CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2019-15643

    Last Modified: 21 Nov 2024

    The ultimate-faqs plugin before 1.8.22 for WordPress has XSS.

    Published: 27 Aug 2019
    6.1
    Medium

    CVE-2018-21001

    Last Modified: 21 Nov 2024

    The anycomment plugin before 0.0.33 for WordPress has XSS.

    Published: 27 Aug 2019
    4.3
    Medium

    CVE-2019-13237

    Last Modified: 21 Nov 2024

    In Alkacon OpenCms 10.5.4 and 10.5.5, there are multiple resources vulnerable to Local File Inclusion that allow an attacker to access server resources: clearhistory.jsp, convertxml.jsp, group_new.jsp, loginmessage.jsp, xmlcontentrepair.jsp, and /system/workplace/admin/history/settings/index.jsp.

    Published: 27 Aug 2019
    6.1
    Medium

    CVE-2019-13236

    Last Modified: 21 Nov 2024

    In system/workplace/ in Alkacon OpenCms 10.5.4 and 10.5.5, there are multiple Reflected and Stored XSS issues in the management interface.

    Published: 27 Aug 2019
    6.1
    Medium

    CVE-2019-13235

    Last Modified: 21 Nov 2024

    In the Alkacon OpenCms Apollo Template 10.5.4 and 10.5.5, there is XSS in the Login form.

    Published: 27 Aug 2019
    6.1
    Medium

    CVE-2019-13234

    Last Modified: 21 Nov 2024

    In the Alkacon OpenCms Apollo Template 10.5.4 and 10.5.5, there is XSS in the search engine.

    Published: 27 Aug 2019
    4.4
    Medium

    CVE-2019-15666

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.19. There is an out-of-bounds array access in __xfrm_policy_unlink, which will cause denial of service, because verify_newpolicy_info in net/xfrm/xfrm_user.c mishandles directory validation.

    Published: 27 Aug 2019
    7.5
    High

    CVE-2019-5094

    Last Modified: 30 May 2025

    An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.

    Published: 27 Aug 2019
    7.5
    High

    CVE-2019-12402

    Last Modified: 21 Nov 2024

    The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a denial of service attack if an attacker can choose the file names inside of an archive created by Compress.

    Published: 27 Aug 2019
    9.8
    Critical

    CVE-2019-15657

    Last Modified: 21 Nov 2024

    In eslint-utils before 1.4.1, the getStaticValue function can execute arbitrary code.

    Published: 26 Aug 2019
    7.3
    High

    CVE-2019-15658

    Last Modified: 21 Nov 2024

    connect-pg-simple before 6.0.1 allows SQL injection if tableName or schemaName is untrusted data.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15651

    Last Modified: 21 Nov 2024

    wolfSSL 4.1.0 has a one-byte heap-based buffer over-read in DecodeCertExtensions in wolfcrypt/src/asn.c because reading the ASN_BOOLEAN byte is mishandled for a crafted DER certificate in GetLength_ex.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15497

    Last Modified: 21 Nov 2024

    Black Box iCOMPEL 9.2.3 through 11.1.4, as used in ONELAN Net-Top-Box 9.2.3 through 11.1.4 and other products, has default credentials that allow remote attackers to access devices remotely via SSH, HTTP, HTTPS, and FTP.

    Published: 26 Aug 2019
    6.5
    Medium

    CVE-2019-15055

    Last Modified: 21 Nov 2024

    MikroTik RouterOS through 6.44.5 and 6.45.x through 6.45.3 improperly handles the disk name, which allows authenticated users to delete arbitrary files. Attackers can exploit this vulnerability to reset credential storage, which allows them access to the management interface as an administrator without authentication.

    Published: 26 Aug 2019
    6.1
    Medium

    CVE-2018-18668

    Last Modified: 21 Nov 2024

    GNUBOARD5 before 5.3.2.0 has XSS that allows remote attackers to inject arbitrary web script or HTML via the "homepage title" parameter, aka the adm/config_form_update.php cf_title parameter.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-9569

    Last Modified: 21 Nov 2024

    Buffer Overflow in dactetra in Delta Controls enteliBUS Manager V3.40_B-571848 allows remote unauthenticated users to execute arbitrary code and possibly cause a denial of service via unspecified vectors.

    Published: 26 Aug 2019
    7.5
    High

    CVE-2019-8460

    Last Modified: 21 Nov 2024

    OpenBSD kernel version <= 6.5 can be forced to create long chains of TCP SACK holes that causes very expensive calls to tcp_sack_option() for every incoming SACK packet which can lead to a denial of service.

    Published: 26 Aug 2019
    6.5
    Medium

    CVE-2019-8000

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound read vulnerability. Successful exploitation could lead to memory leak.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-8001

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    6.5
    Medium

    CVE-2019-7999

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound read vulnerability. Successful exploitation could lead to memory leak.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7998

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7997

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7996

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound read vulnerability. Successful exploitation could lead to memory leak.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7994

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7995

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound read vulnerability. Successful exploitation could lead to memory leak.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7993

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7992

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7989

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a command injection vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7990

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7991

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound read vulnerability. Successful exploitation could lead to memory leak.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7988

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    6.5
    Medium

    CVE-2019-7987

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound read vulnerability. Successful exploitation could lead to memory leak.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7986

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7985

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7984

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7982

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7983

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    6.5
    Medium

    CVE-2019-7981

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound read vulnerability. Successful exploitation could lead to memory leak.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7980

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7975

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7978

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7979

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    6.5
    Medium

    CVE-2019-7977

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound read vulnerability. Successful exploitation could lead to memory leak.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-7976

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7974

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7973

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7969

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7972

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7970

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-7971

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 26 Aug 2019