CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2019-15745

    Last Modified: 21 Nov 2024

    The Eques elf smart plug and the mobile app use a hardcoded AES 256 bit key to encrypt the commands and responses between the device and the app. The communication happens over UDP port 27431. An attacker on the local network can use the same key to encrypt and send commands to discover all smart plugs in a network, take over control of a device, and perform actions such as turning it on and off.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-15785

    Last Modified: 21 Nov 2024

    FontForge 20190813 through 20190820 has a buffer overflow in PrefsUI_LoadPrefs in prefs.c.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-15786

    Last Modified: 21 Nov 2024

    ROBOTIS Dynamixel SDK through 3.7.11 has a buffer overflow via a large rxpacket.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-15771

    Last Modified: 21 Nov 2024

    The nd-shortcodes plugin before 6.0 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.

    Published: 29 Aug 2019
    5.4
    Medium

    CVE-2019-15778

    Last Modified: 21 Nov 2024

    The woo-variation-gallery plugin before 1.1.29 for WordPress has XSS.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-15779

    Last Modified: 21 Nov 2024

    The insta-gallery plugin before 2.4.8 for WordPress has no nonce validation for qligg_dismiss_notice or qligg_form_item_delete.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-15781

    Last Modified: 21 Nov 2024

    The facebook-by-weblizar plugin before 2.8.5 for WordPress has CSRF.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-15784

    Last Modified: 21 Nov 2024

    Secure Reliable Transport (SRT) through 1.3.4 has a CSndUList array overflow if there are many SRT connections.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-15788

    Last Modified: 21 Nov 2024

    Clara Genomics Analysis before 0.2.0 has an integer overflow for cudapoa memory management in allocate_block.cpp.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-14943

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.1.4. It uses Hard-coded Credentials.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-15780

    Last Modified: 21 Nov 2024

    The formidable plugin before 4.02.01 for WordPress has unsafe deserialization.

    Published: 29 Aug 2019
    5.4
    Medium

    CVE-2019-15777

    Last Modified: 21 Nov 2024

    The shapepress-dsgvo plugin before 2.2.19 for WordPress has wp-admin/admin-ajax.php?action=admin-common-settings&admin_email= XSS.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-15776

    Last Modified: 21 Nov 2024

    The simple-301-redirects-addon-bulk-uploader plugin before 1.2.5 for WordPress has no protection against 301 redirect rule injection via a CSV file.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-15774

    Last Modified: 21 Nov 2024

    The nd-booking plugin before 2.5 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-15775

    Last Modified: 21 Nov 2024

    The nd-learning plugin before 4.8 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-15773

    Last Modified: 21 Nov 2024

    The nd-travel plugin before 1.7 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-15772

    Last Modified: 21 Nov 2024

    The nd-donations plugin before 1.4 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-15770

    Last Modified: 21 Nov 2024

    The woo-address-book plugin before 1.6.0 for WordPress has save calls without nonce verification checks.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-15769

    Last Modified: 21 Nov 2024

    The handl-utm-grabber plugin before 2.6.5 for WordPress has CSRF via add_option and update_option.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2018-21007

    Last Modified: 21 Nov 2024

    The woo-confirmation-email plugin before 3.2.0 for WordPress has no blocking of direct access to supportive xl folders inside uploads.

    Published: 29 Aug 2019
    7.5
    High

    CVE-2019-15787

    Last Modified: 21 Nov 2024

    libZetta.rs through 0.1.2 has an integer overflow in the zpool parser (for error stats) that leads to a panic.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-15783

    Last Modified: 21 Nov 2024

    Lute-Tab before 2019-08-23 has a buffer overflow in pdf_print.cc.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-15782

    Last Modified: 21 Nov 2024

    WebTorrent before 0.107.6 allows XSS in the HTTP server via a title or file name.

    Published: 29 Aug 2019
    6.5
    Medium

    CVE-2019-15758

    Last Modified: 21 Nov 2024

    An issue was discovered in Binaryen 1.38.32. Missing validation rules in asmjs/asmangle.cpp can lead to an Assertion Failure at wasm/wasm.cpp in wasm::asmangle. A crafted input can cause denial-of-service, as demonstrated by wasm2js.

    Published: 29 Aug 2019
    6.5
    Medium

    CVE-2019-15759

    Last Modified: 21 Nov 2024

    An issue was discovered in Binaryen 1.38.32. Two visitors in ir/ExpressionManipulator.cpp can lead to a NULL pointer dereference in wasm::LocalSet::finalize in wasm/wasm.cpp. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by wasm2js.

    Published: 29 Aug 2019
    7.8
    High

    CVE-2019-5530

    Last Modified: 21 Nov 2024

    Windows binaries generated with InstallBuilder versions earlier than 19.7.0 are vulnerable to tampering even if they contain a valid Authenticode signature.

    Published: 29 Aug 2019
    7.8
    High

    CVE-2017-14201

    Last Modified: 21 Nov 2024

    Use After Free vulnerability in the Zephyr shell allows a serial or telnet connected user to cause denial of service, and possibly remote code execution. This issue affects: Zephyr shell versions prior to 1.14.0 on all.

