CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2019-19195

    Last Modified: 21 Nov 2024

    The Bluetooth Low Energy implementation on Microchip Technology BluSDK Smart through 6.2 for ATSAMB11 devices does not properly restrict link-layer data length on reception, allowing attackers in radio range to cause a denial of service (crash) via a crafted packet.

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-19193

    Last Modified: 21 Nov 2024

    The Bluetooth Low Energy peripheral implementation on Texas Instruments SIMPLELINK-CC2640R2-SDK through 3.30.00.20 and BLE-STACK through 1.5.0 before Q4 2019 for CC2640R2 and CC2540/1 devices does not properly restrict the advertisement connection request packet on reception, allowing attackers in radio range to cause a denial of service (crash) via a crafted packet.

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-17520

    Last Modified: 21 Nov 2024

    The Bluetooth Low Energy implementation on Texas Instruments SDK through 3.30.00.20 for CC2640R2 devices does not properly restrict the SM Public Key packet on reception, allowing attackers in radio range to cause a denial of service (crash) via crafted packets.

    Published: 10 Feb 2020
    8.8
    High

    CVE-2020-8841

    Last Modified: 21 Nov 2024

    An issue was discovered in TestLink 1.9.19. The relation_type parameter of the lib/requirements/reqSearch.php endpoint is vulnerable to authenticated SQL Injection.

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-17518

    Last Modified: 21 Nov 2024

    The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 1.0.14.1081 for DA1468x devices responds to link layer packets with a payload length larger than expected, allowing attackers in radio range to cause a buffer overflow via a crafted packet. This affects, for example, August Smart Lock.

    Published: 10 Feb 2020
    5.7
    Medium

    CVE-2019-17517

    Last Modified: 21 Nov 2024

    The Bluetooth Low Energy implementation on Dialog Semiconductor SDK through 5.0.4 for DA14580/1/2/3 devices does not properly restrict the L2CAP payload length, allowing attackers in radio range to cause a buffer overflow via a crafted Link Layer packet.

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-17061

    Last Modified: 21 Nov 2024

    The Bluetooth Low Energy (BLE) stack implementation on Cypress PSoC 4 through 3.62 devices does not properly restrict the BLE Link Layer header and executes certain memory contents upon receiving a packet with a Link Layer ID (LLID) equal to zero. This allows attackers within radio range to cause deadlocks, cause anomalous behavior in the BLE state machine, or trigger a buffer overflow via a crafted BLE Link Layer frame.

    Published: 10 Feb 2020
    —
    Unknown

    CVE-2011-1596

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-17060

    Last Modified: 21 Nov 2024

    The Bluetooth Low Energy (BLE) stack implementation on the NXP KW41Z (based on the MCUXpresso SDK with Bluetooth Low Energy Driver 2.2.1 and earlier) does not properly restrict the BLE Link Layer header and executes certain memory contents upon receiving a packet with a Link Layer ID (LLID) equal to zero. This allows attackers within radio range to cause deadlocks, cause anomalous behavior in the BLE state machine, or trigger a buffer overflow via a crafted BLE Link Layer frame.

    Published: 10 Feb 2020
    9.8
    Critical

    CVE-2020-8840

    Last Modified: 21 Nov 2024

    FasterXML jackson-databind 2.0.0 through 2.9.10.2 lacks certain xbean-reflect/JNDI blocking, as demonstrated by org.apache.xbean.propertyeditor.JndiConverter.

    Published: 10 Feb 2020
    9.4
    Critical

    CVE-2019-17137

    Last Modified: 21 Nov 2024

    This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR AC1200 R6220 Firmware version 1.1.0.86 Smart WiFi Router. Authentication is not required to exploit this vulnerability. The specific flaw exists within the processing of path strings. By inserting a null byte into the path, the user can skip most authentication checks. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-8616.

    Published: 10 Feb 2020
    4.3
    Medium

    CVE-2019-6744

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to disclose sensitive information on affected installations of Samsung Knox 1.2.02.39 on Samsung Galaxy S9 build G9600ZHS3ARL1 Secure Folder. An attacker must first obtain physical access to the device in order to exploit this vulnerability. The specific flaws exists within the the handling of the lock screen for Secure Folder. The issue results from the lack of proper validation that a user has correctly authenticated. An attacker can leverage this vulnerability to disclose the contents of the secure container. Was ZDI-CAN-7381.

    Published: 10 Feb 2020
    8
    High

    CVE-2019-13321

    Last Modified: 21 Nov 2024

    This vulnerability allows network adjacent attackers to execute arbitrary code on affected installations of Xiaomi Browser Prior to 10.4.0. User interaction is required to exploit this vulnerability in that the target must connect to a malicious access point. The specific flaw exists within the handling of HTTP responses to the Captive Portal. A crafted HTML response can cause the Captive Portal to to open a browser to a specified location without user interaction. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the current process. Was ZDI-CAN-7467.

    Published: 10 Feb 2020
    8.8
    High

    CVE-2019-13322

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Xiaomi Browser Prior to 10.4.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of the miui.share application. The issue results from the lack of proper validation of user-supplied data, which can result in an arbitrary application download. An attacker can leverage this vulnerability to execute code in the context of the user. Was ZDI-CAN-7483.

