CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2011-2916

    Last Modified: 21 Nov 2024

    qtnx 0.9 stores non-custom SSH keys in a world-readable configuration file. If a user has a world-readable or world-executable home directory, another local system user could obtain the private key used to connect to remote NX sessions.

    Published: 15 Nov 2019
    2.3
    Low

    CVE-2019-12756

    Last Modified: 21 Nov 2024

    Symantec Endpoint Protection (SEP), prior to 14.2 RU2 may be susceptible to a password protection bypass vulnerability whereby the secondary layer of password protection could by bypassed for individuals with local administrator rights.

    Published: 15 Nov 2019
    7.8
    High

    CVE-2018-18368

    Last Modified: 21 Nov 2024

    Symantec Endpoint Protection Manager (SEPM), prior to 14.2 RU1, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

    Published: 15 Nov 2019
    6.7
    Medium

    CVE-2011-2910

    Last Modified: 21 Nov 2024

    The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping privileges but if the call fails the daemon would continue to run with root privileges which can allow possible privilege escalation.

    Published: 15 Nov 2019
    7.5
    High

    CVE-2011-2726

    Last Modified: 21 Nov 2024

    An access bypass issue was found in Drupal 7.x before version 7.5. If a Drupal site has the ability to attach File upload fields to any entity type in the system or has the ability to point individual File upload fields to the private file directory in comments, and the parent node is denied access, non-privileged users can still download the file attached to the comment if they know or guess its direct URL.

    Published: 15 Nov 2019
    9.8
    Critical

    CVE-2011-0703

    Last Modified: 21 Nov 2024

    In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 session.

    Published: 15 Nov 2019
    —
    Unknown

    CVE-2009-5047

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-4611. Reason: This candidate is a duplicate of CVE-2009-4611. Notes: All CVE users should reference CVE-2009-4611 rather than this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 15 Nov 2019
    7.5
    High

    CVE-2013-7089

    Last Modified: 21 Nov 2024

    ClamAV before 0.97.7: dbg_printhex possible information leak

    Published: 15 Nov 2019
    9.8
    Critical

    CVE-2013-7088

    Last Modified: 21 Nov 2024

    ClamAV before 0.97.7 has buffer overflow in the libclamav component

    Published: 15 Nov 2019
    9.8
    Critical

    CVE-2013-7087

    Last Modified: 21 Nov 2024

    ClamAV before 0.97.7 has WWPack corrupt heap memory

    Published: 15 Nov 2019
    5.9
    Medium

    CVE-2013-4584

    Last Modified: 21 Nov 2024

    Perdition before 2.2 may have weak security when handling outbound connections, caused by an error in the STARTTLS IMAP and POP server. ssl_outgoing_ciphers not being applied to STARTTLS connections

    Published: 15 Nov 2019
    9.8
    Critical

    CVE-2019-14345

    Last Modified: 21 Nov 2024

    TemaTres 3.0 allows remote unprivileged users to create an administrator account

    Published: 15 Nov 2019
    5.4
    Medium

    CVE-2019-14343

    Last Modified: 21 Nov 2024

    TemaTres 3.0 has stored XSS via the value parameter to the vocab/admin.php?vocabulario_id=list URI.

    Published: 15 Nov 2019
    5.3
    Medium

    CVE-2019-18987

    Last Modified: 21 Nov 2024

    An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki. Once a specific abuse filter has (accidentally or otherwise) been made public, its previous versions can be exposed, thus potentially disclosing private or sensitive information within the filter's definition.

    Published: 15 Nov 2019
    9.8
    Critical

    CVE-2019-18981

    Last Modified: 21 Nov 2024

    Pimcore before 6.2.2 lacks an Access Denied outcome for a certain scenario of an incorrect recipient ID of a notification.

    Published: 15 Nov 2019
    6.1
    Medium

    CVE-2019-18982

    Last Modified: 21 Nov 2024

    bundles/AdminBundle/Controller/Admin/EmailController.php in Pimcore before 6.3.0 allows script execution in the Email Log preview window because of the lack of a Content-Security-Policy header.

