CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2019-17186

    Last Modified: 21 Nov 2024

    /var/WEB-GUI/cgi-bin/telnet.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication remote code execution.

    Published: 8 Oct 2019
    5.3
    Medium

    CVE-2019-17105

    Last Modified: 21 Nov 2024

    The token generator in index.php in Centreon Web before 2.8.27 is predictable.

    Published: 8 Oct 2019
    7.5
    High

    CVE-2019-17187

    Last Modified: 21 Nov 2024

    /var/WEB-GUI/cgi-bin/downloadfile.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication Directory Traversal for reading arbitrary files.

    Published: 8 Oct 2019
    9.8
    Critical

    CVE-2018-21024

    Last Modified: 21 Nov 2024

    licenseUpload.php in Centreon Web before 2.8.27 allows attackers to upload arbitrary files via a POST request.

    Published: 8 Oct 2019
    7.5
    High

    CVE-2019-17359

    Last Modified: 12 May 2025

    The ASN.1 parser in Bouncy Castle Crypto (aka BC Java) 1.63 can trigger a large attempted memory allocation, and resultant OutOfMemoryError error, via crafted ASN.1 data. This is fixed in 1.64.

    Published: 8 Oct 2019
    9.8
    Critical

    CVE-2019-13336

    Last Modified: 21 Nov 2024

    The dbell Wi-Fi Smart Video Doorbell DB01-S Gen 1 allows remote attackers to launch commands with no authentication verification via TCP port 81, because the loginuse and loginpass parameters to openlock.cgi can have arbitrary values. NOTE: the vendor's position is that this product reached end of life in 2016.

    Published: 8 Oct 2019
    4.9
    Medium

    CVE-2019-17271

    Last Modified: 21 Nov 2024

    vBulletin 5.5.4 allows SQL Injection via the ajax/api/hook/getHookList or ajax/api/widget/getWidgetList where parameter.

    Published: 8 Oct 2019
    6.1
    Medium

    CVE-2019-17108

    Last Modified: 21 Nov 2024

    Local file inclusion in brokerPerformance.php in Centreon Web before 2.8.28 allows attackers to disclose information or perform a stored XSS attack on a user.

    Published: 8 Oct 2019
    8.8
    High

    CVE-2019-17107

    Last Modified: 21 Nov 2024

    minPlayCommand.php in Centreon Web before 2.8.27 allows authenticated attackers to execute arbitrary code via the command_hostaddress parameter. NOTE: some sources have listed CVE-2019-17017 for this, but that is incorrect.

    Published: 8 Oct 2019
    6.5
    Medium

    CVE-2019-17106

    Last Modified: 21 Nov 2024

    In Centreon Web through 2.8.29, disclosure of external components' passwords allows authenticated attackers to move laterally to external components.

    Published: 8 Oct 2019
    7.5
    High

    CVE-2019-17104

    Last Modified: 21 Nov 2024

    In Centreon VM through 19.04.3, the cookie configuration within the Apache HTTP Server does not protect against theft because the HTTPOnly flag is not set.

    Published: 8 Oct 2019
    9.8
    Critical

    CVE-2018-21025

    Last Modified: 21 Nov 2024

    In Centreon VM through 19.04.3, centreon-backup.pl allows attackers to become root via a crafted script, due to incorrect rights of sourced configuration files.

    Published: 8 Oct 2019
    8.8
    High

    CVE-2018-21023

    Last Modified: 21 Nov 2024

    getStats.php in Centreon Web before 2.8.28 allows authenticated attackers to execute arbitrary code via the ns_id parameter.

    Published: 8 Oct 2019
    8.8
    High

    CVE-2018-21022

    Last Modified: 21 Nov 2024

    makeXML_ListServices.php in Centreon Web before 2.8.28 allows attackers to perform SQL injections via the host_id parameter.

    Published: 8 Oct 2019
    7.5
    High

    CVE-2019-17352

    Last Modified: 21 Nov 2024

    In JFinal cos before 2019-08-13, as used in JFinal 4.4, there is a vulnerability that can bypass the isSafeFile() function: one can upload any type of file. For example, a .jsp file may be stored and almost immediately deleted, but this deletion step does not occur for certain exceptions.

    Published: 8 Oct 2019
    8.8
    High

    CVE-2018-21021

    Last Modified: 21 Nov 2024

    img_gantt.php in Centreon Web before 2.8.27 allows attackers to perform SQL injections via the host_id parameter.

    Published: 8 Oct 2019
    7.5
    High

    CVE-2018-21020

    Last Modified: 21 Nov 2024

    In very rare cases, a PHP type juggling vulnerability in centreonAuth.class.php in Centreon Web before 2.8.27 allows attackers to bypass authentication mechanisms in place.

    Published: 8 Oct 2019
    7.5
    High

    CVE-2019-16929

    Last Modified: 21 Nov 2024

    Auth0 auth0.net before 6.5.4 has Incorrect Access Control because IdentityTokenValidator can be accidentally used to validate untrusted ID tokens.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-16417

    Last Modified: 21 Nov 2024

    HRworks FLOW 3.36.9 allows XSS via the purpose of a travel-expense report.

