CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2019-4468

    Last Modified: 21 Nov 2024

    IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 163777.

    Published: 3 Dec 2019
    5.4
    Medium

    CVE-2019-4467

    Last Modified: 21 Nov 2024

    IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 163776.

    Published: 3 Dec 2019
    3.3
    Low

    CVE-2019-4465

    Last Modified: 21 Nov 2024

    IBM Cloud Pak System 2.3 and 2.3.0.1 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 163774.

    Published: 3 Dec 2019
    5.4
    Medium

    CVE-2019-4226

    Last Modified: 21 Nov 2024

    IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 159243.

    Published: 3 Dec 2019
    8.8
    High

    CVE-2019-4130

    Last Modified: 21 Nov 2024

    IBM Cloud Pak System 2.3 and 2.3.0.1 could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server. IBM X-Force ID: 158280.

    Published: 3 Dec 2019
    5.4
    Medium

    CVE-2019-4098

    Last Modified: 21 Nov 2024

    IBM Cloud Pak System 2.3 and 2.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 158020.

    Published: 3 Dec 2019
    4.3
    Medium

    CVE-2013-4411

    Last Modified: 21 Nov 2024

    Review Board: URL processing gives unauthorized users access to review lists

    Published: 3 Dec 2019
    —
    Unknown

    CVE-2019-10075

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 3 Dec 2019
    8.1
    High

    CVE-2013-2228

    Last Modified: 21 Nov 2024

    SaltStack RSA Key Generation allows remote users to decrypt communications

    Published: 3 Dec 2019
    7.5
    High

    CVE-2013-2106

    Last Modified: 21 Nov 2024

    webauth before 4.6.1 has authentication credential disclosure

    Published: 3 Dec 2019
    6.5
    Medium

    CVE-2019-3665

    Last Modified: 21 Nov 2024

    Code Injection vulnerability in the web interface in McAfee Web Advisor (WA) prior to 4.1.1.48 allows remote unauthenticated attacker to allow the browser to render a website which Web Advisor would normally have blocked via a carefully crafted web site.

    Published: 3 Dec 2019
    6.5
    Medium

    CVE-2019-3666

    Last Modified: 21 Nov 2024

    API Abuse/Misuse vulnerability in the web interface in McAfee Web Advisor (WA) prior to 4.1.1.48 allows remote unauthenticated attacker to allow the browser to navigate to restricted websites via a carefully crafted web site.

    Published: 3 Dec 2019
    9.8
    Critical

    CVE-2019-14910

    Last Modified: 21 Nov 2024

    A vulnerability was found in keycloak 7.x, when keycloak is configured with LDAP user federation and StartTLS is used instead of SSL/TLS from the LDAP server (ldaps), in this case user authentication succeeds even if invalid password has entered.

    Published: 3 Dec 2019
    8.8
    High

    CVE-2019-17005

    Last Modified: 21 Nov 2024

    The plain text serializer used a fixed-size array for the number of <ol> elements it could process; however it was possible to overflow the static-sized array leading to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.

    Published: 3 Dec 2019
    7.5
    High

    CVE-2019-17011

    Last Modified: 21 Nov 2024

    Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free condition and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.

    Published: 3 Dec 2019
    8.8
    High

    CVE-2019-17008

    Last Modified: 21 Nov 2024

    When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.

    Published: 3 Dec 2019
    7.8
    High

    CVE-2019-17009

    Last Modified: 21 Nov 2024

    When running, the updater service wrote status and log files to an unrestricted location; potentially allowing an unprivileged process to locate and exploit a vulnerability in file handling in the updater service. *Note: This attack requires local system access and only affects Windows. Other operating systems are not affected.*. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.

    Published: 3 Dec 2019
    8.8
    High

    CVE-2019-17012

    Last Modified: 21 Nov 2024

    Mozilla developers reported memory safety bugs present in Firefox 70 and Firefox ESR 68.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.

    Published: 3 Dec 2019
    8.8
    High

    CVE-2019-17013

    Last Modified: 21 Nov 2024

    Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 71.

    Published: 3 Dec 2019
    7.4
    High

    CVE-2019-17014

    Last Modified: 21 Nov 2024

    If an image had not loaded correctly (such as when it is not actually an image), it could be dragged and dropped cross-domain, resulting in a cross-origin information leak. This vulnerability affects Firefox < 71.

