CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2019-15850

    Last Modified: 21 Nov 2024

    eQ-3 HomeMatic CCU3 firmware version 3.41.11 allows Remote Code Execution in the ReGa.runScript method. An authenticated attacker can easily execute code and compromise the system.

    Published: 17 Oct 2019
    7.3
    High

    CVE-2019-15849

    Last Modified: 21 Nov 2024

    eQ-3 HomeMatic CCU3 firmware 3.41.11 allows session fixation. An attacker can create session IDs and send them to the victim. After the victim logs in to the session, the attacker can use that session. The attacker could create SSH logins after a valid session and easily compromise the system.

    Published: 17 Oct 2019
    8.8
    High

    CVE-2019-14423

    Last Modified: 21 Nov 2024

    A Remote Code Execution (RCE) issue in the addon CUx-Daemon 1.11a of the eQ-3 Homematic CCU-Firmware 2.35.16 until 2.45.6 allows remote authenticated attackers to execute system commands as root remotely via a simple HTTP request.

    Published: 17 Oct 2019
    6.5
    Medium

    CVE-2019-14424

    Last Modified: 21 Nov 2024

    A Local File Inclusion (LFI) issue in the addon CUx-Daemon 1.11a of the eQ-3 Homematic CCU-Firmware 2.35.16 until 2.45.6 allows remote authenticated attackers to read sensitive files via a simple HTTP Request.

    Published: 17 Oct 2019
    8.8
    High

    CVE-2019-17676

    Last Modified: 21 Nov 2024

    app/system/admin/admin/index.class.php in MetInfo 7.0.0beta allows a CSRF attack to add a user account via a doSaveSetup action to admin/index.php, as demonstrated by an admin/?n=admin&c=index&a=doSaveSetup URI.

    Published: 17 Oct 2019
    5.3
    Medium

    CVE-2019-17671

    Last Modified: 21 Nov 2024

    In WordPress before 5.2.4, unauthenticated viewing of certain content is possible because the static query property is mishandled.

    Published: 17 Oct 2019
    6.1
    Medium

    CVE-2019-17672

    Last Modified: 21 Nov 2024

    WordPress before 5.2.4 is vulnerable to a stored XSS attack to inject JavaScript into STYLE elements.

    Published: 17 Oct 2019
    7.5
    High

    CVE-2019-17673

    Last Modified: 21 Nov 2024

    WordPress before 5.2.4 is vulnerable to poisoning of the cache of JSON GET requests because certain requests lack a Vary: Origin header.

    Published: 17 Oct 2019
    8.8
    High

    CVE-2019-17675

    Last Modified: 21 Nov 2024

    WordPress before 5.2.4 does not properly consider type confusion during validation of the referer in the admin pages, possibly leading to CSRF.

    Published: 17 Oct 2019
    5.4
    Medium

    CVE-2019-17674

    Last Modified: 21 Nov 2024

    WordPress before 5.2.4 is vulnerable to stored XSS (cross-site scripting) via the Customizer.

    Published: 17 Oct 2019
    9.8
    Critical

    CVE-2019-17669

    Last Modified: 21 Nov 2024

    WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability because URL validation does not consider the interpretation of a name as a series of hex characters.

    Published: 17 Oct 2019
    6.8
    Medium

    CVE-2019-17668

    Last Modified: 21 Nov 2024

    Samsung Galaxy S10 and Note10 devices allow unlock operations via unregistered fingerprints in certain situations involving a third-party screen protector.

    Published: 17 Oct 2019
    5.4
    Medium

    CVE-2019-17667

    Last Modified: 2 Jan 2026

    Comtech H8 Heights Remote Gateway 2.5.1 devices allow XSS and HTML injection via the Site Name (aka SiteName) field.

    Published: 17 Oct 2019
    8.8
    High

    CVE-2019-17666

    Last Modified: 21 Nov 2024

    rtl_p2p_noa_ie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel through 5.3.6 lacks a certain upper-bound check, leading to a buffer overflow.

