi_91x_mgmt.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering rsi_prepare_beacon() failures, aka CID-d563131ef23c.
network
low complexity
linux canonical CWE-401
7.5