CVE Feed

    Dashboard / CVE

    7.7
    High

    CVE-2019-3697

    Last Modified: 21 Nov 2024

    UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of gnump3d in openSUSE Leap 15.1 allows local attackers to escalate from user gnump3d to root. This issue affects: openSUSE Leap 15.1 gnump3d version 3.0-lp151.2.1 and prior versions.

    Published: 24 Jan 2020
    7.7
    High

    CVE-2019-3694

    Last Modified: 21 Nov 2024

    A Symbolic Link (Symlink) Following vulnerability in the packaging of munin in openSUSE Factory, Leap 15.1 allows local attackers to escalate from user munin to root. This issue affects: openSUSE Factory munin version 2.0.49-4.2 and prior versions. openSUSE Leap 15.1 munin version 2.0.40-lp151.1.1 and prior versions.

    Published: 24 Jan 2020
    7.7
    High

    CVE-2019-3693

    Last Modified: 21 Nov 2024

    A symlink following vulnerability in the packaging of mailman in SUSE Linux Enterprise Server 11, SUSE Linux Enterprise Server 12; openSUSE Leap 15.1 allowed local attackers to escalate their privileges from user wwwrun to root. Additionally arbitrary files could be changed to group mailman. This issue affects: SUSE Linux Enterprise Server 11 mailman versions prior to 2.1.15-9.6.15.1. SUSE Linux Enterprise Server 12 mailman versions prior to 2.1.17-3.11.1. openSUSE Leap 15.1 mailman version 2.1.29-lp151.2.14 and prior versions.

    Published: 24 Jan 2020
    7.7
    High

    CVE-2019-3692

    Last Modified: 21 Nov 2024

    The packaging of inn on SUSE Linux Enterprise Server 11; openSUSE Factory, Leap 15.1 allows local attackers to escalate from user inn to root via symlink attacks. This issue affects: SUSE Linux Enterprise Server 11 inn version 2.4.2-170.21.3.1 and prior versions. openSUSE Factory inn version 2.6.2-2.2 and prior versions. openSUSE Leap 15.1 inn version 2.5.4-lp151.2.47 and prior versions.

    Published: 24 Jan 2020
    4
    Medium

    CVE-2019-3687

    Last Modified: 21 Nov 2024

    The permission package in SUSE Linux Enterprise Server allowed all local users to run dumpcap in the "easy" permission profile and sniff network traffic. This issue affects: SUSE Linux Enterprise Server permissions versions starting from 85c83fef7e017f8ab7f8602d3163786d57344439 to 081d081dcfaf61710bda34bc21c80c66276119aa.

    Published: 24 Jan 2020
    7.7
    High

    CVE-2019-3699

    Last Modified: 21 Nov 2024

    UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of privoxy on openSUSE Leap 15.1, Factory allows local attackers to escalate from user privoxy to root. This issue affects: openSUSE Leap 15.1 privoxy version 3.0.28-lp151.1.1 and prior versions. openSUSE Factory privoxy version 3.0.28-2.1 and prior versions.

    Published: 24 Jan 2020
    7.5
    High

    CVE-2020-7226

    Last Modified: 21 Nov 2024

    CiphertextHeader.java in Cryptacular 1.2.3, as used in Apereo CAS and other products, allows attackers to trigger excessive memory allocation during a decode operation, because the nonce array length associated with "new byte" may depend on untrusted input within the header of encoded data.

    Published: 24 Jan 2020
    9.8
    Critical

    CVE-2020-7245

    Last Modified: 21 Nov 2024

    Incorrect username validation in the registration process of CTFd v2.0.0 - v2.2.2 allows an attacker to take over an arbitrary account if the username is known and emails are enabled on the CTFd instance. To exploit the vulnerability, one must register with a username identical to the victim's username, but with white space inserted before and/or after the username. This will register the account with the same username as the victim. After initiating a password reset for the new account, CTFd will reset the victim's account password due to the username collision.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2012-6649

    Last Modified: 21 Nov 2024

    WordPress WP GPX Maps Plugin 1.1.21 allows remote attackers to execute arbitrary PHP code via improper file upload.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2012-6663

    Last Modified: 21 Nov 2024

    General Electric D20ME devices are not properly configured and reveal plaintext passwords.

    Published: 23 Jan 2020
    7.8
    High

    CVE-2012-4606

    Last Modified: 21 Nov 2024

    Citrix XenServer 4.1, 6.0, 5.6 SP2, 5.6 Feature Pack 1, 5.6 Common Criteria, 5.6, 5.5, 5.0, and 5.0 Update 3 contains a Local Privilege Escalation Vulnerability which could allow local users with access to a guest operating system to gain elevated privileges.

