CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2018-14868

    Last Modified: 21 Nov 2024

    Incorrect access control in the Password Encryption module in Odoo Community 9.0 and Odoo Enterprise 9.0 allows authenticated users to change the password of other users without knowing their current password via a crafted RPC call.

    Published: 28 Jun 2019
    9.8
    Critical

    CVE-2018-14885

    Last Modified: 21 Nov 2024

    Incorrect access control in the database manager component in Odoo Community 10.0 and 11.0 and Odoo Enterprise 10.0 and 11.0 allows a remote attacker to restore a database dump without knowing the super-admin password. An arbitrary password succeeds.

    Published: 28 Jun 2019
    4.9
    Medium

    CVE-2018-14886

    Last Modified: 21 Nov 2024

    The module-description renderer in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and earlier does not disable RST's local file inclusion, which allows privileged authenticated users to read local files via a crafted module description.

    Published: 28 Jun 2019
    6.5
    Medium

    CVE-2018-14887

    Last Modified: 21 Nov 2024

    Improper Host header sanitization in the dbfilter routing component in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and earlier allows a remote attacker to deny access to the service and to disclose database names via a crafted request.

    Published: 28 Jun 2019
    6.1
    Medium

    CVE-2019-12932

    Last Modified: 21 Nov 2024

    A stored XSS vulnerability was found in SeedDMS 5.1.11 due to poorly escaping the search result in the autocomplete search form placed in the header of out/out.Viewfolder.php.

    Published: 28 Jun 2019
    9.1
    Critical

    CVE-2018-14916

    Last Modified: 21 Nov 2024

    LOYTEC LGATE-902 6.3.2 devices allow Arbitrary file deletion.

    Published: 28 Jun 2019
    7.5
    High

    CVE-2018-14918

    Last Modified: 21 Nov 2024

    LOYTEC LGATE-902 6.3.2 devices allow Directory Traversal.

    Published: 28 Jun 2019
    6.1
    Medium

    CVE-2018-14919

    Last Modified: 21 Nov 2024

    LOYTEC LGATE-902 6.3.2 devices allow XSS.

    Published: 28 Jun 2019
    7.5
    High

    CVE-2019-4269

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Admin Console could allow a remote attacker to obtain sensitive information when a specially crafted url causes a stack trace to be dumped. IBM X-Force ID: 160202.

    Published: 28 Jun 2019
    —
    Unknown

    CVE-2019-4369

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 28 Jun 2019
    9.8
    Critical

    CVE-2018-15519

    Last Modified: 21 Nov 2024

    Various Lexmark devices have a Buffer Overflow (issue 1 of 2).

    Published: 28 Jun 2019
    9.8
    Critical

    CVE-2018-15520

    Last Modified: 21 Nov 2024

    Various Lexmark devices have a Buffer Overflow (issue 2 of 2).

    Published: 28 Jun 2019
    9.8
    Critical

    CVE-2018-15555

    Last Modified: 21 Nov 2024

    On Telus Actiontec WEB6000Q v1.1.02.22 devices, an attacker can login with root level access with the user "root" and password "admin" by using the enabled onboard UART headers.

    Published: 28 Jun 2019
    8.8
    High

    CVE-2019-12997

    Last Modified: 21 Nov 2024

    In Loopchain through 2.2.1.3, an attacker can escalate privileges from a low-privilege shell by changing the environment (aka injection in the DEFAULT_SCORE_HOST environment variable).

    Published: 28 Jun 2019
    7.5
    High

    CVE-2019-12995

    Last Modified: 21 Nov 2024

    Istio before 1.2.2 mishandles certain access tokens, leading to "Epoch 0 terminated with an error" in Envoy. This is related to a jwt_authenticator.cc segmentation fault.

    Published: 28 Jun 2019
    7.5
    High

    CVE-2019-13012

    Last Modified: 21 Nov 2024

    The keyfile settings backend in GNOME GLib (aka glib2.0) before 2.60.0 creates directories using g_file_make_directory_with_parents (kfsb->dir, NULL, NULL) and files using g_file_replace_contents (kfsb->file, contents, length, NULL, FALSE, G_FILE_CREATE_REPLACE_DESTINATION, NULL, NULL, NULL). Consequently, it does not properly restrict directory (and file) permissions. Instead, for directories, 0777 permissions are used; for files, default file permissions are used. This is similar to CVE-2019-12450.

