CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2019-18394

    Last Modified: 21 Nov 2024

    A Server Side Request Forgery (SSRF) vulnerability in FaviconServlet.java in Ignite Realtime Openfire through 4.4.2 allows attackers to send arbitrary HTTP GET requests.

    Published: 24 Oct 2019
    5.3
    Medium

    CVE-2019-18393

    Last Modified: 21 Nov 2024

    PluginServlet.java in Ignite Realtime Openfire through 4.4.2 does not ensure that retrieved files are located under the Openfire home directory, aka a directory traversal vulnerability.

    Published: 24 Oct 2019
    8.7
    High

    CVE-2019-11043

    Last Modified: 3 Nov 2025

    In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain configurations of FPM setup it is possible to cause FPM module to write past allocated buffers into the space reserved for FCGI protocol data, thus opening the possibility of remote code execution.

    Published: 24 Oct 2019
    3.7
    Low

    CVE-2019-18413

    Last Modified: 21 Nov 2024

    In TypeStack class-validator 0.10.2, validate() input validation can be bypassed because certain internal attributes can be overwritten via a conflicting name. Even though there is an optional forbidUnknownValues parameter that can be used to reduce the risk of this bypass, this option is not documented and thus most developers configure input validation in the vulnerable default manner. With this vulnerability, attackers can launch SQL Injection or XSS attacks by injecting arbitrary malicious input. NOTE: a software maintainer agrees with the "is not documented" finding but suggests that much of the responsibility for the risk lies in a different product.

    Published: 24 Oct 2019
    9.8
    Critical

    CVE-2019-18387

    Last Modified: 21 Nov 2024

    Sourcecodester Hotel and Lodge Management System 1.0 is vulnerable to unauthenticated SQL injection and can allow remote attackers to execute arbitrary SQL commands via the id parameter to the edit page for Customer, Room, Currency, Room Booking Details, or Tax Details.

    Published: 23 Oct 2019
    8.8
    High

    CVE-2019-18213

    Last Modified: 21 Nov 2024

    XML Language Server (aka lsp4xml) before 0.9.1, as used in Red Hat XML Language Support (aka vscode-xml) before 0.9.1 for Visual Studio and other products, allows XXE via a crafted XML document, with resultant SSRF (as well as SMB connection initiation that can lead to NetNTLM challenge/response capture for password cracking). This occurs in extensions/contentmodel/participants/diagnostics/LSPXMLParserConfiguration.java.

    Published: 23 Oct 2019
    6.5
    Medium

    CVE-2019-18212

    Last Modified: 21 Nov 2024

    XMLLanguageService.java in XML Language Server (aka lsp4xml) before 0.9.1, as used in Red Hat XML Language Support (aka vscode-xml) before 0.9.1 for Visual Studio and other products, allows a remote attacker to write to arbitrary files via Directory Traversal.

    Published: 23 Oct 2019
    7.5
    High

    CVE-2019-18382

    Last Modified: 21 Nov 2024

    An issue was discovered on AVStar PE204 3.10.70 IP camera devices. A denial of service can occur on open TCP port 23456. After a TELNET connection, no TCP ports are open.

    Published: 23 Oct 2019
    7.5
    High

    CVE-2019-18383

    Last Modified: 21 Nov 2024

    An issue was discovered on TerraMaster FS-210 4.0.19 devices. One can download backup files remotely from terramaster_TNAS-00E43A_config_backup.bin without permission.

    Published: 23 Oct 2019
    6.5
    Medium

    CVE-2019-18384

    Last Modified: 21 Nov 2024

    An issue was discovered on TerraMaster FS-210 4.0.19 devices. An authenticated remote non-administrative user can read unauthorized shared files, as demonstrated by the filename=*public*%25252Fadmin_OnlyRead.txt substring.

