CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2016-10861

    Last Modified: 21 Nov 2024

    Neet AirStream NAS1.1 devices allow CSRF attacks that cause the settings binary to change the AP name and password.

    Published: 7 Aug 2019
    8.8
    High

    CVE-2016-10812

    Last Modified: 21 Nov 2024

    In cPanel before 57.9999.54, /scripts/enablefileprotect exposed TTYs (SEC-117).

    Published: 7 Aug 2019
    8.8
    High

    CVE-2016-10811

    Last Modified: 21 Nov 2024

    In cPanel before 57.9999.54, /scripts/unsuspendacct exposed TTYs (SEC-116).

    Published: 7 Aug 2019
    8.8
    High

    CVE-2016-10810

    Last Modified: 21 Nov 2024

    In cPanel before 57.9999.54, /scripts/maildir_converter exposed a TTY to an unprivileged process (SEC-115).

    Published: 7 Aug 2019
    8.8
    High

    CVE-2016-10809

    Last Modified: 21 Nov 2024

    In cPanel before 57.9999.54, /scripts/checkinfopages exposed a TTY to an unprivileged process (SEC-114).

    Published: 7 Aug 2019
    8.8
    High

    CVE-2016-10808

    Last Modified: 21 Nov 2024

    In cPanel before 57.9999.54, /scripts/addpop and /scripts/delpop exposed TTYs (SEC-113).

    Published: 7 Aug 2019
    6.5
    Medium

    CVE-2016-10807

    Last Modified: 21 Nov 2024

    cPanel before 57.9999.54 allows certain denial-of-service outcomes via /scripts/killpvhost (SEC-112).

    Published: 7 Aug 2019
    5.4
    Medium

    CVE-2016-10806

    Last Modified: 21 Nov 2024

    cPanel before 57.9999.54 allows self XSS on the Paper Lantern Landing Page (SEC-110).

    Published: 7 Aug 2019
    8.8
    High

    CVE-2016-10805

    Last Modified: 21 Nov 2024

    cPanel before 57.9999.54 allows demo accounts to execute arbitrary code via ajax_maketext_syntax_util.pl (SEC-109).

    Published: 7 Aug 2019
    8.1
    High

    CVE-2016-10804

    Last Modified: 21 Nov 2024

    The SQLite journal feature in cPanel before 57.9999.54 allows arbitrary file-overwrite operations during Horde Restore (SEC-58).

    Published: 7 Aug 2019
    7.5
    High

    CVE-2016-10803

    Last Modified: 21 Nov 2024

    cPanel before 57.9999.105 allows newline injection via LOC records (CPANEL-6923).

    Published: 7 Aug 2019
    8.8
    High

    CVE-2016-10802

    Last Modified: 21 Nov 2024

    cPanel before 58.0.4 allows code execution in the context of other user accounts through the PHP CGI handler (SEC-142).

    Published: 7 Aug 2019
    8.8
    High

    CVE-2016-10801

    Last Modified: 21 Nov 2024

    cPanel before 58.0.4 has improper session handling for shared users (SEC-139).

    Published: 7 Aug 2019
    7.8
    High

    CVE-2016-10800

    Last Modified: 21 Nov 2024

    cPanel before 58.0.4 allows demo-mode escape via Site Templates and Boxtrapper API calls (SEC-138).

    Published: 7 Aug 2019
    5.5
    Medium

    CVE-2016-10799

    Last Modified: 21 Nov 2024

    cPanel before 58.0.4 does not set the Pear tmp directory during a PHP installation (SEC-137).

    Published: 7 Aug 2019
    6.8
    Medium

    CVE-2016-10798

    Last Modified: 21 Nov 2024

    cPanel before 58.0.4 allows a file-ownership change (to nobody) via rearrangeacct (SEC-134).

    Published: 7 Aug 2019
    9.8
    Critical

    CVE-2019-1913

    Last Modified: 21 Nov 2024

    Multiple vulnerabilities in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an unauthenticated, remote attacker to overflow a buffer, which then allows the execution of arbitrary code with root privileges on the underlying operating system. The vulnerabilities are due to insufficient validation of user-supplied input and improper boundary checks when reading data into an internal buffer. An attacker could exploit these vulnerabilities by sending malicious requests to the web management interface of an affected device. Depending on the configuration of the affected switch, the malicious requests must be sent via HTTP or HTTPS.

