CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2019-19385

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in app/dialplans/dialplans.php in FusionPBX 4.4.1 allows remote attackers to inject arbitrary web script or HTML via the app_uuid parameter.

    Published: 28 Nov 2019
    6.1
    Medium

    CVE-2019-19386

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in app/voicemail_greetings/voicemail_greeting_edit.php in FusionPBX 4.4.1 allows remote attackers to inject arbitrary web script or HTML via the id and/or voicemail_id parameter.

    Published: 28 Nov 2019
    6.1
    Medium

    CVE-2019-19387

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in app/fifo_list/fifo_interactive.php in FusionPBX 4.4.1 allows remote attackers to inject arbitrary web script or HTML via the c parameter.

    Published: 28 Nov 2019
    6.1
    Medium

    CVE-2019-19388

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in app/dialplans/dialplan_detail_edit.php in FusionPBX 4.4.1 allows remote attackers to inject arbitrary web script or HTML via the dialplan_uuid parameter.

    Published: 28 Nov 2019
    5.3
    Medium

    CVE-2019-19379

    Last Modified: 21 Nov 2024

    In app/Controller/TagsController.php in MISP 2.4.118, users can bypass intended restrictions on tagging data.

    Published: 28 Nov 2019
    6.5
    Medium

    CVE-2019-19376

    Last Modified: 21 Nov 2024

    In Octopus Deploy before 2019.10.6, an authenticated user with TeamEdit permission could send a malformed Team API request that bypasses input validation and causes an application level denial of service condition. (The fix for this was also backported to LTS 2019.9.8 and LTS 2019.6.14.)

    Published: 28 Nov 2019
    5.3
    Medium

    CVE-2019-19375

    Last Modified: 21 Nov 2024

    In Octopus Deploy before 2019.10.7, in a configuration where SSL offloading is enabled, the CSRF cookie was sometimes sent without the secure attribute. (The fix for this was backported to LTS versions 2019.6.14 and 2019.9.8.)

    Published: 28 Nov 2019
    7.5
    High

    CVE-2019-19372

    Last Modified: 21 Nov 2024

    A downloadFile.php download_file path traversal vulnerability in rConfig through 3.9.3 allows attackers to list files in arbitrary folders and potentially download files. NOTE: the discoverer later reported that there was not a "fully working exploit.

    Published: 28 Nov 2019
    7.8
    High

    CVE-2019-19377

    Last Modified: 21 Nov 2024

    In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and unmounting can lead to a use-after-free in btrfs_queue_work in fs/btrfs/async-thread.c.

    Published: 28 Nov 2019
    7.5
    High

    CVE-2019-19906

    Last Modified: 21 Nov 2024

    cyrus-sasl (aka Cyrus SASL) 2.1.27 has an out-of-bounds write leading to unauthenticated remote denial-of-service in OpenLDAP via a malformed LDAP packet. The OpenLDAP crash is ultimately caused by an off-by-one error in _sasl_add_string in common.c in cyrus-sasl.

    Published: 28 Nov 2019
    4.4
    Medium

    CVE-2019-19318

    Last Modified: 21 Nov 2024

    In the Linux kernel 5.3.11, mounting a crafted btrfs image twice can cause an rwsem_down_write_slowpath use-after-free because (in rwsem_can_spin_on_owner in kernel/locking/rwsem.c) rwsem_owner_flags returns an already freed pointer,

    Published: 27 Nov 2019
    4.7
    Medium

    CVE-2019-18660

    Last Modified: 21 Nov 2024

    The Linux kernel before 5.4.1 on powerpc allows Information Exposure because the Spectre-RSB mitigation is not in place for all applicable CPUs, aka CID-39e72bf96f58. This is related to arch/powerpc/kernel/entry_64.S and arch/powerpc/kernel/security.c.