    Published: 28 Jun 2019
    7.8
    High

    CVE-2019-13164

    Last Modified: 21 Nov 2024

    qemu-bridge-helper.c in QEMU 3.1 and 4.0.0 does not ensure that a network interface name (obtained from bridge.conf or a --br=bridge option) is limited to the IFNAMSIZ size, which can lead to an ACL bypass.

    Published: 28 Jun 2019
    8.8
    High

    CVE-2019-3632

    Last Modified: 21 Nov 2024

    Directory Traversal vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to gain elevated privileges via specially crafted input.

    Published: 27 Jun 2019
    7.2
    High

    CVE-2019-3631

    Last Modified: 21 Nov 2024

    Command Injection vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to execute arbitrary code via specially crafted parameters.

    Published: 27 Jun 2019
    7.2
    High

    CVE-2019-3630

    Last Modified: 21 Nov 2024

    Command Injection vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows authenticated user to execute arbitrary code via specially crafted parameters.

    Published: 27 Jun 2019
    6.5
    Medium

    CVE-2019-3629

    Last Modified: 21 Nov 2024

    Application protection bypass vulnerability in McAfee Enterprise Security Manager (ESM) prior to 11.2.0 and prior to 10.4.0 allows unauthenticated user to impersonate system users via specially crafted parameters.

    Published: 27 Jun 2019
    9.8
    Critical

    CVE-2018-15556

    Last Modified: 21 Nov 2024

    The Quantenna WiFi Controller on Telus Actiontec WEB6000Q v1.1.02.22 allows login with root level access with the user "root" and an empty password by using the enabled onboard UART headers.

    Published: 27 Jun 2019
    8.8
    High

    CVE-2019-3628

    Last Modified: 21 Nov 2024

    Privilege escalation in McAfee Enterprise Security Manager (ESM) 11.x prior to 11.2.0 allows authenticated user to gain access to a core system component via incorrect access control.

    Published: 27 Jun 2019
    8.8
    High

    CVE-2018-15557

    Last Modified: 21 Nov 2024

    An issue was discovered in the Quantenna WiFi Controller on Telus Actiontec WEB6000Q v1.1.02.22 devices. An attacker can statically set his/her IP to anything on the 169.254.1.0/24 subnet, and obtain root access by connecting to 169.254.1.2 port 23 with telnet/netcat.

    Published: 27 Jun 2019
    8.8
    High

    CVE-2019-7225

    Last Modified: 21 Nov 2024

    The ABB HMI components implement hidden administrative accounts that are used during the provisioning phase of the HMI interface. These credentials allow the provisioning tool "Panel Builder 600" to flash a new interface and Tags (MODBUS coils) mapping to the HMI. These credentials are the idal123 password for the IdalMaster account, and the exor password for the exor account. These credentials are used over both HTTP(S) and FTP. There is no option to disable or change these undocumented credentials. An attacker can use these credentials to login to ABB HMI to read/write HMI configuration files and also to reset the device. This affects ABB CP635 HMI, CP600 HMIClient, Panel Builder 600, IDAL FTP server, IDAL HTTP server, and multiple other HMI components.

    Published: 27 Jun 2019
    5.5
    Medium

    CVE-2018-20073

    Last Modified: 21 Nov 2024

    Use of extended attributes in downloads in Google Chrome prior to 72.0.3626.81 allowed a local attacker to read download URLs via the filesystem.

    Published: 27 Jun 2019
    6.5
    Medium

    CVE-2018-17460

    Last Modified: 21 Nov 2024

    Insufficient data validation in filesystem URIs in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name.

    Published: 27 Jun 2019
    6.5
    Medium

    CVE-2017-5028

    Last Modified: 21 Nov 2024

    Insufficient data validation in V8 in Google Chrome prior to 56.0.2924.76 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

    Published: 27 Jun 2019
    8.8
    High

    CVE-2019-7226

    Last Modified: 21 Nov 2024

    The ABB IDAL HTTP server CGI interface contains a URL that allows an unauthenticated attacker to bypass authentication and gain access to privileged functions. Specifically, /cgi/loginDefaultUser creates a session in an authenticated state and returns the session ID along with what may be the username and cleartext password of the user. An attacker can then supply an IDALToken value in a cookie, which will allow them to perform privileged operations such as restarting the service with /cgi/restart. A GET request to /cgi/loginDefaultUser may result in "1 #S_OK IDALToken=532c8632b86694f0232a68a0897a145c admin admin" or a similar response.

