CVE Feed

    Dashboard / CVE

    4.1
    Medium

    CVE-2019-16231

    Last Modified: 21 Nov 2024

    drivers/net/fjes/fjes_main.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.

    Published: 11 Sept 2019
    4.1
    Medium

    CVE-2019-16232

    Last Modified: 21 Nov 2024

    drivers/net/wireless/marvell/libertas/if_sdio.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.

    Published: 11 Sept 2019
    7.5
    High

    CVE-2019-19079

    Last Modified: 21 Nov 2024

    A memory leak in the qrtr_tun_write_iter() function in net/qrtr/tun.c in the Linux kernel before 5.3 allows attackers to cause a denial of service (memory consumption), aka CID-a21b7f0cff19.

    Published: 11 Sept 2019
    9.8
    Critical

    CVE-2019-5482

    Last Modified: 15 Apr 2026

    Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.

    Published: 11 Sept 2019
    —
    Unknown

    CVE-2019-6745

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-12828. Reason: This candidate is a reservation duplicate of CVE-2019-12828. Notes: All CVE users should reference CVE-2019-12828 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 10 Sept 2019
    8.1
    High

    CVE-2019-12943

    Last Modified: 21 Nov 2024

    TTLock devices do not properly restrict password-reset attempts, leading to incorrect access control and disclosure of sensitive information about valid account names.

    Published: 10 Sept 2019
    6.5
    Medium

    CVE-2019-12942

    Last Modified: 21 Nov 2024

    TTLock devices do not properly block guest access in certain situations where the network connection to the cloud is unavailable.

    Published: 10 Sept 2019
    7.5
    High

    CVE-2019-11669

    Last Modified: 21 Nov 2024

    Modifiable read only check box In Micro Focus Service Manager, versions 9.60p1, 9.61, 9.62. This vulnerability could be exploited to allow unauthorized modification of data.

    Published: 10 Sept 2019
    7.5
    High

    CVE-2019-11668

    Last Modified: 21 Nov 2024

    HTTP cookie in Micro Focus Service manager, Versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. And Micro Focus Service Manager Chat Server, versions 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. And Micro Focus Service Manager Chat Service 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62.

    Published: 10 Sept 2019
    5.3
    Medium

    CVE-2019-12996

    Last Modified: 21 Nov 2024

    In Mendix 7.23.5 and earlier, issue in XML import mappings allow DOCTYPE declarations in the XML input that is potentially unsafe.

    Published: 10 Sept 2019
    9.8
    Critical

    CVE-2019-10256

    Last Modified: 21 Nov 2024

    An authentication bypass vulnerability in VIVOTEK IPCam versions prior to 0x13a was found.

    Published: 10 Sept 2019
    9.8
    Critical

    CVE-2019-14457

    Last Modified: 21 Nov 2024

    VIVOTEK IP Camera devices with firmware before 0x20x have a stack-based buffer overflow via a crafted HTTP header.

    Published: 10 Sept 2019
    9.1
    Critical

    CVE-2019-11496

    Last Modified: 21 Nov 2024

    In versions of Couchbase Server prior to 5.0, the bucket named "default" was a special bucket that allowed read and write access without authentication. As part of 5.0, the behavior of all buckets including "default" were changed to only allow access by authenticated users with sufficient authorization. However, users were allowed unauthenticated and unauthorized access to the "default" bucket if the properties of this bucket were edited. This has been fixed in versions 5.1.0 and 5.5.0.

    Published: 10 Sept 2019
    7.5
    High

    CVE-2019-11497

    Last Modified: 21 Nov 2024

    In Couchbase Server 5.0.0, when an invalid Remote Cluster Certificate was entered as part of the reference creation, XDCR did not parse and check the certificate signature. It then accepted the invalid certificate and attempted to use it to establish future connections to the remote cluster. This has been fixed in version 5.5.0. XDCR now checks the validity of the certificate thoroughly and prevents a remote cluster reference from being created with an invalid certificate.

    Published: 10 Sept 2019
    7.5
    High

    CVE-2019-11467

    Last Modified: 21 Nov 2024

    In Couchbase Server 4.6.3 and 5.5.0, secondary indexing encodes the entries to be indexed using collatejson. When index entries contain certain characters like \t, <, >, it caused buffer overrun as encoded string would be much larger than accounted for, causing indexer service to crash and restart. This has been remedied in versions 5.1.2 and 5.5.2 to ensure buffer always grows as needed for any input.

    Published: 10 Sept 2019
    9.8
    Critical

    CVE-2019-11495

    Last Modified: 21 Nov 2024

    In Couchbase Server 5.1.1, the cookie used for intra-node communication was not generated securely. Couchbase Server uses erlang:now() to seed the PRNG which results in a small search space for potential random seeds that could then be used to brute force the cookie and execute code against a remote system. This has been fixed in version 6.0.0.

