CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2019-10677

    Last Modified: 21 Nov 2024

    Multiple Cross-Site Scripting (XSS) issues in the web interface on DASAN Zhone ZNID GPON 2426A EU version S3.1.285 devices allow a remote attacker to execute arbitrary JavaScript via manipulation of an unsanitized GET parameter: /zhndnsdisplay.cmd (name), /wlsecrefresh.wl (wlWscCfgMethod, wl_wsc_reg).

    Published: 5 Sept 2019
    8.8
    High

    CVE-2019-1939

    Last Modified: 21 Nov 2024

    A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected system. This vulnerability is due to improper restrictions on software logging features used by the application on Windows operating systems. An attacker could exploit this vulnerability by convincing a targeted user to visit a website designed to submit malicious input to the affected application. A successful exploit could allow the attacker to cause the application to modify files and execute arbitrary commands on the system with the privileges of the targeted user.

    Published: 5 Sept 2019
    9.8
    Critical

    CVE-2019-1976

    Last Modified: 21 Nov 2024

    A vulnerability in the “plug-and-play” services component of Cisco Industrial Network Director (IND) could allow an unauthenticated, remote attacker to access sensitive information on an affected device. The vulnerability is due to improper access restrictions on the web-based management interface. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to access running configuration information about devices managed by the IND, including administrative credentials.

    Published: 5 Sept 2019
    4.3
    Medium

    CVE-2019-12635

    Last Modified: 21 Nov 2024

    A vulnerability in the authorization module of Cisco Content Security Management Appliance (SMA) Software could allow an authenticated, remote attacker to gain out-of-scope access to email. The vulnerability exists because the affected software does not correctly implement role permission controls. An attacker could exploit this vulnerability by using a custom role with specific permissions. A successful exploit could allow the attacker to access the spam quarantine of other users.

    Published: 5 Sept 2019
    6.1
    Medium

    CVE-2019-12644

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability exists because the web-based management interface of the affected device does not properly validate user-supplied input. An attacker could exploit this vulnerability by persuading a user to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.

    Published: 5 Sept 2019
    7.8
    High

    CVE-2019-12645

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco Jabber Client Framework (JCF) for Mac Software, installed as part of the Cisco Jabber for Mac client, could allow an authenticated, local attacker to execute arbitrary code on an affected device The vulnerability is due to improper file level permissions on an affected device when it is running Cisco JCF for Mac Software. An attacker could exploit this vulnerability by authenticating to the affected device and executing arbitrary code or potentially modifying certain configuration files. A successful exploit could allow the attacker to execute arbitrary code or modify certain configuration files on the device using the privileges of the installed Cisco JCF for Mac Software.

    Published: 5 Sept 2019
    7.5
    High

    CVE-2019-12632

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to bypass access controls and conduct a server-side request forgery (SSRF) attack on an affected system. The vulnerability exists because the affected system does not properly validate user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to a user of the web application. A successful exploit could allow the attacker to access the system and perform unauthorized actions.

    Published: 5 Sept 2019
    7.5
    High

    CVE-2019-12633

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco Unified Contact Center Express (Unified CCX) could allow an unauthenticated, remote attacker to bypass access controls and conduct a server-side request forgery (SSRF) attack on a targeted system. The vulnerability is due to improper validation of user-supplied input on the affected system. An attacker could exploit this vulnerability by sending the user of the web application a crafted request. If the request is processed, the attacker could access the system and perform unauthorized actions.

    Published: 5 Sept 2019
    8.8
    High

    CVE-2018-21009

    Last Modified: 21 Nov 2024

    Poppler before 0.66.0 has an integer overflow in Parser::makeStream in Parser.cc.

    Published: 5 Sept 2019
    8.8
    High

    CVE-2018-21010

    Last Modified: 21 Nov 2024

    OpenJPEG before 2.3.1 has a heap buffer overflow in color_apply_icc_profile in bin/common/color.c.