    Published: 23 Oct 2019
    7.5
    High

    CVE-2019-18385

    Last Modified: 21 Nov 2024

    An issue was discovered on TerraMaster FS-210 4.0.19 devices. An unauthenticated attacker can download log files via the include/makecvs.php?Event= substring.

    Published: 23 Oct 2019
    9.8
    Critical

    CVE-2019-8236

    Last Modified: 21 Nov 2024

    Creative Cloud Desktop Application version 4.6.1 and earlier versions have Security Bypass vulnerability. Successful exploitation could lead to Privilege Escalation in the context of the current user.

    Published: 23 Oct 2019
    7.5
    High

    CVE-2019-8238

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2019.010.20100 and earlier; 2019.010.20099 and earlier versions; 2017.011.30140 and earlier version; 2017.011.30138 and earlier version; 2015.006.30495 and earlier versions; 2015.006.30493 and earlier versions have a Path Traversal vulnerability. Successful exploitation could lead to Information Disclosure in the context of the current user.

    Published: 23 Oct 2019
    9.8
    Critical

    CVE-2019-8237

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have an insufficiently robust encryption vulnerability. Successful exploitation could lead to security feature bypass.

    Published: 23 Oct 2019
    7.5
    High

    CVE-2019-18371

    Last Modified: 21 Nov 2024

    An issue was discovered on Xiaomi Mi WiFi R3G devices before 2.28.23-stable. There is a directory traversal vulnerability to read arbitrary files via a misconfigured NGINX alias, as demonstrated by api-third-party/download/extdisks../etc/config/account. With this vulnerability, the attacker can bypass authentication.

    Published: 23 Oct 2019
    9.8
    Critical

    CVE-2019-18370

    Last Modified: 21 Nov 2024

    An issue was discovered on Xiaomi Mi WiFi R3G devices before 2.28.23-stable. The backup file is in tar.gz format. After uploading, the application uses the tar zxf command to decompress, so one can control the contents of the files in the decompressed directory. In addition, the application's sh script for testing upload and download speeds reads a URL list from /tmp/speedtest_urls.xml, and there is a command injection vulnerability, as demonstrated by api/xqnetdetect/netspeed.

    Published: 23 Oct 2019
    5.5
    Medium

    CVE-2019-12415

    Last Modified: 21 Nov 2024

    In Apache POI up to 4.1.0, when using the tool XSSFExportToXml to convert user-provided Microsoft Excel documents, a specially crafted document can allow an attacker to read files from the local filesystem or from internal network resources via XML External Entity (XXE) Processing.

    Published: 23 Oct 2019
    5.5
    Medium

    CVE-2019-18359

    Last Modified: 21 Nov 2024

    A buffer over-read was discovered in ReadMP3APETag in apetag.c in MP3Gain 1.6.2. The vulnerability causes an application crash, which leads to remote denial of service.

    Published: 23 Oct 2019
    6.5
    Medium

    CVE-2019-6144

    Last Modified: 21 Nov 2024

    This vulnerability allows a normal (non-admin) user to disable the Forcepoint One Endpoint (versions 19.04 through 19.08) and bypass DLP and Web protection.

    Published: 23 Oct 2019
    6.5
    Medium

    CVE-2019-3982

    Last Modified: 21 Nov 2024

    Nessus versions 8.6.0 and earlier were found to contain a Denial of Service vulnerability due to improper validation of specific imported scan types. An authenticated, remote attacker could potentially exploit this vulnerability to cause a Nessus scanner to become temporarily unresponsive.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2019-18357

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in Thycotic Secret Server before 10.7 (issue 2 of 2).

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2019-18356

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in Thycotic Secret Server before 10.7 (issue 1 of 2).

    Published: 23 Oct 2019
    9.8
    Critical

    CVE-2019-18355

    Last Modified: 21 Nov 2024

    An SSRF issue was discovered in the legacy Web launcher in Thycotic Secret Server before 10.7.