    Published: 3 Dec 2019
    6.8
    Medium

    CVE-2019-19532

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.3.9, there are multiple out-of-bounds write bugs that can be caused by a malicious USB device in the Linux kernel HID drivers, aka CID-d9d4b1e46d95. This affects drivers/hid/hid-axff.c, drivers/hid/hid-dr.c, drivers/hid/hid-emsff.c, drivers/hid/hid-gaff.c, drivers/hid/hid-holtekff.c, drivers/hid/hid-lg2ff.c, drivers/hid/hid-lg3ff.c, drivers/hid/hid-lg4ff.c, drivers/hid/hid-lgff.c, drivers/hid/hid-logitech-hidpp.c, drivers/hid/hid-microsoft.c, drivers/hid/hid-sony.c, drivers/hid/hid-tmff.c, and drivers/hid/hid-zpff.c.

    Published: 3 Dec 2019
    8.3
    High

    CVE-2019-14909

    Last Modified: 21 Nov 2024

    A vulnerability was found in Keycloak 7.x where the user federation LDAP bind type is none (LDAP anonymous bind), any password, invalid or valid will be accepted.

    Published: 3 Dec 2019
    7.5
    High

    CVE-2019-17010

    Last Modified: 21 Nov 2024

    Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race condition could have caused a use-after-free and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.

    Published: 3 Dec 2019
    6.1
    Medium

    CVE-2019-19332

    Last Modified: 21 Nov 2024

    An out-of-bounds memory write issue was found in the Linux Kernel, version 3.13 through 5.4, in the way the Linux kernel's KVM hypervisor handled the 'KVM_GET_EMULATED_CPUID' ioctl(2) request to get CPUID features emulated by the KVM hypervisor. A user or process able to access the '/dev/kvm' device could use this flaw to crash the system, resulting in a denial of service.

    Published: 3 Dec 2019
    2.6
    Low

    CVE-2018-1002102

    Last Modified: 21 Nov 2024

    Improper validation of URL redirection in the Kubernetes API server in versions prior to v1.14.0 allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints to arbitrary hosts. Impacted API servers will follow the redirect as a GET request with client-certificate credentials for authenticating to the Kubelet.

    Published: 3 Dec 2019
    6.5
    Medium

    CVE-2019-13722

    Last Modified: 21 Nov 2024

    Inappropriate implementation in WebRTC in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 3 Dec 2019
    6.5
    Medium

    CVE-2019-19516

    Last Modified: 21 Nov 2024

    Intelbras WRN 150 1.0.18 devices allow CSRF via GO=system_password.asp to the goform/SysToolChangePwd URI to change a password.

    Published: 2 Dec 2019
    7.5
    High

    CVE-2019-19316

    Last Modified: 21 Nov 2024

    When using the Azure backend with a shared access signature (SAS), Terraform versions prior to 0.12.17 may transmit the token and state snapshot using cleartext HTTP.

    Published: 2 Dec 2019
    6.7
    Medium

    CVE-2019-15689

    Last Modified: 21 Nov 2024

    Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020 patch E have bug that allows a local user to execute arbitrary code via execution compromised file placed by an attacker with administrator rights. No privilege escalation. Possible whitelisting bypass some of the security products

    Published: 2 Dec 2019
    7.8
    High

    CVE-2012-4576

    Last Modified: 21 Nov 2024

    FreeBSD: Input Validation Flaw allows local users to gain elevated privileges

    Published: 2 Dec 2019
    6.1
    Medium

    CVE-2012-4526

    Last Modified: 21 Nov 2024

    piwigo has XSS in password.php (incomplete fix for CVE-2012-4525)

    Published: 2 Dec 2019
    6.1
    Medium

    CVE-2012-4525

    Last Modified: 21 Nov 2024

    piwigo has XSS in password.php

    Published: 2 Dec 2019
    7.8
    High

    CVE-2012-4480

    Last Modified: 21 Nov 2024

    mom creates world-writable pid files in /var/run

    Published: 2 Dec 2019
    7.5
    High

    CVE-2013-4410

    Last Modified: 21 Nov 2024

    ReviewBoard: has an access-control problem in REST API

    Published: 2 Dec 2019
    9.8
    Critical

    CVE-2019-12503

    Last Modified: 21 Nov 2024

    Due to unencrypted and unauthenticated data communication, the wireless barcode scanner Inateck BCST-60 is prone to keystroke injection attacks. Thus, an attacker is able to send arbitrary keystrokes to a victim's computer system, e.g., to install malware when the target system is unattended. In this way, an attacker can remotely take control over the victim's computer that is operated with an affected receiver of this device.

    Published: 2 Dec 2019
    9.8
    Critical

    CVE-2019-19021

    Last Modified: 21 Nov 2024

    An issue was discovered in TitanHQ WebTitan before 5.18. It has a hidden support account (with a hard-coded password) in the web administration interface, with administrator privileges. Anybody can log in with this account.

