CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2019-18655

    Last Modified: 21 Nov 2024

    File Sharing Wizard version 1.5.0 build 2008 is affected by a Structured Exception Handler based buffer overflow vulnerability. An unauthenticated attacker is able to perform remote command execution and obtain a command shell by sending a HTTP GET request including the malicious payload in the URL. A similar issue to CVE-2019-17415, CVE-2019-16724, and CVE-2010-2331.

    Published: 12 Nov 2019
    7.1
    High

    CVE-2019-4652

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect Plus 10.1.0 through 10.1.4 uses insecure file permissions on restored files and directories in Windows which could allow a local user to obtain sensitive information or perform unauthorized actions. IBM X-Force ID: 170963.

    Published: 12 Nov 2019
    7.5
    High

    CVE-2019-14818

    Last Modified: 21 Nov 2024

    A flaw was found in all dpdk version 17.x.x before 17.11.8, 16.x.x before 16.11.10, 18.x.x before 18.11.4 and 19.x.x before 19.08.1 where a malicious master, or a container with access to vhost_user socket, can send specially crafted VRING_SET_NUM messages, resulting in a memory leak including file descriptors. This flaw could lead to a denial of service condition.

    Published: 12 Nov 2019
    7.5
    High

    CVE-2012-1109

    Last Modified: 21 Nov 2024

    mwlib 0.13 through 0.13.4 has a denial of service vulnerability when parsing #iferror magic functions

    Published: 12 Nov 2019
    7.8
    High

    CVE-2011-3618

    Last Modified: 21 Nov 2024

    atop: symlink attack possible due to insecure tempfile handling

    Published: 12 Nov 2019
    7.5
    High

    CVE-2019-18848

    Last Modified: 21 Nov 2024

    The json-jwt gem before 1.11.0 for Ruby lacks an element count during the splitting of a JWE string.

    Published: 12 Nov 2019
    6.1
    Medium

    CVE-2011-3370

    Last Modified: 21 Nov 2024

    statusnet before 0.9.9 has XSS

    Published: 12 Nov 2019
    5.3
    Medium

    CVE-2018-18819

    Last Modified: 21 Nov 2024

    A vulnerability in the web conference chat component of MiCollab, versions 7.3 PR6 (7.3.0.601) and earlier, and 8.0 (8.0.0.40) through 8.0 SP2 FP2 (8.0.2.202), and MiVoice Business Express versions 7.3 PR3 (7.3.1.302) and earlier, and 8.0 (8.0.0.40) through 8.0 SP2 FP1 (8.0.2.202), could allow creation of unauthorized chat sessions, due to insufficient access controls. A successful exploit could allow execution of arbitrary commands.

    Published: 12 Nov 2019
    9.8
    Critical

    CVE-2011-2936

    Last Modified: 21 Nov 2024

    Elgg through 1.7.10 has a SQL injection vulnerability

    Published: 12 Nov 2019
    6.1
    Medium

    CVE-2011-2935

    Last Modified: 21 Nov 2024

    Elgg through 1.7.10 has XSS

    Published: 12 Nov 2019
    9.8
    Critical

    CVE-2019-18658

    Last Modified: 21 Nov 2024

    In Helm 2.x before 2.15.2, commands that deal with loading a chart as a directory or packaging a chart provide an opportunity for a maliciously designed chart to include sensitive content such as /etc/passwd, or to execute a denial of service (DoS) via a special file such as /dev/urandom, via symlinks. No version of Tiller is known to be impacted. This is a client-only issue.

    Published: 12 Nov 2019
    5.5
    Medium

    CVE-2011-5271

    Last Modified: 21 Nov 2024

    Pacemaker before 1.1.6 configure script creates temporary files insecurely

    Published: 12 Nov 2019
    6.1
    Medium

    CVE-2019-18881

    Last Modified: 21 Nov 2024

    WSO2 IS as Key Manager 5.7.0 allows unauthenticated reflected XSS in the dashboard user profile.

    Published: 12 Nov 2019
    6.1
    Medium

    CVE-2019-18882

    Last Modified: 21 Nov 2024

    WSO2 IS as Key Manager 5.7.0 allows stored XSS in download-userinfo.jag because Content-Type is mishandled.

    Published: 12 Nov 2019
    9
    Critical

    CVE-2019-18873

    Last Modified: 21 Nov 2024

    FUDForum 3.0.9 is vulnerable to Stored XSS via the User-Agent HTTP header. This may result in remote code execution. An attacker can use a user account to fully compromise the system via a GET request. When the admin visits user information under "User Manager" in the control panel, the payload will execute. This will allow for PHP files to be written to the web root, and for code to execute on the remote server. The problem is in admsession.php and admuser.php.

