CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2019-10195

    Last Modified: 21 Nov 2024

    A flaw was found in IPA, all 4.6.x versions before 4.6.7, all 4.7.x versions before 4.7.4 and all 4.8.x versions before 4.8.3, in the way that FreeIPA's batch processing API logged operations. This included passing user passwords in clear text on FreeIPA masters. Batch processing of commands with passwords as arguments or options is not performed by default in FreeIPA but is possible by third-party components. An attacker having access to system logs on FreeIPA masters could use this flaw to produce log file content with passwords exposed.

    Published: 26 Nov 2019
    7.5
    High

    CVE-2019-11290

    Last Modified: 21 Nov 2024

    Cloud Foundry UAA Release, versions prior to v74.8.0, logs all query parameters to tomcat’s access file. If the query parameters are used to provide authentication, ie. credentials, then they will be logged as well.

    Published: 25 Nov 2019
    7.5
    High

    CVE-2011-3596

    Last Modified: 21 Nov 2024

    Polipo before 1.0.4.1 suffers from a DoD vulnerability via specially-crafted HTTP POST / PUT request.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2011-3584

    Last Modified: 21 Nov 2024

    The TYPO3 Core wec_discussion extension before 2.1.1 is vulnerable to SQL Injection due to improper sanitation of user-supplied input.

    Published: 25 Nov 2019
    8.8
    High

    CVE-2019-18251

    Last Modified: 21 Nov 2024

    In Omron CX-Supervisor, Versions 3.5 (12) and prior, Omron CX-Supervisor ships with Teamviewer Version 5.0.8703 QS. This version of Teamviewer is vulnerable to an obsolete function vulnerability requiring user interaction to exploit.

    Published: 25 Nov 2019
    6.5
    Medium

    CVE-2019-18241

    Last Modified: 21 Nov 2024

    In Philips IntelliBridge EC40 and EC80, IntelliBridge EC40 Hub all versions, and IntelliBridge EC80 Hub all versions, the SSH server running on the affected products is configured to allow weak ciphers. This could enable an unauthorized attacker with access to the network to capture and replay the session and gain unauthorized access to the EC40/80 hub.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2011-3583

    Last Modified: 21 Nov 2024

    It was found that Typo3 Core versions 4.5.0 - 4.5.5 uses prepared statements that, if the parameter values are not properly replaced, could lead to a SQL Injection vulnerability. This issue can only be exploited if two or more parameters are bound to the query and at least two come from user input.

    Published: 25 Nov 2019
    8.8
    High

    CVE-2019-15595

    Last Modified: 21 Nov 2024

    A privilege escalation exists in UniFi Video Controller =<3.10.6 that would allow an attacker on the local machine to run arbitrary commands.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-18250

    Last Modified: 21 Nov 2024

    In all versions of ABB Power Generation Information Manager (PGIM) and Plant Connect, the affected product is vulnerable to authentication bypass, which may allow an attacker to remotely bypass authentication and extract credentials from the affected device.

    Published: 25 Nov 2019
    3.7
    Low

    CVE-2011-3374

    Last Modified: 21 Nov 2024

    It was found that apt-key in apt, all versions, do not correctly validate gpg keys with the master keyring, leading to a potential man-in-the-middle attack.

    Published: 25 Nov 2019
    6.1
    Medium

    CVE-2011-3373

    Last Modified: 21 Nov 2024

    Drupal Views Builk Operations (VBO) module 6.x-1.0 through 6.x-1.10 does not properly escape the vocabulary help when the vocabulary has had user tagging enabled and the "Modify node taxonomy terms" action is used. A remote attacker could provide a specially-crafted URL that could lead to cross-site scripting (XSS) attack.

    Published: 25 Nov 2019
    6.1
    Medium

    CVE-2019-10771

    Last Modified: 21 Nov 2024

    Characters in the GET url path are not properly escaped and can be reflected in the server response.

    Published: 25 Nov 2019
    7.1
    High

    CVE-2011-3351

    Last Modified: 21 Nov 2024

    openvas-scanner before 2011-09-11 creates a temporary file insecurely when generating OVAL system characteristics document with the ovaldi integrated tool enabled. A local attacker could use this flaw to conduct symlink attacks to overwrite arbitrary files on the system.

    Published: 25 Nov 2019
    7.5
    High

    CVE-2019-15629

    Last Modified: 21 Nov 2024

    Trend Micro Password Manager versions 3.x, 5.0, and 5.1 for Android is affected by a FLAG_MISUSE vulnerability that could be exploited to allow the application to share information to third-party applications on the device.

