CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2019-17380

    Last Modified: 21 Nov 2024

    cPanel before 82.0.15 allows self XSS in the WHM Update Preferences interface (SEC-528).

    Published: 9 Oct 2019
    6.1
    Medium

    CVE-2019-17379

    Last Modified: 21 Nov 2024

    cPanel before 82.0.15 allows self stored XSS in the WHM SSL Storage Manager interface (SEC-527).

    Published: 9 Oct 2019
    6.1
    Medium

    CVE-2019-17378

    Last Modified: 21 Nov 2024

    cPanel before 82.0.15 allows self XSS in the SSL Key Delete interface (SEC-526).

    Published: 9 Oct 2019
    6.1
    Medium

    CVE-2019-17377

    Last Modified: 21 Nov 2024

    cPanel before 82.0.15 allows self XSS in LiveAPI example scripts (SEC-524).

    Published: 9 Oct 2019
    6.1
    Medium

    CVE-2019-17376

    Last Modified: 21 Nov 2024

    cPanel before 82.0.15 allows self XSS in the SSL Certificate Upload interface (SEC-521).

    Published: 9 Oct 2019
    8.8
    High

    CVE-2019-17375

    Last Modified: 21 Nov 2024

    cPanel before 82.0.15 allows API token credentials to persist after an account has been renamed or terminated (SEC-517).

    Published: 9 Oct 2019
    7.5
    High

    CVE-2019-17128

    Last Modified: 21 Nov 2024

    Netreo OmniCenter through 12.1.1 allows unauthenticated SQL Injection (Boolean Based Blind) in the redirect parameters and parameter name of the login page through a GET request. The injection allows an attacker to read sensitive information from the database used by the application.

    Published: 9 Oct 2019
    9.8
    Critical

    CVE-2019-15859

    Last Modified: 21 Nov 2024

    Password disclosure in the web interface on socomec DIRIS A-40 devices before 48250501 allows a remote attacker to get full access to a device via the /password.jsn URI.

    Published: 9 Oct 2019
    6.8
    Medium

    CVE-2019-14808

    Last Modified: 21 Nov 2024

    An issue was discovered in the RENPHO application 3.0.0 for iOS. It transmits JSON data unencrypted to a server without an integrity check, if a user changes personal data in his profile tab (e.g., exposure of his birthday) or logs into his account (i.e., exposure of credentials).

    Published: 9 Oct 2019
    7.8
    High

    CVE-2019-4558

    Last Modified: 21 Nov 2024

    A security vulnerability has been identified in all levels of IBM Spectrum Scale V5.0.0.0 through V5.0.3.2 and IBM Spectrum Scale V4.2.0.0 through V4.2.3.17 that could allow a local attacker to obtain root privilege by injecting parameters into setuid files.

    Published: 9 Oct 2019
    4.3
    Medium

    CVE-2019-4512

    Last Modified: 21 Nov 2024

    IBM Maximo Asset Management 7.6.1.1 generates an error message that includes sensitive information that could be used in further attacks against the system. IBM X-Force ID: 164554.

    Published: 9 Oct 2019
    4.6
    Medium

    CVE-2019-11341

    Last Modified: 21 Nov 2024

    On certain Samsung P(9.0) phones, an attacker with physical access can start a TCP Dump capture without the user's knowledge. This feature of the Service Mode application is available after entering the *#9900# check code, but is protected by an OTP password. However, this password is created locally and (due to mishandling of cryptography) can be obtained easily by reversing the password creation logic.

    Published: 9 Oct 2019
    9.8
    Critical

    CVE-2019-17383

    Last Modified: 21 Nov 2024

    The netaddr gem before 2.0.4 for Ruby has misconfigured file permissions, such that a gem install may result in 0777 permissions in the target filesystem.

    Published: 9 Oct 2019
    4.6
    Medium

    CVE-2019-3653

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in Configuration tool in McAfee Endpoint Security (ENS) Prior to 10.6.1 October 2019 Update allows local user to gain access to security configuration via unauthorized use of the configuration tool.

