CVE Feed

    Dashboard / CVE

    5.3
    Medium

    CVE-2016-11006

    Last Modified: 21 Nov 2024

    The wp-invoice plugin before 4.1.1 for WordPress has incorrect access control for admin_init settings changes.

    Published: 20 Sept 2019
    6.1
    Medium

    CVE-2016-11005

    Last Modified: 21 Nov 2024

    The instalinker plugin before 1.1.2 for WordPress has includes/instalinker-admin-preview.php?client_id= XSS.

    Published: 20 Sept 2019
    8.8
    High

    CVE-2016-11004

    Last Modified: 21 Nov 2024

    The Elegant Themes Monarch plugin before 1.2.7 for WordPress has privilege escalation.

    Published: 20 Sept 2019
    8.8
    High

    CVE-2016-11002

    Last Modified: 21 Nov 2024

    The Elegant Themes Extra theme before 1.2.4 for WordPress has privilege escalation.

    Published: 20 Sept 2019
    8.8
    High

    CVE-2016-11003

    Last Modified: 4 Feb 2026

    The Elegant Themes Bloom plugin before 1.1.1 for WordPress has privilege escalation.

    Published: 20 Sept 2019
    6.1
    Medium

    CVE-2016-11001

    Last Modified: 21 Nov 2024

    The user-submitted-posts plugin before 20160215 for WordPress has XSS via the user-submitted-content field.

    Published: 20 Sept 2019
    9.8
    Critical

    CVE-2016-11000

    Last Modified: 21 Nov 2024

    The wp-ultimate-exporter plugin through 1.1 for WordPress has SQL injection via the export_type_name parameter.

    Published: 20 Sept 2019
    9.8
    Critical

    CVE-2019-16642

    Last Modified: 21 Nov 2024

    App\Mobile\Controller\ZhuantiController.class.php in TuziCMS 2.0.6 has SQL injection via the index.php/Mobile/Zhuanti/group?id= substring.

    Published: 20 Sept 2019
    6.1
    Medium

    CVE-2016-10999

    Last Modified: 21 Nov 2024

    The Goodnews theme through 2016-02-28 for WordPress has XSS via the s parameter.

    Published: 20 Sept 2019
    6.1
    Medium

    CVE-2016-10998

    Last Modified: 21 Nov 2024

    The ocim-mp3 plugin through 2016-03-07 for WordPress has wp-content/plugins/ocim-mp3/source/pages.php?id= XSS.

    Published: 20 Sept 2019
    6.5
    Medium

    CVE-2016-10997

    Last Modified: 21 Nov 2024

    The beauty-premium theme 1.0.8 for WordPress has CSRF with resultant arbitrary file upload in includes/sendmail.php.

    Published: 20 Sept 2019
    5.3
    Medium

    CVE-2016-10996

    Last Modified: 21 Nov 2024

    The optinmonster plugin before 1.1.4.6 for WordPress has incorrect access control for shortcodes because of a nonce leak.

    Published: 20 Sept 2019
    8.8
    High

    CVE-2019-15089

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. Forms have no CSRF protection, letting an attacker execute actions as the administrator.

    Published: 20 Sept 2019
    9.8
    Critical

    CVE-2019-15088

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. Password hashes are compared using the equality operator. Thus, under specific circumstances, it is possible to bypass login authentication.

    Published: 20 Sept 2019
    7.2
    High

    CVE-2019-15087

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. An authenticated user can change the function used to hash passwords to any function, leading to remote code execution.

    Published: 20 Sept 2019
    6.1
    Medium

    CVE-2019-15086

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. The newentityID parameter is not properly escaped, leading to a reflected XSS in the error message.

    Published: 20 Sept 2019
    7.5
    High

    CVE-2019-15085

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. The current database password is embedded in the change password form.

    Published: 20 Sept 2019
    6.5
    Medium

    CVE-2019-14916

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. A file's format is not properly checked, leading to an unrestricted file upload.

    Published: 20 Sept 2019
    6.1
    Medium

    CVE-2019-14915

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. Certificate data are not properly escaped. This leads to XSS when submitting a rogue certificate.

    Published: 20 Sept 2019
    9.1
    Critical

    CVE-2019-14914

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. The path is not properly escaped in the medatadata_del method, leading to an arbitrary file read and deletion via Directory Traversal.

    Published: 20 Sept 2019
    5.4
    Medium

    CVE-2019-14913

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. Log data are not properly escaped, leading to persistent XSS in the administration panel.

    Published: 20 Sept 2019
    6.1
    Medium

    CVE-2019-14912

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. The OPENSSO module does not properly check the goto parameter, leading to an open redirect that leaks the session cookie.