    Published: 7 Aug 2019
    7.2
    High

    CVE-2019-1914

    Last Modified: 21 Nov 2024

    A vulnerability in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an authenticated, remote attacker to perform a command injection attack. The vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a malicious request to certain parts of the web management interface. To send the malicious request, the attacker needs a valid login session in the web management interface as a privilege level 15 user. Depending on the configuration of the affected switch, the malicious request must be sent via HTTP or HTTPS. A successful exploit could allow the attacker to execute arbitrary shell commands with the privileges of the root user.

    Published: 7 Aug 2019
    9.1
    Critical

    CVE-2019-1912

    Last Modified: 21 Nov 2024

    A vulnerability in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an unauthenticated, remote attacker to upload arbitrary files. The vulnerability is due to incomplete authorization checks in the web management interface. An attacker could exploit this vulnerability by sending a malicious request to certain parts of the web management interface. Depending on the configuration of the affected switch, the malicious request must be sent via HTTP or HTTPS. A successful exploit could allow the attacker to modify the configuration of an affected device or to inject a reverse shell. This vulnerability affects Cisco Small Business 220 Series Smart Switches running firmware versions prior to 1.1.4.4 with the web management interface enabled. The web management interface is enabled via both HTTP and HTTPS by default.

    Published: 7 Aug 2019
    8.8
    High

    CVE-2019-14732

    Last Modified: 21 Nov 2024

    AdPlug 2.3.1 has multiple heap-based buffer overflows in Ca2mLoader::load() in a2m.cpp.

    Published: 7 Aug 2019
    8.8
    High

    CVE-2019-14733

    Last Modified: 21 Nov 2024

    AdPlug 2.3.1 has multiple heap-based buffer overflows in CradLoader::load() in rad.cpp.

    Published: 7 Aug 2019
    8.8
    High

    CVE-2019-14734

    Last Modified: 21 Nov 2024

    AdPlug 2.3.1 has multiple heap-based buffer overflows in CmtkLoader::load() in mtk.cpp.

    Published: 7 Aug 2019
    8.2
    High

    CVE-2019-11248

    Last Modified: 21 Nov 2024

    The debugging endpoint /debug/pprof is exposed over the unauthenticated Kubelet healthz port. The go pprof endpoint is exposed over the Kubelet's healthz port. This debugging endpoint can potentially leak sensitive information such as internal Kubelet memory addresses and configuration, or for limited denial of service. Versions prior to 1.15.0, 1.14.4, 1.13.8, and 1.12.10 are affected. The issue is of medium severity, but not exposed by the default configuration.

    Published: 7 Aug 2019
    5.5
    Medium

    CVE-2019-14763

    Last Modified: 21 Nov 2024

    In the Linux kernel before 4.16.4, a double-locking error in drivers/usb/dwc3/gadget.c may potentially cause a deadlock with f_hid.

    Published: 7 Aug 2019
    9.8
    Critical

    CVE-2018-20961

    Last Modified: 21 Nov 2024

    In the Linux kernel before 4.16.4, a double free vulnerability in the f_midi_set_alt function of drivers/usb/gadget/function/f_midi.c in the f_midi driver may allow attackers to cause a denial of service or possibly have unspecified other impact.

    Published: 7 Aug 2019
    5.4
    Medium

    CVE-2019-14731

    Last Modified: 21 Nov 2024

    An issue was discovered in ZenTao 11.5.1. There is an XSS (stored) vulnerability that leads to the capture of other people's cookies via the Rich Text Box.

    Published: 6 Aug 2019
    9.8
    Critical

    CVE-2019-14698

    Last Modified: 21 Nov 2024

    An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. In a CGI program running under the HTTPD web server, a buffer overflow in the param parameter leads to remote code execution in the context of the nobody account.

    Published: 6 Aug 2019
    9.8
    Critical

    CVE-2019-14699

    Last Modified: 21 Nov 2024

    An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. An attacker can exploit OS Command Injection in the filename parameter for remote code execution as root. This occurs in the Mainproc executable file, which can be run from the HTTPD web server.

    Published: 6 Aug 2019
    7.5
    High

    CVE-2019-14700

    Last Modified: 21 Nov 2024

    An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. There is disclosure of the existence of arbitrary files via Path Traversal in HTTPD. This occurs because the filename specified in the TZ parameter is accessed with a substantial delay if that file exists.

