CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2017-18640

    Last Modified: 21 Nov 2024

    The Alias feature in SnakeYAML before 1.26 allows entity expansion during a load operation, a related issue to CVE-2003-1564.

    Published: 12 Dec 2019
    8.8
    High

    CVE-2019-5092

    Last Modified: 21 Nov 2024

    An exploitable heap out of bounds write vulnerability exists in the UI tag parsing functionality of the DICOM image format of LEADTOOLS 20.0.2019.3.15. A specially crafted DICOM image can cause an offset beyond the bounds of a heap allocation to be written, potentially resulting in code execution. An attacker can specially craft a DICOM image to trigger this vulnerability.

    Published: 11 Dec 2019
    8.8
    High

    CVE-2019-5154

    Last Modified: 21 Nov 2024

    An exploitable heap overflow vulnerability exists in the JPEG2000 parsing functionality of LEADTOOLS 20.0.2019.3.15. A specially crafted J2K image file can cause an out of bounds write of a null byte in a heap buffer, potentially resulting in code execution. An attack can specially craft a J2K image to trigger this vulnerability.

    Published: 11 Dec 2019
    7.5
    High

    CVE-2019-5091

    Last Modified: 21 Nov 2024

    An exploitable denial-of-service vulnerability exists in the Dicom-packet parsing functionality of LEADTOOLS libltdic.so version 20.0.2019.3.15. A specially crafted packet can cause an infinite loop, resulting in a denial of service. An attacker can send a packet to trigger this vulnerability.

    Published: 11 Dec 2019
    9.8
    Critical

    CVE-2019-5085

    Last Modified: 21 Nov 2024

    An exploitable code execution vulnerability exists in the DICOM packet-parsing functionality of LEADTOOLS libltdic.so, version 20.0.2019.3.15. A specially crafted packet can cause an integer overflow, resulting in heap corruption. An attacker can send a packet to trigger this vulnerability.

    Published: 11 Dec 2019
    9.8
    Critical

    CVE-2019-5093

    Last Modified: 21 Nov 2024

    An exploitable code execution vulnerability exists in the DICOM network response functionality of LEADTOOLS libltdic.so version 20.0.2019.3.15. A specially crafted packet can cause an integer overflow, resulting in heap corruption. An attacker can send a packet to trigger this vulnerability.

    Published: 11 Dec 2019
    7.5
    High

    CVE-2019-5090

    Last Modified: 21 Nov 2024

    An exploitable information disclosure vulnerability exists in the DICOM packet-parsing functionality of LEADTOOLS libltdic.so, version 20.0.2019.3.15. A specially crafted packet can cause an out-of-bounds read, resulting in information disclosure. An attacker can send a packet to trigger this vulnerability.

    Published: 11 Dec 2019
    5.4
    Medium

    CVE-2019-7004

    Last Modified: 21 Nov 2024

    A Cross-Site Scripting (XSS) vulnerability in the WebUI component of IP Office Application Server could allow unauthorized code execution and potentially disclose sensitive information. All product versions 11.x are affected. Product versions prior to 11.0, including unsupported versions, were not evaluated.

    Published: 11 Dec 2019
    6.5
    Medium

    CVE-2019-10695

    Last Modified: 21 Nov 2024

    When using the cd4pe::root_configuration task to configure a Continuous Delivery for PE installation, the root user’s username and password were exposed in the job’s Job Details pane in the PE console. These issues have been resolved in version 1.2.1 of the puppetlabs/cd4pe module.

    Published: 11 Dec 2019
    9.8
    Critical

    CVE-2019-10694

    Last Modified: 21 Nov 2024

    The express install, which is the suggested way to install Puppet Enterprise, gives the user a URL at the end of the install to set the admin password. If they do not use that URL, there is an overlooked default password for the admin user. This was resolved in Puppet Enterprise 2019.0.3 and 2018.1.9.

    Published: 11 Dec 2019
    6.8
    Medium

    CVE-2019-3983

    Last Modified: 21 Nov 2024

    Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary code and commands on the device due to insufficient UART protections.

    Published: 11 Dec 2019
    8.8
    High

    CVE-2019-3985

    Last Modified: 21 Nov 2024

    Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary commands on the device due to improperly sanitized input when configuring the devices wifi configuration via the ssid parameter.

