CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2017-16968

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16969

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16970

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16971

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16972

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16973

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16974

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16981

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16982

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16983

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16984

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16985

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16986

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16987

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16988

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16989

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16991

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16978

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16980

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    —
    Unknown

    CVE-2017-16990

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Oct 2019
    7.5
    High

    CVE-2019-7620

    Last Modified: 21 Nov 2024

    Logstash versions before 7.4.1 and 6.8.4 contain a denial of service flaw in the Logstash Beats input plugin. An unauthenticated user who is able to connect to the port the Logstash beats input could send a specially crafted network packet that would cause Logstash to stop responding.

    Published: 30 Oct 2019
    7.5
    High

    CVE-2019-15682

    Last Modified: 21 Nov 2024

    RDesktop version 1.8.4 contains multiple out-of-bound access read vulnerabilities in its code, which results in a denial of service (DoS) condition. This attack appear to be exploitable via network connectivity. These issues have been fixed in version 1.8.5

    Published: 30 Oct 2019
    4.6
    Medium

    CVE-2019-19481

    Last Modified: 21 Nov 2024

    An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-cac1.c mishandles buffer limits for CAC certificates.

    Published: 30 Oct 2019
    6.5
    Medium

    CVE-2019-8235

    Last Modified: 21 Nov 2024

    An insecure direct object reference (IDOR) vulnerability exists in Magento 2.3 prior to 2.3.1, 2.2 prior to 2.2.8, and 2.1 prior to 2.1.17 versions. An authenticated user may be able to view personally identifiable shipping details of another user due to insufficient validation of user controlled input.

    Published: 29 Oct 2019
    9.8
    Critical

    CVE-2012-0694

    Last Modified: 21 Nov 2024

    SugarCRM CE <= 6.3.1 contains scripts that use "unserialize()" with user controlled input which allows remote attackers to execute arbitrary PHP code.

    Published: 29 Oct 2019
    7.5
    High

    CVE-2010-1678

    Last Modified: 21 Nov 2024

    Mapserver 5.2, 5.4 and 5.6 before 5.6.5-2 improperly validates symbol index values during Mapfile parsing.

    Published: 29 Oct 2019
    7.5
    High

    CVE-2018-19151

    Last Modified: 21 Nov 2024

    qtum through 0.16 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service. The attacker sends invalid headers/blocks. The attack requires no stake and can fill the victim's disk and RAM.

    Published: 29 Oct 2019
    8.2
    High

    CVE-2011-1408

    Last Modified: 21 Nov 2024

    ikiwiki before 3.20110608 allows remote attackers to hijack root's tty and run symlink attacks.

    Published: 29 Oct 2019
    8.8
    High

    CVE-2018-18931

    Last Modified: 21 Nov 2024

    An issue was discovered in the Tightrope Media Carousel digital signage product 7.0.4.104. Due to insecure default permissions on the C:\TRMS\Services directory, an attacker who has gained access to the system can elevate their privileges from a restricted account to full SYSTEM by replacing the Carousel.Service.exe file with a custom malicious executable. This service is independent of the associated IIS web site, which means that this service can be manipulated by an attacker without losing access to vulnerabilities in the web interface (which would potentially be used in conjunction with this attack, to control the service). Once the attacker has replaced Carousel.Service.exe, the server can be restarted using the command "shutdown -r -t 0" from a web shell, causing the system to reboot and launching the malicious Carousel.Service.exe as SYSTEM on startup. If this malicious Carousel.Service.exe is configured to launch a reverse shell back to the attacker, then upon reboot the attacker will have a fully privileged remote command-line environment to manipulate the system further.