    Published: 12 Nov 2019
    7.1
    High

    CVE-2019-15794

    Last Modified: 21 Nov 2024

    Overlayfs in the Linux kernel and shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 kernel series, both replace vma->vm_file in their mmap handlers. On error the original value is not restored, and the reference is put for the file to which vm_file points. On upstream kernels this is not an issue, as no callers dereference vm_file following after call_mmap() returns an error. However, the aufs patchs change mmap_region() to replace the fput() using a local variable with vma_fput(), which will fput() vm_file, leading to a refcount underflow.

    Published: 12 Nov 2019
    6.1
    Medium

    CVE-2019-20479

    Last Modified: 21 Nov 2024

    A flaw was found in mod_auth_openidc before version 2.4.1. An open redirect issue exists in URLs with a slash and backslash at the beginning.

    Published: 12 Nov 2019
    7.8
    High

    CVE-2019-18862

    Last Modified: 21 Nov 2024

    maidag in GNU Mailutils before 3.8 is installed setuid and allows local privilege escalation in the url mode.

    Published: 11 Nov 2019
    7.5
    High

    CVE-2019-18854

    Last Modified: 21 Nov 2024

    A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to unlimited recursion for a '<use ... xlink:href="#identifier">' substring.

    Published: 11 Nov 2019
    7.5
    High

    CVE-2019-18855

    Last Modified: 21 Nov 2024

    A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to potentially unwanted elements or attributes.

    Published: 11 Nov 2019
    7.5
    High

    CVE-2019-18856

    Last Modified: 21 Nov 2024

    A Denial Of Service vulnerability exists in the SVG Sanitizer module through 8.x-1.0-alpha1 for Drupal because access to external resources with an SVG use element is mishandled.

    Published: 11 Nov 2019
    7.5
    High

    CVE-2019-18857

    Last Modified: 21 Nov 2024

    darylldoyle svg-sanitizer before 0.12.0 mishandles script and data values in attributes, as demonstrated by unexpected whitespace such as in the javascript&#9;:alert substring.

    Published: 11 Nov 2019
    9.8
    Critical

    CVE-2019-18852

    Last Modified: 21 Nov 2024

    Certain D-Link devices have a hardcoded Alphanetworks user account with TELNET access because of /etc/config/image_sign or /etc/alpha_config/image_sign. This affects DIR-600 B1 V2.01 for WW, DIR-890L A1 v1.03, DIR-615 J1 v100 (for DCN), DIR-645 A1 v1.03, DIR-815 A1 v1.01, DIR-823 A1 v1.01, and DIR-842 C1 v3.00.

    Published: 11 Nov 2019
    5.5
    Medium

    CVE-2019-18849

    Last Modified: 21 Nov 2024

    In tnef before 1.4.18, an attacker may be able to write to the victim's .ssh/authorized_keys file via an e-mail message with a crafted winmail.dat application/ms-tnef attachment, because of a heap-based buffer over-read involving strdup.

    Published: 11 Nov 2019
    7.3
    High

    CVE-2019-18841

    Last Modified: 21 Nov 2024

    Chartkick.js 3.1.0 through 3.1.3, as used in the Chartkick gem before 3.3.0 for Ruby, allows prototype pollution.

    Published: 11 Nov 2019
    7.5
    High

    CVE-2019-18817

    Last Modified: 21 Nov 2024

    Istio 1.3.x before 1.3.5 allows Denial of Service because continue_on_listener_filters_timeout is set to True, a related issue to CVE-2019-18836.

    Published: 11 Nov 2019
    7.5
    High

    CVE-2019-18836

    Last Modified: 21 Nov 2024

    Envoy 1.12.0 allows a remote denial of service because of resource loops, as demonstrated by a single idle TCP connection being able to keep a worker thread in an infinite busy loop when continue_on_listener_filters_timeout is used."

    Published: 11 Nov 2019
    7.5
    High

    CVE-2022-27386

    Last Modified: 21 Nov 2024

    MariaDB Server v10.7 and below was discovered to contain a segmentation fault via the component sql/sql_class.cc.

    Published: 11 Nov 2019
    7.1
    High

    CVE-2019-18845

    Last Modified: 21 Nov 2024

    The MsIo64.sys and MsIo32.sys drivers in Patriot Viper RGB before 1.1 allow local users (including low integrity processes) to read and write to arbitrary memory locations, and consequently gain NT AUTHORITY\SYSTEM privileges, by mapping \Device\PhysicalMemory into the calling process via ZwOpenSection and ZwMapViewOfSection.

    Published: 9 Nov 2019
    7.5
    High

    CVE-2019-18840

    Last Modified: 21 Nov 2024

    In wolfSSL 4.1.0 through 4.2.0c, there are missing sanity checks of memory accesses in parsing ASN.1 certificate data while handshaking. Specifically, there is a one-byte heap-based buffer overflow inside the DecodedCert structure in GetName in wolfcrypt/src/asn.c because the domain name location index is mishandled. Because a pointer is overwritten, there is an invalid free.

    Published: 9 Nov 2019
    8.1
    High

    CVE-2009-4011

    Last Modified: 21 Nov 2024

    dtc-xen 0.5.x before 0.5.4 suffers from a race condition where an attacker could potentially get a bash access as xenXX user on the dom0, and then access a potentially reuse an already opened VPS console.

