CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2019-15572

    Last Modified: 21 Nov 2024

    Gesior-AAC before 2019-05-01 allows ServiceCategoryID SQL injection in shop.php.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15573

    Last Modified: 21 Nov 2024

    Gesior-AAC before 2019-05-01 allows SQL injection in tankyou.php.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2018-20991

    Last Modified: 21 Nov 2024

    An issue was discovered in the smallvec crate before 0.6.3 for Rust. The Iterator implementation mishandles destructors, leading to a double free.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15574

    Last Modified: 21 Nov 2024

    Gesior-AAC before 2019-05-01 allows serviceID SQL injection in accountmanagement.php.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-14300

    Last Modified: 21 Nov 2024

    Several Ricoh printers have multiple buffer overflows parsing HTTP cookie headers, which allow an attacker to cause a denial of service or code execution via crafted requests to the web server. Affected firmware versions depend on the printer models. One affected configuration is cpe:2.3:o:ricoh:sp_c250dn_firmware:-:*:*:*:*:*:*:* up to (including) 1.06 running on cpe:2.3:o:ricoh:sp_c250dn:-:*:*:*:*:*:*:*, cpe:2.3:o:ricoh:sp_c252dn:-:*:*:*:*:*:*:*. Another affected configuration is cpe:2.3:o:ricoh:sp_c250sf_firmware:-:*:*:*:*:*:*:* up to (including) 1.12 running on cpe:2.3:o:ricoh:sp_c250sf:-:*:*:*:*:*:*:*, cpe:2.3:o:ricoh:sp_c252sf:-:*:*:*:*:*:*:*.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-14305

    Last Modified: 21 Nov 2024

    Several Ricoh printers have multiple buffer overflows parsing HTTP parameter settings for Wi-Fi, mDNS, POP3, SMTP, and notification alerts, which allow an attacker to cause a denial of service or code execution via crafted requests to the web server. Affected firmware versions depend on the printer models. One affected configuration is cpe:2.3:o:ricoh:sp_c250dn_firmware:-:*:*:*:*:*:*:* up to (including) 1.06 running on cpe:2.3:o:ricoh:sp_c250dn:-:*:*:*:*:*:*:*, cpe:2.3:o:ricoh:sp_c252dn:-:*:*:*:*:*:*:*. Another affected configuration is cpe:2.3:o:ricoh:sp_c250sf_firmware:-:*:*:*:*:*:*:* up to (including) 1.12 running on cpe:2.3:o:ricoh:sp_c250sf:-:*:*:*:*:*:*:*, cpe:2.3:o:ricoh:sp_c252sf:-:*:*:*:*:*:*:*.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-14307

    Last Modified: 21 Nov 2024

    Several Ricoh printers have multiple buffer overflows parsing HTTP parameter settings for SNMP, which allow an attacker to cause a denial of service or code execution via crafted requests to the web server. Affected firmware versions depend on the printer models. One affected configuration is cpe:2.3:o:ricoh:sp_c250dn_firmware:-:*:*:*:*:*:*:* up to (including) 1.06 running on cpe:2.3:o:ricoh:sp_c250dn:-:*:*:*:*:*:*:*, cpe:2.3:o:ricoh:sp_c252dn:-:*:*:*:*:*:*:*. Another affected configuration is cpe:2.3:o:ricoh:sp_c250sf_firmware:-:*:*:*:*:*:*:* up to (including) 1.12 running on cpe:2.3:o:ricoh:sp_c250sf:-:*:*:*:*:*:*:*, cpe:2.3:o:ricoh:sp_c252sf:-:*:*:*:*:*:*:*.

    Published: 26 Aug 2019
    6.1
    Medium

    CVE-2019-15479

    Last Modified: 21 Nov 2024

    Status Board 1.1.81 has reflected XSS via dashboard.ts.