    Published: 29 Oct 2019
    8.8
    High

    CVE-2018-18930

    Last Modified: 21 Nov 2024

    The Tightrope Media Carousel digital signage product 7.0.4.104 contains an arbitrary file upload vulnerability in the Manage Bulletins/Upload feature, which can be leveraged to gain remote code execution. An authenticated attacker can upload a crafted ZIP file (based on an exported backup of existing "Bulletins") containing a malicious file. When uploaded, the system only checks for the presence of the needed files within the ZIP and, as long as the malicious file is named properly, will extract all contained files to a new directory on the system, named with a random GUID. The attacker can determine this GUID by previewing an image from the uploaded Bulletin within the web UI. Once the GUID is determined, the attacker can navigate to the malicious file and execute it. In testing, an ASPX web shell was uploaded, allowing for remote-code execution in the context of a restricted IIS user.

    Published: 29 Oct 2019
    8.8
    High

    CVE-2018-18929

    Last Modified: 21 Nov 2024

    The Tightrope Media Carousel Seneca HDn Windows-based appliance 7.0.4.104 is shipped with a default local administrator username and password. This can be found by a limited user account in an "unattend.xml" file left over on the C: drive from the Sysprep process. An attacker with this username and password can leverage it to gain administrator-level access on the system.

    Published: 29 Oct 2019
    5.5
    Medium

    CVE-2016-4289

    Last Modified: 21 Nov 2024

    A stack based buffer overflow vulnerability exists in the method receiving data from SysTreeView32 control of the GMER 2.1.19357 application. A specially created long path can lead to a buffer overflow on the stack resulting in code execution. An attacker needs to create path longer than 99 characters to trigger this vulnerability.

    Published: 29 Oct 2019
    6.1
    Medium

    CVE-2018-10727

    Last Modified: 21 Nov 2024

    Reflected Cross-Site Scripting (XSS) vulnerability in the fabrik_referrer hidden field in the Fabrikar Fabrik component through v3.8.1 for Joomla! allows remote attackers to inject arbitrary web script via the HTTP Referer header.

    Published: 29 Oct 2019
    6.1
    Medium

    CVE-2011-0428

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) in ikiwiki before 3.20110122 could allow remote attackers to insert arbitrary JavaScript due to insufficient checking in comments.

    Published: 29 Oct 2019
    9.8
    Critical

    CVE-2019-18624

    Last Modified: 21 Nov 2024

    Opera Mini for Android allows attackers to bypass intended restrictions on .apk file download/installation via an RTLO (aka Right to Left Override) approach, as demonstrated by misinterpretation of malicious%E2%80%AEtxt.apk as maliciouskpa.txt. This affects 44.1.2254.142553, 44.1.2254.142659, and 44.1.2254.143214.

    Published: 29 Oct 2019
    6.1
    Medium

    CVE-2019-13066

    Last Modified: 21 Nov 2024

    Sahi Pro 8.0.0 has a script manager arena located at _s_/dyn/pro/DBReports with many different areas that are vulnerable to reflected XSS, by updating a script's Script Name, Suite Name, Base URL, Android, iOS, Scripts Run, Origin Machine, or Comment field. The sql parameter can be used to trigger reflected XSS.

    Published: 29 Oct 2019
    9.8
    Critical

    CVE-2019-15683

    Last Modified: 21 Nov 2024

    TurboVNC server code contains stack buffer overflow vulnerability in commit prior to cea98166008301e614e0d36776bf9435a536136e. This could possibly result into remote code execution, since stack frame is not protected with stack canary. This attack appear to be exploitable via network connectivity. To exploit this vulnerability authorization on server is required. These issues have been fixed in commit cea98166008301e614e0d36776bf9435a536136e.

    Published: 29 Oct 2019
    8.8
    High

    CVE-2019-9926

    Last Modified: 21 Nov 2024

    An issue was discovered in LabKey Server 19.1.0. It is possible to force a logged-in administrator to execute code through a /reports-viewScriptReport.view CSRF vulnerability.

    Published: 29 Oct 2019
    7.5
    High

    CVE-2019-15680

    Last Modified: 21 Nov 2024

    TightVNC code version 1.3.10 contains null pointer dereference in HandleZlibBPP function, which results Denial of System (DoS). This attack appear to be exploitable via network connectivity.