    Published: 27 Nov 2019
    10
    Critical

    CVE-2019-18253

    Last Modified: 21 Nov 2024

    An attacker could use specially crafted paths in a specific request to read or delete files from Relion 670 Series (versions 1p1r26, 1.2.3.17, 2.0.0.10, RES670 2.0.0.4, 2.1.0.1, and prior) outside the intended directory.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-18247

    Last Modified: 21 Nov 2024

    An attacker may use a specially crafted message to force Relion 650 series (versions 1.3.0.5 and prior) or Relion 670 series (versions 1.2.3.18, 2.0.0.11, 2.1.0.1 and prior) to reboot, which could cause a denial of service.

    Published: 27 Nov 2019
    9.4
    Critical

    CVE-2019-6665

    Last Modified: 21 Nov 2024

    On BIG-IP ASM 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, BIG-IQ 6.0.0 and 5.2.0-5.4.0, iWorkflow 2.3.0, and Enterprise Manager 3.1.1, an attacker with access to the device communication between the BIG-IP ASM Central Policy Builder and the BIG-IQ/Enterprise Manager/F5 iWorkflow will be able to set up the proxy the same way and intercept the traffic.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-6666

    Last Modified: 21 Nov 2024

    On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, and 13.1.0-13.1.1.4, the TMM process may produce a core file when an upstream server or cache sends the BIG-IP an invalid age header value.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-6667

    Last Modified: 21 Nov 2024

    On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.1.0-13.1.1.5, 12.1.0-12.1.4.1, and 11.5.1-11.6.5, under certain conditions, TMM may consume excessive resources when processing traffic for a Virtual Server with the FIX (Financial Information eXchange) profile applied.

    Published: 27 Nov 2019
    5.5
    Medium

    CVE-2019-6668

    Last Modified: 21 Nov 2024

    The BIG-IP APM Edge Client for macOS bundled with BIG-IP APM 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.1.0-13.1.1.5, 12.1.0-12.1.5, and 11.5.1-11.6.5 may allow unprivileged users to access files owned by root.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-6669

    Last Modified: 21 Nov 2024

    On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.1-11.6.5.1, undisclosed traffic flow may cause TMM to restart under some circumstances.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-6671

    Last Modified: 21 Nov 2024

    On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, under certain conditions tmm may leak memory when processing packet fragments, leading to resource starvation.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-6672

    Last Modified: 21 Nov 2024

    On BIG-IP AFM 15.0.0-15.0.1, 14.0.0-14.1.2, and 13.1.0-13.1.3.1, when bad-actor detection is configured on a wildcard virtual server on platforms with hardware-based sPVA, the performance of the BIG-IP AFM system is degraded.

    Published: 27 Nov 2019
    4.4
    Medium

    CVE-2019-6670

    Last Modified: 21 Nov 2024

    On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.1-11.6.5, vCMP hypervisors are incorrectly exposing the plaintext unit key for their vCMP guests on the filesystem.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-6673

    Last Modified: 21 Nov 2024

    On versions 15.0.0-15.0.1 and 14.0.0-14.1.2, when the BIG-IP is configured in HTTP/2 Full Proxy mode, specifically crafted requests may cause a disruption of service provided by the Traffic Management Microkernel (TMM).

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-6674

    Last Modified: 21 Nov 2024

    On F5 SSL Orchestrator 15.0.0-15.0.1 and 14.0.0-14.1.2, TMM may crash when processing SSLO data in a service-chaining configuration.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2019-15705

    Last Modified: 21 Nov 2024

    An Improper Input Validation vulnerability in the SSL VPN portal of FortiOS versions 6.2.1 and below, and 6.0.6 and below may allow an unauthenticated remote attacker to crash the SSL VPN service by sending a crafted POST request.

    Published: 27 Nov 2019
    6.1
    Medium

    CVE-2019-19366

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in app/xml_cdr/xml_cdr_search.php in FusionPBX 4.4.1 allows remote attackers to inject arbitrary web script or HTML via the redirect parameter.