    Published: 26 Aug 2019
    6.1
    Medium

    CVE-2019-15501

    Last Modified: 21 Nov 2024

    Reflected cross site scripting (XSS) in L-Soft LISTSERV before 16.5-2018a exists via the /scripts/wa.exe OK parameter.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-14308

    Last Modified: 21 Nov 2024

    Several Ricoh printers have multiple buffer overflows parsing LPD packets, which allow an attacker to cause a denial of service or code execution via crafted requests to the LPD service. Affected firmware versions depend on the printer models. One affected configuration is cpe:2.3:o:ricoh:sp_c250dn_firmware:-:*:*:*:*:*:*:* up to (including) 1.06 running on cpe:2.3:o:ricoh:sp_c250dn:-:*:*:*:*:*:*:*, cpe:2.3:o:ricoh:sp_c252dn:-:*:*:*:*:*:*:*. Another affected configuration is cpe:2.3:o:ricoh:sp_c250sf_firmware:-:*:*:*:*:*:*:* up to (including) 1.12 running on cpe:2.3:o:ricoh:sp_c250sf:-:*:*:*:*:*:*:*, cpe:2.3:o:ricoh:sp_c252sf:-:*:*:*:*:*:*:*.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15524

    Last Modified: 21 Nov 2024

    CSZ CMS 1.2.3 allows arbitrary file upload, as demonstrated by a .php file to admin/filemanager in the File Management Module, which leads to remote code execution by visiting a photo/upload/2019/ URI.

    Published: 26 Aug 2019
    7.5
    High

    CVE-2018-20990

    Last Modified: 21 Nov 2024

    An issue was discovered in the tar crate before 0.4.16 for Rust. Arbitrary file overwrite can occur via a symlink or hardlink in a TAR archive.

    Published: 26 Aug 2019
    9.1
    Critical

    CVE-2019-15304

    Last Modified: 21 Nov 2024

    Lierda Grill Temperature Monitor V1.00_50006 has a default password of admin for the admin account, which allows an attacker to cause a Denial of Service or Information Disclosure via the undocumented access-point configuration page located on the device. This wifi thermometer app requests and requires excessive permissions to operate such as Fine GPS location, camera, applists, Serial number, IMEI. In addition to the "backdoor" login access for "admin" purposes, this accompanying app also establishes connections with several china based URLs to include Alibaba cloud computing. NOTE: this device also ships with ProGrade branding.

    Published: 26 Aug 2019
    7.5
    High

    CVE-2018-20994

    Last Modified: 21 Nov 2024

    An issue was discovered in the trust-dns-proto crate before 0.5.0-alpha.3 for Rust. There is infinite recursion because DNS message compression is mishandled.

    Published: 26 Aug 2019
    7.5
    High

    CVE-2018-20993

    Last Modified: 21 Nov 2024

    An issue was discovered in the yaml-rust crate before 0.4.1 for Rust. There is uncontrolled recursion during deserialization.

    Published: 26 Aug 2019
    6.5
    Medium

    CVE-2018-20992

    Last Modified: 21 Nov 2024

    An issue was discovered in the claxon crate before 0.4.1 for Rust. Uninitialized memory can be exposed because certain decode buffer sizes are mishandled.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15561

    Last Modified: 21 Nov 2024

    FlashLingo before 2019-06-12 allows SQL injection, related to flashlingo.js and db.js.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15562

    Last Modified: 21 Nov 2024

    GORM before 1.9.10 allows SQL injection via incomplete parentheses. NOTE: Misusing Gorm by passing untrusted user input where Gorm expects trusted SQL fragments is a vulnerability in the application, not in Gorm

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15556

    Last Modified: 21 Nov 2024

    Pvanloon1983 social_network before 2019-07-03 allows SQL injection in includes/form_handlers/register_handler.php.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15521

    Last Modified: 21 Nov 2024

    Spoon Library through 2014-02-06, as used in Fork CMS before 1.4.1 and other products, allows PHP object injection via a cookie containing an object.

    Published: 26 Aug 2019
    5.3
    Medium

    CVE-2017-18587

    Last Modified: 21 Nov 2024

    An issue was discovered in the hyper crate before 0.9.18 for Rust. It mishandles newlines in headers.

    Published: 26 Aug 2019
    5.9
    Medium

    CVE-2016-10933

    Last Modified: 21 Nov 2024

    An issue was discovered in the portaudio crate through 0.7.0 for Rust. There is a man-in-the-middle issue because the source code is downloaded over cleartext HTTP.

    Published: 26 Aug 2019
    4.8
    Medium

    CVE-2016-10932

    Last Modified: 21 Nov 2024

    An issue was discovered in the hyper crate before 0.9.4 for Rust on Windows. There is an HTTPS man-in-the-middle vulnerability because hostname verification was omitted.

    Published: 26 Aug 2019
    8.1
    High

    CVE-2016-10931

    Last Modified: 21 Nov 2024

    An issue was discovered in the openssl crate before 0.9.0 for Rust. There is an SSL/TLS man-in-the-middle vulnerability because certificate verification is off by default and there is no API for hostname verification.