    Published: 25 Nov 2019
    7.4
    High

    CVE-2019-16765

    Last Modified: 21 Nov 2024

    If an attacker can get a user to open a specially prepared directory tree as a workspace in Visual Studio Code with the CodeQL extension active, arbitrary code of the attacker's choosing may be executed on the user's behalf. This is fixed in version 1.0.1 of the extension. Users should upgrade to this version using Visual Studio Code Marketplace's upgrade mechanism. After upgrading, the codeQL.cli.executablePath setting can only be set in the per-user settings, and not in the per-workspace settings. More information about VS Code settings can be found here.

    Published: 25 Nov 2019
    6.5
    Medium

    CVE-2019-16764

    Last Modified: 21 Nov 2024

    The use of `String.to_atom/1` in PowAssent is susceptible to denial of service attacks. In `PowAssent.Phoenix.AuthorizationController` a value is fetched from the user provided params, and `String.to_atom/1` is used to convert the binary value to an atom so it can be used to fetch the provider configuration value. This is unsafe as it is user provided data, and can be used to fill up the whole atom table of ~1M which will cause the app to crash.

    Published: 25 Nov 2019
    4.4
    Medium

    CVE-2019-4406

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect Backup-Archive Client 7.1 and 8.1 may be vulnerable to a denial of service attack due to a timing issue between client and server TCP/IP communications. IBM X-Force ID: 162477.

    Published: 25 Nov 2019
    4.4
    Medium

    CVE-2018-2025

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect Backup-Archive Client and IBM Spectrum Protect for Virtual Environments 7.1 and 8.1 creates directories/files in the CIT sub directory that are read/writable by everyone. IBM X-Force ID: 155551.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-19249

    Last Modified: 21 Nov 2024

    Controllers/InvitationsController.cs in QueryTree before 3.0.99-beta mishandles invitations.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-19250

    Last Modified: 21 Nov 2024

    OpenTrade before 2019-11-23 allows SQL injection, related to server/modules/api/v1.js and server/utils.js.

    Published: 25 Nov 2019
    —
    Unknown

    CVE-2013-4224

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-4187. Reason: This candidate is a duplicate of CVE-2013-4187. Notes: All CVE users should reference CVE-2013-4187 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-18374

    Last Modified: 21 Nov 2024

    Symantec Critical System Protection (CSP), versions 8.0, 8.0 HF1 & 8.0 MP1, may be susceptible to an authentication bypass vulnerability, which is a type of issue that can potentially allow a threat actor to circumvent existing authentication controls.

    Published: 25 Nov 2019
    4.3
    Medium

    CVE-2019-15684

    Last Modified: 21 Nov 2024

    Kaspersky Protection extension for web browser Google Chrome prior to 30.112.62.0 was vulnerable to unauthorized access to its features remotely that could lead to removing other installed extensions.

    Published: 25 Nov 2019
    5.9
    Medium

    CVE-2019-19242

    Last Modified: 21 Nov 2024

    SQLite 3.30.1 mishandles pExpr->y.pTab, as demonstrated by the TK_COLUMN case in sqlite3ExprCodeTarget in expr.c.

    Published: 25 Nov 2019
    5.3
    Medium

    CVE-2019-17406

    Last Modified: 21 Nov 2024

    Nokia IMPACT < 18A has path traversal that may lead to RCE if chained with CVE-2019-1743

    Published: 25 Nov 2019
    6.1
    Medium

    CVE-2019-17405

    Last Modified: 21 Nov 2024

    Nokia IMPACT < 18A: has Reflected self XSS

    Published: 25 Nov 2019
    4.3
    Medium

    CVE-2019-17404

    Last Modified: 21 Nov 2024

    Nokia IMPACT < 18A: allows full path disclosure

    Published: 25 Nov 2019
    8.8
    High

    CVE-2019-17403

    Last Modified: 21 Nov 2024

    Nokia IMPACT < 18A: An unrestricted File Upload vulnerability was found that may lead to Remote Code Execution.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-5866

    Last Modified: 21 Nov 2024

    Out of bounds memory access in JavaScript in Google Chrome prior to 75.0.3770.142 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 25 Nov 2019
    6.5
    Medium

    CVE-2019-5867

    Last Modified: 21 Nov 2024

    Out of bounds read in JavaScript in Google Chrome prior to 76.0.3809.100 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 25 Nov 2019
    5.5
    Medium

    CVE-2019-5868

    Last Modified: 21 Nov 2024

    Use after free in PDFium in Google Chrome prior to 76.0.3809.100 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.