    Published: 23 Jan 2020
    7.8
    High

    CVE-2012-5340

    Last Modified: 21 Nov 2024

    SumatraPDF 2.1.1/MuPDF 1.0 allows remote attackers to cause an Integer Overflow in the lex_number() function via a corrupt PDF file.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2012-5389

    Last Modified: 21 Nov 2024

    NULL Pointer Dereference in PowerTCP WebServer for ActiveX 1.9.2 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted HTTP request.

    Published: 23 Jan 2020
    7.9
    High

    CVE-2020-6007

    Last Modified: 21 Nov 2024

    Philips Hue Bridge model 2.X prior to and including version 1935144020 contains a Heap-based Buffer Overflow when handling a long ZCL string during the commissioning phase, resulting in a remote code execution.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2019-19893

    Last Modified: 21 Nov 2024

    In IXP EasyInstall 6.2.13723, there is Directory Traversal on TCP port 8000 via the Engine Service by an unauthenticated attacker, who can access the server's filesystem with the access rights of NT AUTHORITY\SYSTEM.

    Published: 23 Jan 2020
    5.5
    Medium

    CVE-2019-19894

    Last Modified: 21 Nov 2024

    In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system. An authenticated attacker (non-admin) can disable UAC for other users by renaming and replacing %SYSTEMDRIVE%\IXP\DATA\IXPAS.IXP.

    Published: 23 Jan 2020
    7.8
    High

    CVE-2019-19895

    Last Modified: 21 Nov 2024

    In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system. An authenticated attacker can, by modifying %SYSTEMDRIVE%\IXP\SW\[PACKAGE_CODE]\EveryLogon.bat, achieve this movement and execute code in the context of other users.

    Published: 23 Jan 2020
    9.9
    Critical

    CVE-2019-19896

    Last Modified: 21 Nov 2024

    In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share. The default file permissions of the IXP$ share on the server allows modification of directories and files (e.g., bat-scripts), which allows execution of code in the context of NT AUTHORITY\SYSTEM on the target server and clients.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2019-19897

    Last Modified: 21 Nov 2024

    In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service. An unauthenticated attacker can communicate with the Agent Service over TCP port 20051, and execute code in the NT AUTHORITY\SYSTEM context of the target system by using the Execute Command Line function.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2019-19898

    Last Modified: 21 Nov 2024

    In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the Administrator console remotely.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2015-5333

    Last Modified: 21 Nov 2024

    Memory leak in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (memory consumption) via a large number of ASN.1 object identifiers in X.509 certificates.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2015-5334

    Last Modified: 21 Nov 2024

    Off-by-one error in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (program crash) or possible execute arbitrary code via a crafted X.509 certificate, which triggers a stack-based buffer overflow. Note: this vulnerability exists because of an incorrect fix for CVE-2014-3508.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2013-1593

    Last Modified: 21 Nov 2024

    A Denial of Service vulnerability exists in the WRITE_C function in the msg_server.exe module in SAP NetWeaver 2004s, 7.01 SR1, 7.02 SP06, and 7.30 SP04 when sending a crafted SAP Message Server packet to TCP ports 36NN and/or 39NN.

    Published: 23 Jan 2020
    6.5
    Medium

    CVE-2014-2050

    Last Modified: 31 Mar 2025

    Cross-site request forgery (CSRF) vulnerability in ownCloud Server before 5.0.15 and 6.0.x before 6.0.2 allows remote attackers to hijack the authentication of users for requests that reset passwords via a crafted HTTP Host header.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2013-1592

    Last Modified: 21 Nov 2024

    A Buffer Overflow vulnerability exists in the Message Server service _MsJ2EE_AddStatistics() function when sending specially crafted SAP Message Server packets to remote TCP ports 36NN and/or 39NN in SAP NetWeaver 2004s, 7.01 SR1, 7.02 SP06, and 7.30 SP04, which could let a remote malicious user execute arbitrary code.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2012-6083

    Last Modified: 21 Nov 2024

    Freeciv before 2.3.3 allows remote attackers to cause a denial of service via a crafted packet.

    Published: 23 Jan 2020
    4.9
    Medium

    CVE-2019-15707

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in FortiMail admin webUI 6.2.0, 6.0.0 to 6.0.6, 5.4.10 and below may allow administrators to perform system backup config download they should not be authorized for.

    Published: 23 Jan 2020
    7.2
    High

    CVE-2019-15712

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in FortiMail admin webUI 6.2.0, 6.0.0 to 6.0.6, 5.4.10 and below may allow administrators to access web console they should not be authorized for.

    Published: 23 Jan 2020
    6.5
    Medium

    CVE-2019-16515

    Last Modified: 21 Nov 2024

    An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. Certain HTTP security headers are not used.

    Published: 23 Jan 2020
    5.3
    Medium

    CVE-2019-16516

    Last Modified: 21 Nov 2024

    An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is a user enumeration vulnerability, allowing an unauthenticated attacker to determine with certainty if an account exists for a given username.