    Published: 8 Oct 2019
    5.4
    Medium

    CVE-2019-16416

    Last Modified: 21 Nov 2024

    HRworks 3.36.9 allows XSS via the purpose of a travel-expense report.

    Published: 8 Oct 2019
    8.8
    High

    CVE-2019-14657

    Last Modified: 21 Nov 2024

    Yealink phones through 2019-08-04 have an issue with OpenVPN file upload. They execute tar as root to extract files, but do not validate the extraction directory. Creating a tar file with ../../../../ allows replacement of almost any file on a phone. This leads to password replacement and arbitrary code execution as root.

    Published: 8 Oct 2019
    8.8
    High

    CVE-2019-14656

    Last Modified: 21 Nov 2024

    Yealink phones through 2019-08-04 do not properly check user roles in POST requests. Consequently, the default User account (with a password of user) can make admin requests via HTTP.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17258

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows Data from a Faulting Address to control a subsequent Write Address starting at JPEG_LS+0x000000000000839c.

    Published: 8 Oct 2019
    5.5
    Medium

    CVE-2019-17257

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a Exception Handler Chain to be Corrupted starting at EXR!ReadEXR+0x000000000002af80.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17256

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at DPX!ReadDPX_W+0x0000000000001203.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17255

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at EXR!ReadEXR+0x0000000000010836.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17254

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows Data from a Faulting Address to control a subsequent Write Address starting at FORMATS!Read_BadPNG+0x0000000000000101.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17253

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at JPEG_LS+0x000000000000a6b8.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17252

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at FORMATS!Read_BadPNG+0x0000000000000115.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17251

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at FORMATS!GetPlugInInfo+0x0000000000007d43.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17250

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x00000000000042f5.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17249

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000d57b.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17248

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x00000000000025b6.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17247

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows Data from a Faulting Address to control a subsequent Write Address starting at JPEG_LS+0x0000000000007da8.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17246

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000258c.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17245

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x0000000000004359.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17244

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows Data from a Faulting Address to control Code Flow starting at JPEG_LS+0x0000000000001d8a.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17243

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows Data from a Faulting Address to control Code Flow starting at JPEG_LS+0x0000000000003155.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17242

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000966f.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17241

    Last Modified: 21 Nov 2024

    IrfanView 4.53 allows a User Mode Write AV starting at WSQ!ReadWSQ+0x000000000000d563.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17262

    Last Modified: 21 Nov 2024

    XnView Classic 2.49.1 allows a User Mode Write AV starting at Xwsq+0x0000000000001fc0.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17261

    Last Modified: 21 Nov 2024

    XnView Classic 2.49.1 allows a User Mode Write AV starting at Xwsq+0x0000000000001e51.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17260

    Last Modified: 21 Nov 2024

    MPC-HC through 1.7.13 allows a Read Access Violation on a Block Data Move starting at mpc_hc!memcpy+0x000000000000004e.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17259

    Last Modified: 21 Nov 2024

    KMPlayer 4.2.2.31 allows a User Mode Write AV starting at utils!src_new+0x000000000014d6ee.

    Published: 8 Oct 2019
    8.8
    High

    CVE-2019-17340

    Last Modified: 21 Nov 2024

    An issue was discovered in Xen through 4.11.x allowing x86 guest OS users to cause a denial of service or gain privileges because grant-table transfer requests are mishandled.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-17347

    Last Modified: 21 Nov 2024

    An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges because a guest can manipulate its virtualised %cr4 in a way that is incompatible with Linux (and possibly other guest kernels).

    Published: 8 Oct 2019
    7.5
    High

    CVE-2019-15226

    Last Modified: 21 Nov 2024

    Upon receiving each incoming request header data, Envoy will iterate over existing request headers to verify that the total size of the headers stays below a maximum limit. The implementation in versions 1.10.0 through 1.11.1 for HTTP/1.x traffic and all versions of Envoy for HTTP/2 traffic had O(n^2) performance characteristics. A remote attacker may craft a request that stays below the maximum request header size but consists of many thousands of small headers to consume CPU and result in a denial-of-service attack.

    Published: 8 Oct 2019
    9.1
    Critical

    CVE-2019-17134

    Last Modified: 21 Nov 2024

    Amphora Images in OpenStack Octavia >=0.10.0 <2.1.2, >=3.0.0 <3.2.0, >=4.0.0 <4.1.0 allows anyone with access to the management network to bypass client-certificate based authentication and retrieve information or issue configuration commands via simple HTTP requests to the Agent on port https/9443, because the cmd/agent.py gunicorn cert_reqs option is True but is supposed to be ssl.CERT_REQUIRED.

    Published: 8 Oct 2019
    7.8
    High

    CVE-2019-14846

    Last Modified: 21 Nov 2024

    In Ansible, all Ansible Engine versions up to ansible-engine 2.8.5, ansible-engine 2.7.13, ansible-engine 2.6.19, were logging at the DEBUG level which lead to a disclosure of credentials if a plugin used a library that logged credentials at the DEBUG level. This flaw does not affect Ansible modules, as those are executed in a separate process.

    Published: 8 Oct 2019
    6.5
    Medium

    CVE-2019-14856

    Last Modified: 21 Nov 2024

    ansible before versions 2.8.6, 2.7.14, 2.6.20 is vulnerable to a None

    Published: 8 Oct 2019