    Published: 5 Sept 2019
    6.5
    Medium

    CVE-2019-12586

    Last Modified: 21 Nov 2024

    The EAP peer implementation in Espressif ESP-IDF 2.0.0 through 4.0.0 and ESP8266_NONOS_SDK 2.2.0 through 3.1.0 processes EAP Success messages before any EAP method completion or failure, which allows attackers in radio range to cause a denial of service (crash) via a crafted message.

    Published: 4 Sept 2019
    6.5
    Medium

    CVE-2019-14319

    Last Modified: 21 Nov 2024

    The TikTok (formerly Musical.ly) application 12.2.0 for Android and iOS performs unencrypted transmission of images, videos, and likes. This allows an attacker to extract private sensitive information by sniffing network traffic.

    Published: 4 Sept 2019
    6.1
    Medium

    CVE-2019-14470

    Last Modified: 21 Nov 2024

    cosenary Instagram-PHP-API (aka Instagram PHP API V2), as used in the UserPro plugin through 4.9.32 for WordPress, has XSS via the example/success.php error_description parameter.

    Published: 4 Sept 2019
    7.5
    High

    CVE-2019-6643

    Last Modified: 21 Nov 2024

    On versions 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.2, 12.1.0-12.1.4.1, and 11.5.2-11.6.4, an attacker sending specifically crafted DHCPv6 requests through a BIG-IP virtual server configured with a DHCPv6 profile may be able to cause the TMM process to produce a core file.

    Published: 4 Sept 2019
    8.8
    High

    CVE-2019-6646

    Last Modified: 21 Nov 2024

    On BIG-IP 11.5.2-11.6.4 and Enterprise Manager 3.1.1, REST users with guest privileges may be able to escalate their privileges and run commands with admin privileges.

    Published: 4 Sept 2019
    9.4
    Critical

    CVE-2019-6644

    Last Modified: 21 Nov 2024

    Similar to the issue identified in CVE-2018-12120, on versions 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.2, and 12.1.0-12.1.4 BIG-IP will bind a debug nodejs process to all interfaces when invoked. This may expose the process to unauthorized users if the plugin is left in debug mode and the port is accessible.

    Published: 4 Sept 2019
    5.3
    Medium

    CVE-2019-6647

    Last Modified: 21 Nov 2024

    On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.2, 12.1.0-12.1.4.1, 11.5.2-11.6.4, when processing authentication attempts for control-plane users MCPD leaks a small amount of memory. Under rare conditions attackers with access to the management interface could eventually deplete memory on the system.

    Published: 4 Sept 2019
    4.4
    Medium

    CVE-2019-6648

    Last Modified: 21 Nov 2024

    On version 1.9.0, If DEBUG logging is enable, F5 Container Ingress Service (CIS) for Kubernetes and Red Hat OpenShift (k8s-bigip-ctlr) log files may contain BIG-IP secrets such as SSL Private Keys and Private key Passphrases as provided as inputs by an AS3 Declaration.

    Published: 4 Sept 2019
    7.5
    High

    CVE-2019-6645

    Last Modified: 21 Nov 2024

    On BIG-IP 14.0.0-14.1.0.5, 13.0.0-13.1.2, 12.1.0-12.1.4.1, 11.5.2-11.6.4, FTP traffic passing through a Virtual Server with both an active FTP profile associated and connection mirroring configured may lead to a TMM crash causing the configured HA action to be taken.

    Published: 4 Sept 2019
    9.8
    Critical

    CVE-2019-13976

    Last Modified: 21 Nov 2024

    eGain Chat 15.0.3 allows unrestricted file upload.

    Published: 4 Sept 2019
    6.1
    Medium

    CVE-2019-13975

    Last Modified: 21 Nov 2024

    eGain Chat 15.0.3 allows HTML Injection.

    Published: 4 Sept 2019
    7.8
    High

    CVE-2019-13518

    Last Modified: 21 Nov 2024

    An attacker could use a specially crafted project file to overflow the buffer and execute code under the privileges of the EZ Touch Editor Versions 2.1.0 and prior.