    Published: 6 Aug 2019
    7.5
    High

    CVE-2019-14701

    Last Modified: 21 Nov 2024

    An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. An attacker can trigger read operations on an arbitrary file via Path Traversal in the TZ parameter, but cannot retrieve the data that is read. This causes a denial of service if the filename is, for example, /dev/random.

    Published: 6 Aug 2019
    9.8
    Critical

    CVE-2019-14702

    Last Modified: 21 Nov 2024

    An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. SQL injection vulnerabilities exist in 13 forms that are reachable through HTTPD. An attacker can, for example, create an admin account.

    Published: 6 Aug 2019
    8.8
    High

    CVE-2019-14703

    Last Modified: 21 Nov 2024

    A CSRF issue was discovered in webparam?user&action=set&param=add in HTTPD on MicroDigital N-series cameras with firmware through 6400.0.8.5 to create an admin account.

    Published: 6 Aug 2019
    9.8
    Critical

    CVE-2019-14704

    Last Modified: 21 Nov 2024

    An SSRF issue was discovered in HTTPD on MicroDigital N-series cameras with firmware through 6400.0.8.5 via FTP commands following a newline character in the uploadfile field.

    Published: 6 Aug 2019
    7.2
    High

    CVE-2019-14705

    Last Modified: 21 Nov 2024

    An Incorrect Access Control issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5 because any valid cookie can be used to make requests as an admin.

    Published: 6 Aug 2019
    7.5
    High

    CVE-2019-14706

    Last Modified: 21 Nov 2024

    A denial of service issue in HTTPD was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. An attacker without authorization can upload a file to upload.php with a filename longer than 256 bytes. This will be placed in the updownload area. It will not be deleted, because of a buffer overflow in a Bash command string.

    Published: 6 Aug 2019
    7.2
    High

    CVE-2019-14707

    Last Modified: 21 Nov 2024

    An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. The firmware update process is insecure, leading to remote code execution. The attacker can provide arbitrary firmware in a .dat file via a webparam?system&action=set&upgrade URI.

    Published: 6 Aug 2019
    9.8
    Critical

    CVE-2019-14708

    Last Modified: 21 Nov 2024

    An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. A buffer overflow in the action parameter leads to remote code execution in the context of the nobody account.

    Published: 6 Aug 2019
    9.8
    Critical

    CVE-2019-14709

    Last Modified: 21 Nov 2024

    A cleartext password storage issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. The file in question is /usr/local/ipsca/mipsca.db. If a camera is compromised, the attacker can gain access to passwords and abuse them to compromise further systems.

    Published: 6 Aug 2019
    7.8
    High

    CVE-2019-5682

    Last Modified: 21 Nov 2024

    NVIDIA Shield TV Experience prior to v8.0, contains a vulnerability in the NVIDIA Games App where it improperly exports an Activity but does not properly restrict which applications can launch the Activity, which may lead to code execution or denial of service.

    Published: 6 Aug 2019
    7.8
    High

    CVE-2019-5681

    Last Modified: 21 Nov 2024

    NVIDIA Shield TV Experience prior to v8.0, contains a vulnerability in the custom NVIDIA API used in the mount system service where user data could be overridden, which may lead to code execution, denial of service, or information disclosure.

    Published: 6 Aug 2019
    7.8
    High

    CVE-2019-5679

    Last Modified: 21 Nov 2024

    NVIDIA Shield TV Experience prior to v8.0, NVIDIA Tegra bootloader contains a vulnerability in nvtboot where the Trusted OS image is improperly authenticated, which may lead to code execution, denial of service, escalation of privileges, and information disclosure, code execution, denial of service, or escalation of privileges

    Published: 6 Aug 2019
    7.1
    High

    CVE-2019-5687

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape in which an incorrect use of default permissions for an object exposes it to an unintended actor

    Published: 6 Aug 2019
    5.5
    Medium

    CVE-2019-5686

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape in which the software uses an API function or data structure in a way that relies on properties that are not always guaranteed to be valid, which may lead to denial of service.

    Published: 6 Aug 2019
    9.8
    Critical

    CVE-2019-5685

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause an out of bounds access to a shader local temporary array, which may lead to denial of service or code execution.

    Published: 6 Aug 2019
    10
    Critical

    CVE-2019-5684

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause an out of bounds access of an input texture array, which may lead to denial of service or code execution.

