CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2019-15313

    Last Modified: 21 Nov 2024

    In Zimbra Collaboration before 8.8.15 Patch 1, there is a non-persistent XSS vulnerability.

    Published: 27 Jan 2020
    6.1
    Medium

    CVE-2019-19143

    Last Modified: 21 Nov 2024

    TP-LINK TL-WR849N 0.9.1 4.16 devices do not require authentication to replace the firmware via a POST request to the cgi/softup URI.

    Published: 27 Jan 2020
    5.5
    Medium

    CVE-2019-19539

    Last Modified: 21 Nov 2024

    An issue was discovered in Idelji Web ViewPoint H01ABO-H01BY and L01ABP-L01ABZ, Web ViewPoint Plus H01AAG-H01AAQ and L01AAH-L01AAR, and Web ViewPoint Enterprise H01-H01AAE and L01-L01AAF. By reading ADB or AADB file content within the Installation subvolume, a Guardian user can discover the password of the group.user or alias who acknowledges events from the WVP Events screen.

    Published: 27 Jan 2020
    7.5
    High

    CVE-2014-3979

    Last Modified: 21 Nov 2024

    Bytemark Symbiosis allows remote attackers to cause a denial of service via a crafted username, which triggers the firewall to blacklist the IP.

    Published: 27 Jan 2020
    7.5
    High

    CVE-2019-19822

    Last Modified: 21 Nov 2024

    A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attackers to retrieve the configuration, including sensitive data (usernames and passwords). This affects TOTOLINK A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0, N300RT through 3.4.0, N200RE through 4.0.0, N150RT through 3.4.0, and N100RE through 3.4.0; Rutek RTK 11N AP through 2019-12-12; Sapido GR297n through 2019-12-12; CIK TELECOM MESH ROUTER through 2019-12-12; KCTVJEJU Wireless AP through 2019-12-12; Fibergate FGN-R2 through 2019-12-12; Hi-Wifi MAX-C300N through 2019-12-12; HCN MAX-C300N through 2019-12-12; T-broad GN-866ac through 2019-12-12; Coship EMTA AP through 2019-12-12; and IO-Data WN-AC1167R through 2019-12-12.

    Published: 27 Jan 2020
    7.5
    High

    CVE-2019-19823

    Last Modified: 21 Nov 2024

    A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords in flash memory and in a file. This affects TOTOLINK A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0, N300RT through 3.4.0, N200RE through 4.0.0, N150RT through 3.4.0, and N100RE through 3.4.0; Rutek RTK 11N AP through 2019-12-12; Sapido GR297n through 2019-12-12; CIK TELECOM MESH ROUTER through 2019-12-12; KCTVJEJU Wireless AP through 2019-12-12; Fibergate FGN-R2 through 2019-12-12; Hi-Wifi MAX-C300N through 2019-12-12; HCN MAX-C300N through 2019-12-12; T-broad GN-866ac through 2019-12-12; Coship EMTA AP through 2019-12-12; and IO-Data WN-AC1167R through 2019-12-12.

    Published: 27 Jan 2020
    6.1
    Medium

    CVE-2013-4770

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 27 Jan 2020
    9.8
    Critical

    CVE-2013-7390

    Last Modified: 21 Nov 2024

    Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before build 80293 allows remote attackers to execute arbitrary code by uploading a file with a jsp extension, then accessing it via a direct request to the file in the webroot.

    Published: 27 Jan 2020
    9.8
    Critical

    CVE-2014-8741

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in the GfdFileUploadServerlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to write to arbitrary files via unspecified vectors.

    Published: 27 Jan 2020
    7.5
    High

    CVE-2014-8742

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in the ReportDownloadServlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 27 Jan 2020
    7.8
    High

    CVE-2014-7303

    Last Modified: 21 Nov 2024

    SGI Tempo, as used on SGI ICE-X systems, uses weak permissions for certain files, which allows local users to obtain password hashes and possibly other unspecified sensitive information by reading etc/dbdump.db.

    Published: 27 Jan 2020
    7.8
    High

    CVE-2014-7302

    Last Modified: 21 Nov 2024

    SGI Tempo, as used on SGI ICE-X systems, uses weak permissions for certain files, which allows local users to change the permissions of arbitrary files by executing /opt/sgi/sgimc/bin/vx.

    Published: 27 Jan 2020
    6.6
    Medium

    CVE-2014-7301

    Last Modified: 21 Nov 2024

    SGI Tempo, as used on SGI ICE-X systems, uses weak permissions for certain files, which allows local users to obtain password hashes and possibly other unspecified sensitive information by reading /etc/odapw.

    Published: 27 Jan 2020
    5.3
    Medium

    CVE-2019-17099

    Last Modified: 21 Nov 2024

    An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163 allows an attacker to load an arbitrary DLL file from the search path. This issue affects: Bitdefender EPSecurityService.exe versions prior to 6.6.11.163.

