CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2019-12517

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in the slickquiz plugin through 1.3.7.1 for WordPress. The save_quiz_score functionality available via the /wp-admin/admin-ajax.php endpoint allows unauthenticated users to submit quiz solutions/answers, which are stored in the database and later shown in the WordPress backend for all users with at least Subscriber rights. Because the plugin does not properly validate and sanitize this data, a malicious payload in either the name or email field is executed directly within the backend at /wp-admin/admin.php?page=slickquiz across all users with the privileges of at least Subscriber.

    Published: 13 Sept 2019
    8.8
    High

    CVE-2019-12516

    Last Modified: 21 Nov 2024

    The slickquiz plugin through 1.3.7.1 for WordPress allows SQL Injection by Subscriber users, as demonstrated by a /wp-admin/admin.php?page=slickquiz-scores&id= or /wp-admin/admin.php?page=slickquiz-edit&id= or /wp-admin/admin.php?page=slickquiz-preview&id= URI.

    Published: 13 Sept 2019
    9.8
    Critical

    CVE-2016-10955

    Last Modified: 21 Nov 2024

    The cysteme-finder plugin before 1.4 for WordPress has unrestricted file upload because of incorrect session tracking.

    Published: 13 Sept 2019
    9.8
    Critical

    CVE-2016-10954

    Last Modified: 21 Nov 2024

    The Neosense theme before 1.8 for WordPress has qquploader unrestricted file upload.

    Published: 13 Sept 2019
    5.4
    Medium

    CVE-2016-10953

    Last Modified: 21 Nov 2024

    The Headway theme before 3.8.9 for WordPress has XSS via the license key field.

    Published: 13 Sept 2019
    6.1
    Medium

    CVE-2016-10952

    Last Modified: 21 Nov 2024

    The quotes-collection plugin before 2.0.6 for WordPress has XSS via the wp-admin/admin.php?page=quotes-collection page parameter.

    Published: 13 Sept 2019
    7.2
    High

    CVE-2016-10951

    Last Modified: 21 Nov 2024

    The fs-shopping-cart plugin 2.07.02 for WordPress has SQL injection via the pid parameter.

    Published: 13 Sept 2019
    8.8
    High

    CVE-2016-10950

    Last Modified: 21 Nov 2024

    The sirv plugin before 1.3.2 for WordPress has SQL injection via the id parameter.

    Published: 13 Sept 2019
    8.8
    High

    CVE-2016-10949

    Last Modified: 21 Nov 2024

    The Relevanssi Premium plugin before 1.14.6.1 for WordPress has SQL injection with resultant unsafe unserialization.

    Published: 13 Sept 2019
    8.1
    High

    CVE-2016-10948

    Last Modified: 21 Nov 2024

    The Post Indexer plugin before 3.0.6.2 for WordPress has incorrect handling of data passed to the unserialize function.

    Published: 13 Sept 2019
    7.2
    High

    CVE-2016-10947

    Last Modified: 21 Nov 2024

    The Post Indexer plugin before 3.0.6.2 for WordPress has SQL injection via the period parameter by a super admin.

    Published: 13 Sept 2019
    8.8
    High

    CVE-2016-10946

    Last Modified: 21 Nov 2024

    The wp-d3 plugin before 2.4.1 for WordPress has CSRF.

    Published: 13 Sept 2019
    8.8
    High

    CVE-2016-10945

    Last Modified: 21 Nov 2024

    The PageLines theme 1.1.4 for WordPress has wp-admin/admin-post.php?page=pagelines CSRF.

    Published: 13 Sept 2019
    8.8
    High

    CVE-2016-10944

    Last Modified: 21 Nov 2024

    The multisite-post-duplicator plugin before 1.1.3 for WordPress has wp-admin/tools.php?page=mpd CSRF.

    Published: 13 Sept 2019
    7.2
    High

    CVE-2016-10943

    Last Modified: 21 Nov 2024

    The zx-csv-upload plugin 1 for WordPress has SQL injection via the id parameter.

    Published: 13 Sept 2019
    9.8
    Critical

    CVE-2016-10942

    Last Modified: 21 Nov 2024

    The podlove-podcasting-plugin-for-wordpress plugin before 2.3.16 for WordPress has SQL injection via the insert_id parameter exploitable via CSRF.

    Published: 13 Sept 2019
    6.1
    Medium

    CVE-2016-10941

    Last Modified: 21 Nov 2024

    The podlove-podcasting-plugin-for-wordpress plugin before 2.3.16 for WordPress has XSS exploitable via CSRF.