    Published: 26 Aug 2019
    6.1
    Medium

    CVE-2019-15489

    Last Modified: 21 Nov 2024

    laracom (aka Laravel FREE E-Commerce Software) 1.4.11 has search?q= XSS.

    Published: 26 Aug 2019
    7.5
    High

    CVE-2019-15541

    Last Modified: 21 Nov 2024

    rustls-mio/examples/tlsserver.rs in the rustls crate before 0.16.0 for Rust allows attackers to cause a denial of service (loop of conn_event and ready) by arranging for a client to never be writable.

    Published: 26 Aug 2019
    9.8
    Critical

    CVE-2019-15534

    Last Modified: 21 Nov 2024

    Raml-Module-Builder 26.4.0 allows SQL Injection in PostgresClient.update.

    Published: 26 Aug 2019
    6.1
    Medium

    CVE-2019-15532

    Last Modified: 21 Nov 2024

    CyberChef before 8.31.2 allows XSS in core/operations/TextEncodingBruteForce.mjs.

    Published: 26 Aug 2019
    6.1
    Medium

    CVE-2019-15478

    Last Modified: 21 Nov 2024

    Status Board 1.1.81 has reflected XSS via logic.ts.

    Published: 26 Aug 2019
    7.5
    High

    CVE-2019-15506

    Last Modified: 21 Nov 2024

    An issue was discovered in Kaseya Virtual System Administrator (VSA) through 9.4.0.37. It has a critical information disclosure vulnerability. An unauthenticated attacker can send properly formatted requests to the web application and download sensitive files and information. For example, the /DATAREPORTS directory can be farmed for reports. Because this directory contains the results of reports such as NMAP, Patch Status, and Active Directory domain metadata, an attacker can easily collect this critical information and parse it for information. There are a number of directories affected.

    Published: 26 Aug 2019
    6.5
    Medium

    CVE-2019-5869

    Last Modified: 21 Nov 2024

    Use after free in Blink in Google Chrome prior to 76.0.3809.132 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 26 Aug 2019
    8.8
    High

    CVE-2019-14867

    Last Modified: 21 Nov 2024

    A flaw was found in IPA, all 4.6.x versions before 4.6.7, all 4.7.x versions before 4.7.4 and all 4.8.x versions before 4.8.3, in the way the internal function ber_scanf() was used in some components of the IPA server, which parsed kerberos key data. An unauthenticated attacker who could trigger parsing of the krb principal key could cause the IPA server to crash or in some conditions, cause arbitrary code to be executed on the server hosting the IPA server.

    Published: 26 Aug 2019
    7.8
    High

    CVE-2019-18218

    Last Modified: 21 Nov 2024

    cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).

    Published: 26 Aug 2019
    7.8
    High

    CVE-2019-15540

    Last Modified: 21 Nov 2024

    filters/filter-cso/filter-stream.c in the CSO filter in libMirage 3.2.2 in CDemu does not validate the part size, triggering a heap-based buffer overflow that can lead to root access by a local Linux user.

    Published: 25 Aug 2019
    7.5
    High

    CVE-2019-15538

    Last Modified: 21 Nov 2024

    An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5.2.9. XFS partially wedges when a chgrp fails on account of being out of disk quota. xfs_setattr_nonsize is failing to unlock the ILOCK after the xfs_qm_vop_chown_reserve call fails. This is primarily a local DoS attack vector, but it might result as well in remote DoS if the XFS filesystem is exported for instance via NFS.

    Published: 25 Aug 2019
    7.5
    High

    CVE-2019-15890

    Last Modified: 21 Nov 2024

    libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.

    Published: 25 Aug 2019
    7.5
    High

    CVE-2019-16319

    Last Modified: 21 Nov 2024

    In Wireshark 3.0.0 to 3.0.3 and 2.6.0 to 2.6.10, the Gryphon dissector could go into an infinite loop. This was addressed in plugins/epan/gryphon/packet-gryphon.c by checking for a message length of zero.

    Published: 25 Aug 2019
    7.5
    High

    CVE-2020-27813

    Last Modified: 21 Nov 2024

    An integer overflow vulnerability exists with the length of websocket frames received via a websocket connection. An attacker would use this flaw to cause a denial of service attack on an HTTP Server allowing websocket connections.