    Published: 25 Nov 2019
    5.3
    Medium

    CVE-2019-13684

    Last Modified: 21 Nov 2024

    Inappropriate implementation in JavaScript in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

    Published: 25 Nov 2019
    8.8
    High

    CVE-2019-13698

    Last Modified: 21 Nov 2024

    Out of bounds memory access in JavaScript in Google Chrome prior to 73.0.3683.103 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 25 Nov 2019
    5.5
    Medium

    CVE-2012-5640

    Last Modified: 21 Nov 2024

    thttpd has a local DoS vulnerability via specially-crafted .htpasswd files

    Published: 25 Nov 2019
    7.8
    High

    CVE-2012-5617

    Last Modified: 21 Nov 2024

    gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation

    Published: 25 Nov 2019
    5.5
    Medium

    CVE-2012-5527

    Last Modified: 21 Nov 2024

    Claws Mail vCalendar plugin: credentials exposed on interface

    Published: 25 Nov 2019
    6.2
    Medium

    CVE-2012-5578

    Last Modified: 21 Nov 2024

    Python keyring has insecure permissions on new databases allowing world-readable files to be created

    Published: 25 Nov 2019
    6.5
    Medium

    CVE-2020-10690

    Last Modified: 21 Nov 2024

    There is a use-after-free in kernel versions before 5.5 due to a race condition between the release of ptp_clock and cdev while resource deallocation. When a (high privileged) process allocates a ptp device file (like /dev/ptpX) and voluntarily goes to sleep. During this time if the underlying device is removed, it can cause an exploitable condition as the process wakes up to terminate and clean all attached files. The system crashes due to the cdev structure being invalid (as already freed) which is pointed to by the inode.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-14897

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. An attacker is able to cause a denial of service (system crash) or, possibly execute arbitrary code, when a STA works in IBSS mode (allows connecting stations together without the use of an AP) and connects to another STA.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-14896

    Last Modified: 21 Nov 2024

    A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join_existing function is called after a STA connects to an AP.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-14895

    Last Modified: 21 Nov 2024

    A heap-based buffer overflow was discovered in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The flaw could occur when the station attempts a connection negotiation during the handling of the remote devices country settings. This could allow the remote device to cause a denial of service (system crash) or possibly execute arbitrary code.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-14906

    Last Modified: 21 Nov 2024

    A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.

    Published: 25 Nov 2019
    6.1
    Medium

    CVE-2019-17632

    Last Modified: 21 Nov 2024

    In Eclipse Jetty versions 9.4.21.v20190926, 9.4.22.v20191022, and 9.4.23.v20191118, the generation of default unhandled Error response content (in text/html and text/json Content-Type) does not escape Exception messages in stacktraces included in error output.

    Published: 25 Nov 2019
    7.7
    High

    CVE-2019-18898

    Last Modified: 21 Nov 2024

    UNIX Symbolic Link (Symlink) Following vulnerability in the trousers package of SUSE Linux Enterprise Server 15 SP1; openSUSE Factory allowed local attackers escalate privileges from user tss to root. This issue affects: SUSE Linux Enterprise Server 15 SP1 trousers versions prior to 0.3.14-6.3.1. openSUSE Factory trousers versions prior to 0.3.14-7.1.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2019-19330

    Last Modified: 21 Nov 2024

    The HTTP/2 implementation in HAProxy before 2.0.10 mishandles headers, as demonstrated by carriage return (CR, ASCII 0xd), line feed (LF, ASCII 0xa), and the zero character (NUL, ASCII 0x0), aka Intermediary Encapsulation Attacks.

    Published: 25 Nov 2019
    8.4
    High

    CVE-2019-14890

    Last Modified: 21 Nov 2024

    A vulnerability was found in Ansible Tower before 3.6.1 where an attacker with low privilege could retrieve usernames and passwords credentials from the new RHSM saved in plain text into the database at '/api/v2/config' when applying the Ansible Tower license.

    Published: 25 Nov 2019
    7.8
    High

    CVE-2019-19241

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.4.2, the io_uring feature leads to requests that inadvertently have UID 0 and full capabilities, aka CID-181e448d8709. This is related to fs/io-wq.c, fs/io_uring.c, and net/socket.c. For example, an attacker can bypass intended restrictions on adding an IPv4 address to the loopback interface. This occurs because IORING_OP_SENDMSG operations, although requested in the context of an unprivileged user, are sometimes performed by a kernel worker thread without considering that context.

    Published: 25 Nov 2019
    5.9
    Medium

    CVE-2019-14865

    Last Modified: 29 Apr 2025

    A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting RLIMIT), causing grub2 configuration files to be truncated and leaving the system unbootable on subsequent reboots.

    Published: 25 Nov 2019
    7.8
    High

    CVE-2019-19252

    Last Modified: 21 Nov 2024

    vcs_write in drivers/tty/vt/vc_screen.c in the Linux kernel through 5.3.13 does not prevent write access to vcsu devices, aka CID-0c9acb1af77a.

    Published: 25 Nov 2019
    9.8
    Critical

    CVE-2012-5582

    Last Modified: 21 Nov 2024

    opendnssec misuses libcurl API

    Published: 25 Nov 2019