    Published: 17 Oct 2019
    9.8
    Critical

    CVE-2019-17670

    Last Modified: 21 Nov 2024

    WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability because Windows paths are mishandled during certain validation of relative URLs.

    Published: 17 Oct 2019
    7.5
    High

    CVE-2019-17596

    Last Modified: 21 Nov 2024

    Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to process network traffic containing an invalid DSA public key. There are several attack scenarios, such as traffic from a client to a server that verifies client certificates.

    Published: 17 Oct 2019
    —
    Unknown

    CVE-2020-0040

    Last Modified: 18 Jan 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 17 Oct 2019
    —
    Unknown

    CVE-2020-0402

    Last Modified: 17 Jan 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 17 Oct 2019
    —
    Unknown

    CVE-2020-0436

    Last Modified: 18 Jan 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 17 Oct 2019
    7.5
    High

    CVE-2019-0205

    Last Modified: 21 Nov 2024

    In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with specific input data. Because the issue had already been partially fixed in version 0.11.0, depending on the installed version it affects only certain language bindings.

    Published: 17 Oct 2019
    7.5
    High

    CVE-2019-0210

    Last Modified: 21 Nov 2024

    In Apache Thrift 0.9.3 to 0.12.0, a server implemented in Go using TJSONProtocol or TSimpleJSONProtocol may panic when feed with invalid input data.

    Published: 17 Oct 2019
    6.1
    Medium

    CVE-2019-17611

    Last Modified: 21 Nov 2024

    HongCMS 3.0.0 has XSS via the install/index.php tableprefix parameter.

    Published: 16 Oct 2019
    6.1
    Medium

    CVE-2019-17610

    Last Modified: 21 Nov 2024

    HongCMS 3.0.0 has XSS via the install/index.php dbpassword parameter.

    Published: 16 Oct 2019
    6.1
    Medium

    CVE-2019-17609

    Last Modified: 21 Nov 2024

    HongCMS 3.0.0 has XSS via the install/index.php dbusername parameter.

    Published: 16 Oct 2019
    6.1
    Medium

    CVE-2019-17608

    Last Modified: 21 Nov 2024

    HongCMS 3.0.0 has XSS via the install/index.php dbname parameter.

    Published: 16 Oct 2019
    6.1
    Medium

    CVE-2019-17607

    Last Modified: 21 Nov 2024

    HongCMS 3.0.0 has XSS via the install/index.php servername parameter.

    Published: 16 Oct 2019
    7.8
    High

    CVE-2019-17664

    Last Modified: 21 Nov 2024

    NSA Ghidra through 9.0.4 uses a potentially untrusted search path. When executing Ghidra from a given path, the Java process working directory is set to this path. Then, when launching the Python interpreter via the "Ghidra Codebrowser > Window > Python" option, Ghidra will try to execute the cmd.exe program from this working directory.

    Published: 16 Oct 2019
    7.8
    High

    CVE-2019-17665

    Last Modified: 21 Nov 2024

    NSA Ghidra before 9.0.2 is vulnerable to DLL hijacking because it loads jansi.dll from the current working directory.

    Published: 16 Oct 2019
    9.8
    Critical

    CVE-2019-13116

    Last Modified: 21 Nov 2024

    The MuleSoft Mule Community Edition runtime engine before 3.8 allows remote attackers to execute arbitrary code because of Java Deserialization, related to Apache Commons Collections

    Published: 16 Oct 2019
    7.3
    High

    CVE-2019-16682

    Last Modified: 21 Nov 2024

    The url_redirect (aka URL redirect) extension through 1.2.1 for TYPO3 fails to properly sanitize user input and is susceptible to SQL Injection.

    Published: 16 Oct 2019
    4.3
    Medium

    CVE-2019-16698

    Last Modified: 21 Nov 2024

    The direct_mail (aka Direct Mail) extension through 5.2.2 for TYPO3 has a missing access check in the backend module, allowing a user (with restricted permissions to the fe_users table) to view and export data of frontend users who are subscribed to a newsletter.