    Published: 15 Nov 2019
    9.8
    Critical

    CVE-2019-18985

    Last Modified: 21 Nov 2024

    Pimcore before 6.2.2 lacks brute force protection for the 2FA token.

    Published: 15 Nov 2019
    7.5
    High

    CVE-2019-18986

    Last Modified: 21 Nov 2024

    Pimcore before 6.2.2 allow attackers to brute-force (guess) valid usernames by using the 'forgot password' functionality as it returns distinct messages for invalid password and non-existing users.

    Published: 15 Nov 2019
    4.6
    Medium

    CVE-2019-19524

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.3.12, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/input/ff-memless.c driver, aka CID-fa3a5a1880c9.

    Published: 15 Nov 2019
    4.8
    Medium

    CVE-2019-11255

    Last Modified: 21 Nov 2024

    Improper input validation in Kubernetes CSI sidecar containers for external-provisioner (<v0.4.3, <v1.0.2, v1.1, <v1.2.2, <v1.3.1), external-snapshotter (<v0.4.2, <v1.0.2, v1.1, <1.2.2), and external-resizer (v0.1, v0.2) could result in unauthorized PersistentVolume data access or volume mutation during snapshot, restore from snapshot, cloning and resizing operations.

    Published: 15 Nov 2019
    7.8
    High

    CVE-2019-11931

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow could be triggered in WhatsApp by sending a specially crafted MP4 file to a WhatsApp user. The issue was present in parsing the elementary stream metadata of an MP4 file and could result in a DoS or RCE. This affects Android versions prior to 2.19.274, iOS versions prior to 2.19.100, Enterprise Client versions prior to 2.25.3, Business for Android versions prior to 2.19.104 and Business for iOS versions prior to 2.19.100.

    Published: 14 Nov 2019
    7.5
    High

    CVE-2019-18980

    Last Modified: 21 Nov 2024

    On Signify Philips Taolight Smart Wi-Fi Wiz Connected LED Bulb 9290022656 devices, an unprotected API lets remote users control the bulb's operation. Anyone can turn the bulb on or off, or change its color or brightness remotely. There is no authentication or encryption to use the control API. The only requirement is that the attacker have network access to the bulb.

    Published: 14 Nov 2019
    10
    Critical

    CVE-2019-14678

    Last Modified: 21 Nov 2024

    SAS XML Mapper 9.45 has an XML External Entity (XXE) vulnerability that can be leveraged by malicious attackers in multiple ways. Examples are Local File Reading, Out Of Band File Exfiltration, Server Side Request Forgery, and/or Potential Denial of Service attacks. This vulnerability also affects the XMLV2 LIBNAME engine when the AUTOMAP option is used.

    Published: 14 Nov 2019
    6.5
    Medium

    CVE-2019-18651

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in 3xLogic Infinias Access Control through 6.6.9586.0 allows remote attackers to execute malicious and unauthorized actions (e.g., delete application users) by sending a crafted HTML document or encoded URL to a user that the website trusts. The user needs to have an active privileged session.

    Published: 14 Nov 2019
    4.6
    Medium

    CVE-2019-17391

    Last Modified: 21 Nov 2024

    An issue was discovered in the Espressif ESP32 mask ROM code 2016-06-08 0 through 2. Lack of anti-glitch mitigations in the first stage bootloader of the ESP32 chip allows an attacker (with physical access to the device) to read the contents of read-protected eFuses, such as flash encryption and secure boot keys, by injecting a glitch into the power supply of the chip shortly after reset.

    Published: 14 Nov 2019
    5.3
    Medium

    CVE-2019-18978

    Last Modified: 21 Nov 2024

    An issue was discovered in the rack-cors (aka Rack CORS Middleware) gem before 1.0.4 for Ruby. It allows ../ directory traversal to access private resources because resource matching does not ensure that pathnames are in a canonical format.

