CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2013-6785

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in url_redirect.cgi in Supermicro IPMI before SMT_X9_315 allows authenticated attackers to read arbitrary files via the url_name parameter.

    Published: 23 Jan 2020
    5.5
    Medium

    CVE-2013-4176

    Last Modified: 21 Nov 2024

    mysecureshell 1.31: Local Information Disclosure Vulnerability

    Published: 23 Jan 2020
    8.8
    High

    CVE-2012-5698

    Last Modified: 21 Nov 2024

    BabyGekko before 1.2.4 has SQL injection.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2012-5699

    Last Modified: 21 Nov 2024

    BabyGekko before 1.2.4 allows PHP file inclusion.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2012-5867

    Last Modified: 21 Nov 2024

    HT Editor 2.0.20 has a Remote Stack Buffer Overflow Vulnerability

    Published: 23 Jan 2020
    5.5
    Medium

    CVE-2012-4900

    Last Modified: 21 Nov 2024

    Corel WordPerfect Office X6 16.0.0.388 has a DoS Vulnerability via untrusted pointer dereference

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2012-2087

    Last Modified: 21 Nov 2024

    ISPConfig 3.0.4.3: the "Add new Webdav user" can chmod and chown entire server from client interface.

    Published: 23 Jan 2020
    6.5
    Medium

    CVE-2012-4863

    Last Modified: 21 Nov 2024

    IBM WebSphere MQ 7.1 and 7.5: Queue manager has a DoS vulnerability

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2019-19839

    Last Modified: 21 Nov 2024

    emfd in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote attackers to execute OS commands via a POST request with the attribute xcmd=import-category to admin/_cmdstat.jsp via the uploadFile attribute.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2019-19838

    Last Modified: 21 Nov 2024

    emfd in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote attackers to execute OS commands via a POST request with the attribute xcmd=get-platform-depends to admin/_cmdstat.jsp via the uploadFile attribute.

    Published: 23 Jan 2020
    4.8
    Medium

    CVE-2020-6843

    Last Modified: 21 Nov 2024

    Zoho ManageEngine ServiceDesk Plus 11.0 Build 11007 allows XSS. This issue was fixed in version 11.0 Build 11010, SD-83959.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2019-19835

    Last Modified: 21 Nov 2024

    SSRF in AjaxRestrictedCmdStat in zap in Ruckus Wireless Unleashed through 200.7.10.102.64 allows a remote denial of service via the server attribute to the tools/_rcmdstat.jsp URI.

    Published: 23 Jan 2020
    5.3
    Medium

    CVE-2019-19837

    Last Modified: 21 Nov 2024

    Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote information disclosure of bin/web.conf via HTTP requests.

    Published: 23 Jan 2020
    4.3
    Medium

    CVE-2020-7210

    Last Modified: 21 Nov 2024

    Umbraco CMS 8.2.2 allows CSRF to enable/disable or delete user accounts.

    Published: 23 Jan 2020
    6.1
    Medium

    CVE-2020-5223

    Last Modified: 21 Nov 2024

    In PrivateBin versions 1.2.0 before 1.2.2, and 1.3.0 before 1.3.2, a persistent XSS attack is possible. Under certain conditions, a user provided attachment file name can inject HTML leading to a persistent Cross-site scripting (XSS) vulnerability. The vulnerability has been fixed in PrivateBin v1.3.2 & v1.2.2. Admins are urged to upgrade to these versions to protect the affected users.

    Published: 23 Jan 2020
    8.8
    High

    CVE-2019-8835

    Last Modified: 21 Nov 2024

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 23 Jan 2020
    8.8
    High

    CVE-2019-8844

    Last Modified: 21 Nov 2024

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, watchOS 6.1.1, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 23 Jan 2020
    7.8
    High

    CVE-2019-17201

    Last Modified: 21 Nov 2024

    FastTrack Admin By Request 6.1.0.0 supports group policies that are supposed to allow only a select range of users to elevate to Administrator privilege at will. When a user requests elevation using the AdminByRequest.exe interface, the interface communicates with the underlying service (Audckq32.exe) using a .NET named pipe. If the underlying service responds that a user is permitted access to the elevation feature, the client then reinitiates communication with the underlying service and requests elevation. This elevation request has no local checks in the service, and depends on client-side validation in the AdminByRequest.exe interface, i.e., it is a vulnerable exposed functionality in the service. By communicating directly with the underlying service, any user can request elevation and obtain Administrator privilege regardless of group policies or permissions.

    Published: 23 Jan 2020
    4.7
    Medium

    CVE-2019-18222

    Last Modified: 21 Nov 2024

    The ECDSA signature implementation in ecdsa.c in Arm Mbed Crypto 2.1 and Mbed TLS through 2.19.1 does not reduce the blinded scalar before computing the inverse, which allows a local attacker to recover the private key via side-channel attacks.