    Published: 27 Nov 2019
    6.1
    Medium

    CVE-2019-19367

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in app/fax/fax_files.php in FusionPBX 4.4.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.

    Published: 27 Nov 2019
    7.5
    High

    CVE-2011-2480

    Last Modified: 21 Nov 2024

    Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain non-x86 architectures. A signedness error in the IEEE80211_IOC_CHANINFO ioctl allows a local unprivileged user to cause the kernel to copy large amounts of kernel memory back to the user, disclosing potentially sensitive information.

    Published: 27 Nov 2019
    6.1
    Medium

    CVE-2014-3875

    Last Modified: 21 Nov 2024

    The addto parameter to fup in Frams' Fast File EXchange (F*EX, aka fex) before fex-2014053 allows remote attackers to conduct cross-site scripting (XSS) attacks

    Published: 27 Nov 2019
    6.5
    Medium

    CVE-2013-2625

    Last Modified: 21 Nov 2024

    An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1.4, and 2.0.8. Access rights by the object linking mechanism is not verified

    Published: 27 Nov 2019
    8.1
    High

    CVE-2012-2248

    Last Modified: 21 Nov 2024

    An issue was discovered in dhclient 4.3.1-6 due to an embedded path variable.

    Published: 27 Nov 2019
    9.8
    Critical

    CVE-2019-18184

    Last Modified: 7 Aug 2026

    Crestron DMC-STRO 1.0 devices allow remote command execution as root via shell metacharacters to the ping function.

    Published: 27 Nov 2019
    8.8
    High

    CVE-2017-12945

    Last Modified: 21 Nov 2024

    Insufficient validation of user-supplied input for the Solstice Pod before 2.8.4 networking configuration enables authenticated attackers to execute arbitrary commands as root.

    Published: 27 Nov 2019
    6.1
    Medium

    CVE-2019-19327

    Last Modified: 21 Nov 2024

    ui/ResultView.js in Wikibase Wikidata Query Service GUI before 0.3.6-SNAPSHOT 2019-11-07 allows HTML injection when reporting the number of results and number of milliseconds. NOTE: this GUI code is no longer bundled with the Wikibase Wikidata Query Service snapshots, such as 0.3.6-SNAPSHOT.

    Published: 27 Nov 2019
    6.1
    Medium

    CVE-2019-19328

    Last Modified: 21 Nov 2024

    ui/editor/tooltip/Rdf.js in Wikibase Wikidata Query Service GUI before 0.3.6-SNAPSHOT 2019-11-07 allows HTML injection in tooltips for entities. NOTE: this GUI code is no longer bundled with the Wikibase Wikidata Query Service snapshots, such as 0.3.6-SNAPSHOT.

    Published: 27 Nov 2019
    6.1
    Medium

    CVE-2019-19329

    Last Modified: 21 Nov 2024

    In Wikibase Wikidata Query Service GUI before 0.3.6-SNAPSHOT 2019-11-07, when mathematical expressions in results are displayed directly, arbitrary JavaScript execution can occur, aka XSS. This was addressed by introducing MathJax as a new mathematics rendering engine. NOTE: this GUI code is no longer bundled with the Wikibase Wikidata Query Service snapshots, such as 0.3.6-SNAPSHOT.

    Published: 27 Nov 2019
    8.8
    High

    CVE-2019-10220

    Last Modified: 21 Nov 2024

    Linux kernel CIFS implementation, version 4.9.0 is vulnerable to a relative paths injection in directory entry lists.

    Published: 27 Nov 2019
    8.8
    High

    CVE-2019-15298

    Last Modified: 21 Nov 2024

    A problem was found in Centreon Web through 19.04.3. An authenticated command injection is present in the page include/configuration/configObject/traps-mibs/formMibs.php. This page is called from the Centreon administration interface. This is the mibs management feature that contains a file filing form. At the time of submission of a file, the mnftr parameter is sent to the page and is not filtered properly. This allows one to inject Linux commands directly.