    Published: 11 Dec 2019
    8.8
    High

    CVE-2019-3986

    Last Modified: 21 Nov 2024

    Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary commands on the device due to improperly sanitized input when configuring the devices wifi configuration via the encryption parameter.

    Published: 11 Dec 2019
    8.8
    High

    CVE-2019-3987

    Last Modified: 21 Nov 2024

    Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary commands on the device due to improperly sanitized input when configuring the devices wifi configuration via the key parameter.

    Published: 11 Dec 2019
    8.8
    High

    CVE-2019-3988

    Last Modified: 21 Nov 2024

    Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary commands on the device due to improperly sanitized input when configuring the devices wifi configuration via the bssid parameter.

    Published: 11 Dec 2019
    9.8
    Critical

    CVE-2019-3989

    Last Modified: 21 Nov 2024

    Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary commands on the device due to improperly sanitized input when retrieving internal network configuration data.

    Published: 11 Dec 2019
    7.8
    High

    CVE-2019-18232

    Last Modified: 21 Nov 2024

    SafeNet Sentinel LDK License Manager, all versions prior to 7.101(only Microsoft Windows versions are affected) is vulnerable when configured as a service. This vulnerability may allow an attacker with local access to create, write, and/or delete files in system folder using symbolic links, leading to a privilege escalation. This vulnerability could also be used by an attacker to execute a malicious DLL, which could impact the integrity and availability of the system.

    Published: 11 Dec 2019
    7.8
    High

    CVE-2019-18245

    Last Modified: 21 Nov 2024

    Reliable Controls LicenseManager versions 3.4 and prior may allow an authenticated user to insert malicious code into the system root path, which may allow execution of code with elevated privileges of the application.

    Published: 11 Dec 2019
    7.5
    High

    CVE-2019-17087

    Last Modified: 21 Nov 2024

    Unauthorized file download vulnerability in all supported versions of Micro Focus AcuToWeb. The vulnerability could be exploited to enumerate and download files from the filesystem of the system running AcuToWeb, with the privileges of the account AcuToWeb is running under.

    Published: 11 Dec 2019
    7.5
    High

    CVE-2019-0405

    Last Modified: 21 Nov 2024

    SAP Enable Now, before version 1911, leaks information about the existence of a particular user which can be used to construct a list of users, leading to a user enumeration vulnerability and Information Disclosure.

    Published: 11 Dec 2019
    7.5
    High

    CVE-2019-0404

    Last Modified: 21 Nov 2024

    SAP Enable Now, before version 1911, leaks information about network configuration in the server error messages, leading to Information Disclosure.

    Published: 11 Dec 2019
    9.8
    Critical

    CVE-2019-0403

    Last Modified: 21 Nov 2024

    SAP Enable Now, before version 1911, allows an attacker to input commands into the CSV files, which will be executed when opened, leading to CSV Command Injection.

    Published: 11 Dec 2019
    4.4
    Medium

    CVE-2019-0402

    Last Modified: 21 Nov 2024

    SAP Adaptive Server Enterprise, before versions 15.7 and 16.0, under certain conditions exposes some sensitive information to the admin, leading to Information Disclosure.

    Published: 11 Dec 2019
    6.5
    Medium

    CVE-2019-0399

    Last Modified: 21 Nov 2024

    SAP Portfolio and Project Management, before versions S4CORE 102, 103, EPPM 100 and CPRXRPM 500_702, 600_740, 610_740; unintentionally allows a user to discover accounting information of the Projects in Project dashboard, leading to Information Disclosure.

    Published: 11 Dec 2019
    8.8
    High

    CVE-2019-0398

    Last Modified: 21 Nov 2024

    Due to insufficient CSRF protection, SAP BusinessObjects Business Intelligence Platform (Monitoring Application), before versions 4.1, 4.2 and 4.3, may lead to an authenticated user to send unintended request to the web server, leading to Cross Site Request Forgery.

    Published: 11 Dec 2019
    5.4
    Medium

    CVE-2019-0395

    Last Modified: 21 Nov 2024

    SAP BusinessObjects Business Intelligence Platform (Fiori BI Launchpad), before version 4.2, allows execution of JavaScript in a text module in Fiori BI Launchpad, leading to Stored Cross Site Scripting vulnerability.