    Published: 9 Oct 2019
    5
    Medium

    CVE-2019-3652

    Last Modified: 21 Nov 2024

    Code Injection vulnerability in EPSetup.exe in McAfee Endpoint Security (ENS) Prior to 10.6.1 October 2019 Update allows local user to get their malicious code installed by the ENS installer via code injection into EPSetup.exe by an attacker with access to the installer.

    Published: 9 Oct 2019
    6.3
    Medium

    CVE-2019-11212

    Last Modified: 21 Nov 2024

    The MDM server component of TIBCO Software Inc's TIBCO MDM contains multiple vulnerabilities that theoretically allow an authenticated user with specific roles to perform cross-site scripting (XSS) attacks. This issue affects TIBCO Software Inc.'s TIBCO MDM version 9.0.1 and prior versions; version 9.1.0.

    Published: 9 Oct 2019
    9.8
    Critical

    CVE-2019-17373

    Last Modified: 21 Nov 2024

    Certain NETGEAR devices allow unauthenticated access to critical .cgi and .htm pages via a substring ending with .jpg, such as by appending ?x=1.jpg to a URL. This affects MBR1515, MBR1516, DGN2200, DGN2200M, DGND3700, WNR2000v2, WNDR3300, WNDR3400, WNR3500, and WNR834Bv2.

    Published: 9 Oct 2019
    8.1
    High

    CVE-2019-17372

    Last Modified: 21 Nov 2024

    Certain NETGEAR devices allow remote attackers to disable all authentication requirements by visiting genieDisableLanChanged.cgi. The attacker can then, for example, visit MNU_accessPassword_recovered.html to obtain a valid new admin password. This affects AC1450, D8500, DC112A, JNDR3000, LG2200D, R4500, R6200, R6200V2, R6250, R6300, R6300v2, R6400, R6700, R6900P, R6900, R7000P, R7000, R7100LG, R7300, R7900, R8000, R8300, R8500, WGR614v10, WN2500RPv2, WNDR3400v2, WNDR3700v3, WNDR4000, WNDR4500, WNDR4500v2, WNR1000, WNR1000v3, WNR3500L, and WNR3500L.

    Published: 9 Oct 2019
    9.4
    Critical

    CVE-2019-17354

    Last Modified: 21 Nov 2024

    wan.htm page on Zyxel NBG-418N v2 with firmware version V1.00(AARP.9)C0 can be accessed directly without authentication, which can lead to disclosure of information about the WAN, and can also be leveraged by an attacker to modify data fields of the page.

    Published: 9 Oct 2019
    8.2
    High

    CVE-2019-17353

    Last Modified: 21 Nov 2024

    An issue discovered on D-Link DIR-615 devices with firmware version 20.05 and 20.07. wan.htm can be accessed directly without authentication, which can lead to disclosure of information about the WAN, and can also be leveraged by an attacker to modify the data fields of the page.

    Published: 9 Oct 2019
    8
    High

    CVE-2019-15719

    Last Modified: 21 Nov 2024

    Altair PBS Professional through 19.1.2 allows Privilege Escalation because an attacker can send a message directly to pbs_mom, which fails to properly authenticate the message. This results in code execution as an arbitrary user.

    Published: 9 Oct 2019
    8.8
    High

    CVE-2019-13051

    Last Modified: 21 Nov 2024

    Pi-Hole 4.3 allows Command Injection.

    Published: 9 Oct 2019
    7.2
    High

    CVE-2019-17370

    Last Modified: 21 Nov 2024

    OTCMS v3.85 allows arbitrary PHP Code Execution because admin/sysCheckFile_deal.php blocks "into outfile" in a SELECT statement, but does not block the "into/**/outfile" manipulation. Therefore, the attacker can create a .php file.

    Published: 9 Oct 2019
    6.5
    Medium

    CVE-2019-17369

    Last Modified: 21 Nov 2024

    OTCMS v3.85 has CSRF in the admin/member_deal.php Admin Panel page, leading to creation of a new management group account, as demonstrated by superadmin.