    Published: 13 Sept 2019
    7.2
    High

    CVE-2016-10940

    Last Modified: 21 Nov 2024

    The zm-gallery plugin 1.0 for WordPress has SQL injection via the order parameter.

    Published: 13 Sept 2019
    7.2
    High

    CVE-2016-10939

    Last Modified: 21 Nov 2024

    The xtremelocator plugin 1.5 for WordPress has SQL injection via the id parameter.

    Published: 13 Sept 2019
    6.5
    Medium

    CVE-2016-10938

    Last Modified: 21 Nov 2024

    The copy-me plugin 1.0.0 for WordPress has CSRF for copying non-public posts to a public location.

    Published: 13 Sept 2019
    6.1
    Medium

    CVE-2017-18615

    Last Modified: 21 Nov 2024

    The kama-clic-counter plugin before 3.5.0 for WordPress has XSS.

    Published: 13 Sept 2019
    8.1
    High

    CVE-2017-18614

    Last Modified: 21 Nov 2024

    The kama-clic-counter plugin 3.4.9 for WordPress has SQL injection via the admin.php order parameter.

    Published: 13 Sept 2019
    6.1
    Medium

    CVE-2017-18613

    Last Modified: 21 Nov 2024

    The trust-form plugin 2.0 for WordPress has XSS via the wp-admin/admin.php?page=trust-form-edit page parameter.

    Published: 13 Sept 2019
    6.1
    Medium

    CVE-2017-18612

    Last Modified: 21 Nov 2024

    The wp-whois-domain plugin 1.0.0 for WordPress has XSS via the pages/func-whois.php domain parameter.

    Published: 13 Sept 2019
    7.8
    High

    CVE-2019-16277

    Last Modified: 21 Nov 2024

    PicoC 2.1 has a heap-based buffer overflow in StringStrcpy in cstdlib/string.c when called from ExpressionParseFunctionCall in expression.c.

    Published: 13 Sept 2019
    7.1
    High

    CVE-2019-14822

    Last Modified: 21 Nov 2024

    A flaw was discovered in ibus in versions before 1.5.22 that allows any unprivileged user to monitor and send method calls to the ibus bus of another user due to a misconfiguration in the DBus server setup. A local attacker may use this flaw to intercept all keystrokes of a victim user who is using the graphical interface, change the input method engine, or modify other input related configurations of the victim user.

    Published: 13 Sept 2019
    6.5
    Medium

    CVE-2019-20808

    Last Modified: 21 Nov 2024

    In QEMU 4.1.0, an out-of-bounds read flaw was found in the ATI VGA implementation. It occurs in the ati_cursor_define() routine while handling MMIO write operations through the ati_mm_write() callback. A malicious guest could abuse this flaw to crash the QEMU process, resulting in a denial of service.

    Published: 13 Sept 2019
    7.5
    High

    CVE-2019-18277

    Last Modified: 21 Nov 2024

    A flaw was found in HAProxy before 2.0.6. In legacy mode, messages featuring a transfer-encoding header missing the "chunked" value were not being correctly rejected. The impact was limited but if combined with the "http-reuse always" setting, it could be used to help construct an HTTP request smuggling attack against a vulnerable component employing a lenient parser that would ignore the content-length header as soon as it saw a transfer-encoding one (even if not entirely valid according to the specification).

    Published: 13 Sept 2019
    4.4
    Medium

    CVE-2019-15031

    Last Modified: 21 Nov 2024

    In the Linux kernel through 5.2.14 on the powerpc platform, a local user can read vector registers of other users' processes via an interrupt. To exploit the venerability, a local user starts a transaction (via the hardware transactional memory instruction tbegin) and then accesses vector registers. At some point, the vector registers will be corrupted with the values from a different local Linux process, because MSR_TM_ACTIVE is misused in arch/powerpc/kernel/process.c.

    Published: 13 Sept 2019
    7.2
    High

    CVE-2019-13530

    Last Modified: 21 Nov 2024

    Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C) and WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C). An attacker can use these credentials to login via ftp and upload a malicious firmware.

    Published: 12 Sept 2019
    7.2
    High

    CVE-2019-13534

    Last Modified: 21 Nov 2024

    Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C) and WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C). The product downloads source code or an executable from a remote location and executes the code without sufficiently verifying the origin and integrity of the code.