    Published: 16 Oct 2019
    9.8
    Critical

    CVE-2019-16699

    Last Modified: 21 Nov 2024

    The sr_freecap (aka freeCap CAPTCHA) extension 2.4.5 and below and 2.5.2 and below for TYPO3 fails to sanitize user input, which allows execution of arbitrary Extbase actions, resulting in Remote Code Execution.

    Published: 16 Oct 2019
    9.8
    Critical

    CVE-2019-16700

    Last Modified: 21 Nov 2024

    The slub_events (aka SLUB: Event Registration) extension through 3.0.2 for TYPO3 allows uploading of arbitrary files to the webserver. For versions 1.2.2 and below, this results in Remote Code Execution. In versions later than 1.2.2, this can result in Denial of Service, since the web space can be filled up with arbitrary files.

    Published: 16 Oct 2019
    4.4
    Medium

    CVE-2019-15962

    Last Modified: 21 Nov 2024

    A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to write files to the /root directory of an affected device. The vulnerability is due to improper permission assignment. An attacker could exploit this vulnerability by logging in as the remotesupport user and writing files to the /root directory of an affected device.

    Published: 16 Oct 2019
    5.3
    Medium

    CVE-2019-15282

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an unauthenticated, remote attacker read tcpdump files generated on an affected device. The vulnerability is due an issue in the authentication logic of the web-based management interface. An attacker could exploit this vulnerability by sending a crafted request to the web interface. A successful exploit could allow the attacker to read a tcpdump file generated with a particular naming scheme.

    Published: 16 Oct 2019
    4.8
    Medium

    CVE-2019-15281

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The attacker must have valid administrator credentials. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of the affected software. An attacker could exploit this vulnerability by injecting malicious code into a troubleshooting file. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.

    Published: 16 Oct 2019
    4.8
    Medium

    CVE-2019-15280

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management interface. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by inserting malicious code in certain sections of the interface that are visible to other users. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or access sensitive, browser-based information. An attacker would need valid administrator credentials to exploit this vulnerability.

    Published: 16 Oct 2019
    6.7
    Medium

    CVE-2019-15277

    Last Modified: 21 Nov 2024

    A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to execute code with root privileges. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by authenticating as the remote support user and sending malicious traffic to a listener who is internal to the device. A successful exploit could allow the attacker to execute commands with root privileges.

    Published: 16 Oct 2019
    6.7
    Medium

    CVE-2019-15275

    Last Modified: 21 Nov 2024

    A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to execute arbitrary commands with root privileges. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by authenticating as the remote support user and submitting malicious input to a specific command. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system (OS) with root privileges.

    Published: 16 Oct 2019
    6.7
    Medium

    CVE-2019-15274

    Last Modified: 21 Nov 2024

    A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to perform command injections. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by authenticating as an administrative level user within the restricted shell and submitting malicious input to a specific command. A successful exploit could allow the attacker to execute previously staged code from the underlying filesystem.

    Published: 16 Oct 2019
    4.4
    Medium

    CVE-2019-15273

    Last Modified: 21 Nov 2024

    Multiple vulnerabilities in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to overwrite arbitrary files. The vulnerabilities are due to insufficient permission enforcement. An attacker could exploit these vulnerabilities by authenticating as the remote support user and submitting malicious input to specific commands. A successful exploit could allow the attacker to overwrite arbitrary files on the underlying filesystem. The attacker has no control over the contents of the data written to the file. Overwriting a critical file could cause the device to crash, resulting in a denial of service condition (DoS).

    Published: 16 Oct 2019
    5.4
    Medium

    CVE-2019-15270

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or access sensitive, browser-based information.

    Published: 16 Oct 2019
    4.8
    Medium

    CVE-2019-15269

    Last Modified: 21 Nov 2024

    Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit these vulnerabilities by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or access sensitive, browser-based information.