    Published: 14 Nov 2019
    8.8
    High

    CVE-2019-15799

    Last Modified: 21 Nov 2024

    An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. User accounts created through the web interface of the device, when given non-admin level privileges, have the same level of privileged access as administrators when connecting to the device via SSH (while their permissions via the web interface are in fact restricted). This allows normal users to obtain the administrative password by running the tech-support command via the CLI: this contains the encrypted passwords for all users on the device. As these passwords are encrypted using well-known and static parameters, they can be decrypted and the original passwords (including the administrator password) can be obtained.

    Published: 14 Nov 2019
    9.8
    Critical

    CVE-2019-15800

    Last Modified: 21 Nov 2024

    An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. Due to lack of input validation in the cmd_sys_traceroute_exec(), cmd_sys_arp_clear(), and cmd_sys_ping_exec() functions in the libclicmd.so library contained in the firmware, an attacker could leverage these functions to call system() and execute arbitrary commands on the switches. (Note that these functions are currently not called in this version of the firmware, however an attacker could use other vulnerabilities to finally use these vulnerabilities to gain code execution.)

    Published: 14 Nov 2019
    7.5
    High

    CVE-2019-15801

    Last Modified: 21 Nov 2024

    An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. The firmware image contains encrypted passwords that are used to authenticate users wishing to access a diagnostics or password-recovery menu. Using the hardcoded cryptographic key found elsewhere in the firmware, these passwords can be decrypted. This is related to fds_sys_passDebugPasswd_ret() and fds_sys_passRecoveryPasswd_ret() in libfds.so.0.0.

    Published: 14 Nov 2019
    5.9
    Medium

    CVE-2019-15802

    Last Modified: 21 Nov 2024

    An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. The firmware hashes and encrypts passwords using a hardcoded cryptographic key in sal_util_str_encrypt() in libsal.so.0.0. The parameters (salt, IV, and key data) are used to encrypt and decrypt all passwords using AES256 in CBC mode. With the parameters known, all previously encrypted passwords can be decrypted. This includes the passwords that are part of configuration backups or otherwise embedded as part of the firmware.

    Published: 14 Nov 2019
    9.1
    Critical

    CVE-2019-15803

    Last Modified: 21 Nov 2024

    An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. Through an undocumented sequence of keypresses, undocumented functionality is triggered. A diagnostics shell is triggered via CTRL-ALT-t, which prompts for the password returned by fds_sys_passDebugPasswd_ret(). The firmware contains access control checks that determine if remote users are allowed to access this functionality. The function that performs this check (fds_sys_remoteDebugEnable_ret in libfds.so) always return TRUE with no actual checks performed. The diagnostics menu allows for reading/writing arbitrary registers and various other configuration parameters which are believed to be related to the network interface chips.

    Published: 14 Nov 2019
    7.5
    High

    CVE-2019-15804

    Last Modified: 21 Nov 2024

    An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. By sending a signal to the CLI process, undocumented functionality is triggered. Specifically, a menu can be triggered by sending the SIGQUIT signal to the CLI application (e.g., through CTRL+\ via SSH). The access control check for this menu does work and prohibits accessing the menu, which contains "Password recovery for specific user" options. The menu is believed to be accessible using a serial console.

    Published: 14 Nov 2019
    6.1
    Medium

    CVE-2013-4106

    Last Modified: 21 Nov 2024

    A Cross-site scripting (XSS) vulnerability exists in Conversation Overview Nickname in Cryptocat before 2.0.22.

    Published: 14 Nov 2019
    9.8
    Critical

    CVE-2013-4108

    Last Modified: 21 Nov 2024

    Multiple unspecified vulnerabilities in Cryptocat Project Cryptocat 2.0.18 have unknown impact and attack vectors.

    Published: 14 Nov 2019
    5.5
    Medium

    CVE-2019-0184

    Last Modified: 21 Nov 2024

    Insufficient access control in protected memory subsystem for Intel(R) TXT for 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Xeon(R) Processor E3-1500 v5 and v6 Families; Intel(R) Xeon(R) E-2100 and E-2200 Processor Families with Intel(R) Processor Graphics and Intel(R) TXT may allow a privileged user to potentially enable information disclosure via local access.

