CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2019-20089

    Last Modified: 21 Nov 2024

    GoPro GPMF-parser 1.2.3 has an heap-based buffer over-read in GPMF_SeekToSamples in GPMF_parse.c for the size calculation.

    Published: 30 Dec 2019
    7.8
    High

    CVE-2019-20090

    Last Modified: 21 Nov 2024

    An issue was discovered in Bento4 1.5.1.0. There is a use-after-free in AP4_Sample::GetOffset in Core/Ap4Sample.h when called from Ap4LinearReader.cpp.

    Published: 30 Dec 2019
    5.5
    Medium

    CVE-2019-20091

    Last Modified: 21 Nov 2024

    An issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called from AP4_DecoderConfigDescriptor::GetDecoderSpecificInfoDescriptor in Ap4DecoderConfigDescriptor.cpp.

    Published: 30 Dec 2019
    5.5
    Medium

    CVE-2019-20092

    Last Modified: 21 Nov 2024

    An issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called from AP4_EsDescriptor::GetDecoderConfigDescriptor in Ap4EsDescriptor.cpp.

    Published: 30 Dec 2019
    5.5
    Medium

    CVE-2019-20093

    Last Modified: 21 Nov 2024

    The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file, because of ImageExtractor.cpp.

    Published: 30 Dec 2019
    8.8
    High

    CVE-2019-20094

    Last Modified: 24 Apr 2026

    An issue was discovered in libsixel 1.8.4. There is a heap-based buffer overflow in the function gif_init_frame at fromgif.c.

    Published: 30 Dec 2019
    7.5
    High

    CVE-2019-20085

    Last Modified: 7 Nov 2025

    TVT NVMS-1000 devices allow GET /.. Directory Traversal

    Published: 30 Dec 2019
    7.5
    High

    CVE-2019-17558

    Last Modified: 27 Oct 2025

    Apache Solr 5.0.0 to Apache Solr 8.3.1 are vulnerable to a Remote Code Execution through the VelocityResponseWriter. A Velocity template can be provided through Velocity templates in a configset `velocity/` directory or as a parameter. A user defined configset could contain renderable, potentially malicious, templates. Parameter provided templates are disabled by default, but can be enabled by setting `params.resource.loader.enabled` by defining a response writer with that setting set to `true`. Defining a response writer requires configuration API access. Solr 8.4 removed the params resource loader entirely, and only enables the configset-provided template rendering when the configset is `trusted` (has been uploaded by an authenticated user).

    Published: 30 Dec 2019
    5.5
    Medium

    CVE-2019-20095

    Last Modified: 21 Nov 2024

    mwifiex_tm_cmd in drivers/net/wireless/marvell/mwifiex/cfg80211.c in the Linux kernel before 5.1.6 has some error-handling cases that did not free allocated hostcmd memory, aka CID-003b686ace82. This will cause a memory leak and denial of service.

    Published: 30 Dec 2019
    7.5
    High

    CVE-2020-7211

    Last Modified: 21 Nov 2024

    tftp.c in libslirp 4.1.0, as used in QEMU 4.2.0, does not prevent ..\ directory traversal on Windows.

    Published: 30 Dec 2019
    5.5
    Medium

    CVE-2019-20096

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.1, there is a memory leak in __feat_register_sp() in net/dccp/feat.c, which may cause denial of service, aka CID-1d3ff0950e2b.

    Published: 30 Dec 2019
    6.1
    Medium

    CVE-2019-20070

    Last Modified: 21 Nov 2024

    On Netis DL4323 devices, XSS exists via the urlFQDN parameter to form2url.cgi (aka the Keyword field of the URL Blocking Configuration).

    Published: 29 Dec 2019
    6.5
    Medium

    CVE-2019-20071

    Last Modified: 21 Nov 2024

    On Netis DL4323 devices, CSRF exists via form2logaction.cgi to delete all logs.

    Published: 29 Dec 2019
    6.1
    Medium

    CVE-2019-20072

    Last Modified: 21 Nov 2024

    On Netis DL4323 devices, XSS exists via the form2Ddns.cgi hostname parameter (Dynamic DNS Configuration).