    Published: 9 Oct 2019
    6.1
    Medium

    CVE-2019-17368

    Last Modified: 21 Nov 2024

    S-CMS v1.5 has XSS in tpl.php via the member/member_login.php from parameter.

    Published: 9 Oct 2019
    9.8
    Critical

    CVE-2019-14842

    Last Modified: 21 Nov 2024

    Structured reply is a feature of the newstyle NBD protocol allowing the server to send a reply in chunks. A bounds check which was supposed to test for chunk offsets smaller than the beginning of the request did not work because of signed/unsigned confusion. If one of these chunks contains a negative offset then data under control of the server is written to memory before the read buffer supplied by the client. If the read buffer is located on the stack then this allows the stack return address from nbd_pread() to be trivially modified, allowing arbitrary code execution under the control of the server. If the buffer is located on the heap then other memory objects before the buffer can be overwritten, which again would usually lead to arbitrary code execution.

    Published: 9 Oct 2019
    6.5
    Medium

    CVE-2019-12067

    Last Modified: 21 Nov 2024

    The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NULL dereference) when the command header 'ad->cur_cmd' is null.

    Published: 9 Oct 2019
    3.3
    Low

    CVE-2020-27764

    Last Modified: 21 Nov 2024

    In /MagickCore/statistic.c, there are several areas in ApplyEvaluateOperator() where a size_t cast should have been a ssize_t cast, which causes out-of-range values under some circumstances when a crafted input file is processed by ImageMagick. Red Hat Product Security marked this as Low severity because although it could potentially lead to an impact to application availability, no specific impact was shown in this case. This flaw affects ImageMagick versions prior to 6.9.10-69.

    Published: 9 Oct 2019
    3.3
    Low

    CVE-2020-27775

    Last Modified: 21 Nov 2024

    A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type unsigned char. This would most likely lead to an impact to application availability, but could potentially cause other problems related to undefined behavior. This flaw affects ImageMagick versions prior to 7.0.9-0.

    Published: 9 Oct 2019
    9.1
    Critical

    CVE-2019-17382

    Last Modified: 21 Nov 2024

    An issue was discovered in zabbix.php?action=dashboard.view&dashboardid=1 in Zabbix through 4.4. An attacker can bypass the login page and access the dashboard page, and then create a Dashboard, Report, Screen, or Map without any Username/Password (i.e., anonymously). All created elements (Dashboard/Report/Screen/Map) are accessible by other users and by an admin.

    Published: 9 Oct 2019
    6.1
    Medium

    CVE-2019-19528

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.3.7, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/iowarrior.c driver, aka CID-edc4746f253d.

    Published: 9 Oct 2019
    7.8
    High

    CVE-2020-27766

    Last Modified: 21 Nov 2024

    A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type `unsigned long`. This would most likely lead to an impact to application availability, but could potentially cause other problems related to undefined behavior. This flaw affects ImageMagick versions prior to 7.0.8-69.

    Published: 9 Oct 2019
    3.3
    Low

    CVE-2020-27776

    Last Modified: 21 Nov 2024

    A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type unsigned long. This would most likely lead to an impact to application availability, but could potentially cause other problems related to undefined behavior. This flaw affects ImageMagick versions prior to 7.0.9-0.

    Published: 9 Oct 2019
    9.8
    Critical

    CVE-2019-3980

    Last Modified: 21 Nov 2024

    The Solarwinds Dameware Mini Remote Client agent v12.1.0.89 supports smart card authentication which can allow a user to upload an executable to be executed on the DWRCS.exe host. An unauthenticated, remote attacker can request smart card login and upload and execute an arbitrary executable run under the Local System account.

    Published: 8 Oct 2019
    4.9
    Medium

    CVE-2019-0380

    Last Modified: 21 Nov 2024

    Under certain conditions, SAP Landscape Management enterprise edition, before version 3.0, allows custom secure parameters’ default values to be part of the application logs leading to Information Disclosure.