    Published: 27 Nov 2019
    3.5
    Low

    CVE-2019-13936

    Last Modified: 21 Nov 2024

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webclient of Siemens AG Polarion could allow an attacker to exploit a persistent XSS vulnerability. This issue affects: Siemens AG Polarion All versions < 19.2.

    Published: 27 Nov 2019
    3.5
    Low

    CVE-2019-13935

    Last Modified: 21 Nov 2024

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webclient of Siemens AG Polarion could allow an attacker to exploit a reflected XSS vulnerability. This issue affects: Siemens AG Polarion All versions < 19.2.

    Published: 27 Nov 2019
    3.5
    Low

    CVE-2019-13934

    Last Modified: 21 Nov 2024

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webclient of Siemens AG Polarion could allow an attacker to exploit a reflected XSS vulnerability. This issue affects: Siemens AG Polarion All versions < 19.2.

    Published: 27 Nov 2019
    8.8
    High

    CVE-2019-15300

    Last Modified: 21 Nov 2024

    A problem was found in Centreon Web through 19.04.3. An authenticated SQL injection is present in the page include/Administration/parameters/ldap/xml/ldap_host.php. The arId parameter is not properly filtered before being passed to the SQL query.

    Published: 27 Nov 2019
    7.3
    High

    CVE-2019-14904

    Last Modified: 21 Nov 2024

    A flaw was found in the solaris_zone module from the Ansible Community modules. When setting the name for the zone on the Solaris host, the zone name is checked by listing the process with the 'ps' bare command on the remote machine. An attacker could take advantage of this flaw by crafting the name of the zone and executing arbitrary commands in the remote host. Ansible Engine 2.7.15, 2.8.7, and 2.9.2 as well as previous versions are affected.

    Published: 27 Nov 2019
    4.4
    Medium

    CVE-2019-19335

    Last Modified: 21 Nov 2024

    During installation of an OpenShift 4 cluster, the `openshift-install` command line tool creates an `auth` directory, with `kubeconfig` and `kubeadmin-password` files. Both files contain credentials used to authenticate to the OpenShift API server, and are incorrectly assigned word-readable permissions. ose-installer as shipped in Openshift 4.2 is vulnerable.

    Published: 27 Nov 2019
    5.6
    Medium

    CVE-2019-14905

    Last Modified: 21 Nov 2024

    A vulnerability was found in Ansible Engine versions 2.9.x before 2.9.3, 2.8.x before 2.8.8, 2.7.x before 2.7.16 and earlier, where in Ansible's nxos_file_copy module can be used to copy files to a flash or bootflash on NXOS devices. Malicious code could craft the filename parameter to perform OS command injections. This could result in a loss of confidentiality of the system among other issues.

    Published: 27 Nov 2019
    5.5
    Medium

    CVE-2019-19308

    Last Modified: 21 Nov 2024

    In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, there is a NULL pointer dereference while parsing a TTF font file that lacks a name section (due to a g_strconcat call that returns NULL).

    Published: 27 Nov 2019
    6.5
    Medium

    CVE-2019-19319

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.2, a setxattr operation, after a mount of a crafted ext4 image, can cause a slab-out-of-bounds write access because of an ext4_xattr_set_entry use-after-free in fs/ext4/xattr.c when a large old_size value is used in a memset call, aka CID-345c0dbf3a30.

    Published: 27 Nov 2019
    —
    Unknown

    CVE-2020-1713

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2020. Notes: none.

    Published: 27 Nov 2019
    —
    Unknown

    CVE-2020-1715

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2020. Notes: none.

    Published: 27 Nov 2019
    5.5
    Medium

    CVE-2020-18780

    Last Modified: 21 Nov 2024

    A Use After Free vulnerability in function new_Token in asm/preproc.c in nasm 2.14.02 allows attackers to cause a denial of service via crafted nasm command.

    Published: 27 Nov 2019