CVE Feed

    Dashboard / CVE

    7.4
    High

    CVE-2012-0051

    Last Modified: 21 Nov 2024

    Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.

    Published: 7 Nov 2019
    4.3
    Medium

    CVE-2012-0049

    Last Modified: 21 Nov 2024

    OpenTTD before 1.1.5 contains a Denial of Service (slow read attack) that prevents users from joining the server.

    Published: 7 Nov 2019
    9.8
    Critical

    CVE-2011-2337

    Last Modified: 21 Nov 2024

    A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.

    Published: 7 Nov 2019
    7.5
    High

    CVE-2010-2243

    Last Modified: 21 Nov 2024

    A vulnerability exists in kernel/time/clocksource.c in the Linux kernel before 2.6.34 where on non-GENERIC_TIME systems (GENERIC_TIME=n), accessing /sys/devices/system/clocksource/clocksource0/current_clocksource results in an OOPS.

    Published: 7 Nov 2019
    6.5
    Medium

    CVE-2011-2353

    Last Modified: 21 Nov 2024

    Use after free vulnerability in documentloader in WebKit in Google Chrome before Blink M13 in DocumentWriter::replaceDocument function.

    Published: 7 Nov 2019
    6.5
    Medium

    CVE-2011-2807

    Last Modified: 21 Nov 2024

    Incorrect handling of timer information in Timer.cpp in WebKit in Google Chrome before Blink M13.

    Published: 7 Nov 2019
    6.1
    Medium

    CVE-2019-18815

    Last Modified: 21 Nov 2024

    PopojiCMS 2.0.1 allows refer= Open Redirection.

    Published: 7 Nov 2019
    6.1
    Medium

    CVE-2019-18816

    Last Modified: 21 Nov 2024

    po-admin/route.php?mod=post&act=edit in PopojiCMS 2.0.1 allows post[1][content]= stored XSS.

    Published: 7 Nov 2019
    7.5
    High

    CVE-2019-18807

    Last Modified: 21 Nov 2024

    Two memory leaks in the sja1105_static_config_upload() function in drivers/net/dsa/sja1105/sja1105_spi.c in the Linux kernel before 5.3.5 allow attackers to cause a denial of service (memory consumption) by triggering static_config_buf_prepare_for_upload() or sja1105_inhibit_tx() failures, aka CID-68501df92d11.

    Published: 7 Nov 2019
    5.5
    Medium

    CVE-2019-18808

    Last Modified: 21 Nov 2024

    A memory leak in the ccp_run_sha_cmd() function in drivers/crypto/ccp/ccp-ops.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-128c66429247.

    Published: 7 Nov 2019
    4.6
    Medium

    CVE-2019-18809

    Last Modified: 21 Nov 2024

    A memory leak in the af9005_identify_state() function in drivers/media/usb/dvb-usb/af9005.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-2289adbfa559.

    Published: 7 Nov 2019
    7.5
    High

    CVE-2019-18810

    Last Modified: 21 Nov 2024

    A memory leak in the komeda_wb_connector_add() function in drivers/gpu/drm/arm/display/komeda/komeda_wb_connector.c in the Linux kernel before 5.3.8 allows attackers to cause a denial of service (memory consumption) by triggering drm_writeback_connector_init() failures, aka CID-a0ecd6fdbf5d.

    Published: 7 Nov 2019
    5.5
    Medium

    CVE-2019-18811

    Last Modified: 21 Nov 2024

    A memory leak in the sof_set_get_large_ctrl_data() function in sound/soc/sof/ipc.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption) by triggering sof_get_ctrl_copy_params() failures, aka CID-45c1380358b1.

    Published: 7 Nov 2019
    4.3
    Medium

    CVE-2019-17604

    Last Modified: 21 Nov 2024

    An Insecure Direct Object Reference (IDOR) vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to change other candidates' personal information (first name, last name, email, CV, phone number, and all other personal information) by changing the value of the candidate id (the id parameter).

    Published: 7 Nov 2019
    8.8
    High

    CVE-2019-17605

    Last Modified: 21 Nov 2024

    A mass assignment vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to take over another candidate's account (by also exploiting CVE-2019-17604) via a modified candidate id and an additional password parameter. The outcome is that the password of this other candidate is changed.