    Published: 11 Dec 2019
    7.5
    High

    CVE-2019-19729

    Last Modified: 21 Nov 2024

    An issue was discovered in the BSON ObjectID (aka bson-objectid) package 1.3.0 for Node.js. ObjectID() allows an attacker to generate a malformed objectid by inserting an additional property to the user-input, because bson-objectid will return early if it detects _bsontype==ObjectID in the user-input object. As a result, objects in arbitrary forms can bypass formatting if they have a valid bsontype.

    Published: 11 Dec 2019
    9.1
    Critical

    CVE-2019-19374

    Last Modified: 21 Nov 2024

    An issue was discovered in core/assets/form/form_question_types/form_question_type_file_upload/form_question_type_file_upload.inc in Squiz Matrix CMS 5.5.0 prior to 5.5.0.3, 5.5.1 prior to 5.5.1.8, 5.5.2 prior to 5.5.2.4, and 5.5.3 prior to 5.5.3.3 where a user can delete arbitrary files from the server during interaction with the File Upload field type, when a custom form exists. (This is related to an information disclosure issue within the File Upload field type that allows users to view the full path to uploaded files, including the product's web root directory.)

    Published: 11 Dec 2019
    7.5
    High

    CVE-2019-19373

    Last Modified: 21 Nov 2024

    An issue was discovered in Squiz Matrix CMS 5.5.0 prior to 5.5.0.3, 5.5.1 prior to 5.5.1.8, 5.5.2 prior to 5.5.2.4, and 5.5.3 prior to 5.5.3.3 where a user can trigger arbitrary unserialization of a PHP object from a packages/cms/page_templates/page_remote_content/page_remote_content.inc POST parameter during processing of a Remote Content page type. This unserialization can be used to trigger the inclusion of arbitrary files on the filesystem (local file inclusion), and results in remote code execution.

    Published: 11 Dec 2019
    9.8
    Critical

    CVE-2013-5743

    Last Modified: 21 Nov 2024

    Multiple SQL injection vulnerabilities in Zabbix 1.8.x before 1.8.18rc1, 2.0.x before 2.0.9rc1, and 2.1.x before 2.1.7.

    Published: 11 Dec 2019
    6.1
    Medium

    CVE-2013-5978

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in products.php in the Cart66 Lite plugin before 1.5.1.15 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) Product name or (2) Price description fields via a request to wp-admin/admin.php. NOTE: This issue may only cross privilege boundaries if used in combination with CVE-2013-5977.

    Published: 11 Dec 2019
    9.8
    Critical

    CVE-2014-7257

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in DBD::PgPP 0.05 and earlier

    Published: 11 Dec 2019
    6.1
    Medium

    CVE-2013-4303

    Last Modified: 21 Nov 2024

    includes/libs/IEUrlExtension.php in the MediaWiki API in MediaWiki 1.19.x before 1.19.8, 1.20.x before 1.20.7, and 1.21.x before 1.21.2 does not properly detect extensions when there are an even number of "." (period) characters in a string, which allows remote attackers to conduct cross-site scripting (XSS) attacks via the siprop parameter in a query action to wiki/api.php.

    Published: 11 Dec 2019
    7.5
    High

    CVE-2013-3691

    Last Modified: 21 Nov 2024

    AirLive POE-2600HD allows remote attackers to cause a denial of service (device reset) via a long URL.

    Published: 11 Dec 2019
    10
    Critical

    CVE-2013-3542

    Last Modified: 21 Nov 2024

    Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly other camera models with firmware 1.0.4.11, have a hardcoded account "!#/" with the same password, which makes it easier for remote attackers to obtain access via a TELNET session.

    Published: 11 Dec 2019
    9.8
    Critical

    CVE-2019-19649

    Last Modified: 21 Nov 2024

    Zoho ManageEngine Applications Manager before 13620 allows a remote unauthenticated SQL injection via the SyncEventServlet eventid parameter to the SyncEventServlet.java doGet function.

    Published: 11 Dec 2019
    6.1
    Medium

    CVE-2013-4968

    Last Modified: 21 Nov 2024

    Puppet Enterprise before 3.0.1 allows remote attackers to (1) conduct clickjacking attacks via unspecified vectors related to the console, and (2) conduct cross-site scripting (XSS) attacks via unspecified vectors related to "live management."