    Published: 23 Jan 2020
    7.2
    High

    CVE-2019-16514

    Last Modified: 21 Nov 2024

    An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. The server allows remote code execution. Administrative users could upload an unsigned extension ZIP file containing executable code that is subsequently executed by the server.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2019-16517

    Last Modified: 21 Nov 2024

    An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is a CORS misconfiguration, which reflected the Origin provided by incoming requests. This allowed JavaScript running on any domain to interact with the server APIs and perform administrative actions, without the victim's knowledge.

    Published: 23 Jan 2020
    4.8
    Medium

    CVE-2019-16512

    Last Modified: 21 Nov 2024

    An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is stored XSS in the Appearance modifier.

    Published: 23 Jan 2020
    8.8
    High

    CVE-2019-16513

    Last Modified: 21 Nov 2024

    An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. CSRF can be used to send API requests.

    Published: 23 Jan 2020
    5.5
    Medium

    CVE-2019-5593

    Last Modified: 21 Nov 2024

    Improper permission or value checking in the CLI console may allow a non-privileged user to obtain Fortinet FortiOS plaint text private keys of system's builtin local certificates via unsetting the keys encryption password in FortiOS 6.2.0, 6.0.0 to 6.0.6, 5.6.10 and below or for user uploaded local certificates via setting an empty password in FortiOS 6.2.1, 6.2.0, 6.0.6 and below.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2019-16153

    Last Modified: 21 Nov 2024

    A hard-coded password vulnerability in the Fortinet FortiSIEM database component version 5.2.5 and below may allow attackers to access the device database via the use of static credentials.

    Published: 23 Jan 2020
    7.7
    High

    CVE-2019-3691

    Last Modified: 21 Nov 2024

    A Symbolic Link (Symlink) Following vulnerability in the packaging of munge in SUSE Linux Enterprise Server 15; openSUSE Factory allowed local attackers to escalate privileges from user munge to root. This issue affects: SUSE Linux Enterprise Server 15 munge versions prior to 0.5.13-4.3.1. openSUSE Factory munge versions prior to 0.5.13-6.1.

    Published: 23 Jan 2020
    —
    Unknown

    CVE-2010-3295

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 23 Jan 2020
    7.5
    High

    CVE-2007-6758

    Last Modified: 21 Nov 2024

    Server-side request forgery (SSRF) vulnerability in feed-proxy.php in extjs 5.0.0.

    Published: 23 Jan 2020
    6.2
    Medium

    CVE-2019-18899

    Last Modified: 21 Nov 2024

    The apt-cacher-ng package of openSUSE Leap 15.1 runs operations in user owned directory /run/apt-cacher-ng with root privileges. This can allow local attackers to influence the outcome of these operations. This issue affects: openSUSE Leap 15.1 apt-cacher-ng versions prior to 3.1-lp151.3.3.1.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2008-7314

    Last Modified: 21 Nov 2024

    mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.

    Published: 23 Jan 2020
    7.8
    High

    CVE-2013-6773

    Last Modified: 21 Nov 2024

    Splunk 5.0.3 has an Unquoted Service Path in Windows for Universal Forwarder which can allow an attacker to escalate privileges

    Published: 23 Jan 2020
    4.3
    Medium

    CVE-2013-6772

    Last Modified: 21 Nov 2024

    Splunk before 5.0.4 lacks X-Frame-Options which can allow Clickjacking

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2013-6792

    Last Modified: 21 Nov 2024

    Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability

    Published: 23 Jan 2020
    6.1
    Medium

    CVE-2014-7238

    Last Modified: 21 Nov 2024

    The WordPress plugin Contact Form Integrated With Google Maps 1.0-2.4 has Stored XSS

    Published: 23 Jan 2020
    8.8
    High

    CVE-2020-7931

    Last Modified: 21 Nov 2024

    In JFrog Artifactory 5.x and 6.x, insecure FreeMarker template processing leads to remote code execution, e.g., by modifying a .ssh/authorized_keys file. Patches are available for various versions between 5.11.8 and 6.16.0. The issue exists because use of the DefaultObjectWrapper class makes certain Java functions accessible to a template.

    Published: 23 Jan 2020
    8.8
    High

    CVE-2012-4981

    Last Modified: 21 Nov 2024

    Toshiba ConfigFree 8.0.38 has a CF7 File Remote Command Execution Vulnerability

    Published: 23 Jan 2020
    8.8
    High

    CVE-2013-6358

    Last Modified: 21 Nov 2024

    PrestaShop 1.5.5 allows remote authenticated attackers to execute arbitrary code by uploading a crafted profile and then accessing it in the module/ directory.

    Published: 23 Jan 2020
    6.1
    Medium

    CVE-2016-1000237

    Last Modified: 21 Nov 2024

    sanitize-html before 1.4.3 has XSS.

    Published: 23 Jan 2020
    5.5
    Medium

    CVE-2013-4175

    Last Modified: 21 Nov 2024

    MySecureShell 1.31 has a Local Denial of Service Vulnerability

    Published: 23 Jan 2020