CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2019-4115

    Last Modified: 21 Nov 2024

    IBM WebSphere eXtreme Scale 8.6 Admin API is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 158113.

    Published: 30 Sept 2019
    3.3
    Low

    CVE-2019-4112

    Last Modified: 21 Nov 2024

    IBM WebSphere eXtreme Scale 8.6 Admin Console allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 158105.

    Published: 30 Sept 2019
    6.1
    Medium

    CVE-2019-4109

    Last Modified: 21 Nov 2024

    IBM WebSphere eXtreme Scale 8.6 Admin Console could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 158102.

    Published: 30 Sept 2019
    4.8
    Medium

    CVE-2019-4106

    Last Modified: 21 Nov 2024

    IBM WebSphere eXtreme Scale 8.6 Admin Console is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 158099.

    Published: 30 Sept 2019
    4.8
    Medium

    CVE-2019-16683

    Last Modified: 21 Nov 2024

    An issue was discovered in the image-manager in Xoops 2.5.10. When the breadcrumb showing the category name is hovered over while editing any image, a JavaScript payload executes.

    Published: 30 Sept 2019
    10
    Critical

    CVE-2019-16932

    Last Modified: 21 Nov 2024

    A blind SSRF vulnerability exists in the Visualizer plugin before 3.3.1 for WordPress via wp-json/visualizer/v1/upload-data.

    Published: 30 Sept 2019
    7.2
    High

    CVE-2019-17046

    Last Modified: 21 Nov 2024

    Ilch 2.1.22 allows remote code execution because php is listed under "Allowed files" on the index.php/admin/media/settings/index page.

    Published: 30 Sept 2019
    4.8
    Medium

    CVE-2019-17045

    Last Modified: 21 Nov 2024

    Ilch 2.1.22 allows stored XSS via the title, text, or email id to the Jobs Tab.

    Published: 30 Sept 2019
    —
    Unknown

    CVE-2019-16916

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue for the designated product. Notes: none

    Published: 30 Sept 2019
    7.2
    High

    CVE-2019-16997

    Last Modified: 21 Nov 2024

    In Metinfo 7.0.0beta, a SQL Injection was discovered in app/system/language/admin/language_general.class.php via the admin/?n=language&c=language_general&a=doExportPack appno parameter.

    Published: 30 Sept 2019
    7.2
    High

    CVE-2019-16996

    Last Modified: 21 Nov 2024

    In Metinfo 7.0.0beta, a SQL Injection was discovered in app/system/product/admin/product_admin.class.php via the admin/?n=product&c=product_admin&a=dopara&app_type=shop id parameter.

    Published: 30 Sept 2019
    7.5
    High

    CVE-2017-18636

    Last Modified: 21 Nov 2024

    CDG through 2017-01-01 allows downloadDocument.jsp?command=download&pathAndName= directory traversal.

    Published: 30 Sept 2019
    9.8
    Critical

    CVE-2019-16999

    Last Modified: 21 Nov 2024

    CloudBoot through 2019-03-08 allows SQL Injection via a crafted Status field in JSON data to the api/osinstall/v1/device/getNumByStatus URI.

    Published: 30 Sept 2019
    8.8
    High

    CVE-2019-16745

    Last Modified: 21 Nov 2024

    eBrigade before 5.0 has evenement_choice.php chxCal SQL Injection.

    Published: 30 Sept 2019
    8.8
    High

    CVE-2019-16744

    Last Modified: 21 Nov 2024

    eBrigade before 5.0 has evenements.php cid SQL Injection.

    Published: 30 Sept 2019
    6.1
    Medium

    CVE-2019-14752

    Last Modified: 21 Nov 2024

    SuiteCRM 7.10.x and 7.11.x before 7.10.20 and 7.11.8 has XSS.

    Published: 30 Sept 2019
    6.1
    Medium

    CVE-2019-16414

    Last Modified: 21 Nov 2024

    A DOM based XSS in GFI Kerio Control v9.3.0 allows embedding of malicious code and manipulating the login page to send back a victim's cleartext credentials to an attacker via a login/?reason=failure&NTLM= URI.

