CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2019-16072

    Last Modified: 21 Nov 2024

    An OS command injection vulnerability in the discover_and_manage CGI script in NETSAS Enigma NMS 65.0.0 and prior allows an attacker to execute arbitrary code because of improper neutralization of shell metacharacters in the ip_address variable within an snmp_browser action.

    Published: 19 Mar 2020
    7.5
    High

    CVE-2019-16108

    Last Modified: 21 Nov 2024

    phpBB 3.2.7 allows adding an arbitrary Cascading Style Sheets (CSS) token sequence to a page through BBCode.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-16069

    Last Modified: 21 Nov 2024

    A number of stored Cross-site Scripting (XSS) vulnerabilities were identified in NETSAS Enigma NMS 65.0.0 and prior that could allow a threat actor to inject malicious code directly into the application through the SNMP protocol.

    Published: 19 Mar 2020
    8.8
    High

    CVE-2019-16068

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in NETSAS ENIGMA NMS version 65.0.0 and prior that could allow an attacker to be able to trick a victim into submitting a malicious manage_files.cgi request. This can be triggered via XSS or an IFRAME tag included within the site.

    Published: 19 Mar 2020
    5.3
    Medium

    CVE-2019-16529

    Last Modified: 21 Nov 2024

    An issue was discovered in the CheckUser extension through 1.35.0 for MediaWiki. Oversighted edit summaries are still visible in CheckUser results in violation of MediaWiki's permissions model.

    Published: 19 Mar 2020
    7.5
    High

    CVE-2020-10669

    Last Modified: 21 Nov 2024

    The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to authentication bypass on the page /home.jsp. An unauthenticated attacker able to connect to the device's web interface can get a copy of the documents uploaded by any users. NOTE: this is fixed in the latest version.

    Published: 19 Mar 2020
    7.5
    High

    CVE-2019-16063

    Last Modified: 21 Nov 2024

    NETSAS Enigma NMS 65.0.0 and prior does not encrypt sensitive data rendered within web pages. It is possible for an attacker to expose unencrypted sensitive data.

    Published: 19 Mar 2020
    8.4
    High

    CVE-2020-7006

    Last Modified: 21 Nov 2024

    Systech Corporation NDS-5000 Terminal Server, NDS/5008 (8 Port, RJ45), firmware Version 02D.30. Successful exploitation of this vulnerability could allow information disclosure, limit system availability, and may allow remote code execution.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-15539

    Last Modified: 21 Nov 2024

    The proj_doc_edit_page.php Project Documentation feature in MantisBT before 2.21.3 has a stored cross-site scripting (XSS) vulnerability, allowing execution of arbitrary code (if CSP settings permit it) after uploading an attachment with a crafted filename. The code is executed when editing the document's page.

    Published: 19 Mar 2020
    8.8
    High

    CVE-2020-10671

    Last Modified: 21 Nov 2024

    The Canon Oce Colorwave 500 4.0.0.0 printer's web application is missing any form of CSRF protections. This is a system-wide issue. An attacker could perform administrative actions by targeting a logged-in administrative user. NOTE: this is fixed in the latest version.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2020-10670

    Last Modified: 21 Nov 2024

    The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to Reflected XSS in the parameter settingId of the settingDialogContent.jsp page. NOTE: this is fixed in the latest version.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2020-10668

    Last Modified: 21 Nov 2024

    The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to Reflected XSS in /home.jsp. The vulnerable parameter is openSI. NOTE: this is fixed in the latest version.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-15124

    Last Modified: 21 Nov 2024

    In the MobileFrontend extension for MediaWiki, XSS exists within the edit summary field of the watchlist feed. This affects REL1_31, REL1_32, and REL1_33.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2020-10667

    Last Modified: 21 Nov 2024

    The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to Stored XSS in /TemplateManager/indexExternalLocation.jsp. The vulnerable parameter is map(template_name). NOTE: this is fixed in the latest version.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-16070

    Last Modified: 21 Nov 2024

    A number of stored Cross-site Scripting (XSS) vulnerabilities were identified in NETSAS Enigma NMS 65.0.0 and prior that could allow a threat actor to inject malicious code directly into the application through web application form inputs.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20526

    Last Modified: 21 Nov 2024

    Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp password parameter.