    Published: 29 Dec 2019
    6.1
    Medium

    CVE-2019-20073

    Last Modified: 21 Nov 2024

    On Netis DL4323 devices, XSS exists via the form2userconfig.cgi username parameter (User Account Configuration).

    Published: 29 Dec 2019
    8.8
    High

    CVE-2019-20074

    Last Modified: 21 Nov 2024

    On Netis DL4323 devices, any user role can view sensitive information, such as a user password or the FTP password, via the form2saveConf.cgi page.

    Published: 29 Dec 2019
    6.1
    Medium

    CVE-2019-20075

    Last Modified: 21 Nov 2024

    On Netis DL4323 devices, pingrtt_v6.html has XSS (Ping6 Diagnostic).

    Published: 29 Dec 2019
    6.1
    Medium

    CVE-2019-20076

    Last Modified: 21 Nov 2024

    On Netis DL4323 devices, XSS exists via the form2Ddns.cgi username parameter (DynDns settings of the Dynamic DNS Configuration).

    Published: 29 Dec 2019
    8.8
    High

    CVE-2019-20063

    Last Modified: 21 Nov 2024

    hdf/dataobject.c in libmysofa before 0.8 has an uninitialized use of memory, as demonstrated by mysofa2json.

    Published: 29 Dec 2019
    6.1
    Medium

    CVE-2019-20058

    Last Modified: 21 Nov 2024

    Bolt 3.7.0, if Symfony Web Profiler is used, allows XSS because unsanitized search?search= input is shown on the _profiler page. NOTE: this is disputed because profiling was never intended for use in production. This is related to CVE-2018-12040

    Published: 29 Dec 2019
    3.7
    Low

    CVE-2019-20057

    Last Modified: 21 Nov 2024

    com.proxyman.NSProxy.HelperTool in Privileged Helper Tool in Proxyman for macOS 1.11.0 and earlier allows an attacker to change the System Proxy and redirect all traffic to an attacker-controlled computer, enabling MITM attacks.

    Published: 29 Dec 2019
    6.5
    Medium

    CVE-2019-20056

    Last Modified: 21 Nov 2024

    stb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has an assertion failure in stbi__shiftsigned.

    Published: 29 Dec 2019
    6.5
    Medium

    CVE-2019-20055

    Last Modified: 21 Nov 2024

    LuquidPixels LiquiFire OS 4.8.0 allows SSRF via the call%3Durl substring followed by a URL in square brackets.

    Published: 29 Dec 2019
    5.5
    Medium

    CVE-2019-20054

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.0.6, there is a NULL pointer dereference in drop_sysctl_table() in fs/proc/proc_sysctl.c, related to put_links, aka CID-23da9588037e.

    Published: 28 Dec 2019
    6.5
    Medium

    CVE-2020-21674

    Last Modified: 21 Nov 2024

    Heap-based buffer overflow in archive_string_append_from_wcs() (archive_string.c) in libarchive-3.4.1dev allows remote attackers to cause a denial of service (out-of-bounds write in heap memory resulting into a crash) via a crafted archive file. NOTE: this only affects users who downloaded the development code from GitHub. Users of the product's official releases are unaffected.

    Published: 28 Dec 2019
    6.5
    Medium

    CVE-2019-20052

    Last Modified: 21 Nov 2024

    A memory leak was discovered in Mat_VarCalloc in mat.c in matio 1.5.17 because SafeMulDims does not consider the rank==0 case.

    Published: 27 Dec 2019
    5.5
    Medium

    CVE-2019-20053

    Last Modified: 11 Apr 2025

    An invalid memory address dereference was discovered in the canUnpack function in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.

    Published: 27 Dec 2019
    5.5
    Medium

    CVE-2019-20051

    Last Modified: 11 Apr 2025

    A floating-point exception was discovered in PackLinuxElf::elf_hash in p_lx_elf.cpp in UPX 3.95. The vulnerability causes an application crash, which leads to denial of service.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-6420

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in Livefyre LiveComments 3.0 allows remote attackers to inject arbitrary web script or HTML via the name of an uploaded picture.

    Published: 27 Dec 2019
    9.8
    Critical

    CVE-2014-5289

    Last Modified: 21 Nov 2024

    Buffer overflow in Senkas Kolibri 2.0 allows remote attackers to execute arbitrary code via a long URI in a POST request.