    Published: 23 Oct 2019
    6.5
    Medium

    CVE-2019-9597

    Last Modified: 21 Nov 2024

    Darktrace Enterprise Immune System before 3.1 allows CSRF via the /config endpoint.

    Published: 23 Oct 2019
    6.5
    Medium

    CVE-2019-9596

    Last Modified: 21 Nov 2024

    Darktrace Enterprise Immune System before 3.1 allows CSRF via the /whitelisteddomains endpoint.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2019-18350

    Last Modified: 21 Nov 2024

    In Ant Design Pro 4.0.0, reflected XSS in the user/login redirect GET parameter affects the authorization component, leading to execution of JavaScript code in the login after-action script.

    Published: 23 Oct 2019
    7.5
    High

    CVE-2014-2304

    Last Modified: 21 Nov 2024

    A vulnerability in version 0.90 of the Open Floodlight SDN controller software could result in a denial of service attack and crashing of the controller service. This effect is the result of a flaw in OpenFlow protocol processing, where specific malformed and mistimed FEATURES_REPLY messages cause the controller service to not delete switch and port data from its internal tracking structures.

    Published: 23 Oct 2019
    7.8
    High

    CVE-2019-17093

    Last Modified: 21 Nov 2024

    An issue was discovered in Avast antivirus before 19.8 and AVG antivirus before 19.8. A DLL Preloading vulnerability allows an attacker to implant %WINDIR%\system32\wbemcomn.dll, which is loaded into a protected-light process (PPL) and might bypass some of the self-defense mechanisms. This affects all components that use WMI, e.g., AVGSvc.exe 19.6.4546.0 and TuneupSmartScan.dll 19.1.884.0.

    Published: 23 Oct 2019
    7.5
    High

    CVE-2013-7333

    Last Modified: 21 Nov 2024

    A vulnerability in version 0.90 of the Open Floodlight SDN controller software could allow an attacker with access to the OpenFlow control network to selectively disconnect individual switches from the SDN controller, causing degradation and eventually denial of network access to all devices connected to the targeted switch.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2019-16977

    Last Modified: 21 Nov 2024

    In FusionPBX up to 4.5.7, the file app\extensions\extension_imports.php uses an unsanitized "query_string" variable coming from the URL, which is reflected in HTML, leading to XSS.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2019-17606

    Last Modified: 21 Nov 2024

    The Post editor functionality in the hexo-admin plugin versions 2.3.0 and earlier for Node.js is vulnerable to stored XSS via the content of a post.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9505

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) core component 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7 for WordPress has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9506

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Amazon S3 extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9504

    Last Modified: 21 Nov 2024

    The weeklynews theme before 2.2.9 for WordPress has XSS via the s parameter.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9507

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Attach Accounts to Orders extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9508

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Commissions extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9509

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Content Restriction extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9510

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Cross-sell Upsell extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9503

    Last Modified: 21 Nov 2024

    The Modern theme before 1.4.2 for WordPress has XSS via the genericons/example.html anchor identifier.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9511

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Conditional Success Redirects extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9512

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) CSV Manager extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9513

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Favorites extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9514

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Free Downloads extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9515

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) htaccess Editor extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9502

    Last Modified: 21 Nov 2024

    The Auberge theme before 1.4.5 for WordPress has XSS via the genericons/example.html anchor identifier.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9516

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Invoices extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9517

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Manual Purchases extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9518

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) PDF Invoices extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9519

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) PDF Stamper extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019
    6.1
    Medium

    CVE-2015-9520

    Last Modified: 7 Feb 2025

    The Easy Digital Downloads (EDD) Per Product Emails extension for WordPress, as used with EDD 1.8.x before 1.8.7, 1.9.x before 1.9.10, 2.0.x before 2.0.5, 2.1.x before 2.1.11, 2.2.x before 2.2.9, and 2.3.x before 2.3.7, has XSS because add_query_arg is misused.

    Published: 23 Oct 2019