    Published: 7 Nov 2019
    8.8
    High

    CVE-2019-16877

    Last Modified: 21 Nov 2024

    Portainer before 1.22.1 has Incorrect Access Control (issue 4 of 4).

    Published: 7 Nov 2019
    5.4
    Medium

    CVE-2019-16878

    Last Modified: 21 Nov 2024

    Portainer before 1.22.1 has XSS (issue 2 of 2).

    Published: 7 Nov 2019
    7.5
    High

    CVE-2019-16876

    Last Modified: 21 Nov 2024

    Portainer before 1.22.1 allows Directory Traversal.

    Published: 7 Nov 2019
    9.9
    Critical

    CVE-2019-16872

    Last Modified: 21 Nov 2024

    Portainer before 1.22.1 has Incorrect Access Control (issue 1 of 4).

    Published: 7 Nov 2019
    6.1
    Medium

    CVE-2019-17222

    Last Modified: 21 Nov 2024

    An issue was discovered on Intelbras WRN 150 1.0.17 devices. There is stored XSS in the Service Name tab of the WAN configuration screen, leading to a denial of service (inability to change the configuration).

    Published: 7 Nov 2019
    6.5
    Medium

    CVE-2019-16874

    Last Modified: 21 Nov 2024

    Portainer before 1.22.1 has Incorrect Access Control (issue 2 of 4).

    Published: 7 Nov 2019
    5.4
    Medium

    CVE-2019-16873

    Last Modified: 21 Nov 2024

    Portainer before 1.22.1 has XSS (issue 1 of 2).

    Published: 7 Nov 2019
    5.2
    Medium

    CVE-2019-6337

    Last Modified: 21 Nov 2024

    For the printers listed a maliciously crafted print file might cause certain HP Inkjet printers to assert. Under certain circumstances, the printer produces a core dump to a local device.

    Published: 7 Nov 2019
    8.8
    High

    CVE-2019-12331

    Last Modified: 21 Nov 2024

    PHPOffice PhpSpreadsheet before 1.8.0 has an XXE issue. The XmlScanner decodes the sheet1.xml from an .xlsx to utf-8 if something else than UTF-8 is declared in the header. This was a security measurement to prevent CVE-2018-19277 but the fix is not sufficient. By double-encoding the the xml payload to utf-7 it is possible to bypass the check for the string ‚<!ENTITY‘ and thus allowing for an xml external entity processing (XXE) attack.

    Published: 7 Nov 2019
    7.5
    High

    CVE-2019-18804

    Last Modified: 21 Nov 2024

    DjVuLibre 3.5.27 has a NULL pointer dereference in the function DJVU::filter_fv at IW44EncodeCodec.cpp.

    Published: 7 Nov 2019
    7.5
    High

    CVE-2019-15004

    Last Modified: 21 Nov 2024

    The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before 3.9.17, from 3.10.0 before 3.16.10, from 4.0.0 before 4.2.6, from 4.3.0 before 4.3.5, from 4.4.0 before 4.4.3, and from 4.5.0 before 4.5.1 allows remote attackers with portal access to view arbitrary issues in Jira Service Desk projects via a path traversal vulnerability. Note that when the 'Anyone can email the service desk or raise a request in the portal' setting is enabled, an attacker can grant themselves portal access, allowing them to exploit the vulnerability.

    Published: 7 Nov 2019
    5.3
    Medium

    CVE-2019-15003

    Last Modified: 21 Nov 2024

    The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before 3.9.17, from 3.10.0 before 3.16.10, from 4.0.0 before 4.2.6, from 4.3.0 before 4.3.5, from 4.4.0 before 4.4.3, and from 4.5.0 before 4.5.1 allows remote attackers with portal access to view arbitrary issues in Jira Service Desk projects via authorization bypass. Note that when the 'Anyone can email the service desk or raise a request in the portal' setting is enabled, an attacker can grant themselves portal access, allowing them to exploit the vulnerability.

    Published: 7 Nov 2019
    4.8
    Medium

    CVE-2019-11050

    Last Modified: 17 Aug 2026

    When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif_read_data() function, in PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0 it is possible to supply it with data what will cause it to read past the allocated buffer. This may lead to information disclosure or crash.