    Published: 20 Sept 2019
    6.1
    Medium

    CVE-2019-14911

    Last Modified: 21 Nov 2024

    An issue was discovered in PRiSE adAS 1.7.0. The OPENSSO module does not properly escape output on error, leading to reflected XSS.

    Published: 20 Sept 2019
    8.8
    High

    CVE-2019-16531

    Last Modified: 21 Nov 2024

    LayerBB before 1.1.4 has multiple CSRF issues, as demonstrated by changing the System Settings via admin/general.php.

    Published: 20 Sept 2019
    5.3
    Medium

    CVE-2019-15165

    Last Modified: 3 Dec 2025

    sf-pcapng.c in libpcap before 1.9.1 does not properly validate the PHB header length before allocating memory.

    Published: 20 Sept 2019
    6.5
    Medium

    CVE-2019-14851

    Last Modified: 21 Nov 2024

    A denial of service vulnerability was discovered in nbdkit. A client issuing a certain sequence of commands could possibly trigger an assertion failure, causing nbdkit to exit. This issue only affected nbdkit versions 1.12.7, 1.14.1, and 1.15.1.

    Published: 20 Sept 2019
    5.3
    Medium

    CVE-2019-15162

    Last Modified: 21 Nov 2024

    rpcapd/daemon.c in libpcap before 1.9.1 on non-Windows platforms provides details about why authentication failed, which might make it easier for attackers to enumerate valid usernames.

    Published: 20 Sept 2019
    4.9
    Medium

    CVE-2019-15635

    Last Modified: 21 Nov 2024

    An issue was discovered in Grafana 5.4.0. Passwords for data sources used by Grafana (e.g., MySQL) are not encrypted. An admin user can reveal passwords for any data source by pressing the "Save and test" button within a data source's settings menu. When watching the transaction with Burp Proxy, the password for the data source is revealed and sent to the server. From a browser, a prompt to save the credentials is generated, and the password can be revealed by simply checking the "Show password" box.

    Published: 20 Sept 2019
    3.3
    Low

    CVE-2019-17052

    Last Modified: 21 Nov 2024

    ax25_create in net/ax25/af_ax25.c in the AF_AX25 network module in the Linux kernel 3.16 through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-0614e2b73768.

    Published: 20 Sept 2019
    3.7
    Low

    CVE-2019-14850

    Last Modified: 21 Nov 2024

    A denial of service vulnerability was discovered in nbdkit 1.12.7, 1.14.1 and 1.15.1. An attacker could connect to the nbdkit service and cause it to perform a large amount of work in initializing backend plugins, by simply opening a connection to the service. This vulnerability could cause resource consumption and degradation of service in nbdkit, depending on the plugins configured on the server-side.

    Published: 20 Sept 2019
    9.8
    Critical

    CVE-2019-14893

    Last Modified: 21 Nov 2024

    A flaw was discovered in FasterXML jackson-databind in all versions before 2.9.10 and 2.10.0, where it would permit polymorphic deserialization of malicious objects using the xalan JNDI gadget when used in conjunction with polymorphic type handling methods such as `enableDefaultTyping()` or when @JsonTypeInfo is using `Id.CLASS` or `Id.MINIMAL_CLASS` or in any other way which ObjectMapper.readValue might instantiate objects from unsafe sources. An attacker could use this flaw to execute arbitrary code.

    Published: 20 Sept 2019
    5.3
    Medium

    CVE-2019-15161

    Last Modified: 21 Nov 2024

    rpcapd/daemon.c in libpcap before 1.9.1 mishandles certain length values because of reuse of a variable. This may open up an attack vector involving extra data at the end of a request.

    Published: 20 Sept 2019
    3.3
    Low

    CVE-2019-17055

    Last Modified: 21 Nov 2024

    base_sock_create in drivers/isdn/mISDN/socket.c in the AF_ISDN network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-b91ee4aa2a21.

    Published: 20 Sept 2019
    3.3
    Low

    CVE-2019-17056

    Last Modified: 21 Nov 2024

    llcp_sock_create in net/nfc/llcp_sock.c in the AF_NFC network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-3a359798b176.

    Published: 20 Sept 2019
    7.5
    High

    CVE-2019-15163

    Last Modified: 21 Nov 2024

    rpcapd/daemon.c in libpcap before 1.9.1 allows attackers to cause a denial of service (NULL pointer dereference and daemon crash) if a crypt() call fails.

    Published: 20 Sept 2019
    5.3
    Medium

    CVE-2019-15164

    Last Modified: 21 Nov 2024

    rpcapd/daemon.c in libpcap before 1.9.1 allows SSRF because a URL may be provided as a capture source.

    Published: 20 Sept 2019
    3.3
    Low

    CVE-2019-17053

    Last Modified: 21 Nov 2024

    ieee802154_create in net/ieee802154/socket.c in the AF_IEEE802154 network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-e69dbd4619e7.