    Published: 19 Mar 2020
    7.5
    High

    CVE-2019-16067

    Last Modified: 21 Nov 2024

    NETSAS Enigma NMS 65.0.0 and prior utilises basic authentication over HTTP for enforcing access control to the web application. The use of weak authentication transmitted over cleartext protocols can allow an attacker to steal username and password combinations by intercepting authentication traffic in transit.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20525

    Last Modified: 21 Nov 2024

    Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp driver parameter.

    Published: 19 Mar 2020
    8.8
    High

    CVE-2019-16066

    Last Modified: 21 Nov 2024

    An unrestricted file upload vulnerability exists in user and system file upload functions in NETSAS Enigma NMS 65.0.0 and prior. This allows an attacker to upload malicious files and perform arbitrary code execution on the system.

    Published: 19 Mar 2020
    8.8
    High

    CVE-2019-16065

    Last Modified: 21 Nov 2024

    A remote SQL injection web vulnerability was discovered in the Enigma NMS 65.0.0 and prior web application that allows an attacker to execute SQL commands to expose and compromise the web server, expose database tables and values, and potentially execute system-based commands as the mysql user. This affects the search_pattern value of the manage_hosts_short.cgi script.

    Published: 19 Mar 2020
    9.6
    Critical

    CVE-2019-16064

    Last Modified: 21 Nov 2024

    NETSAS Enigma NMS 65.0.0 and prior suffers from a directory traversal vulnerability that can allow an authenticated user to access files and directories stored outside of the web root folder. By exploiting this vulnerability, it is possible for an attacker to list operating-system directory contents on the server, create directories and upload files in permissible locations, and modify filenames and delete files that are accessible by the user running the web server instance.

    Published: 19 Mar 2020
    6.5
    Medium

    CVE-2019-16062

    Last Modified: 21 Nov 2024

    NETSAS Enigma NMS 65.0.0 and prior does not encrypt sensitive data stored within the SQL database. It is possible for an attacker to expose unencrypted sensitive data.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20521

    Last Modified: 21 Nov 2024

    ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/ URI.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20520

    Last Modified: 21 Nov 2024

    ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/method/ URI.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20519

    Last Modified: 21 Nov 2024

    ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the user/ URI, as demonstrated by a crafted e-mail address.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20518

    Last Modified: 21 Nov 2024

    ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the project/ URI.

    Published: 19 Mar 2020
    8.8
    High

    CVE-2019-16061

    Last Modified: 21 Nov 2024

    A number of files on the NETSAS Enigma NMS server 65.0.0 and prior are granted weak world-readable and world-writable permissions, allowing any low privileged user with access to the system to read sensitive data (e.g., .htpasswd) and create/modify/delete content (e.g., under /var/www/html/docs) within the operating system.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20517

    Last Modified: 21 Nov 2024

    ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the contact/ URI.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20516

    Last Modified: 21 Nov 2024

    ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the blog/ URI.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20515

    Last Modified: 21 Nov 2024

    ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the addresses/ URI.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20514

    Last Modified: 21 Nov 2024

    ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the address/ URI.

    Published: 19 Mar 2020
    6.1
    Medium

    CVE-2019-20513

    Last Modified: 21 Nov 2024

    Open edX Ironwood.1 allows support/certificates?user= reflected XSS.

    Published: 19 Mar 2020
    9.8
    Critical

    CVE-2019-12127

    Last Modified: 21 Nov 2024

    In ONAP OOM through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operations Manager (OOM) setups are affected.

    Published: 19 Mar 2020
    9.8
    Critical

    CVE-2019-12126

    Last Modified: 21 Nov 2024

    In ONAP DCAE through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operations Manager (OOM) setups are affected.

    Published: 19 Mar 2020
    9.8
    Critical

    CVE-2019-12125

    Last Modified: 21 Nov 2024

    In ONAP Logging through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operations Manager (OOM) setups are affected.

    Published: 19 Mar 2020
    7.5
    High

    CVE-2019-15656

    Last Modified: 21 Nov 2024

    D-Link DSL-2875AL and DSL-2877AL devices through 1.00.05 are prone to information disclosure via a simple crafted request to index.asp on the web management server because of username_v and password_v variables.

    Published: 19 Mar 2020
    7.5
    High

    CVE-2019-15655

    Last Modified: 21 Nov 2024

    D-Link DSL-2875AL devices through 1.00.05 are prone to password disclosure via a simple crafted /romfile.cfg request to the web management server. This request doesn't require any authentication and will lead to saving the configuration file. The password is stored in cleartext.