    Published: 10 Feb 2020
    4.3
    Medium

    CVE-2019-19668

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the File Types component of Web File Manager in Rumpus FTP 8.2.9.1 that allows an attacker to add or delete the file types that are used on the server via RAPR/TriggerServerFunction.html.

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-19669

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the Upload Center Forms Component of Web File Manager in Rumpus FTP 8.2.9.1. This could allow an attacker to delete, create, and update the upload forms via RAPR/TriggerServerFunction.html.

    Published: 10 Feb 2020
    6.1
    Medium

    CVE-2019-19670

    Last Modified: 21 Nov 2024

    A HTTP Response Splitting vulnerability was identified in the Web Settings Component of Web File Manager in Rumpus FTP Server 8.2.9.1. A successful exploit can result in stored XSS, website defacement, etc. via ExtraHTTPHeader to RAPR/WebSettingsGeneralSet.html.

    Published: 10 Feb 2020
    5.4
    Medium

    CVE-2019-19667

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the Block Clients component of Web File Manager in Rumpus FTP 8.2.9.1 that could allow an attacker to whitelist or block any IP address via RAPR/BlockedClients.html.

    Published: 10 Feb 2020
    4.3
    Medium

    CVE-2019-19666

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the Event Notices Settings of Web File Manager in Rumpus FTP 8.2.9.1. An attacker can create/update event notices via RAPR/EventNoticesSet.html.

    Published: 10 Feb 2020
    6.1
    Medium

    CVE-2019-19661

    Last Modified: 21 Nov 2024

    A Cookie based reflected XSS exists in the Web File Manager of Rumpus FTP Server 8.2.9.1, related to RumpusLoginUserName and snp.

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-19662

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the Web File Manager's Create/Delete Accounts functionality of Rumpus FTP Server 8.2.9.1. By exploiting it, an attacker can Create and Delete accounts via RAPR/TriggerServerFunction.html.

    Published: 10 Feb 2020
    7.1
    High

    CVE-2019-19664

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the Web Settings of Web File Manager in Rumpus FTP 8.2.9.1. Exploitation of this vulnerability can result in manipulation of Server Web settings at RAPR/WebSettingsGeneralSet.html.

    Published: 10 Feb 2020
    8.8
    High

    CVE-2013-2109

    Last Modified: 21 Nov 2024

    WordPress plugin wp-cleanfix has Remote Code Execution

    Published: 10 Feb 2020
    5.4
    Medium

    CVE-2013-2108

    Last Modified: 21 Nov 2024

    WordPress WP Cleanfix Plugin 2.4.4 has CSRF

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-19665

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the FTP Settings of Web File Manager in Rumpus FTP 8.2.9.1. Exploitation of this vulnerability can result in manipulation of Server FTP settings at RAPR/FTPSettingsSet.html.

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-19663

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the Folder Sets Settings of Web File Manager in Rumpus FTP 8.2.9.1. This allows an attacker to Create/Delete Folders after exploiting it at RAPR/FolderSetsSet.html.

    Published: 10 Feb 2020
    8.8
    High

    CVE-2019-19659

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the Web File Manager's Edit Accounts functionality of Rumpus FTP Server 8.2.9.1. By exploiting it, an attacker can take over a user account by changing the password, update users' details, and escalate privileges via RAPR/DefineUsersSet.html.

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2012-5828

    Last Modified: 21 Nov 2024

    BlackBerry PlayBook before 2.1 has an Information Disclosure Vulnerability via a Web browser component error

    Published: 10 Feb 2020
    6.5
    Medium

    CVE-2019-19660

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in the Web File Manager's Network Setting functionality of Rumpus FTP Server 8.2.9.1. By exploiting it, an attacker can manipulate the SMTP setting and other network settings via RAPR/NetworkSettingsSet.html.

    Published: 10 Feb 2020
    5.5
    Medium

    CVE-2012-2204

    Last Modified: 21 Nov 2024

    InfoSphere Guardium aix_ktap module: DoS

    Published: 10 Feb 2020
    5.7
    Medium

    CVE-2012-1994

    Last Modified: 21 Nov 2024

    HP Systems Insight Manager before 7.0 allows a remote user on adjacent network to access information

    Published: 10 Feb 2020
    5.4
    Medium

    CVE-2020-8089

    Last Modified: 21 Nov 2024

    Piwigo 2.10.1 is affected by stored XSS via the Group Name Field to the group_list page.

    Published: 10 Feb 2020
    5.4
    Medium

    CVE-2012-6449

    Last Modified: 21 Nov 2024

    The clientconf.html and detailbw.html pages in x3 in cPanel & WHM 11.34.0 (build 8) have a XSS vulnerability.

    Published: 10 Feb 2020
    8.8
    High

    CVE-2014-5083

    Last Modified: 21 Nov 2024

    A Command Execution vulnerability exists in Sphider before 1.3.6 due to insufficient sanitization of fwrite to conf.php, which could let a remote malicious user execute arbitrary code. CVE-2014-5083 pertains to instances of fwrite in Sphider.