    Published: 14 Nov 2019
    7.8
    High

    CVE-2019-0124

    Last Modified: 21 Nov 2024

    Insufficient memory protection in Intel(R) 6th Generation Core Processors and greater, supporting TXT, may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 14 Nov 2019
    7.8
    High

    CVE-2019-0123

    Last Modified: 21 Nov 2024

    Insufficient memory protection in Intel(R) 6th Generation Core Processors and greater, supporting SGX, may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 14 Nov 2019
    6.7
    Medium

    CVE-2019-0151

    Last Modified: 21 Nov 2024

    Insufficient memory protection in Intel(R) TXT for certain Intel(R) Core Processors and Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 14 Nov 2019
    6.7
    Medium

    CVE-2019-0152

    Last Modified: 21 Nov 2024

    Insufficient memory protection in System Management Mode (SMM) and Intel(R) TXT for certain Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 14 Nov 2019
    4.4
    Medium

    CVE-2019-11113

    Last Modified: 21 Nov 2024

    Buffer overflow in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6618 (DCH) or 21.20.x.5077 (aka15.45.5077) may allow a privileged user to potentially enable information disclosure via local access.

    Published: 14 Nov 2019
    5.5
    Medium

    CVE-2019-11089

    Last Modified: 21 Nov 2024

    Insufficient input validation in Kernel Mode module for Intel(R) Graphics Driver before version 25.20.100.6519 may allow an authenticated user to potentially enable denial of service via local access.

    Published: 14 Nov 2019
    5.5
    Medium

    CVE-2019-14591

    Last Modified: 21 Nov 2024

    Improper input validation in the API for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access.

    Published: 14 Nov 2019
    5.5
    Medium

    CVE-2019-14590

    Last Modified: 21 Nov 2024

    Improper access control in the API for the Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 14 Nov 2019
    5.5
    Medium

    CVE-2019-14574

    Last Modified: 21 Nov 2024

    Out of bounds read in a subsystem for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access.

    Published: 14 Nov 2019
    7.8
    High

    CVE-2019-11111

    Last Modified: 21 Nov 2024

    Pointer corruption in the Unified Shader Compiler in Intel(R) Graphics Drivers before 10.18.14.5074 (aka 15.36.x.5074) may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 14 Nov 2019
    6.1
    Medium

    CVE-2013-4109

    Last Modified: 21 Nov 2024

    An unspecified cross-site scripting (XSS) vulnerability exists in Cryptocat Message Handling 1.1.165.

    Published: 14 Nov 2019
    9.8
    Critical

    CVE-2019-18939

    Last Modified: 21 Nov 2024

    eQ-3 Homematic CCU2 2.47.20 and CCU3 3.47.18 with the HM-Print AddOn through 1.2a installed allow Remote Code Execution by unauthenticated attackers with access to the web interface via the exec.cgi and exec1.cgi scripts, which execute TCL script content from an HTTP POST request.

    Published: 14 Nov 2019
    9.8
    Critical

    CVE-2019-18938

    Last Modified: 21 Nov 2024

    eQ-3 Homematic CCU2 2.47.20 and CCU3 3.47.18 with the E-Mail AddOn through 1.6.8.c installed allow Remote Code Execution by unauthenticated attackers with access to the web interface via the save.cgi script for payload upload and the testtcl.cgi script for its execution.

    Published: 14 Nov 2019
    9.8
    Critical

    CVE-2019-18937

    Last Modified: 21 Nov 2024

    eQ-3 Homematic CCU2 2.47.20 and CCU3 3.47.18 with the Script Parser AddOn through 1.8 installed allow Remote Code Execution by unauthenticated attackers with access to the web interface via the exec.cgi script, which executes TCL script content from an HTTP POST request.

    Published: 14 Nov 2019
    7.5
    High

    CVE-2013-3070

    Last Modified: 21 Nov 2024

    An Information Disclosure vulnerability exists in Netgear WNDR4700 running firmware 1.0.0.34 in the management web interface, which discloses the PSK of the wireless LAN.

    Published: 14 Nov 2019