    Published: 30 Sept 2019
    8.8
    High

    CVE-2019-16743

    Last Modified: 21 Nov 2024

    eBrigade before 5.0 has evenement_ical.php evenement SQL Injection.

    Published: 30 Sept 2019
    9.8
    Critical

    CVE-2019-16676

    Last Modified: 21 Nov 2024

    Plataformatec Simple Form has Incorrect Access Control in file_method? in lib/simple_form/form_builder.rb, because a user-supplied string is invoked as a method call.

    Published: 30 Sept 2019
    8.8
    High

    CVE-2019-16993

    Last Modified: 21 Nov 2024

    In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper verification of a CSRF token on the BBCode page in the Administration Control Panel. An actual CSRF attack is possible if an attacker also manages to retrieve the session id of a reauthenticated administrator prior to targeting them.

    Published: 30 Sept 2019
    4.6
    Medium

    CVE-2019-16760

    Last Modified: 21 Nov 2024

    Cargo prior to Rust 1.26.0 may download the wrong dependency if your package.toml file uses the `package` configuration key. Usage of the `package` key to rename dependencies in `Cargo.toml` is ignored in Rust 1.25.0 and prior. When Rust 1.25.0 and prior is used Cargo may download the wrong dependency, which could be squatted on crates.io to be a malicious package. This not only affects manifests that you write locally yourself, but also manifests published to crates.io. Rust 1.0.0 through Rust 1.25.0 is affected by this advisory because Cargo will ignore the `package` key in manifests. Rust 1.26.0 through Rust 1.30.0 are not affected and typically will emit an error because the `package` key is unstable. Rust 1.31.0 and after are not affected because Cargo understands the `package` key. Users of the affected versions are strongly encouraged to update their compiler to the latest available one. Preventing this issue from happening requires updating your compiler to be either Rust 1.26.0 or newer. There will be no point release for Rust versions prior to 1.26.0. Users of Rust 1.19.0 to Rust 1.25.0 can instead apply linked patches to mitigate the issue.

    Published: 30 Sept 2019
    9.8
    Critical

    CVE-2019-10212

    Last Modified: 21 Nov 2024

    A flaw was found in, all under 2.0.20, in the Undertow DEBUG log for io.undertow.request.security. If enabled, an attacker could abuse this flaw to obtain the user's credentials from the log files.

    Published: 30 Sept 2019
    7.5
    High

    CVE-2019-16995

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.0.3, a memory leak exits in hsr_dev_finalize() in net/hsr/hsr_device.c if hsr_add_port fails to add a port, which may cause denial of service, aka CID-6caabe7f197d.

    Published: 30 Sept 2019
    9.8
    Critical

    CVE-2019-17041

    Last Modified: 21 Nov 2024

    An issue was discovered in Rsyslog v8.1908.0. contrib/pmaixforwardedfrom/pmaixforwardedfrom.c has a heap overflow in the parser for AIX log messages. The parser tries to locate a log message delimiter (in this case, a space or a colon) but fails to account for strings that do not satisfy this constraint. If the string does not match, then the variable lenMsg will reach the value zero and will skip the sanity check that detects invalid log messages. The message will then be considered valid, and the parser will eat up the nonexistent colon delimiter. In doing so, it will decrement lenMsg, a signed integer, whose value was zero and now becomes minus one. The following step in the parser is to shift left the contents of the message. To do this, it will call memmove with the right pointers to the target and destination strings, but the lenMsg will now be interpreted as a huge value, causing a heap overflow.

    Published: 30 Sept 2019
    4.7
    Medium

    CVE-2019-16994

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.0, a memory leak exists in sit_init_net() in net/ipv6/sit.c when register_netdev() fails to register sitn->fb_tunnel_dev, which may cause denial of service, aka CID-07f12b26e21a.

    Published: 30 Sept 2019
    7.5
    High

    CVE-2019-20421

    Last Modified: 21 Nov 2024

    In Jp2Image::readMetadata() in jp2image.cpp in Exiv2 0.27.2, an input file can result in an infinite loop and hang, with high CPU consumption. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted file.

    Published: 30 Sept 2019
    7.8
    High

    CVE-2018-16301

    Last Modified: 21 Nov 2024

    The command-line argument parser in tcpdump before 4.99.0 has a buffer overflow in tcpdump.c:read_infile(). To trigger this vulnerability the attacker needs to create a 4GB file on the local filesystem and to specify the file name as the value of the -F command-line argument of tcpdump.