    Published: 10 Feb 2020
    9.8
    Critical

    CVE-2012-6611

    Last Modified: 21 Nov 2024

    An issue was discovered in Polycom Web Management Interface G3/HDX 8000 HD with Durango 2.6.0 4740 software and embedded Polycom Linux Development Platform 2.14.g3. It has a blank administrative password by default, and can be successfully used without setting this password.

    Published: 10 Feb 2020
    9.8
    Critical

    CVE-2019-20451

    Last Modified: 21 Nov 2024

    The HTTP API in Prismview System 9 11.10.17.00 and Prismview Player 11 13.09.1100 allows remote code execution by uploading RebootSystem.lnk and requesting /REBOOTSYSTEM or /RESTARTVNC. (Authentication is required but an XML file containing credentials can be downloaded.)

    Published: 10 Feb 2020
    8.8
    High

    CVE-2014-5084

    Last Modified: 21 Nov 2024

    A Command Execution vulnerability exists in Sphider Pro 3.2 due to insufficient sanitization of fwrite, which could let a remote malicious user execute arbitrary code. CVE-2014-5084 pertains to instances of fwrite in Sphider Pro only, but do not exist in either Sphider or Sphider Plus.

    Published: 10 Feb 2020
    8.8
    High

    CVE-2014-5085

    Last Modified: 21 Nov 2024

    A Command Execution vulnerability exists in Sphider Plus 3.2 due to insufficient sanitization of fwrite to conf.php, which could let a remote malicious user execute arbitrary code. CVE-2014-5085 pertains to instances of fwrite in Sphider Plus, but do not exist in either Sphider or Sphider Pro.

    Published: 10 Feb 2020
    8.8
    High

    CVE-2014-5086

    Last Modified: 21 Nov 2024

    A Command Execution vulnerability exists in Sphider Pro, and Sphider Plus 3.2 due to insufficient sanitization of fwrite to conf.php, which could let a remote malicious user execute arbitrary code. CVE-2014-5086 pertains to instances of fwrite in Sphider Pro and Sphider Plus only, but don’t exist in Sphider.

    Published: 10 Feb 2020
    5.4
    Medium

    CVE-2013-1353

    Last Modified: 21 Nov 2024

    Orange HRM 2.7.1 allows XSS via the vacancy name.

    Published: 10 Feb 2020
    6.1
    Medium

    CVE-2012-6666

    Last Modified: 21 Nov 2024

    vBSeo before 3.6.0PL2 allows XSS via the member.php u parameter.

    Published: 10 Feb 2020
    7.5
    High

    CVE-2019-20060

    Last Modified: 21 Nov 2024

    MFScripts YetiShare v3.5.2 through v4.5.4 places sensitive information in the Referer header. If this leaks, then third parties may discover password-reset hashes, file-delete links, or other sensitive information.

    Published: 10 Feb 2020
    7.5
    High

    CVE-2019-20061

    Last Modified: 21 Nov 2024

    The user-introduction email in MFScripts YetiShare v3.5.2 through v4.5.4 may leak the (system-picked) password if this email is sent in cleartext. In other words, the user is not allowed to choose their own initial password.

    Published: 10 Feb 2020
    9.8
    Critical

    CVE-2019-20062

    Last Modified: 21 Nov 2024

    MFScripts YetiShare v3.5.2 through v4.5.4 might allow an attacker to reset a password by using a leaked hash (the hash never expires until used).

    Published: 10 Feb 2020
    8.8
    High

    CVE-2019-20059

    Last Modified: 21 Nov 2024

    payment_manage.ajax.php and various *_manage.ajax.php in MFScripts YetiShare 3.5.2 through 4.5.4 directly insert values from the sSortDir_0 parameter into a SQL string. This allows an attacker to inject their own SQL and manipulate the query, typically extracting data from the database, aka SQL Injection. NOTE: this issue exists because of an incomplete fix for CVE-2019-19732.

    Published: 10 Feb 2020
    5.4
    Medium

    CVE-2020-8825

    Last Modified: 21 Nov 2024

    index.php?p=/dashboard/settings/branding in Vanilla 2.6.3 allows stored XSS.

    Published: 10 Feb 2020
    5.1
    Medium

    CVE-2020-36558

    Last Modified: 21 Nov 2024

    A race condition in the Linux kernel before 5.5.7 involving VT_RESIZEX could lead to a NULL pointer dereference and general protection fault.

    Published: 10 Feb 2020
    4.8
    Medium

    CVE-2020-8822

    Last Modified: 21 Nov 2024

    Digi TransPort WR21 5.2.2.3, WR44 5.1.6.4, and WR44v2 5.1.6.9 devices allow stored XSS in the web application.

    Published: 10 Feb 2020
    8.1
    High

    CVE-2017-18641

    Last Modified: 21 Nov 2024

    In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running it to bootstrap containers.

    Published: 10 Feb 2020
    7.2
    High

    CVE-2020-26116

    Last Modified: 21 Nov 2024

    http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

    Published: 10 Feb 2020