    Published: 12 Sept 2019
    7.5
    High

    CVE-2019-11899

    Last Modified: 21 Nov 2024

    An unauthenticated attacker can achieve unauthorized access to sensitive data by exploiting Windows SMB protocol on a client installation. With Bosch Access Professional Edition (APE) 3.8, client installations need to be authorized by the APE administrator.

    Published: 12 Sept 2019
    9.9
    Critical

    CVE-2019-11898

    Last Modified: 21 Nov 2024

    Unauthorized APE administration privileges can be achieved by reverse engineering one of the APE service tools. The service tool is discontinued with Bosch Access Professional Edition (APE) 3.8.

    Published: 12 Sept 2019
    7.8
    High

    CVE-2019-8076

    Last Modified: 21 Nov 2024

    Adobe application manager installer version 10.0 have an Insecure Library Loading (DLL hijacking) vulnerability. Successful exploitation could lead to Arbitrary Code Execution in the context of the current user.

    Published: 12 Sept 2019
    9.8
    Critical

    CVE-2019-14237

    Last Modified: 21 Nov 2024

    On NXP Kinetis KV1x, Kinetis KV3x, and Kinetis K8x devices, Flash Access Controls (FAC) (a software IP protection method for execute-only access) can be defeated by observing CPU registers and the effect of code/instruction execution.

    Published: 12 Sept 2019
    9.8
    Critical

    CVE-2019-14236

    Last Modified: 21 Nov 2024

    On STMicroelectronics STM32L0, STM32L1, STM32L4, STM32F4, STM32F7, and STM32H7 devices, Proprietary Code Read Out Protection (PCROP) (a software IP protection method) can be defeated by observing CPU registers and the effect of code/instruction execution.

    Published: 12 Sept 2019
    7.8
    High

    CVE-2019-11773

    Last Modified: 21 Nov 2024

    Prior to 0.1, AIX builds of Eclipse OMR contain unused RPATHs which may facilitate code injection and privilege elevation by local users.

    Published: 12 Sept 2019
    7.4
    High

    CVE-2019-11774

    Last Modified: 21 Nov 2024

    Prior to 0.1, all builds of Eclipse OMR contain a bug where the loop versioner may fail to privatize a value that is pulled out of the loop by versioning - for example if there is a condition that is moved out of the loop that reads a field we may not privatize the value of that field in the modified copy of the loop allowing the test to see one value of the field and subsequently the loop to see a modified field value without retesting the condition moved out of the loop. This can lead to a variety of different issues but read out of array bounds is one major consequence of these problems.

    Published: 12 Sept 2019
    6.1
    Medium

    CVE-2019-5985

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Hikari Denwa router/Home GateWay (Hikari Denwa router/Home GateWay provided by NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION PR-S300NE/RT-S300NE/RV-S340NE firmware version Ver. 19.41 and earlier, PR-S300HI/RT-S300HI/RV-S340HI firmware version Ver.19.01.0005 and earlier, PR-S300SE/RT-S300SE/RV-S340SE firmware version Ver.19.40 and earlier, PR-400NE/RT-400NE/RV-440NE firmware version Ver.7.42 and earlier, PR-400KI/RT-400KI/RV-440KI firmware version Ver.07.00.1010 and earlier, PR-400MI/RT-400MI/RV-440MI firmware version Ver. 07.00.1012 and earlier, PR-500KI/RT-500KI firmware version Ver.01.00.0090 and earlier, RS-500KI firmware version Ver.01.00.0070 and earlier, PR-500MI/RT-500MI firmware version Ver.01.01.0014 and earlier, and RS-500MI firmware version Ver.03.01.0019 and earlier, and Hikari Denwa router/Home GateWay provided by NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION PR-S300NE/RT-S300NE/RV-S340NE firmware version Ver. 19.41 and earlier, PR-S300HI/RT-S300HI/RV-S340HI firmware version Ver.19.01.0005 and earlier, PR-S300SE/RT-S300SE/RV-S340SE firmware version Ver.19.40 and earlier, PR-400NE/RT-400NE/RV-440NE firmware version Ver.7.42 and earlier, PR-400KI/RT-400KI/RV-440KI firmware version Ver.07.00.1010 and earlier, PR-400MI/RT-400MI/RV-440MI firmware version Ver. 07.00.1012 and earlier, PR-500KI/RT-500KI firmware version Ver.01.00.0090 and earlier, and PR-500MI/RT-500MI firmware version Ver.01.01.0011 and earlier) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 12 Sept 2019
    8.8
    High

    CVE-2019-5993

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in Category Specific RSS feed Subscription version v2.0 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.

