CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2019-16163

    Last Modified: 21 Nov 2024

    Oniguruma before 6.9.3 allows Stack Exhaustion in regcomp.c because of recursion in regparse.c.

    Published: 28 Jul 2019
    6.5
    Medium

    CVE-2019-14369

    Last Modified: 21 Nov 2024

    Exiv2::PngImage::readMetadata() in pngimage.cpp in Exiv2 0.27.99.0 allows attackers to cause a denial of service (heap-based buffer over-read) via a crafted image file.

    Published: 28 Jul 2019
    6.5
    Medium

    CVE-2019-14370

    Last Modified: 21 Nov 2024

    In Exiv2 0.27.99.0, there is an out-of-bounds read in Exiv2::MrwImage::readMetadata() in mrwimage.cpp. It could result in denial of service.

    Published: 28 Jul 2019
    7.5
    High

    CVE-2019-20454

    Last Modified: 21 Nov 2024

    An out-of-bounds read was discovered in PCRE before 10.34 when the pattern \X is JIT compiled and used to match specially crafted subjects in non-UTF mode. Applications that use PCRE to parse untrusted input may be vulnerable to this flaw, which would allow an attacker to crash the application. The flaw occurs in do_extuni_no_utf in pcre2_jit_compile.c.

    Published: 28 Jul 2019
    5.5
    Medium

    CVE-2019-20633

    Last Modified: 21 Nov 2024

    GNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of service via a crafted patch file. NOTE: this issue exists because of an incomplete fix for CVE-2018-6952.

    Published: 28 Jul 2019
    8.8
    High

    CVE-2019-14378

    Last Modified: 21 Nov 2024

    ip_reass in ip_input.c in libslirp 4.0.0 has a heap-based buffer overflow via a large packet because it mishandles a case involving the first fragment.

    Published: 28 Jul 2019
    5.4
    Medium

    CVE-2019-14298

    Last Modified: 21 Nov 2024

    Veeam ONE Reporter 9.5.0.3201 allows XSS via a crafted Description(config) field to addDashboard or editDashboard in CommonDataHandlerReadOnly.ashx.

    Published: 27 Jul 2019
    5.4
    Medium

    CVE-2019-14297

    Last Modified: 21 Nov 2024

    Veeam ONE Reporter 9.5.0.3201 allows XSS via the Add/Edit Widget with a crafted Caption field to setDashboardWidget in CommonDataHandlerReadOnly.ashx.

    Published: 27 Jul 2019
    7.8
    High

    CVE-2019-14296

    Last Modified: 11 Apr 2025

    canUnpack in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (SEGV or buffer overflow, and application crash) or possibly have unspecified other impact via a crafted UPX packed file.

    Published: 27 Jul 2019
    5.5
    Medium

    CVE-2019-14295

    Last Modified: 11 Apr 2025

    An Integer overflow in the getElfSections function in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an allocation of excessive memory.

    Published: 27 Jul 2019
    5.5
    Medium

    CVE-2019-14294

    Last Modified: 21 Nov 2024

    An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, due to an out of bounds read.

    Published: 27 Jul 2019
    5.5
    Medium

    CVE-2019-14293

    Last Modified: 21 Nov 2024

    An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2.

    Published: 27 Jul 2019
    5.5
    Medium

    CVE-2019-14292

    Last Modified: 21 Nov 2024

    An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 1.

    Published: 27 Jul 2019
    5.5
    Medium

    CVE-2019-14291

    Last Modified: 21 Nov 2024

    An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 3.

    Published: 27 Jul 2019
    5.5
    Medium

    CVE-2019-14290

    Last Modified: 21 Nov 2024

    An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 2.

    Published: 27 Jul 2019
    5.5
    Medium

    CVE-2019-14289

    Last Modified: 21 Nov 2024

    An issue was discovered in Xpdf 4.01.01. There is an integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "multiple bytes per line" case.