    Published: 20 Sept 2019
    3.3
    Low

    CVE-2019-17054

    Last Modified: 21 Nov 2024

    atalk_create in net/appletalk/ddp.c in the AF_APPLETALK network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-6cc03e8aa36c.

    Published: 20 Sept 2019
    6.5
    Medium

    CVE-2019-9720

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c misuses snprintf.

    Published: 19 Sept 2019
    8.8
    High

    CVE-2019-9719

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c misuses snprintf. NOTE: Third parties dispute that this is a vulnerability because “no evidence of a vulnerability is provided” and only “a generic warning from a static code analysis” is provided

    Published: 19 Sept 2019
    6.5
    Medium

    CVE-2019-9717

    Last Modified: 21 Nov 2024

    In Libav 12.3, a denial of service in the subtitle decoder allows attackers to hog the CPU via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c has a complex format argument to sscanf.

    Published: 19 Sept 2019
    6.1
    Medium

    CVE-2019-16525

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in the checklist plugin before 1.1.9 for WordPress. The fill parameter is not correctly filtered in the checklist-icon.php file, and it is possible to inject JavaScript code.

    Published: 19 Sept 2019
    7.7
    High

    CVE-2019-15033

    Last Modified: 21 Nov 2024

    Pydio 6.0.8 allows Authenticated SSRF during a Remote Link Feature download. An attacker can specify an intranet address in the file parameter to index.php, when sending a file to a remote server, as demonstrated by the file=http%3A%2F%2F192.168.1.2 substring.

    Published: 19 Sept 2019
    5.3
    Medium

    CVE-2019-15032

    Last Modified: 21 Nov 2024

    Pydio 6.0.8 mishandles error reporting when a directory allows unauthenticated uploads, and the remote-upload option is used with the http://localhost:22 URL. The attacker can obtain sensitive information such as the name of the user who created that directory and other internal server information.

    Published: 19 Sept 2019
    5.5
    Medium

    CVE-2019-16511

    Last Modified: 21 Nov 2024

    An issue was discovered in DTF in FireGiant WiX Toolset before 3.11.2. Microsoft.Deployment.Compression.Cab.dll and Microsoft.Deployment.Compression.Zip.dll allow directory traversal during CAB or ZIP archive extraction, because the full name of an archive file (even with a ../ sequence) is concatenated with the destination path.

    Published: 19 Sept 2019
    7.5
    High

    CVE-2019-16510

    Last Modified: 21 Nov 2024

    libIEC61850 through 1.3.3 has a use-after-free in MmsServer_waitReady in mms/iso_mms/server/mms_server.c, as demonstrated by server_example_goose.

    Published: 19 Sept 2019
    7.5
    High

    CVE-2019-16412

    Last Modified: 21 Nov 2024

    In goform/setSysTools on Tenda N301 wireless routers, attackers can trigger a device crash via a zero wanMTU value. (Prohibition of this zero value is only enforced within the GUI.)

    Published: 19 Sept 2019
    6.8
    Medium

    CVE-2019-16398

    Last Modified: 21 Nov 2024

    On Keeper K5 20.1.0.25 and 20.1.0.63 devices, remote code execution can occur by inserting an SD card containing a file named zskj_script_run.sh that executes a reverse shell.

    Published: 19 Sept 2019
    7.2
    High

    CVE-2019-15001

    Last Modified: 21 Nov 2024

    The Jira Importers Plugin in Atlassian Jira Server and Data Cente from version with 7.0.10 before 7.6.16, from 7.7.0 before 7.13.8, from 8.0.0 before 8.1.3, from 8.2.0 before 8.2.5, from 8.3.0 before 8.3.4 and from 8.4.0 before 8.4.1 allows remote attackers with Administrator permissions to gain remote code execution via a template injection vulnerability through the use of a crafted PUT request.

    Published: 19 Sept 2019
    9.8
    Critical

    CVE-2019-15000

    Last Modified: 21 Nov 2024

    The commit diff rest endpoint in Bitbucket Server and Data Center before 5.16.10 (the fixed version for 5.16.x ), from 6.0.0 before 6.0.10 (the fixed version for 6.0.x), from 6.1.0 before 6.1.8 (the fixed version for 6.1.x), from 6.2.0 before 6.2.6 (the fixed version for 6.2.x), from 6.3.0 before 6.3.5 (the fixed version for 6.3.x), from 6.4.0 before 6.4.3 (the fixed version for 6.4.x), and from 6.5.0 before 6.5.2 (the fixed version for 6.5.x) allows remote attackers who have permission to access a repository, if public access is enabled for a project or repository then attackers are able to exploit this issue anonymously, to read the contents of arbitrary files on the system and execute commands via injecting additional arguments into git commands.

    Published: 19 Sept 2019