    Published: 11 Dec 2019
    8.8
    High

    CVE-2019-19650

    Last Modified: 21 Nov 2024

    Zoho ManageEngine Applications Manager before 13640 allows a remote authenticated SQL injection via the Agent servlet agentid parameter to the Agent.java process function.

    Published: 11 Dec 2019
    5.3
    Medium

    CVE-2019-14317

    Last Modified: 21 Nov 2024

    wolfSSL and wolfCrypt 4.1.0 and earlier (formerly known as CyaSSL) generate biased DSA nonces. This allows a remote attacker to compute the long term private key from several hundred DSA signatures via a lattice attack. The issue occurs because dsa.c fixes two bits of the generated nonces.

    Published: 11 Dec 2019
    6.5
    Medium

    CVE-2019-19581

    Last Modified: 21 Nov 2024

    An issue was discovered in Xen through 4.12.x allowing 32-bit Arm guest OS users to cause a denial of service (out-of-bounds access) because certain bit iteration is mishandled. In a number of places bitmaps are being used by the hypervisor to track certain state. Iteration over all bits involves functions which may misbehave in certain corner cases: On 32-bit Arm accesses to bitmaps with bit a count which is a multiple of 32, an out of bounds access may occur. A malicious guest may cause a hypervisor crash or hang, resulting in a Denial of Service (DoS). All versions of Xen are vulnerable. 32-bit Arm systems are vulnerable. 64-bit Arm systems are not vulnerable.

    Published: 11 Dec 2019
    7.3
    High

    CVE-2019-18379

    Last Modified: 21 Nov 2024

    Symantec Messaging Gateway, prior to 10.7.3, may be susceptible to a server-side request forgery (SSRF) exploit, which is a type of issue that can let an attacker send crafted requests from the backend server of a vulnerable web application or access services available through the loopback interface.

    Published: 11 Dec 2019
    4.8
    Medium

    CVE-2019-18378

    Last Modified: 21 Nov 2024

    Symantec Messaging Gateway, prior to 10.7.3, may be susceptible to a cross-site scripting (XSS) exploit, which is a type of issue that can enable attackers to inject client-side scripts into web pages viewed by other users. A cross-site scripting vulnerability may be used by attackers to potentially bypass access controls such as the same-origin policy.

    Published: 11 Dec 2019
    7.2
    High

    CVE-2019-18377

    Last Modified: 21 Nov 2024

    Symantec Messaging Gateway, prior to 10.7.3, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

    Published: 11 Dec 2019
    6.1
    Medium

    CVE-2019-10772

    Last Modified: 21 Nov 2024

    It is possible to bypass enshrined/svg-sanitize before 0.13.1 using the "xlink:href" attribute due to mishandling of the xlink namespace by the sanitizer.

    Published: 11 Dec 2019
    4.3
    Medium

    CVE-2019-15009

    Last Modified: 21 Nov 2024

    The /json/profile/removeStarAjax.do resource in Atlassian Fisheye and Crucible before version 4.8.0 allows remote attackers to remove another user's favourite setting for a project via an improper authorization vulnerability.

    Published: 11 Dec 2019
    6.1
    Medium

    CVE-2019-15008

    Last Modified: 21 Nov 2024

    The /plugins/servlet/branchreview resource in Atlassian Fisheye and Crucible before version 4.7.3 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the reviewedBranch parameter.

    Published: 11 Dec 2019
    4.8
    Medium

    CVE-2019-15007

    Last Modified: 21 Nov 2024

    The review resource in Atlassian Fisheye and Crucible before version 4.7.3 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the name of a missing branch.

    Published: 11 Dec 2019
    8.8
    High

    CVE-2019-4715

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 4.2 and 5.0 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 172093.

    Published: 11 Dec 2019
    5.4
    Medium

    CVE-2019-4665

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 4.2 and 5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 171247.

    Published: 11 Dec 2019
    6.1
    Medium

    CVE-2013-7371

    Last Modified: 21 Nov 2024

    node-connects before 2.8.2 has cross site scripting in Sencha Labs Connect middleware (vulnerability due to incomplete fix for CVE-2013-7370)

    Published: 11 Dec 2019