    Published: 27 Jul 2019
    7.8
    High

    CVE-2019-14288

    Last Modified: 21 Nov 2024

    An issue was discovered in Xpdf 4.01.01. There is an Integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "one byte per line" case.

    Published: 27 Jul 2019
    6.1
    Medium

    CVE-2019-14286

    Last Modified: 21 Nov 2024

    In app/webroot/js/event-graph.js in MISP 2.4.111, a stored XSS vulnerability exists in the event-graph view when a user toggles the event graph view. A malicious MISP event must be crafted in order to trigger the vulnerability.

    Published: 27 Jul 2019
    5.6
    Medium

    CVE-2010-5332

    Last Modified: 21 Nov 2024

    In the Linux kernel before 2.6.37, an out of bounds array access happened in drivers/net/mlx4/port.c. When searching for a free entry in either mlx4_register_vlan() or mlx4_register_mac(), and there is no free entry, the loop terminates without updating the local variable free thus causing out of array bounds access.

    Published: 27 Jul 2019
    9.8
    Critical

    CVE-2012-6712

    Last Modified: 21 Nov 2024

    In the Linux kernel before 3.4, a buffer overflow occurs in drivers/net/wireless/iwlwifi/iwl-agn-sta.c, which will cause at least memory corruption.

    Published: 27 Jul 2019
    9.8
    Critical

    CVE-2007-6762

    Last Modified: 21 Nov 2024

    In the Linux kernel before 2.6.20, there is an off-by-one bug in net/netlabel/netlabel_cipso_v4.c where it is possible to overflow the doi_def->tags[] array.

    Published: 27 Jul 2019
    7.8
    High

    CVE-2010-5331

    Last Modified: 21 Nov 2024

    In the Linux kernel before 2.6.34, a range check issue in drivers/gpu/drm/radeon/atombios.c could cause an off by one (buffer overflow) problem. NOTE: At least one Linux maintainer believes that this CVE is incorrectly assigned and should be rejected because the value is hard coded and are not user-controllable where it is used

    Published: 27 Jul 2019
    9.8
    Critical

    CVE-2016-10764

    Last Modified: 21 Nov 2024

    In the Linux kernel before 4.9.6, there is an off by one in the drivers/mtd/spi-nor/cadence-quadspi.c cqspi_setup_flash() function. There are CQSPI_MAX_CHIPSELECT elements in the ->f_pdata array so the ">" should be ">=" instead.

    Published: 27 Jul 2019
    5.5
    Medium

    CVE-2015-9289

    Last Modified: 21 Nov 2024

    In the Linux kernel before 4.1.4, a buffer overflow occurs when checking userspace params in drivers/media/dvb-frontends/cx24116.c. The maximum size for a DiSEqC command is 6, according to the userspace API. However, the code allows larger values such as 23.

    Published: 27 Jul 2019
    9.8
    Critical

    CVE-2017-18379

    Last Modified: 21 Nov 2024

    In the Linux kernel before 4.14, an out of boundary access happened in drivers/nvme/target/fc.c.

    Published: 27 Jul 2019
    9.8
    Critical

    CVE-2011-5327

    Last Modified: 21 Nov 2024

    In the Linux kernel before 3.1, an off by one in the drivers/target/loopback/tcm_loop.c tcm_loop_make_naa_tpg() function could result in at least memory corruption.

    Published: 27 Jul 2019
    6.1
    Medium

    CVE-2019-13588

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in getPagingStart() in core/lists/PAGING.php in WIKINDX before 5.8.2 allows remote attackers to inject arbitrary web script or HTML via the PagingStart parameter.

    Published: 26 Jul 2019
    8.8
    High

    CVE-2019-10267

    Last Modified: 21 Nov 2024

    An insecure file upload and code execution issue was discovered in Ahsay Cloud Backup Suite 8.1.0.50. It is possible to upload a file into any directory of the server. One can insert a JSP shell into the web server's directory and execute it. This leads to full access to the system, as the configured user (e.g., Administrator).