    Published: 16 Oct 2019
    4.8
    Medium

    CVE-2019-15268

    Last Modified: 21 Nov 2024

    Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit these vulnerabilities by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or access sensitive, browser-based information.

    Published: 16 Oct 2019
    4.4
    Medium

    CVE-2019-15266

    Last Modified: 21 Nov 2024

    A vulnerability in the CLI of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, local attacker to view system files that should be restricted. This vulnerability is due to improper sanitization of user-supplied input in command-line parameters that describe filenames. An attacker could exploit this vulnerability by using directory traversal techniques to submit a path to a desired file location. A successful exploit could allow the attacker to view system files that may contain sensitive information.

    Published: 16 Oct 2019
    6.5
    Medium

    CVE-2019-15265

    Last Modified: 21 Nov 2024

    A vulnerability in the bridge protocol data unit (BPDU) forwarding functionality of Cisco Aironet Access Points (APs) could allow an unauthenticated, adjacent attacker to cause an AP port to go into an error disabled state. The vulnerability occurs because BPDUs received from specific wireless clients are forwarded incorrectly. An attacker could exploit this vulnerability on the wireless network by sending a steady stream of crafted BPDU frames. A successful exploit could allow the attacker to cause a limited denial of service (DoS) attack because an AP port could go offline.

    Published: 16 Oct 2019
    6.5
    Medium

    CVE-2019-15264

    Last Modified: 21 Nov 2024

    A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation of Cisco Aironet and Catalyst 9100 Access Points (APs) could allow an unauthenticated, adjacent attacker to cause an affected device to restart unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due to improper resource management during CAPWAP message processing. An attacker could exploit this vulnerability by sending a high volume of legitimate wireless management frames within a short time to an affected device. A successful exploit could allow the attacker to cause a device to restart unexpectedly, resulting in a DoS condition for clients associated with the AP.

    Published: 16 Oct 2019
    7.5
    High

    CVE-2019-15262

    Last Modified: 21 Nov 2024

    A vulnerability in the Secure Shell (SSH) session management for Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability exists because the SSH process is not properly deleted when an SSH connection to the device is disconnected. An attacker could exploit this vulnerability by repeatedly opening SSH connections to an affected device. A successful exploit could allow the attacker to exhaust system resources by initiating multiple SSH connections to the device that are not effectively terminated, which could result in a DoS condition.

    Published: 16 Oct 2019
    8.6
    High

    CVE-2019-15261

    Last Modified: 21 Nov 2024

    A vulnerability in the Point-to-Point Tunneling Protocol (PPTP) VPN packet processing functionality in Cisco Aironet Access Points (APs) could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient validation of Generic Routing Encapsulation (GRE) frames that pass through the data plane of an affected AP. An attacker could exploit this vulnerability by associating to a vulnerable AP, initiating a PPTP VPN connection to an arbitrary PPTP VPN server, and sending a malicious GRE frame through the data plane of the AP. A successful exploit could allow the attacker to cause an internal process of the targeted AP to crash, which in turn would cause the AP to reload. The AP reload would cause a DoS condition for clients that are associated with the AP.

    Published: 16 Oct 2019
    9.8
    Critical

    CVE-2019-15260

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco Aironet Access Points (APs) Software could allow an unauthenticated, remote attacker to gain unauthorized access to a targeted device with elevated privileges. The vulnerability is due to insufficient access control for certain URLs on an affected device. An attacker could exploit this vulnerability by requesting specific URLs from an affected AP. An exploit could allow the attacker to gain access to the device with elevated privileges. While the attacker would not be granted access to all possible configuration options, it could allow the attacker to view sensitive information and replace some options with values of their choosing, including wireless network configuration. It would also allow the attacker to disable the AP, creating a denial of service (DoS) condition for clients associated with the AP.

    Published: 16 Oct 2019