    Published: 29 Aug 2019
    7.8
    High

    CVE-2017-14202

    Last Modified: 21 Nov 2024

    Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the shell component of Zephyr allows a serial or telnet connected user to cause a crash, possibly with arbitrary code execution. This issue affects: Zephyr shell versions prior to 1.14.0 on all.

    Published: 29 Aug 2019
    6.5
    Medium

    CVE-2019-15757

    Last Modified: 21 Nov 2024

    libMirage 3.2.2 in CDemu has a NULL pointer dereference in the NRG parser in parser.c.

    Published: 29 Aug 2019
    7.5
    High

    CVE-2019-11060

    Last Modified: 21 Nov 2024

    The web api server on Port 8080 of ASUS HG100 firmware up to 1.05.12, which is vulnerable to Slowloris HTTP Denial of Service: an attacker can cause a Denial of Service (DoS) by sending headers very slowly to keep HTTP or HTTPS connections and associated resources alive for a long period of time. CVSS 3.0 Base score 7.4 (Availability impacts). CVSS vector: (CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H).

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-13407

    Last Modified: 21 Nov 2024

    A XSS found in Advan VD-1 firmware versions up to 230. VD-1 responses a path error message when a requested resource was not found in page cgibin/ssi.cgi. It leads to a reflected XSS because the error message does not escape properly.

    Published: 29 Aug 2019
    7.5
    High

    CVE-2019-13406

    Last Modified: 21 Nov 2024

    A broken access control vulnerability found in Advan VD-1 firmware versions up to 230. An attacker can send a POST request to cgibin/ApkUpload.cgi to install arbitrary APK without any authentication.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-13405

    Last Modified: 21 Nov 2024

    A broken access control vulnerability found in Advan VD-1 firmware version 230 leads to insecure ADB service. An attacker can send a POST request to cgibin/AdbSetting.cgi to enable ADB without any authentication then take the compromised device as a relay or to install mining software.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-11064

    Last Modified: 21 Nov 2024

    A vulnerability of remote credential disclosure was discovered in Advan VD-1 firmware versions up to 230. An attacker can export system configuration which is not encrypted to get the administrator’s account and password in plain text via cgibin/ExportSettings.cgi?Export=1 without any authentication.

    Published: 29 Aug 2019
    10
    Critical

    CVE-2019-11063

    Last Modified: 21 Nov 2024

    A broken access control vulnerability in SmartHome app (Android versions up to 3.0.42_190515, ios versions up to 2.0.22) allows an attacker in the same local area network to list user accounts and control IoT devices that connect with its gateway (HG100) via http://[target]/smarthome/devicecontrol without any authentication. CVSS 3.0 base score 10 (Confidentiality, Integrity and Availability impacts). CVSS vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H).

    Published: 29 Aug 2019
    10
    Critical

    CVE-2019-11061

    Last Modified: 21 Nov 2024

    A broken access control vulnerability in HG100 firmware versions up to 4.00.06 allows an attacker in the same local area network to control IoT devices that connect with itself via http://[target]/smarthome/devicecontrol without any authentication. CVSS 3.0 base score 10 (Confidentiality, Integrity and Availability impacts). CVSS vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H).

    Published: 29 Aug 2019
    7.5
    High

    CVE-2019-13408

    Last Modified: 21 Nov 2024

    A relative path traversal vulnerability found in Advan VD-1 firmware versions up to 230. It allows attackers to download arbitrary files via url cgibin/ExportSettings.cgi?Download=filepath, without any authentication.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-8644

    Last Modified: 21 Nov 2024

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-8649

    Last Modified: 21 Nov 2024

    A logic issue existed in the handling of synchronous page loads. This issue was addressed with improved state management. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to universal cross site scripting.

    Published: 29 Aug 2019
    6.1
    Medium

    CVE-2019-8658

    Last Modified: 21 Nov 2024

    A logic issue was addressed with improved state management. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to universal cross site scripting.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-8669

    Last Modified: 21 Nov 2024

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-8671

    Last Modified: 21 Nov 2024

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-8677

    Last Modified: 21 Nov 2024

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-8684

    Last Modified: 21 Nov 2024

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 29 Aug 2019
    8.8
    High

    CVE-2019-8686

    Last Modified: 21 Nov 2024

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 29 Aug 2019
    9.8
    Critical

    CVE-2019-15717

    Last Modified: 21 Nov 2024

    Irssi 1.2.x before 1.2.2 has a use-after-free if the IRC server sends a double CAP.

    Published: 29 Aug 2019
    —
    Unknown

    CVE-2019-15797

    Last Modified: 21 Jun 2024

    CVE ID was once reserved, but never used.

    Published: 29 Aug 2019
    —
    Unknown

    CVE-2019-15798

    Last Modified: 21 Jun 2024

    CVE ID was once reserved, but never used.

    Published: 29 Aug 2019
    4.7
    Medium

    CVE-2019-15807

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.1.13, there is a memory leak in drivers/scsi/libsas/sas_expander.c when SAS expander discovery fails. This will cause a BUG and denial of service.

    Published: 29 Aug 2019
    6.4
    Medium

    CVE-2020-8130

    Last Modified: 21 Nov 2024

    There is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe character `|`.

    Published: 29 Aug 2019