    Published: 26 Jul 2019
    7.5
    High

    CVE-2019-10266

    Last Modified: 21 Nov 2024

    An issue was discovered in Ahsay Cloud Backup Suite before 8.1.1.50. When sending an out-of-bounds XML document to a URL, it is possible to read the file structure and even the content of files without authentication.

    Published: 26 Jul 2019
    7.5
    High

    CVE-2019-10265

    Last Modified: 21 Nov 2024

    An issue was discovered in Ahsay Cloud Backup Suite before 8.1.1.50. On the /cbs/system/ShowAdvanced.do "File Explorer" screen, it is possible to change the directory in the JavaScript code. If changed to (for example) "C:" then one can browse the whole server.

    Published: 26 Jul 2019
    7.2
    High

    CVE-2019-10264

    Last Modified: 21 Nov 2024

    An issue was discovered in Ahsay Cloud Backup Suite before 8.1.1.50. With a valid administrator account, the "Move / Import / Export Users" screen has an Import Users option. This option accepts a ZIP archive containing a users.xml file that can trigger XXE.

    Published: 26 Jul 2019
    6.1
    Medium

    CVE-2019-10263

    Last Modified: 21 Nov 2024

    An issue was discovered in Ahsay Cloud Backup Suite before 8.1.1.50. When creating a trial account, it is possible to inject XSS in the Alias field, allowing the attacker to retrieve the admin's cookie and take over the account.

    Published: 26 Jul 2019
    β€”
    Unknown

    CVE-2019-1000033

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-1010259. Reason: This candidate is a reservation duplicate of CVE-2019-1010259. Notes: All CVE users should reference CVE-2019-1010259 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 26 Jul 2019
    7.8
    High

    CVE-2019-9492

    Last Modified: 21 Nov 2024

    A DLL side-loading vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow an authenticated attacker to gain code execution and terminate the product's process - disabling endpoint protection. The attacker must have already gained authentication and have local access to the vulnerable system.

    Published: 26 Jul 2019
    6.1
    Medium

    CVE-2019-6002

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Central Dogma 0.17.0 to 0.40.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 26 Jul 2019
    6.1
    Medium

    CVE-2019-14228

    Last Modified: 21 Nov 2024

    Xavier PHP Management Panel 3.0 is vulnerable to Reflected POST-based XSS via the username parameter when registering a new user at admin/includes/adminprocess.php. If there is an error when registering the user, the unsanitized username will reflect via the error page. Due to the lack of CSRF protection on the admin/includes/adminprocess.php endpoint, an attacker is able to chain the XSS with CSRF in order to cause remote exploitation.

    Published: 26 Jul 2019
    7.8
    High

    CVE-2019-13382

    Last Modified: 21 Nov 2024

    UploaderService in SnagIT 2019.1.2 allows elevation of privilege by placing an invalid presentation file in %PROGRAMDATA%\TechSmith\TechSmith Recorder\QueuedPresentations and then creating a symbolic link in %PROGRAMDATA%\Techsmith\TechSmith Recorder\InvalidPresentations that points to an arbitrary folder with an arbitrary file name. TechSmith Relay Classic Recorder prior to 5.2.1 on Windows is vulnerable. The vulnerability was introduced in SnagIT Windows 12.4.1.

    Published: 26 Jul 2019
    7.8
    High

    CVE-2019-13638

    Last Modified: 21 Nov 2024

    GNU patch through 2.7.6 is vulnerable to OS shell command injection that can be exploited by opening a crafted patch file that contains an ed style diff payload with shell metacharacters. The ed editor does not need to be present on the vulnerable system. This is different from CVE-2018-1000156.