    Published: 30 Sept 2019
    9.8
    Critical

    CVE-2019-10202

    Last Modified: 21 Nov 2024

    A series of deserialization vulnerabilities have been discovered in Codehaus 1.9.x implemented in EAP 7. This CVE fixes CVE-2017-17485, CVE-2017-7525, CVE-2017-15095, CVE-2018-5968, CVE-2018-7489, CVE-2018-1000873, CVE-2019-12086 reported for FasterXML jackson-databind by implementing a whitelist approach that will mitigate these vulnerabilities and future ones alike.

    Published: 30 Sept 2019
    7.5
    High

    CVE-2019-16992

    Last Modified: 21 Nov 2024

    The Keybase app 2.13.2 for iOS provides potentially insufficient notice that it is employing a user's private key to sign a certain cryptocurrency attestation (that an address at keybase.io can be used for Stellar payments to the user), which might be incompatible with a user's personal position on the semantics of an attestation.

    Published: 29 Sept 2019
    5.3
    Medium

    CVE-2019-16930

    Last Modified: 21 Nov 2024

    Zcashd in Zcash before 2.0.7-3 allows discovery of the IP address of a full node that owns a shielded address, related to mishandling of exceptions during deserialization of note plaintexts. This affects anyone who has disclosed their zaddr to a third party.

    Published: 28 Sept 2019
    9.8
    Critical

    CVE-2019-16941

    Last Modified: 21 Nov 2024

    NSA Ghidra through 9.0.4, when experimental mode is enabled, allows arbitrary code execution if the Read XML Files feature of Bit Patterns Explorer is used with a modified XML document. This occurs in Features/BytePatterns/src/main/java/ghidra/bitpatterns/info/FileBitPatternInfoReader.java. An attack could start with an XML document that was originally created by DumpFunctionPatternInfoScript but then directly modified by an attacker (for example, to make a java.lang.Runtime.exec call).

    Published: 28 Sept 2019
    7.5
    High

    CVE-2019-11253

    Last Modified: 24 Feb 2026

    Improper input validation in the Kubernetes API server in versions v1.0-1.12 and versions prior to v1.13.12, v1.14.8, v1.15.5, and v1.16.2 allows authorized users to send malicious YAML or JSON payloads, causing the API server to consume excessive CPU or memory, potentially crashing and becoming unavailable. Prior to v1.14.0, default RBAC policy authorized anonymous users to submit requests that could trigger this vulnerability. Clusters upgraded from a version prior to v1.14.0 keep the more permissive policy by default for backwards compatibility.

    Published: 28 Sept 2019
    6.1
    Medium

    CVE-2019-16925

    Last Modified: 21 Nov 2024

    Flower 0.9.3 has XSS via the name parameter in an @app.task call. NOTE: The project author stated that he doesn't think this is a valid vulnerability. Worker name and task name aren’t user facing configuration options. They are internal backend config options and person having rights to change them already has full access

    Published: 27 Sept 2019
    6.1
    Medium

    CVE-2019-16926

    Last Modified: 21 Nov 2024

    Flower 0.9.3 has XSS via a crafted worker name. NOTE: The project author stated that he doesn't think this is a valid vulnerability. Worker name and task name aren’t user facing configuration options. They are internal backend config options and person having rights to change them already has full access

    Published: 27 Sept 2019
    9.8
    Critical

    CVE-2019-3766

    Last Modified: 21 Nov 2024

    Dell EMC ECS versions prior to 3.4.0.0 contain an improper restriction of excessive authentication attempts vulnerability. An unauthenticated remote attacker may potentially perform a password brute-force attack to gain access to the targeted accounts.

    Published: 27 Sept 2019
    4.8
    Medium

    CVE-2019-3747

    Last Modified: 21 Nov 2024

    Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a stored cross-site scripting vulnerability. A remote malicious ACM admin user may potentially exploit this vulnerability to store malicious HTML or JavaScript code in Cloud DR add-on specific field. When victim users access the page through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable web application.