    Published: 10 Sept 2019
    5.3
    Medium

    CVE-2019-11466

    Last Modified: 21 Nov 2024

    In Couchbase Server 6.0.0 and 5.5.0, the eventing service exposes system diagnostic profile via an HTTP endpoint that does not require credentials on a port earmarked for internal traffic only. This has been remedied in version 6.0.1 and now requires valid credentials to access.

    Published: 10 Sept 2019
    5.3
    Medium

    CVE-2019-11465

    Last Modified: 21 Nov 2024

    An issue was discovered in Couchbase Server 5.5.x through 5.5.3 and 6.0.0. The Memcached "connections" stat block command emits a non-redacted username. The system information submitted to Couchbase as part of a bug report included the usernames for all users currently logged into the system even if the log was redacted for privacy. This has been fixed (in 5.5.4 and 6.0.1) so that usernames are tagged properly in the logs and are hashed out when the logs are redacted.

    Published: 10 Sept 2019
    6.7
    Medium

    CVE-2019-0357

    Last Modified: 21 Nov 2024

    The administrator of SAP HANA database, before versions 1.0 and 2.0, can misuse HANA to execute commands with operating system "root" privileges.

    Published: 10 Sept 2019
    6.1
    Medium

    CVE-2019-11464

    Last Modified: 21 Nov 2024

    Some enterprises require that REST API endpoints include security-related headers in REST responses. Headers such as X-Frame-Options and X-Content-Type-Options are generally advisable, however some information security professionals additionally look for X-Permitted-Cross-Domain-Policies and X-XSS-Protection, which are more generally applicable to HTML endpoint, to be included too. These headers were not included in Couchbase Server 5.5.0 and 5.1.2 . They are now included in version 6.0.2 in responses from the Couchbase Server Views REST API (port 8092).

    Published: 10 Sept 2019
    4.3
    Medium

    CVE-2019-0356

    Last Modified: 21 Nov 2024

    Under certain conditions SAP NetWeaver Process Integration Runtime Workbench – MESSAGING and SAP_XIAF (before versions 7.31, 7.40, 7.50) allows an attacker to access information which would otherwise be restricted.

    Published: 10 Sept 2019
    8.2
    High

    CVE-2019-12105

    Last Modified: 21 Nov 2024

    In Supervisor through 4.0.2, an unauthenticated user can read log files or restart a service. Note: The maintainer responded that the affected component, inet_http_server, is not enabled by default but if the user enables it and does not set a password, Supervisor logs a warning message. The maintainer indicated the ability to run an open server will not be removed but an additional warning was added to the documentation

    Published: 10 Sept 2019
    7.5
    High

    CVE-2019-0365

    Last Modified: 21 Nov 2024

    SAP Kernel (RFC), KRNL32NUC, KRNL32UC and KRNL64NUC before versions 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL64UC, before versions 7.21, 7.21EXT, 7.22, 7.22EXT, 7.49, 7.73 and KERNEL before versions 7.21, 7.49, 7.53, 7.73, 7.76 SAP GUI for Windows (BC-FES-GUI) before versions 7.5, 7.6, and SAP GUI for Java (BC-FES-JAV) before version 7.5, allow an attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service.

    Published: 10 Sept 2019
    4.3
    Medium

    CVE-2019-0364

    Last Modified: 21 Nov 2024

    Attackers may misuse an HTTP/REST endpoint of SAP HANA Extended Application Services (Advanced model), before version 1.0.118, to enumerate open ports.

    Published: 10 Sept 2019
    7.1
    High

    CVE-2019-0363

    Last Modified: 21 Nov 2024

    Attackers may misuse an HTTP/REST endpoint of SAP HANA Extended Application Services (Advanced model), before version 1.0.118, to overload the server or retrieve information about internal network ports.

    Published: 10 Sept 2019
    6.1
    Medium

    CVE-2019-0361

    Last Modified: 21 Nov 2024

    SAP Supplier Relationship Management (Master Data Management Catalog - SRM_MDM_CAT, before versions 3.73, 7.31, 7.32) does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.

    Published: 10 Sept 2019
    7.2
    High

    CVE-2019-0355

    Last Modified: 21 Nov 2024

    SAP NetWeaver Application Server Java Web Container, ENGINEAPI (before versions 7.10, 7.20, 7.30, 7.31, 7.40, 7.50) and SAP-JEECOR (before versions 6.40, 7.0, 7.01), allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behaviour of the application.

    Published: 10 Sept 2019
    3.3
    Low

    CVE-2019-0353

    Last Modified: 21 Nov 2024

    Under certain conditions SAP Business One client (B1_ON_HANA, SAP-M-BO), before versions 9.2 and 9.3, allows an attacker to access information which would otherwise be restricted.

    Published: 10 Sept 2019
    7.5
    High

    CVE-2019-0352

    Last Modified: 21 Nov 2024

    In SAP Business Objects Business Intelligence Platform, before versions 4.1, 4.2 and 4.3, some dynamic pages (like jsp) are cached, which leads to an attacker can see the sensitive information via cache and can open the dynamic pages even after logout.

