CVE Feed

    Dashboard / CVE

    5.3
    Medium

    CVE-2019-9681

    Last Modified: 21 Nov 2024

    Online upgrade information in some firmware packages of Dahua products is not encrypted. Attackers can obtain this information by analyzing firmware packages by specific means. Affected products include: IPC-HDW1X2X,IPC-HFW1X2X,IPC-HDW2X2X,IPC-HFW2X2X,IPC-HDW4X2X,IPC-HFW4X2X,IPC-HDBW4X2X,IPC-HDW5X2X,IPC-HFW5X2X for versions which Build time is before August 18,2019.

    Published: 17 Sept 2019
    7.5
    High

    CVE-2018-20336

    Last Modified: 21 Nov 2024

    An issue was discovered in ASUSWRT 3.0.0.4.384.20308. There is a stack-based buffer overflow issue in parse_req_queries function in wanduck.c via a long string over UDP, which may lead to an information leak.

    Published: 17 Sept 2019
    5.5
    Medium

    CVE-2019-12755

    Last Modified: 21 Nov 2024

    Norton Password Manager, prior to 6.5.0.2104, may be susceptible to an information disclosure issue, which is a type of vulnerability whereby there is an unintentional disclosure of information to an actor that is not explicitly authorized to have access to that information.

    Published: 17 Sept 2019
    7.5
    High

    CVE-2019-9009

    Last Modified: 21 Nov 2024

    An issue was discovered in 3S-Smart CODESYS before 3.5.15.0 . Crafted network packets cause the Control Runtime to crash.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2019-11559

    Last Modified: 21 Nov 2024

    A reflected Cross-site scripting (XSS) vulnerability in HRworks V 1.16.1 allows remote attackers to inject arbitrary web script or HTML via the URL parameter to the Login component.

    Published: 17 Sept 2019
    5.4
    Medium

    CVE-2016-10993

    Last Modified: 21 Nov 2024

    The ScoreMe theme through 2016-04-01 for WordPress has XSS via the s parameter.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10992

    Last Modified: 21 Nov 2024

    The music-store plugin before 1.0.43 for WordPress has XSS via the wp-admin/admin.php?page=music-store-menu-reports from_year parameter.

    Published: 17 Sept 2019
    7.5
    High

    CVE-2019-15729

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition 8.18 through 12.2.1. An internal endpoint unintentionally disclosed information about the last pipeline that ran for a merge request.

    Published: 17 Sept 2019
    7.5
    High

    CVE-2016-10991

    Last Modified: 21 Nov 2024

    The imdb-widget plugin before 1.0.9 for WordPress has Local File Inclusion.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10990

    Last Modified: 21 Nov 2024

    The wp-cerber plugin before 2.7 for WordPress has XSS via the X-Forwarded-For HTTP header.

    Published: 17 Sept 2019
    8.8
    High

    CVE-2016-10989

    Last Modified: 21 Nov 2024

    The leenkme plugin before 2.6.0 for WordPress has wp-admin/admin.php?page=leenkme_facebook CSRF.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10988

    Last Modified: 21 Nov 2024

    The leenkme plugin before 2.6.0 for WordPress has stored XSS via facebook_message, facebook_linkname, facebook_caption, facebook_description, default_image, or _wp_http_referer.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10987

    Last Modified: 21 Nov 2024

    The persian-woocommerce-sms plugin before 3.3.4 for WordPress has ps_sms_numbers XSS.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10986

    Last Modified: 21 Nov 2024

    The tweet-wheel plugin before 1.0.3.3 for WordPress has XSS via consumer_key, consumer_secret, access_token, and access_token_secret.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10985

    Last Modified: 21 Nov 2024

    The echosign plugin before 1.2 for WordPress has XSS via the templates/add_templates.php id parameter.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10984

    Last Modified: 21 Nov 2024

    The echosign plugin before 1.2 for WordPress has XSS via the inc.php page parameter.

    Published: 17 Sept 2019
    6.5
    Medium

    CVE-2016-10983

    Last Modified: 21 Nov 2024

    The ghost plugin before 0.5.6 for WordPress has no access control for wp-admin/tools.php?ghostexport=true downloads of exported data.

    Published: 17 Sept 2019
    8.8
    High

    CVE-2016-10982

    Last Modified: 21 Nov 2024

    The kento-post-view-counter plugin through 2.8 for WordPress has wp-admin/admin.php?page=kentopvc_settings CSRF.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10981

    Last Modified: 21 Nov 2024

    The kento-post-view-counter plugin through 2.8 for WordPress has stored XSS via kento_pvc_numbers_lang, kento_pvc_today_text, or kento_pvc_total_text.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10980

    Last Modified: 21 Nov 2024

    The kento-post-view-counter plugin through 2.8 for WordPress has XSS via kento_pvc_geo.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10979

    Last Modified: 21 Nov 2024

    The fossura-tag-miner plugin before 1.1.5 for WordPress has XSS.