    Published: 7 Nov 2019
    7.5
    High

    CVE-2019-10768

    Last Modified: 20 Nov 2025

    In AngularJS before 1.7.9 the function `merge()` could be tricked into adding or modifying properties of `Object.prototype` using a `__proto__` payload.

    Published: 7 Nov 2019
    7.8
    High

    CVE-2019-18397

    Last Modified: 21 Nov 2024

    A buffer overflow in the fribidi_get_par_embedding_levels_ex() function in lib/fribidi-bidi.c of GNU FriBidi through 1.0.7 allows an attacker to cause a denial of service or possibly execute arbitrary code by delivering crafted text content to a user, when this content is then rendered by an application that uses FriBidi for text layout calculations. Examples include any GNOME or GTK+ based application that uses Pango for text layout, as this internally uses FriBidi for bidirectional text layout. For example, the attacker can construct a crafted text file to be opened in GEdit, or a crafted IRC message to be viewed in HexChat.

    Published: 7 Nov 2019
    5.5
    Medium

    CVE-2019-19767

    Last Modified: 21 Nov 2024

    The Linux kernel before 5.4.2 mishandles ext4_expand_extra_isize, as demonstrated by use-after-free errors in __ext4_expand_extra_isize and ext4_xattr_set_entry, related to fs/ext4/inode.c and fs/ext4/super.c, aka CID-4ea99936a163.

    Published: 7 Nov 2019
    5
    Medium

    CVE-2019-14891

    Last Modified: 21 Nov 2024

    A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can result in container management (conmon) processes being killed if a workload process triggers an out-of-memory (OOM) condition for the cgroup. An attacker could abuse this flaw to get host network access on an cri-o host.

    Published: 7 Nov 2019
    5.5
    Medium

    CVE-2019-3866

    Last Modified: 21 Nov 2024

    An information-exposure vulnerability was discovered where openstack-mistral's undercloud log files containing clear-text information were made world readable. A malicious system user could exploit this flaw to access sensitive user information.

    Published: 7 Nov 2019
    9.8
    Critical

    CVE-2019-18814

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

    Published: 7 Nov 2019
    7.5
    High

    CVE-2019-18874

    Last Modified: 21 Nov 2024

    psutil (aka python-psutil) through 5.6.5 can have a double free. This occurs because of refcount mishandling within a while or for loop that converts system data into a Python object.

    Published: 7 Nov 2019
    6.5
    Medium

    CVE-2019-16401

    Last Modified: 21 Nov 2024

    Samsung Galaxy S8 plus (Android version: 8.0.0, Build Number: R16NW.G955USQU5CRG3, Baseband Vendor: Qualcomm Snapdragon 835, Baseband: G955USQU5CRG3), Samsung Galaxy S3 (Android version: 4.3, Build Number: JSS15J.I9300XXUGND5, Baseband Vendor: Samsung Exynos 4412, Baseband: I9300XXUGNA8), and Samsung Galaxy Note 2 (Android version: 4.3, Build Number: JSS15J.I9300XUGND5, Baseband Vendor: Samsung Exynos 4412, Baseband: N7100DDUFND1) devices allow injection of AT+CIMI and AT+CGSN over Bluetooth, leaking sensitive information such as IMSI, IMEI, call status, call setup stage, internet service status, signal strength, current roaming status, battery level, and call held status.

    Published: 6 Nov 2019
    6.5
    Medium

    CVE-2019-16400

    Last Modified: 21 Nov 2024

    Samsung Galaxy S8 plus (Android version: 8.0.0, Build Number: R16NW.G955USQU5CRG3, Baseband Vendor: Qualcomm Snapdragon 835, Baseband: G955USQU5CRG3), Samsung Galaxy S3 (Android version: 4.3, Build Number: JSS15J.I9300XXUGND5, Baseband Vendor: Samsung Exynos 4412, Baseband: I9300XXUGNA8), and Samsung Galaxy Note 2 (Android version: 4.3, Build Number: JSS15J.I9300XUGND5, Baseband Vendor: Samsung Exynos 4412, Baseband: N7100DDUFND1) devices allow attackers to send AT commands over Bluetooth, resulting in several Denial of Service (DoS) attacks.