    Published: 2 Dec 2019
    7.2
    High

    CVE-2019-19020

    Last Modified: 21 Nov 2024

    An issue was discovered in TitanHQ WebTitan before 5.18. In the administration web interface it is possible to upload a crafted backup file that enables an attacker to execute arbitrary code by overwriting existing files or adding new PHP files under the web root. This requires the attacker to have access to a valid web interface account.

    Published: 2 Dec 2019
    7.5
    High

    CVE-2019-19019

    Last Modified: 21 Nov 2024

    An issue was discovered in TitanHQ WebTitan before 5.18. It contains a Remote Code Execution issue through which an attacker can execute arbitrary code as root. The issue stems from the hotfix download mechanism, which downloads a shell script via HTTP, and then executes it as root. This is analogous to CVE-2019-6800 but for a different product.

    Published: 2 Dec 2019
    2.7
    Low

    CVE-2019-19018

    Last Modified: 21 Nov 2024

    An issue was discovered in TitanHQ WebTitan before 5.18. It exposes a database configuration file under /include/dbconfig.ini in the web administration interface, revealing what database the web application is using.

    Published: 2 Dec 2019
    8.1
    High

    CVE-2019-19017

    Last Modified: 21 Nov 2024

    An issue was discovered in TitanHQ WebTitan before 5.18. The appliance has a hard-coded root password set during installation. An attacker could utilize this to gain root privileges on the system.

    Published: 2 Dec 2019
    9.8
    Critical

    CVE-2019-12518

    Last Modified: 21 Nov 2024

    Anviz CrossChex access control management software 4.3.8.0 and 4.3.12 is vulnerable to a buffer overflow vulnerability.

    Published: 2 Dec 2019
    7.5
    High

    CVE-2019-19016

    Last Modified: 21 Nov 2024

    An issue was discovered in TitanHQ WebTitan before 5.18. Some functions, such as /history-x.php, of the administration interface are vulnerable to SQL Injection through the results parameter. This could be used by an attacker to extract sensitive information from the appliance database.

    Published: 2 Dec 2019
    9.8
    Critical

    CVE-2019-19015

    Last Modified: 21 Nov 2024

    An issue was discovered in TitanHQ WebTitan before 5.18. The proxy service (which is typically exposed to all users) allows connections to the internal PostgreSQL database of the appliance. By connecting to the database through the proxy (without password authentication), an attacker is able to fully control the appliance database. Through this, several different paths exist to gain further access, or execute code.

    Published: 2 Dec 2019
    7.8
    High

    CVE-2019-19014

    Last Modified: 21 Nov 2024

    An issue was discovered in TitanHQ WebTitan before 5.18. It has a sudoers file that enables low-privilege users to execute a vast number of commands as root, including mv, chown, and chmod. This can be trivially exploited to gain root privileges by an attacker with access.

    Published: 2 Dec 2019
    7.5
    High

    CVE-2019-12388

    Last Modified: 21 Nov 2024

    Anviz access control devices perform cleartext transmission of sensitive information (passwords/pins and names) when replying to query on port tcp/5010.

    Published: 2 Dec 2019
    7.5
    High

    CVE-2019-12389

    Last Modified: 21 Nov 2024

    Anviz access control devices expose credentials (names and passwords) by allowing remote attackers to query this information without credentials via port tcp/5010.

    Published: 2 Dec 2019
    5.3
    Medium

    CVE-2019-12390

    Last Modified: 21 Nov 2024

    Anviz access control devices expose private Information (pin code and name) by allowing remote attackers to query this information without credentials via port tcp/5010.

    Published: 2 Dec 2019
    9.8
    Critical

    CVE-2019-12394

    Last Modified: 21 Nov 2024

    Anviz access control devices allow unverified password change which allows remote attackers to change the administrator password without prior authentication.

    Published: 2 Dec 2019
    9.8
    Critical

    CVE-2019-12392

    Last Modified: 21 Nov 2024

    Anviz access control devices allow remote attackers to issue commands without a password.

    Published: 2 Dec 2019
    5.3
    Medium

    CVE-2019-19507

    Last Modified: 21 Nov 2024

    In jpv (aka Json Pattern Validator) before 2.1.1, compareCommon() can be bypassed because certain internal attributes can be overwritten via a conflicting name, as demonstrated by 'constructor': {'name':'Array'}. This affects validate(). Hence, a crafted payload can overwrite this builtin attribute to manipulate the type detection result.

    Published: 2 Dec 2019