    Published: 4 Sept 2019
    7.8
    High

    CVE-2019-13522

    Last Modified: 21 Nov 2024

    An attacker could use a specially crafted project file to corrupt the memory and execute code under the privileges of the EZ PLC Editor Versions 1.8.41 and prior.

    Published: 4 Sept 2019
    5.4
    Medium

    CVE-2019-15814

    Last Modified: 21 Nov 2024

    Multiple stored XSS vulnerabilities in Sentrifugo 3.2 could allow authenticated users to inject arbitrary web script or HTML.

    Published: 4 Sept 2019
    8.8
    High

    CVE-2019-15813

    Last Modified: 21 Nov 2024

    Multiple file upload restriction bypass vulnerabilities in Sentrifugo 3.2 could allow authenticated users to execute arbitrary code via a webshell.

    Published: 4 Sept 2019
    6.1
    Medium

    CVE-2019-13209

    Last Modified: 21 Nov 2024

    Rancher 2 through 2.2.4 is vulnerable to a Cross-Site Websocket Hijacking attack that allows an exploiter to gain access to clusters managed by Rancher. The attack requires a victim to be logged into a Rancher server, and then to access a third-party site hosted by the exploiter. Once that is accomplished, the exploiter is able to execute commands against the cluster's Kubernetes API with the permissions and identity of the victim.

    Published: 4 Sept 2019
    3.4
    Low

    CVE-2019-10988

    Last Modified: 21 Nov 2024

    In Philips HDI 4000 Ultrasound Systems, all versions running on old, unsupported operating systems such as Windows 2000, the HDI 4000 Ultrasound System is built on an old operating system that is no longer supported. Thus, any unmitigated vulnerability in the old operating system could be exploited to affect this product.

    Published: 4 Sept 2019
    8.1
    High

    CVE-2019-12587

    Last Modified: 21 Nov 2024

    The EAP peer implementation in Espressif ESP-IDF 2.0.0 through 4.0.0 and ESP8266_NONOS_SDK 2.2.0 through 3.1.0 allows the installation of a zero Pairwise Master Key (PMK) after the completion of any EAP authentication method, which allows attackers in radio range to replay, decrypt, or spoof frames via a rogue access point.

    Published: 4 Sept 2019
    6.5
    Medium

    CVE-2019-12588

    Last Modified: 21 Nov 2024

    The client 802.11 mac implementation in Espressif ESP8266_NONOS_SDK 2.2.0 through 3.1.0 does not validate correctly the RSN AuthKey suite list count in beacon frames, probe responses, and association responses, which allows attackers in radio range to cause a denial of service (crash) via a crafted message.

    Published: 4 Sept 2019
    9.8
    Critical

    CVE-2019-10709

    Last Modified: 21 Nov 2024

    AsusPTPFilter.sys on Asus Precision TouchPad 11.0.0.25 hardware has a Pool Overflow associated with the \\.\AsusTP device, leading to a DoS or potentially privilege escalation via a crafted DeviceIoControl call.

    Published: 4 Sept 2019
    7.5
    High

    CVE-2019-15903

    Last Modified: 30 May 2025

    In libexpat before 2.2.8, crafted XML input could fool the parser into changing from DTD parsing to document parsing too early; a consecutive call to XML_GetCurrentLineNumber (or XML_GetCurrentColumnNumber) then resulted in a heap-based buffer over-read.

    Published: 4 Sept 2019
    7.5
    High

    CVE-2019-15916

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.1. There is a memory leak in register_queue_kobjects() in net/core/net-sysfs.c, which will cause denial of service.

    Published: 4 Sept 2019
    7.8
    High

    CVE-2019-15918

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.10. SMB2_negotiate in fs/cifs/smb2pdu.c has an out-of-bounds read because data structures are incompletely updated after a change from smb30 to smb21.

    Published: 4 Sept 2019
    4.7
    Medium

    CVE-2019-15921

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.6. There is a memory leak issue when idr_alloc() fails in genl_register_family() in net/netlink/genetlink.c.