    Published: 9 Nov 2019
    3.3
    Low

    CVE-2009-3614

    Last Modified: 21 Nov 2024

    liboping 1.3.2 allows users reading arbitrary files upon the local system.

    Published: 9 Nov 2019
    6.1
    Medium

    CVE-2009-2802

    Last Modified: 21 Nov 2024

    MantisBT 1.2.x before 1.2.2 insecurely handles attachments and MIME types. Arbitrary inline attachment rendering could lead to cross-domain scripting or other browser attacks.

    Published: 9 Nov 2019
    7.8
    High

    CVE-2019-5701

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience, all versions prior to 3.20.0.118, contains a vulnerability when GameStream is enabled in which an attacker with local system access can load the Intel graphics driver DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), which may lead to denial of service, information disclosure, or escalation of privileges through code execution.

    Published: 9 Nov 2019
    4.4
    Medium

    CVE-2019-5698

    Last Modified: 21 Nov 2024

    NVIDIA Virtual GPU Manager, all versions, contains a vulnerability in the vGPU plugin, in which an input index value is incorrectly validated, which may lead to denial of service.

    Published: 9 Nov 2019
    7.1
    High

    CVE-2019-5697

    Last Modified: 21 Nov 2024

    NVIDIA Virtual GPU Manager, all versions, contains a vulnerability in which it may grant a guest access to memory that it does not own, which may lead to information disclosure or denial of service.

    Published: 9 Nov 2019
    5.5
    Medium

    CVE-2019-5696

    Last Modified: 21 Nov 2024

    NVIDIA Virtual GPU Manager, all versions, contains a vulnerability in which the provision of an incorrectly sized buffer by a guest VM leads to GPU out-of-bound access, which may lead to a denial of service.

    Published: 9 Nov 2019
    6.5
    Medium

    CVE-2019-5694

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver, R390 driver version, contains a vulnerability in NVIDIA Control Panel in which it incorrectly loads Windows system DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), which may lead to denial of service or information disclosure through code execution. The attacker requires local system access.

    Published: 9 Nov 2019
    5.5
    Medium

    CVE-2019-5693

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) in which the program accesses or uses a pointer that has not been initialized, which may lead to denial of service.

    Published: 9 Nov 2019
    7.8
    High

    CVE-2019-5692

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape in which the product uses untrusted input when calculating or using an array index, which may lead to escalation of privileges or denial of service.

    Published: 9 Nov 2019
    6.1
    Medium

    CVE-2019-4645

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 170881.

    Published: 9 Nov 2019
    6.1
    Medium

    CVE-2019-4581

    Last Modified: 21 Nov 2024

    IBM QRadar 7.3.0 to 7.3.2 Patch 4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 167239.

    Published: 9 Nov 2019
    6.5
    Medium

    CVE-2019-4556

    Last Modified: 21 Nov 2024

    IBM QRadar Advisor 1.0.0 through 2.4.0 uses incomplete blacklisting for input validation which allows attackers to bypass application controls resulting in direct impact to the system and data integrity. IBM X-Force ID: 166205.

    Published: 9 Nov 2019
    4.3
    Medium

    CVE-2019-4509

    Last Modified: 21 Nov 2024

    IBM QRadar 7.3.0 to 7.3.2 Patch 4 is vulnerable to incorrect authorization in some components which could allow an authenticated user to obtain sensitive information. IBM X-Force ID: 164430.

    Published: 9 Nov 2019
    5.4
    Medium

    CVE-2019-4470

    Last Modified: 21 Nov 2024

    IBM QRadar 7.3.0 to 7.3.2 Patch 4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 163779.

    Published: 9 Nov 2019
    5.4
    Medium

    CVE-2019-4454

    Last Modified: 21 Nov 2024

    IBM QRadar 7.3.0 to 7.3.2 Patch 4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 163618.

    Published: 9 Nov 2019
    6.1
    Medium

    CVE-2019-4450

    Last Modified: 21 Nov 2024

    IBM i 7.2, 7.3, and 7.4 for i is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 163492.

    Published: 9 Nov 2019
    5.3
    Medium

    CVE-2019-4412

    Last Modified: 21 Nov 2024

    IBM Cognos Controller stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 162659.

    Published: 9 Nov 2019
    4.3
    Medium

    CVE-2019-4411

    Last Modified: 21 Nov 2024

    IBM Cognos Controller 10.3.0, 10.3.1, 10.4.0, and 10.4.1 could allow an authenticated user to obtain sensitive information due to easy to guess session identifier names. IBM X-Force ID: 162658.

    Published: 9 Nov 2019
    4.3
    Medium

    CVE-2019-4334

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.0 and 11.1 could reveal sensitive information to an authenticated user that could be used in future attacks against the system. IBM X-Force ID: 161271.

    Published: 9 Nov 2019