    Published: 12 Sept 2019
    6.1
    Medium

    CVE-2019-6004

    Last Modified: 21 Nov 2024

    Open redirect vulnerability in ApeosWare Management Suite Ver.1.4.0.18 and earlier, and ApeosWare Management Suite 2 Ver.2.1.2.4 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

    Published: 12 Sept 2019
    6.1
    Medium

    CVE-2019-6009

    Last Modified: 21 Nov 2024

    Open redirect vulnerability in SHIRASAGI v1.7.0 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

    Published: 12 Sept 2019
    5.4
    Medium

    CVE-2019-5975

    Last Modified: 21 Nov 2024

    DOM-based cross-site scripting vulnerability in Cybozu Garoon 4.6.0 to 4.10.2 allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 12 Sept 2019
    8.8
    High

    CVE-2019-5986

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in Hikari Denwa router/Home GateWay (Hikari Denwa router/Home GateWay provided by NIPPON TELEGRAPH AND TELEPHONE EAST CORPORATION PR-S300NE/RT-S300NE/RV-S340NE firmware version Ver. 19.41 and earlier, PR-S300HI/RT-S300HI/RV-S340HI firmware version Ver.19.01.0005 and earlier, PR-S300SE/RT-S300SE/RV-S340SE firmware version Ver.19.40 and earlier, PR-400NE/RT-400NE/RV-440NE firmware version Ver.7.42 and earlier, PR-400KI/RT-400KI/RV-440KI firmware version Ver.07.00.1010 and earlier, PR-400MI/RT-400MI/RV-440MI firmware version Ver. 07.00.1012 and earlier, PR-500KI/RT-500KI firmware version Ver.01.00.0090 and earlier, RS-500KI firmware version Ver.01.00.0070 and earlier, PR-500MI/RT-500MI firmware version Ver.01.01.0014 and earlier, and RS-500MI firmware version Ver.03.01.0019 and earlier, and Hikari Denwa router/Home GateWay provided by NIPPON TELEGRAPH AND TELEPHONE WEST CORPORATION PR-S300NE/RT-S300NE/RV-S340NE firmware version Ver. 19.41 and earlier, PR-S300HI/RT-S300HI/RV-S340HI firmware version Ver.19.01.0005 and earlier, PR-S300SE/RT-S300SE/RV-S340SE firmware version Ver.19.40 and earlier, PR-400NE/RT-400NE/RV-440NE firmware version Ver.7.42 and earlier, PR-400KI/RT-400KI/RV-440KI firmware version Ver.07.00.1010 and earlier, PR-400MI/RT-400MI/RV-440MI firmware version Ver. 07.00.1012 and earlier, PR-500KI/RT-500KI firmware version Ver.01.00.0090 and earlier, and PR-500MI/RT-500MI firmware version Ver.01.01.0011 and earlier) allow remote attackers to hijack the authentication of administrators via unspecified vectors.

    Published: 12 Sept 2019
    6.1
    Medium

    CVE-2019-6003

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in EC-CUBE plugin 'Amazon Pay Plugin 2.12,2.13' version 2.4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 12 Sept 2019
    6.5
    Medium

    CVE-2019-5956

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in WonderCMS 2.6.0 and earlier allows remote attackers to delete arbitrary files via unspecified vectors.

    Published: 12 Sept 2019
    4.9
    Medium

    CVE-2019-5976

    Last Modified: 21 Nov 2024

    Cybozu Garoon 4.0.0 to 4.10.2 allows an attacker with administrative rights to cause a denial of service condition via unspecified vectors.

    Published: 12 Sept 2019
    4.3
    Medium

    CVE-2019-5977

    Last Modified: 21 Nov 2024

    Mail header injection vulnerability in Cybozu Garoon 4.0.0 to 4.10.2 may allow a remote authenticated attackers to alter mail header via the application 'E-Mail'.

    Published: 12 Sept 2019
    6.1
    Medium

    CVE-2019-5978

    Last Modified: 21 Nov 2024

    Open redirect vulnerability in Cybozu Garoon 4.0.0 to 4.10.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the application 'Scheduler'.

    Published: 12 Sept 2019
    7.6
    High

    CVE-2019-5991

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in the Cybozu Garoon 4.0.0 to 4.10.3 allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 12 Sept 2019