    Published: 23 Jan 2020
    7.7
    High

    CVE-2020-1711

    Last Modified: 21 Nov 2024

    An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2.1 handled a response coming from an iSCSI server while checking the status of a Logical Address Block (LBA) in an iscsi_co_block_status() routine. A remote user could use this flaw to crash the QEMU process, resulting in a denial of service or potential execution of arbitrary code with privileges of the QEMU process on the host.

    Published: 23 Jan 2020
    7.8
    High

    CVE-2019-17202

    Last Modified: 21 Nov 2024

    FastTrack Admin By Request 6.1.0.0 supports group policies that are supposed to allow only a select range of users to elevate to Administrator privilege at will. If a user does not have direct access to the elevation feature through group policies, they are prompted to enter a PIN code in a challenge-response manner upon attempting to elevate privileges. The challenge's response uses a simple algorithm that can be easily emulated via data (customer ID and device name) available to all users, and thus any user can elevate to Administrator privilege.

    Published: 23 Jan 2020
    8.8
    High

    CVE-2019-8846

    Last Modified: 21 Nov 2024

    A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 23 Jan 2020
    —
    Unknown

    CVE-2019-20417

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-15011. Reason: This candidate is a reservation duplicate of CVE-2019-15011. Notes: All CVE users should reference CVE-2019-15011 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 23 Jan 2020
    7.5
    High

    CVE-2020-7220

    Last Modified: 21 Nov 2024

    HashiCorp Vault Enterprise 0.11.0 through 1.3.1 fails, in certain circumstances, to revoke dynamic secrets for a mount in a deleted namespace. Fixed in 1.3.2.

    Published: 23 Jan 2020
    6.1
    Medium

    CVE-2020-7936

    Last Modified: 21 Nov 2024

    An open redirect on the login form (and possibly other places) in Plone 4.0 through 5.2.1 allows an attacker to craft a link to a Plone Site that, when followed, and possibly after login, will redirect to an attacker's site.

    Published: 23 Jan 2020
    8.8
    High

    CVE-2020-7938

    Last Modified: 21 Nov 2024

    plone.restapi in Plone 5.2.0 through 5.2.1 allows users with a certain privilege level to escalate their privileges up to the highest level.

    Published: 23 Jan 2020
    8.8
    High

    CVE-2020-7939

    Last Modified: 21 Nov 2024

    SQL Injection in DTML or in connection objects in Plone 4.0 through 5.2.1 allows users to perform unwanted SQL queries. (This is a problem in Zope.)

    Published: 23 Jan 2020
    7.5
    High

    CVE-2020-7940

    Last Modified: 21 Nov 2024

    Missing password strength checks on some forms in Plone 4.3 through 5.2.0 allow users to set weak passwords, leading to easier cracking.

    Published: 23 Jan 2020
    6.5
    Medium

    CVE-2020-7059

    Last Modified: 21 Nov 2024

    When using fgetss() function to read data with stripping tags, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause this function to read past the allocated buffer. This may lead to information disclosure or crash.

    Published: 23 Jan 2020
    6.5
    Medium

    CVE-2020-7060

    Last Modified: 21 Nov 2024

    When using certain mbstring functions to convert multibyte encodings, in PHP versions 7.2.x below 7.2.27, 7.3.x below 7.3.14 and 7.4.x below 7.4.2 it is possible to supply data that will cause function mbfl_filt_conv_big5_wchar to read past the allocated buffer. This may lead to information disclosure or crash.

    Published: 23 Jan 2020
    5.4
    Medium

    CVE-2020-7937

    Last Modified: 21 Nov 2024

    An XSS issue in the title field in Plone 5.0 through 5.2.1 allows users with a certain privilege level to insert JavaScript that will be executed when other users access the site.

    Published: 23 Jan 2020
    9.8
    Critical

    CVE-2020-7941

    Last Modified: 21 Nov 2024

    A privilege escalation issue in plone.app.contenttypes in Plone 4.3 through 5.2.1 allows users to PUT (overwrite) some content without needing write permission.

    Published: 23 Jan 2020
    5.9
    Medium

    CVE-2019-20399

    Last Modified: 21 Nov 2024

    A timing vulnerability in the Scalar::check_overflow function in Parity libsecp256k1-rs before 0.3.1 potentially allows an attacker to leak information via a side-channel attack.

    Published: 22 Jan 2020
    4.8
    Medium

    CVE-2020-7915

    Last Modified: 21 Nov 2024

    An issue was discovered on Eaton 5P 850 devices. The Ubicacion SAI field allows XSS attacks by an administrator.