    Published: 10 Sept 2019
    9.8
    Critical

    CVE-2019-3975

    Last Modified: 21 Nov 2024

    Stack-based buffer overflow in Advantech WebAccess/SCADA 8.4.1 allows a remote, unauthenticated attacker to execute arbitrary code via a crafted IOCTL 70603 RPC message.

    Published: 10 Sept 2019
    5.3
    Medium

    CVE-2019-5503

    Last Modified: 21 Nov 2024

    OnCommand Workflow Automation versions prior to 5.0 shipped without certain HTTP Security headers configured which could allow an attacker to obtain sensitive information via unspecified vectors.

    Published: 10 Sept 2019
    7.5
    High

    CVE-2019-16106

    Last Modified: 21 Nov 2024

    The Recruitment module in Humanica Humatrix 7 1.0.0.203 and 1.0.0.681 allows an unauthenticated attacker to change the password of any user via the recruitment_online/personalData/act_acounttab.cfm txtNewUserName and hdNP fields.

    Published: 10 Sept 2019
    9.8
    Critical

    CVE-2019-15896

    Last Modified: 21 Nov 2024

    An issue was discovered in the LifterLMS plugin through 3.34.5 for WordPress. The upload_import function in the class.llms.admin.import.php script is prone to an unauthenticated options import vulnerability that could lead to privilege escalation (administrator account creation), website redirection, and stored XSS.

    Published: 10 Sept 2019
    4.3
    Medium

    CVE-2019-14730

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to delete a domain from a victim's account via an attacker account.

    Published: 10 Sept 2019
    4.3
    Medium

    CVE-2019-14728

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to add an e-mail forwarding destination to a victim's account via an attacker account.

    Published: 10 Sept 2019
    4.3
    Medium

    CVE-2019-14729

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to delete a sub-domain from a victim's account via an attacker account.

    Published: 10 Sept 2019
    4.3
    Medium

    CVE-2019-14727

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to change the e-mail password of a victim account via an attacker account.

    Published: 10 Sept 2019
    5.4
    Medium

    CVE-2019-14726

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to access and delete DNS records of a victim's account via an attacker account.

    Published: 10 Sept 2019
    4.3
    Medium

    CVE-2019-14723

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to delete a victim's e-mail account via an attacker account.

    Published: 10 Sept 2019
    4.3
    Medium

    CVE-2019-14722

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to delete an e-mail forwarding destination from a victim's account via an attacker account.

    Published: 10 Sept 2019
    6.5
    Medium

    CVE-2019-14721

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to remove a target user from phpMyAdmin via an attacker account.

    Published: 10 Sept 2019
    6.5
    Medium

    CVE-2019-16202

    Last Modified: 21 Nov 2024

    MISP before 2.4.115 allows privilege escalation in certain situations. After updating to 2.4.115, escalation attempts are blocked by the __checkLoggedActions function with a "This could be an indication of an attempted privilege escalation on older vulnerable versions of MISP (<2.4.115)" message.

    Published: 10 Sept 2019
    6.1
    Medium

    CVE-2017-18611

    Last Modified: 21 Nov 2024

    The magic-fields plugin before 1.7.2 for WordPress has XSS via the RCCWP_CreateCustomFieldPage.php custom-field-css parameter.

    Published: 10 Sept 2019
    6.1
    Medium

    CVE-2017-18610

    Last Modified: 21 Nov 2024

    The magic-fields plugin before 1.7.2 for WordPress has XSS via the RCCWP_CreateCustomFieldPage.php custom-group-id parameter.

    Published: 10 Sept 2019
    6.1
    Medium

    CVE-2017-18609

    Last Modified: 21 Nov 2024

    The magic-fields plugin before 1.7.2 for WordPress has XSS via the custom-write-panel-id parameter.

    Published: 10 Sept 2019
    6.1
    Medium

    CVE-2017-18608

    Last Modified: 21 Nov 2024

    The spotim-comments plugin before 4.0.4 for WordPress has multiple XSS issues.

    Published: 10 Sept 2019
    8.8
    High

    CVE-2017-18607

    Last Modified: 21 Nov 2024

    The avada theme before 5.1.5 for WordPress has CSRF.

    Published: 10 Sept 2019
    6.1
    Medium

    CVE-2017-18606

    Last Modified: 21 Nov 2024

    The avada theme before 5.1.5 for WordPress has stored XSS.

    Published: 10 Sept 2019
    9.8
    Critical

    CVE-2017-18605

    Last Modified: 21 Nov 2024

    The gravitate-qa-tracker plugin through 1.2.1 for WordPress has PHP Object Injection.

    Published: 10 Sept 2019
    7.5
    High

    CVE-2017-18604

    Last Modified: 21 Nov 2024

    The sitebuilder-dynamic-components plugin through 1.0 for WordPress has PHP object injection via an AJAX request.

    Published: 10 Sept 2019