    Published: 4 Sept 2019
    9.1
    Critical

    CVE-2019-15926

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.2.3. Out of bounds access exists in the functions ath6kl_wmi_pstream_timeout_event_rx and ath6kl_wmi_cac_event_rx in the file drivers/net/wireless/ath/ath6kl/wmi.c.

    Published: 4 Sept 2019
    4.3
    Medium

    CVE-2019-15920

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.10. SMB2_read in fs/cifs/smb2pdu.c has a use-after-free. NOTE: this was not fixed correctly in 5.0.10; see the 5.0.11 ChangeLog, which documents a memory leak.

    Published: 4 Sept 2019
    5.5
    Medium

    CVE-2018-21008

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 4.16.7. A use-after-free can be caused by the function rsi_mac80211_detach in the file drivers/net/wireless/rsi/rsi_91x_mac80211.c.

    Published: 4 Sept 2019
    7
    High

    CVE-2019-15917

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.5. There is a use-after-free issue when hci_uart_register_dev() fails in hci_uart_set_proto() in drivers/bluetooth/hci_ldisc.c.

    Published: 4 Sept 2019
    3.3
    Low

    CVE-2019-15919

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.10. SMB2_write in fs/cifs/smb2pdu.c has a use-after-free.

    Published: 4 Sept 2019
    5.5
    Medium

    CVE-2019-15922

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.9. There is a NULL pointer dereference for a pf data structure if alloc_disk fails in drivers/block/paride/pf.c.

    Published: 4 Sept 2019
    5.5
    Medium

    CVE-2019-15923

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.9. There is a NULL pointer dereference for a cd data structure if alloc_disk fails in drivers/block/paride/pf.c.

    Published: 4 Sept 2019
    5.5
    Medium

    CVE-2019-15924

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.11. fm10k_init_module in drivers/net/ethernet/intel/fm10k/fm10k_main.c has a NULL pointer dereference because there is no -ENOMEM upon an alloc_workqueue failure.

    Published: 4 Sept 2019
    7.8
    High

    CVE-2019-15925

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.2.3. An out of bounds access exists in the function hclge_tm_schd_mode_vnet_base_cfg in the file drivers/net/ethernet/hisilicon/hns3/hns3pf/hclge_tm.c.

    Published: 4 Sept 2019
    7.8
    High

    CVE-2019-15927

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 4.20.2. An out-of-bounds access exists in the function build_audio_procunit in the file sound/usb/mixer.c.

    Published: 4 Sept 2019
    7.8
    High

    CVE-2017-18595

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 4.14.11. A double free may be caused by the function allocate_trace_buffer in the file kernel/trace/trace.c.

    Published: 4 Sept 2019
    6.1
    Medium

    CVE-2019-15898

    Last Modified: 21 Nov 2024

    Nagios Log Server before 2.0.8 allows Reflected XSS via the username on the Login page.

    Published: 3 Sept 2019
    5.3
    Medium

    CVE-2019-5480

    Last Modified: 21 Nov 2024

    A path traversal vulnerability in <= v0.9.7 of statichttpserver npm module allows attackers to list files in arbitrary folders.

    Published: 3 Sept 2019
    5.5
    Medium

    CVE-2019-5478

    Last Modified: 27 Nov 2024

    A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices. This could lead to an adversary being able to modify the control fields of the boot image leading to an incorrect secure boot behavior.

    Published: 3 Sept 2019
    7.5
    High

    CVE-2019-5479

    Last Modified: 21 Nov 2024

    An unintended require vulnerability in <v0.5.5 larvitbase-api may allow an attacker to load arbitrary non-production code (JavaScript file).

    Published: 3 Sept 2019
    8.8
    High

    CVE-2019-5475

    Last Modified: 21 Nov 2024

    The Nexus Yum Repository Plugin in v2 is vulnerable to Remote Code Execution when instances using CommandLineExecutor.java are supplied vulnerable data, such as the Yum Configuration Capability.

    Published: 3 Sept 2019