    Published: 27 Sept 2019
    8.8
    High

    CVE-2019-3746

    Last Modified: 21 Nov 2024

    Dell EMC Integrated Data Protection Appliance versions prior to 2.3 do not limit the number of authentication attempts to the ACM API. An authenticated remote user may exploit this vulnerability to launch a brute-force authentication attack in order to gain access to the system.

    Published: 27 Sept 2019
    7.2
    High

    CVE-2019-3736

    Last Modified: 21 Nov 2024

    Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a password storage vulnerability in the ACM component. A remote authenticated malicious user with root privileges may potentially use a support tool to decrypt encrypted passwords stored locally on the system to use it to access other components using the privileges of the compromised user.

    Published: 27 Sept 2019
    7.8
    High

    CVE-2019-11927

    Last Modified: 21 Nov 2024

    An integer overflow in WhatsApp media parsing libraries allows a remote attacker to perform an out-of-bounds write on the heap via specially-crafted EXIF tags in WEBP images. This issue affects WhatsApp for Android before version 2.19.143 and WhatsApp for iOS before version 2.19.100.

    Published: 27 Sept 2019
    5.5
    Medium

    CVE-2019-16927

    Last Modified: 21 Nov 2024

    Xpdf 4.01.01 has an out-of-bounds write in the vertProfile part of the TextPage::findGaps function in TextOutputDev.cc, a different vulnerability than CVE-2019-9877.

    Published: 27 Sept 2019
    5.4
    Medium

    CVE-2019-16688

    Last Modified: 21 Nov 2024

    Dolibarr 9.0.5 has stored XSS in an Email Template section to mails_templates.php. A user with no privileges can inject script to attack the admin. (This stored XSS can affect all types of user privilege from Admin to users with no permissions.)

    Published: 27 Sept 2019
    5.4
    Medium

    CVE-2019-16687

    Last Modified: 21 Nov 2024

    Dolibarr 9.0.5 has stored XSS in a User Profile in a Signature section to card.php. A user with the "Create/modify other users, groups and permissions" privilege can inject script and can also achieve privilege escalation.

    Published: 27 Sept 2019
    5.4
    Medium

    CVE-2019-16686

    Last Modified: 21 Nov 2024

    Dolibarr 9.0.5 has stored XSS in a User Note section to note.php. A user with no privileges can inject script to attack the admin.

    Published: 27 Sept 2019
    5.4
    Medium

    CVE-2019-16685

    Last Modified: 21 Nov 2024

    Dolibarr 9.0.5 has stored XSS vulnerability via a User Group Description section to card.php. A user with the "Create/modify other users, groups and permissions" privilege can inject script and can also achieve privilege escalation.

    Published: 27 Sept 2019
    4.3
    Medium

    CVE-2019-2191

    Last Modified: 21 Nov 2024

    In LG's LAF component, there is a possible leak of information in a protected disk partition due to a missing bounds check. This could lead to local information disclosure via USB with User execution privileges needed. User interaction is not required for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-68770980

    Published: 27 Sept 2019
    6.4
    Medium

    CVE-2019-2188

    Last Modified: 21 Nov 2024

    In the Easel driver, there is possible memory corruption due to race conditions. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-112309571

    Published: 27 Sept 2019
    6.4
    Medium

    CVE-2019-2189

    Last Modified: 21 Nov 2024

    In the Easel driver, there is possible memory corruption due to race conditions. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-112312381

    Published: 27 Sept 2019
    4.3
    Medium

    CVE-2019-2190

    Last Modified: 21 Nov 2024

    In LG's LAF component, there is a possible leak of information in a protected disk partition due to a missing bounds check. This could lead to local information disclosure via USB with User execution privileges needed. User interaction is not required for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-68771598

    Published: 27 Sept 2019
    3.3
    Low

    CVE-2019-9438

    Last Modified: 21 Nov 2024

    In the Package Manager service, there is a possible information disclosure due to a confused deputy. This could lead to local disclosure of information about installed packages for other users with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-77821568

    Published: 27 Sept 2019
    9.8
    Critical

    CVE-2019-9459

    Last Modified: 21 Nov 2024

    In libttspico, there is a possible OOB write due to a heap buffer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-79593569

    Published: 27 Sept 2019