    Published: 19 Mar 2020
    7.5
    High

    CVE-2019-15654

    Last Modified: 21 Nov 2024

    Comba AC2400 devices are prone to password disclosure via a simple crafted /09/business/upgrade/upcfgAction.php?download=true request to the web management server. The request doesn't require any authentication and will lead to saving the DBconfig.cfg file. At the end of the file, the login information is stored in cleartext.

    Published: 19 Mar 2020
    7.5
    High

    CVE-2019-15653

    Last Modified: 21 Nov 2024

    Comba AP2600-I devices through A02,0202N00PD2 are prone to password disclosure via an insecure authentication mechanism. The HTML source code of the login page contains values that allow obtaining the username and password. The username are password values are a double md5 of the plaintext real value, i.e., md5(md5(value)).

    Published: 19 Mar 2020
    7.8
    High

    CVE-2019-16338

    Last Modified: 21 Nov 2024

    The tfo_common component in HwordApp.dll in Hancom Office 9.6.1.7634 allows a use-after-free via a crafted .docx file.

    Published: 19 Mar 2020
    7.8
    High

    CVE-2019-16337

    Last Modified: 21 Nov 2024

    The hncbd90 component in Hancom Office 9.6.1.9403 allows a use-after-free via an unknown object in a crafted .docx file.

    Published: 19 Mar 2020
    7.7
    High

    CVE-2020-5262

    Last Modified: 21 Nov 2024

    In EasyBuild before version 4.1.2, the GitHub Personal Access Token (PAT) used by EasyBuild for the GitHub integration features (like `--new-pr`, `--fro,-pr`, etc.) is shown in plain text in EasyBuild debug log files. This issue is fixed in EasyBuild v4.1.2, and in the `master`+ `develop` branches of the `easybuild-framework` repository.

    Published: 19 Mar 2020
    9.8
    Critical

    CVE-2019-16382

    Last Modified: 21 Nov 2024

    An issue was discovered in Ivanti Workspace Control 10.3.110.0. One is able to bypass Ivanti's FileGuard folder protection by renaming the WMTemp work folder used by PowerGrid. A malicious PowerGrid XML file can then be created, after which the folder is renamed back to its original value. Also, CVE-2018-15591 exploitation can consequently be achieved by using PowerGrid with the /SEE parameter to execute the arbitrary command specified in the XML file.

    Published: 19 Mar 2020
    8.8
    High

    CVE-2019-11361

    Last Modified: 21 Nov 2024

    Zoho ManageEngine Remote Access Plus 10.0.258 does not validate user permissions properly, allowing for privilege escalation and eventually a full application takeover.

    Published: 19 Mar 2020
    8.8
    High

    CVE-2014-2723

    Last Modified: 21 Nov 2024

    In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configuration error, and is not the result of an underlying SSH defect.

    Published: 19 Mar 2020
    8.8
    High

    CVE-2014-2721

    Last Modified: 21 Nov 2024

    In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configuration error, and is not the result of an underlying SSH defect.

    Published: 19 Mar 2020
    4.8
    Medium

    CVE-2019-16010

    Last Modified: 21 Nov 2024

    A vulnerability in the web UI of the Cisco SD-WAN vManage software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the vManage software. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or access sensitive, browser-based information.

    Published: 19 Mar 2020
    8.1
    High

    CVE-2019-16012

    Last Modified: 21 Nov 2024

    A vulnerability in the web UI of Cisco SD-WAN Solution vManage software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. The vulnerability exists because the web UI improperly validates SQL values. An attacker could exploit this vulnerability by authenticating to the application and sending malicious SQL queries to an affected system. A successful exploit could allow the attacker to modify values on, or return values from, the underlying database as well as the operating system.

    Published: 19 Mar 2020
    7.1
    High

    CVE-2020-3264

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco SD-WAN Solution software could allow an authenticated, local attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to gain access to information that they are not authorized to access and make changes to the system that they are not authorized to make.

    Published: 19 Mar 2020
    7.8
    High

    CVE-2020-3265

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco SD-WAN Solution software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating system. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted request to an affected system. A successful exploit could allow the attacker to gain root-level privileges.

    Published: 19 Mar 2020