    Published: 27 Jan 2020
    8.1
    High

    CVE-2019-17095

    Last Modified: 21 Nov 2024

    A command injection vulnerability has been discovered in the bootstrap stage of Bitdefender BOX 2, versions 2.1.47.42 and 2.1.53.45. The API method `/api/download_image` unsafely handles the production firmware URL supplied by remote servers, leading to arbitrary execution of system commands. In order to exploit the condition, an unauthenticated attacker should impersonate a infrastructure server to trigger this vulnerability.

    Published: 27 Jan 2020
    9
    Critical

    CVE-2019-17096

    Last Modified: 21 Nov 2024

    A OS Command Injection vulnerability in the bootstrap stage of Bitdefender BOX 2 allows the manipulation of the `get_image_url()` function in special circumstances to inject a system command.

    Published: 27 Jan 2020
    8.3
    High

    CVE-2019-17094

    Last Modified: 21 Nov 2024

    A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows a local attacker to obtain code execution on the device. This issue affects: Belkin WeMo Insight Switch firmware version 2.00.11396 and prior versions.

    Published: 27 Jan 2020
    8.8
    High

    CVE-2019-19824

    Last Modified: 21 Nov 2024

    On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCmd parameter to the boafrm/formSysCmd URI, even if the GUI (syscmd.htm) is not available. This allows for full control over the device's internals. This affects A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0, N300RT through 3.4.0, N200RE through 4.0.0, N150RT through 3.4.0, N100RE through 3.4.0, and N302RE 2.0.2.

    Published: 27 Jan 2020
    9.8
    Critical

    CVE-2019-19825

    Last Modified: 21 Nov 2024

    On certain TOTOLINK Realtek SDK based routers, the CAPTCHA text can be retrieved via an {"topicurl":"setting/getSanvas"} POST to the boafrm/formLogin URI, leading to a CAPTCHA bypass. (Also, the CAPTCHA text is not needed once the attacker has determined valid credentials. The attacker can perform router actions via HTTP requests with Basic Authentication.) This affects A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0, N300RT through 3.4.0, N200RE through 4.0.0, N150RT through 3.4.0, and N100RE through 3.4.0.

    Published: 27 Jan 2020
    7.8
    High

    CVE-2020-7949

    Last Modified: 21 Nov 2024

    schemasystem.dll in Valve Dota 2 before 7.23f allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is mishandled during a GetValue call.

    Published: 27 Jan 2020
    7.8
    High

    CVE-2020-7950

    Last Modified: 21 Nov 2024

    meshsystem.dll in Valve Dota 2 before 7.23f allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is mishandled during a vulnerable function call.

    Published: 27 Jan 2020
    7.8
    High

    CVE-2020-7951

    Last Modified: 21 Nov 2024

    meshsystem.dll in Valve Dota 2 before 7.23e allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is affected by memory corruption.

    Published: 27 Jan 2020
    7.8
    High

    CVE-2020-7952

    Last Modified: 21 Nov 2024

    rendersystemdx9.dll in Valve Dota 2 before 7.23f allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is affected by memory corruption.

    Published: 27 Jan 2020
    9.8
    Critical

    CVE-2013-4441

    Last Modified: 21 Nov 2024

    The Phonemes mode in Pwgen 2.06 generates predictable passwords, which makes it easier for context-dependent attackers to guess the password via a brute-force attack.

    Published: 27 Jan 2020
    5.9
    Medium

    CVE-2014-9481

    Last Modified: 21 Nov 2024

    The Scribunto extension for MediaWiki allows remote attackers to obtain the rollback token and possibly other sensitive information via a crafted module, related to unstripping special page HTML.

    Published: 27 Jan 2020
    7.8
    High

    CVE-2019-17190

    Last Modified: 21 Nov 2024

    A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101. The vulnerability is due to an insecure ACL set by the AvastBrowserUpdate.exe (which is running as NT AUTHORITY\SYSTEM) when AvastSecureBrowser.exe checks for new updates. When the update check is triggered, the elevated process cleans the ACL of the Update.ini file in %PROGRAMDATA%\Avast Software\Browser\Update\ and sets all privileges to group Everyone. Because any low-privileged user can create, delete, or modify the Update.ini file stored in this location, an attacker with low privileges can create a hard link named Update.ini in this folder, and make it point to a file writable by NT AUTHORITY\SYSTEM. Once AvastBrowserUpdate.exe is triggered by the update check functionality, the DACL is set to a misconfigured value on the crafted Update.ini and, consequently, to the target file that was previously not writable by the low-privileged attacker.

    Published: 27 Jan 2020
    6.1
    Medium

    CVE-2015-3154

    Last Modified: 21 Nov 2024

    CRLF injection vulnerability in Zend\Mail (Zend_Mail) in Zend Framework before 1.12.12, 2.x before 2.3.8, and 2.4.x before 2.4.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the header of an email.

    Published: 27 Jan 2020
    7.2
    High

    CVE-2011-4558

    Last Modified: 21 Nov 2024

    Tiki 8.2 and earlier allows remote administrators to execute arbitrary PHP code via crafted input to the regexres and regex parameters.