    Published: 22 Jan 2020
    9.8
    Critical

    CVE-2019-19840

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow in zap_parse_args in zap.c in zap in Ruckus Unleashed through 200.7.10.102.64 allows remote code execution via an unauthenticated HTTP request.

    Published: 22 Jan 2020
    9.8
    Critical

    CVE-2019-19842

    Last Modified: 21 Nov 2024

    emfd in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote attackers to execute OS commands via a POST request with the attribute xcmd=spectra-analysis to admin/_cmdstat.jsp via the mac attribute.

    Published: 22 Jan 2020
    9.8
    Critical

    CVE-2019-19841

    Last Modified: 21 Nov 2024

    emfd in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote attackers to execute OS commands via a POST request with the attribute xcmd=packet-capture to admin/_cmdstat.jsp via the mac attribute.

    Published: 22 Jan 2020
    6.1
    Medium

    CVE-2011-3622

    Last Modified: 21 Nov 2024

    A Cross-Site Scripting (XSS) vulnerability exists in the admin login screen in Phorum before 5.2.18.

    Published: 22 Jan 2020
    6.5
    Medium

    CVE-2020-5221

    Last Modified: 21 Nov 2024

    In uftpd before 2.11, it is possible for an unauthenticated user to perform a directory traversal attack using multiple different FTP commands and read and write to arbitrary locations on the filesystem due to the lack of a well-written chroot jail in compose_abspath(). This has been fixed in version 2.11

    Published: 22 Jan 2020
    9.8
    Critical

    CVE-2019-19843

    Last Modified: 21 Nov 2024

    Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote credential fetch via an unauthenticated HTTP request involving a symlink with /tmp and web/user/wps_tool_cache.

    Published: 22 Jan 2020
    7.1
    High

    CVE-2019-16792

    Last Modified: 21 Nov 2024

    Waitress through version 1.3.1 allows request smuggling by sending the Content-Length header twice. Waitress would header fold a double Content-Length header and due to being unable to cast the now comma separated value to an integer would set the Content-Length to 0 internally. If two Content-Length headers are sent in a single request, Waitress would treat the request as having no body, thereby treating the body of the request as a new request in HTTP pipelining. This issue is fixed in Waitress 1.4.0.

    Published: 22 Jan 2020
    9.8
    Critical

    CVE-2019-19836

    Last Modified: 21 Nov 2024

    AjaxRestrictedCmdStat in zap in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote code execution via a POST request that uses tools/_rcmdstat.jsp to write to a specified filename.

    Published: 22 Jan 2020
    7.2
    High

    CVE-2019-19834

    Last Modified: 21 Nov 2024

    Directory Traversal in ruckus_cli2 in Ruckus Wireless Unleashed through 200.7.10.102.64 allows a remote attacker to jailbreak the CLI via enable->debug->script->exec with ../../../bin/sh as the parameter.

    Published: 22 Jan 2020
    9.8
    Critical

    CVE-2012-4919

    Last Modified: 21 Nov 2024

    Gallery Plugin1.4 for WordPress has a Remote File Include Vulnerability

    Published: 22 Jan 2020
    4.4
    Medium

    CVE-2019-5647

    Last Modified: 21 Nov 2024

    The Chrome Plugin for Rapid7 AppSpider can incorrectly keep browser sessions active after recording a macro, even after a restart of the Chrome browser. This behavior could make future session hijacking attempts easier, since the user could believe a session was closed when it was not. This issue affects Rapid7 AppSpider version 3.8.213 and prior versions, and is fixed in version 3.8.215.

    Published: 22 Jan 2020
    9.8
    Critical

    CVE-2011-3621

    Last Modified: 21 Nov 2024

    A reverse proxy issue exists in FluxBB before 1.4.7 when FORUM_BEHIND_REVERSE_PROXY is enabled.

    Published: 22 Jan 2020
    9.8
    Critical

    CVE-2011-3614

    Last Modified: 21 Nov 2024

    An Access Control vulnerability exists in the Facebook, Twitter, and Embedded plugins in Vanilla Forums before 2.0.17.9.

    Published: 22 Jan 2020
    7.5
    High

    CVE-2011-3613

    Last Modified: 21 Nov 2024

    An issue exists in Vanilla Forums before 2.0.17.9 due to the way cookies are handled.

    Published: 22 Jan 2020
    8.8
    High

    CVE-2011-3612

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) vulnerability exists in panel.php in UseBB before 1.0.12.

    Published: 22 Jan 2020
    6.1
    Medium

    CVE-2019-6146

    Last Modified: 21 Nov 2024

    It has been reported that cross-site scripting (XSS) is possible in Forcepoint Web Security, version 8.x, via host header injection. CVSSv3.0: 5.3 (Medium) (/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)

    Published: 22 Jan 2020