CVE-2019-19925

HIGH WAF: Medium
CVSS 7.5 Published: 2019-12-24
CWE-434

zipfileUpdate in ext/misc/zipfile.c in SQLite 3.30.1 mishandles a NULL pathname during an update of a ZIP archive.

WAF Coverage Analysis

Unrestricted File Upload Medium WAF Coverage

OWASP: A04:2021 Insecure Design

930xxx - Local File Inclusion

Affected Software

VendorProductVersion
sqlitesqlite3.30.1
siemenssinec_infrastructure_network_servicesup to 1.0.1.1
oraclemysql_workbenchup to 8.0.19
debiandebian_linux9.0
debiandebian_linux10.0
redhatenterprise_linux_desktop6.0
redhatenterprise_linux_server6.0
redhatenterprise_linux_workstation6.0
susepackage_hub-
opensusebackports_sle15.0

References

Back to CVE Database