CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2018-11959

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2018-11941

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2018-11933

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2018-11825

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18341

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18340

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18339

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18338

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18337

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18336

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18335

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18334

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18333

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2017-18325

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2016-10413

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2016. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2016-10453

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2016. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2016-10463

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2016. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2016-10465

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2016. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2016-10468

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2016. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2016-10470

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2016. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2016-10488

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2016. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2016-10500

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2016. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2014-10049

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2014. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2014-10060

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2014. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2014-10061

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2014. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2014-9982

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2014. Notes: none

    Published: 30 Aug 2019
    —
    Unknown

    CVE-2014-9992

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2014. Notes: none

    Published: 30 Aug 2019
    8.2
    High

    CVE-2019-2390

    Last Modified: 23 Feb 2026

    An unprivileged user or program on Microsoft Windows which can create OpenSSL configuration files in a fixed location may cause utility programs shipped with MongoDB server to run attacker defined code as the user running the utility. This issue MongoDB Server v4.0 versions prior to 4.0.11; MongoDB Server v3.6 versions prior to 3.6.14 and MongoDB Server v3.4 prior to 3.4.22.

    Published: 30 Aug 2019
    6.1
    Medium

    CVE-2019-15833

    Last Modified: 21 Nov 2024

    The simple-mail-address-encoder plugin before 1.7 for WordPress has reflected XSS.

    Published: 30 Aug 2019
    8.8
    High

    CVE-2019-15832

    Last Modified: 21 Nov 2024

    The visitors-traffic-real-time-statistics plugin before 1.13 for WordPress has CSRF.

    Published: 30 Aug 2019
    8.8
    High

    CVE-2019-15831

    Last Modified: 21 Nov 2024

    The visitors-traffic-real-time-statistics plugin before 1.12 for WordPress has CSRF in the settings page.

    Published: 30 Aug 2019
    5.4
    Medium

    CVE-2019-15830

    Last Modified: 21 Nov 2024

    The icegram plugin before 1.10.29 for WordPress has ig_cat_list XSS.

    Published: 30 Aug 2019
    4.8
    Medium

    CVE-2019-15829

    Last Modified: 21 Nov 2024

    The photoblocks-grid-gallery plugin before 1.1.33 for WordPress has wp-admin/admin.php?page=photoblocks-edit&id= XSS.

    Published: 30 Aug 2019
    8.8
    High

    CVE-2019-15828

    Last Modified: 21 Nov 2024

    The one-click-ssl plugin before 1.4.7 for WordPress has CSRF.

    Published: 30 Aug 2019
    5.4
    Medium

    CVE-2019-15827

    Last Modified: 21 Nov 2024

    The onesignal-free-web-push-notifications plugin before 1.17.8 for WordPress has XSS via the subdomain parameter.

    Published: 30 Aug 2019
    9.8
    Critical

    CVE-2019-15826

    Last Modified: 21 Nov 2024

    The wps-hide-login plugin before 1.5.3 for WordPress has a protection bypass via wp-login.php in the Referer field.

    Published: 30 Aug 2019
    9.8
    Critical

    CVE-2019-15825

    Last Modified: 21 Nov 2024

    The wps-hide-login plugin before 1.5.3 for WordPress has an action=rp&key&login protection bypass.

    Published: 30 Aug 2019
    9.8
    Critical

    CVE-2019-15824

    Last Modified: 21 Nov 2024

    The wps-hide-login plugin before 1.5.3 for WordPress has an adminhash protection bypass.

    Published: 30 Aug 2019
    9.8
    Critical

    CVE-2019-15823

    Last Modified: 21 Nov 2024

    The wps-hide-login plugin before 1.5.3 for WordPress has an action=confirmaction protection bypass.

    Published: 30 Aug 2019
    9.8
    Critical

    CVE-2019-15822

    Last Modified: 21 Nov 2024

    The wps-child-theme-generator plugin before 1.2 for WordPress has classes/helpers.php directory traversal.

    Published: 30 Aug 2019
    7.5
    High

    CVE-2019-15821

    Last Modified: 21 Nov 2024

    The bold-page-builder plugin before 2.3.2 for WordPress has no protection against modifying settings and importing data.

    Published: 30 Aug 2019
    6.1
    Medium

    CVE-2019-15820

    Last Modified: 21 Nov 2024

    The login-or-logout-menu-item plugin before 1.2.0 for WordPress has no requirement for lolmi_save_settings authentication.

    Published: 30 Aug 2019
    9.8
    Critical

    CVE-2019-15819

    Last Modified: 21 Nov 2024

    The nd-restaurant-reservations plugin before 1.5 for WordPress has no requirement for nd_rst_import_settings_php_function authentication.

    Published: 30 Aug 2019
    6.1
    Medium

    CVE-2019-15818

    Last Modified: 21 Nov 2024

    The simple-301-redirects-addon-bulk-uploader plugin through 1.2.4 for WordPress has no requirement for authentication for action=bulk301export or action=bulk301clearlist.

    Published: 30 Aug 2019
    6.1
    Medium

    CVE-2019-15817

    Last Modified: 21 Nov 2024

    The easy-property-listings plugin before 3.4 for WordPress has XSS.

    Published: 30 Aug 2019
    7.5
    High

    CVE-2019-15816

    Last Modified: 21 Nov 2024

    The wp-private-content-plus plugin before 2.0 for WordPress has no protection against option changes via save_settings_page and other save_ functions.

    Published: 30 Aug 2019
    8.8
    High

    CVE-2015-9380

    Last Modified: 21 Nov 2024

    The photo-gallery plugin before 1.2.42 for WordPress has CSRF.

    Published: 30 Aug 2019
    5.3
    Medium

    CVE-2019-2389

    Last Modified: 21 Nov 2024

    Incorrect scoping of kill operations in MongoDB Server's packaged SysV init scripts allow users with write access to the PID file to insert arbitrary PIDs to be killed when the root user stops the MongoDB process via SysV init. This issue affects MongoDB Server v4.0 versions prior to 4.0.11; MongoDB Server v3.6 versions prior to 3.6.14; MongoDB Server v3.4 versions prior to 3.4.22.

    Published: 30 Aug 2019
    7.3
    High

    CVE-2019-14866

    Last Modified: 13 Feb 2025

    In all versions of cpio before 2.13 does not properly validate input files when generating TAR archives. When cpio is used to create TAR archives from paths an attacker can write to, the resulting archive may contain files with permissions the attacker did not have or in paths he did not have access to. Extracting those archives from a high-privilege user without carefully reviewing them may lead to the compromise of the system.

    Published: 30 Aug 2019
    8.8
    High

    CVE-2019-13526

    Last Modified: 21 Nov 2024

    Datalogic AV7000 Linear barcode scanner all versions prior to 4.6.0.0 is vulnerable to authentication bypass, which may allow an attacker to remotely execute arbitrary code.

    Published: 29 Aug 2019