    Published: 17 Sept 2019
    8.8
    High

    CVE-2016-10978

    Last Modified: 21 Nov 2024

    The fossura-tag-miner plugin before 1.1.5 for WordPress has CSRF.

    Published: 17 Sept 2019
    6.5
    Medium

    CVE-2016-10977

    Last Modified: 21 Nov 2024

    The nelio-ab-testing plugin before 4.5.0 for WordPress has filename=..%2f directory traversal.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10976

    Last Modified: 21 Nov 2024

    The safe-editor plugin before 1.2 for WordPress has no se_save authentication, with resultant XSS.

    Published: 17 Sept 2019
    6.1
    Medium

    CVE-2016-10975

    Last Modified: 21 Nov 2024

    The fluid-responsive-slideshow plugin before 2.2.7 for WordPress has reflected XSS via the skin parameter.

    Published: 17 Sept 2019
    8.8
    High

    CVE-2016-10974

    Last Modified: 21 Nov 2024

    The fluid-responsive-slideshow plugin before 2.2.7 for WordPress has frs_save CSRF with resultant stored XSS.

    Published: 17 Sept 2019
    8.8
    High

    CVE-2019-9008

    Last Modified: 21 Nov 2024

    An issue was discovered in 3S-Smart CODESYS V3 through 3.5.12.30. A user with low privileges can take full control over the runtime.

    Published: 17 Sept 2019
    9.8
    Critical

    CVE-2019-15131

    Last Modified: 21 Nov 2024

    In Code42 Enterprise 6.7.5 and earlier, 6.8.4 through 6.8.8, and 7.0.0 a vulnerability has been identified that may allow arbitrary files to be uploaded to Code42 servers and executed. This vulnerability could allow an attacker to create directories and save files on Code42 servers, which could potentially lead to code execution.

    Published: 17 Sept 2019
    9.8
    Critical

    CVE-2019-16239

    Last Modified: 21 Nov 2024

    process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encoding with crafted chunk sizes.

    Published: 17 Sept 2019
    9.8
    Critical

    CVE-2019-16378

    Last Modified: 21 Nov 2024

    OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 is prone to a signature-bypass vulnerability with multiple From: addresses, which might affect applications that consider a domain name to be relevant to the origin of an e-mail message.

    Published: 17 Sept 2019
    9.8
    Critical

    CVE-2019-17267

    Last Modified: 21 Nov 2024

    A Polymorphic Typing issue was discovered in FasterXML jackson-databind before 2.9.10. It is related to net.sf.ehcache.hibernate.EhcacheJtaTransactionManagerLookup.

    Published: 17 Sept 2019
    7.5
    High

    CVE-2019-19075

    Last Modified: 21 Nov 2024

    A memory leak in the ca8210_probe() function in drivers/net/ieee802154/ca8210.c in the Linux kernel before 5.3.8 allows attackers to cause a denial of service (memory consumption) by triggering ca8210_get_platform_data() failures, aka CID-6402939ec86e.

    Published: 17 Sept 2019
    3.5
    Low

    CVE-2019-20382

    Last Modified: 21 Nov 2024

    QEMU 4.1.0 has a memory leak in zrle_compress_data in ui/vnc-enc-zrle.c during a VNC disconnect operation because libz is misused, resulting in a situation where memory allocated in deflateInit2 is not freed in deflateEnd.

    Published: 17 Sept 2019
    7.8
    High

    CVE-2019-14835

    Last Modified: 21 Nov 2024

    A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration. A privileged guest user able to pass descriptors with invalid length to the host when migration is underway, could use this flaw to increase their privileges on the host.

    Published: 17 Sept 2019
    4.7
    Medium

    CVE-2019-19083

    Last Modified: 21 Nov 2024

    Memory leaks in *clock_source_create() functions under drivers/gpu/drm/amd/display/dc in the Linux kernel before 5.3.8 allow attackers to cause a denial of service (memory consumption). This affects the dce112_clock_source_create() function in drivers/gpu/drm/amd/display/dc/dce112/dce112_resource.c, the dce100_clock_source_create() function in drivers/gpu/drm/amd/display/dc/dce100/dce100_resource.c, the dcn10_clock_source_create() function in drivers/gpu/drm/amd/display/dc/dcn10/dcn10_resource.c, the dcn20_clock_source_create() function in drivers/gpu/drm/amd/display/dc/dcn20/dcn20_resource.c, the dce120_clock_source_create() function in drivers/gpu/drm/amd/display/dc/dce120/dce120_resource.c, the dce110_clock_source_create() function in drivers/gpu/drm/amd/display/dc/dce110/dce110_resource.c, and the dce80_clock_source_create() function in drivers/gpu/drm/amd/display/dc/dce80/dce80_resource.c, aka CID-055e547478a1.