    Published: 29 Oct 2019
    9.8
    Critical

    CVE-2019-15679

    Last Modified: 21 Nov 2024

    TightVNC code version 1.3.10 contains heap buffer overflow in InitialiseRFBConnection function, which can potentially result code execution. This attack appear to be exploitable via network connectivity.

    Published: 29 Oct 2019
    9.8
    Critical

    CVE-2019-15678

    Last Modified: 21 Nov 2024

    TightVNC code version 1.3.10 contains heap buffer overflow in rfbServerCutText handler, which can potentially result code execution.. This attack appear to be exploitable via network connectivity.

    Published: 29 Oct 2019
    9.8
    Critical

    CVE-2019-8287

    Last Modified: 21 Nov 2024

    TightVNC code version 1.3.10 contains global buffer overflow in HandleCoRREBBP macro function, which can potentially result code execution. This attack appear to be exploitable via network connectivity.

    Published: 29 Oct 2019
    5.4
    Medium

    CVE-2019-9758

    Last Modified: 21 Nov 2024

    An issue was discovered in LabKey Server 19.1.0. The display name of a user is vulnerable to stored XSS that can execute on administrators from security/permissions.view, security/addUsers.view, or wiki/Administration/page.view in the admin panel, leading to privilege escalation.

    Published: 29 Oct 2019
    7.5
    High

    CVE-2019-9757

    Last Modified: 21 Nov 2024

    An issue was discovered in LabKey Server 19.1.0. Sending an SVG containing an XXE payload to the endpoint visualization-exportImage.view or visualization-exportPDF.view allows local files to be read.

    Published: 29 Oct 2019
    9.8
    Critical

    CVE-2019-10749

    Last Modified: 21 Nov 2024

    sequelize before version 3.35.1 allows attackers to perform a SQL Injection due to the JSON path keys not being properly sanitized in the Postgres dialect.

    Published: 29 Oct 2019
    7.5
    High

    CVE-2019-15681

    Last Modified: 21 Nov 2024

    LibVNC commit before d01e1bb4246323ba6fcee3b82ef1faa9b1dac82a contains a memory leak (CWE-655) in VNC server code, which allow an attacker to read stack memory and can be abused for information disclosure. Combined with another vulnerability, it can be used to leak stack memory and bypass ASLR. This attack appear to be exploitable via network connectivity. These vulnerabilities have been fixed in commit d01e1bb4246323ba6fcee3b82ef1faa9b1dac82a.

    Published: 29 Oct 2019
    7.2
    High

    CVE-2019-16647

    Last Modified: 21 Nov 2024

    Unquoted Search Path in Maxthon 5.1.0 to 5.2.7 Browser for Windows.

    Published: 29 Oct 2019
    6.5
    Medium

    CVE-2019-18611

    Last Modified: 21 Nov 2024

    An issue was discovered in the CheckUser extension through 1.34 for MediaWiki. Certain sensitive information within oversighted edit summaries made available via the MediaWiki API was potentially visible to users with various levels of access to this extension. Said users should not have been able to view these oversighted edit summaries via the MediaWiki API.

    Published: 29 Oct 2019
    5.3
    Medium

    CVE-2019-18612

    Last Modified: 21 Nov 2024

    An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki. Previously hidden (restricted) AbuseFilter filters were viewable (or their differences were viewable) to unprivileged users, thus disclosing potentially sensitive information.

    Published: 29 Oct 2019
    7.5
    High

    CVE-2019-18608

    Last Modified: 21 Nov 2024

    Cezerin v0.33.0 allows unauthorized order-information modification because certain internal attributes can be overwritten via a conflicting name when processing order requests. Hence, a malicious customer can manipulate an order (e.g., its payment status or shipping fee) by adding additional attributes to user-input during the PUT /ajax/cart operation for a checkout, because of getValidDocumentForUpdate in api/server/services/orders/orders.js.

    Published: 29 Oct 2019