    Published: 6 Nov 2019
    8.8
    High

    CVE-2019-18411

    Last Modified: 21 Nov 2024

    Zoho ManageEngine ADSelfService Plus 5.x through 5803 has CSRF on the users' profile information page. Users who are attacked with this vulnerability will be forced to modify their enrolled information, such as email and mobile phone, unintentionally. Attackers could use the reset password function and control the system to send the authentication code back to the channel that the attackers own.

    Published: 6 Nov 2019
    8.8
    High

    CVE-2014-9013

    Last Modified: 21 Nov 2024

    The ajaxinit function in wpmarketplace/libs/cart.php in the WP Marketplace plugin 2.4.0 for WordPress allows remote authenticated users to create arbitrary users and gain admin privileges via a request to wpmp_pp_ajax_call with an execution target of wp_insert_user.

    Published: 6 Nov 2019
    4.3
    Medium

    CVE-2014-9014

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in the ajaxinit function in wpmarketplace/libs/cart.php in the WP Marketplace plugin before 2.4.1 for WordPress allows remote authenticated users to download arbitrary files via a .. (dot dot) in the file parameter.

    Published: 6 Nov 2019
    6.5
    Medium

    CVE-2011-2808

    Last Modified: 21 Nov 2024

    A stale layout root is set as an input element in WebKit in Google Chrome before Blink M13 when a child of a keygen with autofocus is accessed.

    Published: 6 Nov 2019
    6.1
    Medium

    CVE-2009-5046

    Last Modified: 21 Nov 2024

    JSP Dump and Session Dump Servlet XSS in jetty before 6.1.22.

    Published: 6 Nov 2019
    7.5
    High

    CVE-2009-5045

    Last Modified: 21 Nov 2024

    Dump Servlet information leak in jetty before 6.1.22.

    Published: 6 Nov 2019
    7.8
    High

    CVE-2019-5100

    Last Modified: 21 Nov 2024

    An exploitable integer overflow vulnerability exists in the BMP header parsing functionality of LEADTOOLS 20. A specially crafted BMP image file can cause an integer overflow, potentially resulting in code execution. An attacker can specially craft a BMP image to trigger this vulnerability.

    Published: 6 Nov 2019
    7.8
    High

    CVE-2019-5125

    Last Modified: 21 Nov 2024

    An exploitable heap overflow vulnerability exists in the JPEG2000 parsing functionality of LEADTOOLS 20. A specially crafted J2K image file can cause an out of bounds write of a heap buffer, potentially resulting in code execution. An attack can specially craft a J2K image to trigger this vulnerability.

    Published: 6 Nov 2019
    7.8
    High

    CVE-2019-5099

    Last Modified: 21 Nov 2024

    An exploitable integer underflow vulnerability exists in the CMP-parsing functionality of LEADTOOLS 20. A specially crafted CMP image file can cause an integer underflow, potentially resulting in code execution. An attacker can specially craft a CMP image to trigger this vulnerability.

    Published: 6 Nov 2019
    7.8
    High

    CVE-2019-5084

    Last Modified: 21 Nov 2024

    An exploitable heap out-of-bounds write vulnerability exists in the TIF-parsing functionality of LEADTOOLS 20. A specially crafted TIF image can cause an offset beyond the bounds of a heap allocation to be written, potentially resulting in code execution. An attacker can specially craft a TIF image to trigger this vulnerability.

    Published: 6 Nov 2019
    9.1
    Critical

    CVE-2014-3180

    Last Modified: 21 Nov 2024

    In kernel/compat.c in the Linux kernel before 3.17, as used in Google Chrome OS and other products, there is a possible out-of-bounds read. restart_syscall uses uninitialized data when restarting compat_sys_nanosleep. NOTE: this is disputed because the code path is unreachable

    Published: 6 Nov 2019
    5.3
    Medium

    CVE-2018-20853

    Last Modified: 21 Nov 2024

    An issue was discovered in the MailPoet Newsletters (aka wysija-newsletters) plugin before 2.8.2 for WordPress. The plugin is vulnerable to SPAM attacks.

    Published: 6 Nov 2019
    7.5
    High

    CVE-2009-5050

    Last Modified: 21 Nov 2024

    konversation before 1.2.3 allows attackers to cause a denial of service.

    Published: 6 Nov 2019