    Published: 27 Jun 2019
    7.3
    High

    CVE-2019-7227

    Last Modified: 21 Nov 2024

    In the ABB IDAL FTP server, an authenticated attacker can traverse to arbitrary directories on the hard disk with "CWD ../" and then use the FTP server functionality to download and upload files. An unauthenticated attacker can take advantage of the hardcoded or default credential pair exor/exor to become an authenticated attacker.

    Published: 27 Jun 2019
    8.8
    High

    CVE-2019-7228

    Last Modified: 21 Nov 2024

    The ABB IDAL HTTP server mishandles format strings in a username or cookie during the authentication process. Attempting to authenticate with the username %25s%25p%25x%25n will crash the server. Sending %08x.AAAA.%08x.%08x will log memory content from the stack.

    Published: 27 Jun 2019
    6.1
    Medium

    CVE-2019-12581

    Last Modified: 21 Nov 2024

    A reflective Cross-site scripting (XSS) vulnerability in the free_time_failed.cgi CGI program in selected Zyxel ZyWall, USG, and UAG devices allows remote attackers to inject arbitrary web script or HTML via the err_msg parameter.

    Published: 27 Jun 2019
    9.1
    Critical

    CVE-2019-12583

    Last Modified: 21 Nov 2024

    Missing Access Control in the "Free Time" component of several Zyxel UAG, USG, and ZyWall devices allows a remote attacker to generate guest accounts by directly accessing the account generator. This can lead to unauthorised network access or Denial of Service.

    Published: 27 Jun 2019
    7.5
    High

    CVE-2019-4252

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 159883.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2019-4250

    Last Modified: 21 Nov 2024

    IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 159648.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2019-4249

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 159647.

    Published: 27 Jun 2019
    4.3
    Medium

    CVE-2019-4084

    Last Modified: 21 Nov 2024

    IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) could allow an authenticated user to obtain sensitive information from CLM Applications that could be used in further attacks against the system. IBM X-Force ID: 157384.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2019-4083

    Last Modified: 21 Nov 2024

    IBM Jazz Foundation products (IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 157383.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2018-1893

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 152157.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2018-1892

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 152156.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2018-1828

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150431.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2018-1827

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150430.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2018-1826

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150429.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2018-1760

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148614.

    Published: 27 Jun 2019
    5.4
    Medium

    CVE-2018-1758

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148605.

    Published: 27 Jun 2019
    4.3
    Medium

    CVE-2018-1734

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 discloses sensitive information in error messages that may be used by a malicious user to orchestrate further attacks. IBM X-Force ID: 147838.

    Published: 27 Jun 2019
    8.1
    High

    CVE-2019-12887

    Last Modified: 21 Nov 2024

    KeyIdentity LinOTP before 2.10.5.3 has Incorrect Access Control (issue 1 of 2).

    Published: 27 Jun 2019
    9.8
    Critical

    CVE-2019-1620

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to upload arbitrary files on an affected device. The vulnerability is due to incorrect permission settings in affected DCNM software. An attacker could exploit this vulnerability by uploading specially crafted data to the affected device. A successful exploit could allow the attacker to write arbitrary files on the filesystem and execute code with root privileges on the affected device.

    Published: 27 Jun 2019
    7.5
    High

    CVE-2019-1621

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to gain access to sensitive files on an affected device. The vulnerability is due to incorrect permissions settings on affected DCNM software. An attacker could exploit this vulnerability by connecting to the web-based management interface of an affected device and requesting specific URLs. A successful exploit could allow the attacker to download arbitrary files from the underlying filesystem of the affected device.

    Published: 27 Jun 2019
    5.3
    Medium

    CVE-2019-1622

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to retrieve sensitive information from an affected device. The vulnerability is due to improper access controls for certain URLs on affected DCNM software. An attacker could exploit this vulnerability by connecting to the web-based management interface of an affected device and requesting specific URLs. A successful exploit could allow the attacker to download log files and diagnostic information from the affected device.

    Published: 27 Jun 2019