    Published: 26 Jul 2019
    6.5
    Medium

    CVE-2019-13954

    Last Modified: 21 Nov 2024

    Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to memory exhaustion. By sending a crafted HTTP request, an authenticated remote attacker can crash the HTTP server and in some circumstances reboot the system. Malicious code cannot be injected.

    Published: 26 Jul 2019
    6.5
    Medium

    CVE-2019-13955

    Last Modified: 21 Nov 2024

    Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to stack exhaustion. By sending a crafted HTTP request, an authenticated remote attacker can crash the HTTP server via recursive parsing of JSON. Malicious code cannot be injected.

    Published: 26 Jul 2019
    6.1
    Medium

    CVE-2019-13387

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, Reflected XSS in filemanager2.php (parameter fm_current_dir) allows attackers to steal a cookie or session, or redirect to a phishing website.

    Published: 26 Jul 2019
    8.8
    High

    CVE-2019-13386

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, a hidden action=9 feature in filemanager2.php allows attackers to execute a shell command, i.e., obtain a reverse shell with user privilege.

    Published: 26 Jul 2019
    4.3
    Medium

    CVE-2019-13385

    Last Modified: 21 Nov 2024

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.840, File and Directory Information Exposure in filemanager allows attackers to enumerate users and check for active users of the application by reading /tmp/login.log.

    Published: 26 Jul 2019
    7.5
    High

    CVE-2018-20857

    Last Modified: 21 Nov 2024

    Zendesk Samlr before 2.6.2 allows an XML nodes comment attack such as a name_id node with [email protected] followed by <!---->. and then the attacker's domain name.

    Published: 26 Jul 2019
    9.8
    Critical

    CVE-2019-14282

    Last Modified: 21 Nov 2024

    The simple_captcha2 gem 0.2.3 for Ruby, as distributed on RubyGems.org, included a code-execution backdoor inserted by a third party.

    Published: 26 Jul 2019
    9.8
    Critical

    CVE-2019-14281

    Last Modified: 21 Nov 2024

    The datagrid gem 1.0.6 for Ruby, as distributed on RubyGems.org, included a code-execution backdoor inserted by a third party.

    Published: 26 Jul 2019
    5.3
    Medium

    CVE-2019-14280

    Last Modified: 21 Nov 2024

    In some circumstances, Craft 2 before 2.7.10 and 3 before 3.2.6 wasn't stripping EXIF data from user-uploaded images when it was configured to do so, potentially exposing personal/geolocation data to the public.

    Published: 26 Jul 2019
    9.8
    Critical

    CVE-2019-14277

    Last Modified: 21 Nov 2024

    Axway SecureTransport 5.x through 5.3 (or 5.x through 5.5 with certain API configuration) is vulnerable to unauthenticated blind XML injection (and XXE) in the resetPassword functionality via the REST API. This vulnerability can lead to local file disclosure, DoS, or URI invocation attacks (i.e., SSRF with resultant remote code execution). NOTE: The vendor disputes this issues as not being a vulnerability because β€œAll attacks that use external entities are blocked (no external DTD or file inclusions, no SSRF). The impact on confidentiality, integrity and availability is not proved on any version.

    Published: 26 Jul 2019
    7.8
    High

    CVE-2019-5606

    Last Modified: 21 Nov 2024

    In FreeBSD 12.0-STABLE before r349805, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r349806, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p12, code which handles close of a descriptor created by posix_openpt fails to undo a signal configuration. This causes an incorrect signal to be raised leading to a write after free of kernel memory allowing a malicious user to gain root privileges or escape a jail.

    Published: 26 Jul 2019
    7.8
    High

    CVE-2019-5607

    Last Modified: 21 Nov 2024

    In FreeBSD 12.0-STABLE before r350222, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r350223, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p12, rights transmitted over a domain socket did not properly release a reference on transmission error allowing a malicious user to cause the reference counter to wrap, forcing a free event. This could allow a malicious local user to gain root privileges or escape from a jail.

    Published: 26 Jul 2019
    Items Per Page