    Published: 17 Sept 2019
    4.4
    Medium

    CVE-2019-14826

    Last Modified: 21 Nov 2024

    A flaw was found in FreeIPA versions 4.5.0 and later. Session cookies were retained in the cache after logout. An attacker could abuse this flaw if they obtain previously valid session cookies and can use this to gain access to the session.

    Published: 17 Sept 2019
    8.8
    High

    CVE-2019-14843

    Last Modified: 21 Nov 2024

    A flaw was found in Wildfly Security Manager, running under JDK 11 or 8, that authorized requests for any requester. This flaw could be used by a malicious app deployed on the app server to access unauthorized information and possibly conduct further attacks. Versions shipped with Red Hat Jboss EAP 7 and Red Hat SSO 7 are vulnerable to this issue.

    Published: 17 Sept 2019
    5.1
    Medium

    CVE-2019-3689

    Last Modified: 21 Nov 2024

    The nfs-utils package in SUSE Linux Enterprise Server 12 before and including version 1.3.0-34.18.1 and in SUSE Linux Enterprise Server 15 before and including version 2.1.1-6.10.2 the directory /var/lib/nfs is owned by statd:nogroup. This directory contains files owned and managed by root. If statd is compromised, it can therefore trick processes running with root privileges into creating/overwriting files anywhere on the system.

    Published: 17 Sept 2019
    7.5
    High

    CVE-2019-19053

    Last Modified: 21 Nov 2024

    A memory leak in the rpmsg_eptdev_write_iter() function in drivers/rpmsg/rpmsg_char.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy_from_iter_full() failures, aka CID-bbe692e349e2.

    Published: 17 Sept 2019
    7.2
    High

    CVE-2019-4147

    Last Modified: 21 Nov 2024

    IBM Sterling File Gateway 2.2.0.0 through 6.0.1.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 158413.

    Published: 16 Sept 2019
    8.2
    High

    CVE-2019-16371

    Last Modified: 21 Nov 2024

    LogMeIn LastPass before 4.33.0 allows attackers to construct a crafted web site that captures the credentials for a victim's account on a previously visited web site, because do_popupregister can be bypassed via clickjacking.

    Published: 16 Sept 2019
    9.8
    Critical

    CVE-2019-10071

    Last Modified: 21 Nov 2024

    The code which checks HMAC in form submissions used String.equals() for comparisons, which results in a timing side channel for the comparison of the HMAC signatures. This could lead to remote code execution if an attacker is able to determine the correct signature for their payload. The comparison should be done with a constant time algorithm instead.

    Published: 16 Sept 2019
    9.8
    Critical

    CVE-2019-15741

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Omnibus 7.4 through 12.2.1. An unsafe interaction with logrotate could result in a privilege escalation

    Published: 16 Sept 2019
    5.3
    Medium

    CVE-2019-15740

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition 7.9 through 12.2.1. EXIF Geolocation data was not being removed from certain image uploads.

    Published: 16 Sept 2019
    6.1
    Medium

    CVE-2019-15739

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition 8.1 through 12.2.1. Certain areas displaying Markdown were not properly sanitizing some XSS payloads.

    Published: 16 Sept 2019
    5.3
    Medium

    CVE-2019-15738

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Under certain conditions, merge request IDs were being disclosed via email.

    Published: 16 Sept 2019
    6.5
    Medium

    CVE-2019-15737

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Certain account actions needed improved authentication and session management.

    Published: 16 Sept 2019
    6.1
    Medium

    CVE-2019-8368

    Last Modified: 21 Nov 2024

    OpenEMR v5.0.1-6 allows XSS.

    Published: 16 Sept 2019
    7.5
    High

    CVE-2019-15736

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition through 12.2.1. Under certain circumstances, CI pipelines could potentially be used in a denial of service attack.

    Published: 16 Sept 2019
    4.3
    Medium

    CVE-2019-15734

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition 8.6 through 12.2.1. Under very specific conditions, commit titles and team member comments could become viewable to users who did not have permission to access these.

    Published: 16 Sept 2019