    Published: 27 Dec 2019
    7.8
    High

    CVE-2012-4980

    Last Modified: 21 Nov 2024

    Multiple stack-based buffer overflows in CFProfile.exe in Toshiba ConfigFree Utility 8.0.38 allow user-assisted attackers to execute arbitrary code.

    Published: 27 Dec 2019
    8.8
    High

    CVE-2014-3136

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in D-Link DWR-113 (Rev. Ax) with firmware before 2.03b02 allows remote attackers to hijack the authentication of administrators for requests that change the admin password via unspecified vectors.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4550

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in preview-shortcode-external.php in the Shortcode Ninja plugin 1.4 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the shortcode parameter.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4535

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in the Import Legacy Media plugin 0.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the filename parameter to getid3/demos/demo.mimeonly.php.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4536

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in tests/notAuto_test_ContactService_pauseCampaign.php in the Infusionsoft Gravity Forms plugin before 1.5.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) go, (2) contactId, or (3) campaignId parameter.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4558

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in test-plugin.php in the Swipe Checkout for WooCommerce plugin 2.7.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the api_url parameter.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4548

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in tinymce/popup.php in the Ruven Toolkit plugin 1.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the popup parameter.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4544

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in the Podcast Channels plugin 0.20 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the Filename parameter to getid3/demos/demo.write.php.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4539

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in the Movies plugin 0.6 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the filename parameter to getid3/demos/demo.mimeonly.php.

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4567

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in comments/videowhisper2/r_logout.php in the Video Comments Webcam Recorder plugin 1.55, as downloaded before 20140116 for WordPress allows remote attackers to inject arbitrary web script or HTML via the message parameter.

    Published: 27 Dec 2019
    7.5
    High

    CVE-2019-20047

    Last Modified: 21 Nov 2024

    An issue was discovered on Alcatel-Lucent OmniVista 4760 devices, and 8770 devices before 4.1.2. An incorrect web server configuration allows a remote unauthenticated attacker to retrieve the content of its own session files. Every session file contains the administrative LDAP credentials encoded in a reversible format. Sessions are stored in /sessions/sess_<sessionid>.

    Published: 27 Dec 2019
    7.2
    High

    CVE-2019-20048

    Last Modified: 21 Nov 2024

    An issue was discovered on Alcatel-Lucent OmniVista 8770 devices before 4.1.2. An authenticated remote attacker, with elevated privileges in the Web Directory component on port 389, may upload a PHP file to achieve Remote Code Execution as SYSTEM.

    Published: 27 Dec 2019
    9.8
    Critical

    CVE-2019-20049

    Last Modified: 21 Nov 2024

    An issue was discovered on Alcatel-Lucent OmniVista 4760 devices. A remote unauthenticated attacker can chain a directory traversal (which helps to bypass authentication) with an insecure file upload to achieve Remote Code Execution as SYSTEM. The directory traversal is in the __construct() whereas the insecure file upload is in SetSkinImages().

    Published: 27 Dec 2019
    9.8
    Critical

    CVE-2007-0158

    Last Modified: 21 Nov 2024

    thttpd 2007 has buffer underflow.

    Published: 27 Dec 2019
    9.8
    Critical

    CVE-2013-5027

    Last Modified: 21 Nov 2024

    Collabtive 1.0 has incorrect access control

    Published: 27 Dec 2019
    7.5
    High

    CVE-2013-4985

    Last Modified: 21 Nov 2024

    Multiple Vivotek IP Cameras remote authentication bypass that could allow access to the video stream

    Published: 27 Dec 2019
    9.8
    Critical

    CVE-2013-4982

    Last Modified: 21 Nov 2024

    AVTECH AVN801 DVR has a security bypass via the administration login captcha

    Published: 27 Dec 2019
    6.1
    Medium

    CVE-2014-4592

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in rss.class/scripts/magpie_debug.php in the WP-Planet plugin 0.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the url parameter.

    Published: 27 Dec 2019
    9.8
    Critical

    CVE-2013-4976

    Last Modified: 21 Nov 2024

    Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials

    Published: 27 Dec 2019
    8.8
    High

    CVE-2013-4975

    Last Modified: 21 Nov 2024

    Hikvision DS-2CD7153-E IP Camera has Privilege Escalation

    Published: 27 Dec 2019