    Published: 8 Oct 2019
    5.5
    Medium

    CVE-2019-0381

    Last Modified: 21 Nov 2024

    A binary planting in SAP SQL Anywhere, before version 17.0, SAP IQ, before version 16.1, and SAP Dynamic Tier, before versions 1.0 and 2.0, can result in the inadvertent access of files located in directories outside of the paths specified by the user.

    Published: 8 Oct 2019
    5.3
    Medium

    CVE-2019-0379

    Last Modified: 21 Nov 2024

    SAP Process Integration, business-to-business add-on, versions 1.0, 2.0, does not perform authentication check properly when the default security provider is changed to BouncyCastle (BC), leading to Missing Authentication Check

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-0378

    Last Modified: 21 Nov 2024

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before version 4.2, does not sufficiently encode user-controlled inputs and allows an attacker to store malicious scripts in the file name of the background image resulting in Stored Cross-Site Scripting.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-0377

    Last Modified: 21 Nov 2024

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2, does not sufficiently encode user-controlled inputs and allows an attacker to store malicious scripts in the input controls, resulting in Stored Cross-Site Scripting.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-0376

    Last Modified: 21 Nov 2024

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows an attacker to save malicious scripts in the publication name, which can be executed later by the victim, resulting in Stored Cross-Site Scripting.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-0375

    Last Modified: 21 Nov 2024

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows execution of scripts in the export dialog box of the report name resulting in reflected Cross-Site Scripting.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-0374

    Last Modified: 21 Nov 2024

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface), before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs and allows execution of scripts in the chart title resulting in reflected Cross-Site Scripting

    Published: 8 Oct 2019
    6.5
    Medium

    CVE-2019-0370

    Last Modified: 21 Nov 2024

    Due to missing input validation, SAP Financial Consolidation, before versions 10.0 and 10.1, enables an attacker to use crafted input to interfere with the structure of the surrounding query leading to XPath Injection.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-0369

    Last Modified: 21 Nov 2024

    SAP Financial Consolidation, before versions 10.0 and 10.1, does not sufficiently encode user-controlled inputs, which allows an attacker to execute scripts by uploading files containing malicious scripts, leading to reflected cross site scripting vulnerability.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-0368

    Last Modified: 21 Nov 2024

    SAP Customer Relationship Management (Email Management), versions: S4CRM before 1.0 and 2.0, BBPCRM before 7.0, 7.01, 7.02, 7.12, 7.13 and 7.14, does not sufficiently encode user-controlled inputs within the mail client resulting in Cross-Site Scripting vulnerability.

    Published: 8 Oct 2019
    4.3
    Medium

    CVE-2019-0367

    Last Modified: 21 Nov 2024

    SAP NetWeaver Process Integration (B2B Toolkit), before versions 1.0 and 2.0, does not perform necessary authorization checks for an authenticated user, allowing the import of B2B table content that leads to Missing Authorization Check.

    Published: 8 Oct 2019
    9.8
    Critical

    CVE-2019-10757

    Last Modified: 21 Nov 2024

    knex.js versions before 0.19.5 are vulnerable to SQL Injection attack. Identifiers are escaped incorrectly as part of the MSSQL dialect, allowing attackers to craft a malicious query to the host DB.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-10756

    Last Modified: 21 Nov 2024

    It is possible to inject JavaScript within node-red-dashboard versions prior to version 2.17.0 due to the ui_notification node accepting raw HTML by default.

    Published: 8 Oct 2019
    4.3
    Medium

    CVE-2019-10963

    Last Modified: 21 Nov 2024

    Moxa EDR 810, all versions 5.1 and prior, allows an unauthenticated attacker to be able to retrieve some log files from the device, which may allow sensitive information disclosure. Log files must have previously been exported by a legitimate user.

    Published: 8 Oct 2019
    7.2
    High

    CVE-2019-10969

    Last Modified: 21 Nov 2024

    Moxa EDR 810, all versions 5.1 and prior, allows an authenticated attacker to abuse the ping feature to execute unauthorized commands on the router, which may allow an attacker to perform remote code execution.

    Published: 8 Oct 2019