    Published: 6 Aug 2019
    7.8
    High

    CVE-2019-5683

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in the user mode video driver trace logger component. When an attacker has access to the system and creates a hard link, the software does not check for hard link attacks. This behavior may lead to code execution, denial of service, or escalation of privileges.

    Published: 6 Aug 2019
    7.8
    High

    CVE-2019-13106

    Last Modified: 12 May 2026

    Das U-Boot versions 2016.09 through 2019.07-rc4 can memset() too much data while reading a crafted ext4 filesystem, which results in a stack buffer overflow and likely code execution.

    Published: 6 Aug 2019
    7.8
    High

    CVE-2019-13105

    Last Modified: 21 Nov 2024

    Das U-Boot versions 2019.07-rc1 through 2019.07-rc4 can double-free a cached block of data when listing files in a crafted ext4 filesystem.

    Published: 6 Aug 2019
    7.8
    High

    CVE-2019-13104

    Last Modified: 12 May 2026

    In Das U-Boot versions 2016.11-rc1 through 2019.07-rc4, an underflow can cause memcpy() to overwrite a very large amount of data (including the whole stack) while reading a crafted ext4 filesystem.

    Published: 6 Aug 2019
    8.8
    High

    CVE-2019-5994

    Last Modified: 21 Nov 2024

    Buffer overflow in PTP (Picture Transfer Protocol) of EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X MKII firmware version 1.1.6 and earlier, EOS-1D C firmware version 1.4.1 and earlier, EOS 5D MARK III firmware version 1.3.5 and earlier, EOS 5D MARK IV firmware version 1.2.0 and earlier, EOS 5DS firmware version 1.1.2 and earlier, EOS 5DS R firmware version 1.1.2 and earlier, EOS 6D firmware version 1.1.8 and earlier, EOS 6D MARK II firmware version 1.0.4 and earlier, EOS 7D MARK II firmware version 1.1.2 and earlier, EOS 70 D firmware version 1.1.2 and earlier, EOS 80 D firmware version 1.0.2 and earlier, EOS KISS X7I / EOS D REBEL T5I / EOS 700D firmware version 1.1.5 and earlier, EOS KISS X8I / EOS D REBEL T6I / EOS 750D firmware version 1.0.0 and earlier, EOS KISS X9I / EOS D REBEL T7I / EOS 800D firmware version 1.0.1 and earlier, EOS KISS X7 / EOS D REBEL SL1 / EOS 100D firmware version 1.0.1 and earlier, EOS KISS X9 / EOS D REBEL SL2 / EOS 200D firmware version 1.0.1 and earlier, EOS KISS X10 / EOS D REBEL SL3 / EOS 200D / EOS 250D firmware version 1.0.1 and earlier, EOS 8000D / EOS D REBEL T6S / EOS 760D firmware version 1.0.0 and earlier, EOS 9000D / EOS 77D firmware version 1.0.2 and earlier, EOS KISS X70 / EOS D REBEL T5 / EOS 1200D firmware version 1.0.2 and earlier, EOS D REBEL T5 RE / EOS 1200D MG / EOS HI firmware version 1.0.2 and earlier, EOS KISS X80 / EOS D REBEL T6 / EOS 1300D firmware version 1.1.0 and earlier, EOS KISS X90 / EOS D REBEL T7 / EOS 1500D / EOS 2000D firmware version 1.0.0 and earlier, EOS D REBEL T100 / EOS 3000D / EOS 4000D firmware version 1.0.0 and earlier, EOS R firmware version 1.3.0 and earlier, EOS RP firmware version 1.2.0 and earlier, EOS RP GOLD firmware version 1.2.0 and earlier, EOS M2 firmware version 1.0.3 and earlier, EOS M3 firmware version 1.2.0 and earlier, EOS M5 firmware version 1.0.1 and earlier, EOS M6 firmware version 1.0.1 and earlier, EOS M6(China) firmware version 5.0.0 and earlier, EOS M10 firmware version 1.1.0 and earlier, EOS M100 firmware version 1.0.0 and earlier, EOS KISS M / EOS M50 firmware version 1.0.2 and earlier) and PowerShot SX740 HS firmware version 1.0.1 and earlier, PowerShot SX70 HS firmware version 1.1.0 and earlier, and PowerShot G5Xmark II firmware version 1.0.1 and earlier allows an attacker on the same network segment to trigger the affected product being unresponsive or to execute arbitrary code on the affected product via SendObjectInfo command.

    Published: 6 Aug 2019