    Published: 27 Jan 2020
    9.8
    Critical

    CVE-2012-1495

    Last Modified: 21 Nov 2024

    install/index.php in WebCalendar before 1.2.5 allows remote attackers to execute arbitrary code via the form_single_user_login parameter.

    Published: 27 Jan 2020
    9.6
    Critical

    CVE-2013-3486

    Last Modified: 21 Nov 2024

    IrfanView FlashPix Plugin 4.3.4 0 has an Integer Overflow Vulnerability

    Published: 27 Jan 2020
    9.8
    Critical

    CVE-2013-3493

    Last Modified: 21 Nov 2024

    XnView 2.03 has an integer overflow vulnerability

    Published: 27 Jan 2020
    8.8
    High

    CVE-2012-1496

    Last Modified: 21 Nov 2024

    Local file inclusion in WebCalendar before 1.2.5.

    Published: 27 Jan 2020
    9.8
    Critical

    CVE-2013-3492

    Last Modified: 21 Nov 2024

    XnView 2.03 has a stack-based buffer overflow vulnerability

    Published: 27 Jan 2020
    5.4
    Medium

    CVE-2013-0286

    Last Modified: 21 Nov 2024

    Pinboard 1.0.6 theme for Wordpress has XSS.

    Published: 27 Jan 2020
    —
    Unknown

    CVE-2015-4709

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 27 Jan 2020
    7.5
    High

    CVE-2013-5659

    Last Modified: 21 Nov 2024

    Wiz 5.0.3 has a user mode write access violation

    Published: 27 Jan 2020
    5.3
    Medium

    CVE-2014-4156

    Last Modified: 21 Nov 2024

    Proxmox VE prior to 3.2: 'AccessControl.pm' User Enumeration Vulnerability

    Published: 27 Jan 2020
    4.9
    Medium

    CVE-2019-17103

    Last Modified: 21 Nov 2024

    An Incorrect Default Permissions vulnerability in the BDLDaemon component of Bitdefender AV for Mac allows an attacker to elevate permissions to read protected directories. This issue affects: Bitdefender AV for Mac versions prior to 8.0.0.

    Published: 27 Jan 2020
    9.1
    Critical

    CVE-2013-4462

    Last Modified: 21 Nov 2024

    WordPress Portable phpMyAdmin Plugin has an authentication bypass vulnerability

    Published: 27 Jan 2020
    8.3
    High

    CVE-2019-17102

    Last Modified: 21 Nov 2024

    An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91. The API method `/api/update_setup` does not perform firmware signature checks atomically, leading to an exploitable race condition (TOCTTOU) that allows arbitrary execution of system commands. This issue affects: Bitdefender Bitdefender BOX 2 versions prior to 2.1.47.36.

    Published: 27 Jan 2020
    7.5
    High

    CVE-2013-6056

    Last Modified: 21 Nov 2024

    OSSIM before 4.3.3.1 has tele_compress.php path traversal vulnerability

    Published: 27 Jan 2020
    5.2
    Medium

    CVE-2019-17100

    Last Modified: 21 Nov 2024

    An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020 allows an attacker to execute arbitrary code. This issue does not affect: Bitdefender Total Security versions prior to 24.0.12.69.

    Published: 27 Jan 2020
    7.5
    High

    CVE-2020-8009

    Last Modified: 21 Nov 2024

    AVB MOTU devices through 2020-01-22 allow /.. Directory Traversal, as demonstrated by reading the /etc/passwd file.

    Published: 27 Jan 2020
    5.5
    Medium

    CVE-2020-0548

    Last Modified: 21 Nov 2024

    Cleanup errors in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 27 Jan 2020
    5.5
    Medium

    CVE-2020-0549

    Last Modified: 21 Nov 2024

    Cleanup errors in some data cache evictions for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 27 Jan 2020
    —
    Unknown

    CVE-2017-16112

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs:CVE-2017-15010. Reason: This candidate is a reservation duplicate of CVE-2017-15010. Notes: All CVE users should reference CVE-2017-15010 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 27 Jan 2020
    8.1
    High

    CVE-2017-14807

    Last Modified: 21 Nov 2024

    An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in susestudio-ui-server of SUSE Studio onsite allows remote attackers with admin privileges in Studio to alter SQL statements, allowing for extraction and modification of data. This issue affects: SUSE Studio onsite susestudio-ui-server version 1.3.17-56.6.3 and prior versions.

    Published: 27 Jan 2020
    3.7
    Low

    CVE-2017-14806

    Last Modified: 21 Nov 2024

    A Improper Certificate Validation vulnerability in susestudio-common of SUSE Studio onsite allows remote attackers to MITM connections to the repositories, which allows the modification of packages received over these connections. This issue affects: SUSE Studio onsite susestudio-common version 1.3.17-56.6.3 and prior versions.

    Published: 27 Jan 2020
    7.4
    High

    CVE-2020-5521

    Last Modified: 21 Nov 2024

    The kantan netprint App for iOS 2.0.2 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 27 Jan 2020
    7.4
    High

    CVE-2020-5522

    Last Modified: 21 Nov 2024

    The kantan netprint App for Android 2.0.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 27 Jan 2020