    Published: 25 Aug 2019
    8.8
    High

    CVE-2019-14819

    Last Modified: 21 Nov 2024

    A flaw was found during the upgrade of an existing OpenShift Container Platform 3.x cluster. Using CRI-O, the dockergc service account is assigned to the current namespace of the user performing the upgrade. This flaw can allow an unprivileged user to escalate their privileges to those allowed by the privileged Security Context Constraints.

    Published: 24 Aug 2019
    6.1
    Medium

    CVE-2016-6154

    Last Modified: 21 Nov 2024

    The authentication applet in Watchguard Fireware 11.11 Operating System has reflected XSS (this can also cause an open redirect).

    Published: 23 Aug 2019
    7.3
    High

    CVE-2019-15092

    Last Modified: 21 Nov 2024

    The webtoffee "WordPress Users & WooCommerce Customers Import Export" plugin 1.3.0 for WordPress allows CSV injection in the user_url, display_name, first_name, and last_name columns in an exported CSV file created by the WF_CustomerImpExpCsv_Exporter class.

    Published: 23 Aug 2019
    6.1
    Medium

    CVE-2019-5594

    Last Modified: 21 Nov 2024

    An Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") in Fortinet FortiNAC 8.3.0 to 8.3.6 and 8.5.0 admin webUI may allow an unauthenticated attacker to perform a reflected XSS attack via the search field in the webUI.

    Published: 23 Aug 2019
    9.8
    Critical

    CVE-2019-6695

    Last Modified: 21 Nov 2024

    Lack of root file system integrity checking in Fortinet FortiManager VM application images of 6.2.0, 6.0.6 and below may allow an attacker to implant third-party programs by recreating the image through specific methods.

    Published: 23 Aug 2019
    5.3
    Medium

    CVE-2018-13367

    Last Modified: 21 Nov 2024

    An information exposure vulnerability in FortiOS 6.2.3, 6.2.0 and below may allow an unauthenticated attacker to gain platform information such as version, models, via parsing a JavaScript file through admin webUI.

    Published: 23 Aug 2019
    9.8
    Critical

    CVE-2019-6698

    Last Modified: 21 Nov 2024

    Use of Hard-coded Credentials vulnerability in FortiRecorder all versions below 2.7.4 may allow an unauthenticated attacker with knowledge of the aforementioned credentials and network access to FortiCameras to take control of those, provided they are managed by a FortiRecorder device.

    Published: 23 Aug 2019
    5.9
    Medium

    CVE-2019-5592

    Last Modified: 21 Nov 2024

    Multiple padding oracle vulnerabilities (Zombie POODLE, GOLDENDOODLE, OpenSSL 0-length) in the CBC padding implementation of FortiOS IPS engine version 5.000 to 5.006, 4.000 to 4.036, 4.200 to 4.219, 3.547 and below, when configured with SSL Deep Inspection policies and with the IPS sensor enabled, may allow an attacker to decipher TLS connections going through the FortiGate via monitoring the traffic in a Man-in-the-middle position.

    Published: 23 Aug 2019
    7.8
    High

    CVE-2019-7364

    Last Modified: 21 Nov 2024

    DLL preloading vulnerability in versions 2017, 2018, 2019, and 2020 of Autodesk Advanced Steel, Civil 3D, AutoCAD, AutoCAD LT, AutoCAD Architecture, AutoCAD Electrical, AutoCAD Map 3D, AutoCAD Mechanical, AutoCAD MEP, AutoCAD Plant 3D and version 2017 of AutoCAD P&ID. An attacker may trick a user into opening a malicious DWG file that may leverage a DLL preloading vulnerability in AutoCAD which may result in code execution.

    Published: 23 Aug 2019
    7.8
    High

    CVE-2019-7363

    Last Modified: 21 Nov 2024

    Use-after-free vulnerability in Autodesk Design Review versions 2011, 2012, 2013, and 2018. An attacker may trick a user into opening a malicious DWF file that may leverage a use-after-free vulnerability, which may result in code execution.

    Published: 23 Aug 2019
    7.8
    High

    CVE-2019-7362

    Last Modified: 21 Nov 2024

    DLL preloading vulnerability in Autodesk Design Review versions 2011, 2012, 2013, and 2018. An attacker may trick a user into opening a malicious DWF file that may leverage a DLL preloading vulnerability, which may result in code execution.

    Published: 23 Aug 2019
    9.8
    Critical

    CVE-2019-15536

    Last Modified: 21 Nov 2024

    The Acclaim block plugin before 2019-06-26 for Moodle allows SQL Injection via delete_records.

    Published: 23 Aug 2019