CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2019-0209

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2019. Notes: none

    Published: 10 Jun 2019
    3.1
    Low

    CVE-2019-10155

    Last Modified: 21 Nov 2024

    The Libreswan Project has found a vulnerability in the processing of IKEv1 informational exchange packets which are encrypted and integrity protected using the established IKE SA encryption and integrity keys, but as a receiver, the integrity check value was not verified. This issue affects versions before 3.29.

    Published: 10 Jun 2019
    9.8
    Critical

    CVE-2019-11027

    Last Modified: 21 Nov 2024

    Ruby OpenID (aka ruby-openid) through 2.8.0 has a remotely exploitable flaw. This library is used by Rails web applications to integrate with OpenID Providers. Severity can range from medium to critical, depending on how a web application developer chose to employ the ruby-openid library. Developers who based their OpenID integration heavily on the "example app" provided by the project are at highest risk.

    Published: 10 Jun 2019
    5.4
    Medium

    CVE-2019-10226

    Last Modified: 21 Nov 2024

    HTML Injection has been discovered in the v0.19.0 version of the Fat Free CRM product via an authenticated request to the /comments URI. NOTE: the vendor disputes the significance of this report because some HTML formatting (such as with an H1 element) is allowed, but there is a XSS protection mechanism.

    Published: 10 Jun 2019
    6.1
    Medium

    CVE-2019-12387

    Last Modified: 25 Nov 2024

    In Twisted before 19.2.1, twisted.web did not validate or sanitize URIs or HTTP methods, allowing an attacker to inject invalid characters such as CRLF.

    Published: 10 Jun 2019
    6.3
    Medium

    CVE-2019-25067

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as critical, was found in Podman and Varlink 1.5.1. This affects an unknown part of the component API. The manipulation leads to Remote Privilege Escalation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-143949 was assigned to this vulnerability.

    Published: 9 Jun 2019
    9.8
    Critical

    CVE-2019-9086

    Last Modified: 21 Nov 2024

    HotelDruid before v2.3.1 has SQL Injection via the /visualizza_tabelle.php anno parameter.

    Published: 7 Jun 2019
    9.8
    Critical

    CVE-2019-9087

    Last Modified: 21 Nov 2024

    HotelDruid before v2.3.1 has SQL Injection via the /tab_tariffe.php numtariffa1 parameter.

    Published: 7 Jun 2019
    4.9
    Medium

    CVE-2019-9084

    Last Modified: 21 Nov 2024

    In Hoteldruid before 2.3.1, a division by zero was discovered in $num_tabelle in tab_tariffe.php (aka the numtariffa1 parameter) due to the mishandling of non-numeric values, as demonstrated by the /tab_tariffe.php?anno=[YEAR]&numtariffa1=1a URI. It could allow an administrator to conduct remote denial of service (disrupting certain business functions of the product).

    Published: 7 Jun 2019
    8.8
    High

    CVE-2019-12506

    Last Modified: 21 Nov 2024

    Due to unencrypted and unauthenticated data communication, the wireless presenter Logitech R700 Laser Presentation Remote R-R0010 is prone to keystroke injection attacks. Thus, an attacker is able to send arbitrary keystrokes to a victim's computer system, e.g., to install malware when the target system is unattended. In this way, an attacker can remotely take control over the victim's computer that is operated with an affected receiver of this device.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2019-12504

    Last Modified: 21 Nov 2024

    Due to unencrypted and unauthenticated data communication, the wireless presenter Inateck WP2002 is prone to keystroke injection attacks. Thus, an attacker is able to send arbitrary keystrokes to a victim's computer system, e.g., to install malware when the target system is unattended. In this way, an attacker can remotely take control over the victim's computer that is operated with an affected receiver of this device.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2019-12505

    Last Modified: 21 Nov 2024

    Due to unencrypted and unauthenticated data communication, the wireless presenter Inateck WP1001 v1.3C is prone to keystroke injection attacks. Thus, an attacker is able to send arbitrary keystrokes to a victim's computer system, e.g., to install malware when the target system is unattended. In this way, an attacker can remotely take control over the victim's computer that is operated with an affected receiver of this device.

    Published: 7 Jun 2019
    7.4
    High

    CVE-2019-3957

    Last Modified: 21 Nov 2024

    Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating RsaSignatureLen during key negotiation, which could crash the application or leak sensitive information.

    Published: 7 Jun 2019
    7.4
    High

    CVE-2019-3956

    Last Modified: 21 Nov 2024

    Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validating CltDHPubKeyLen during key negotiation, which could crash the application or leak sensitive information.

    Published: 7 Jun 2019
    7.5
    High

    CVE-2019-3955

    Last Modified: 21 Nov 2024

    Dameware Remote Mini Control version 12.1.0.34 and prior contains a unauthenticated remote heap overflow due to the server not properly validating RsaPubKeyLen during key negotiation. An unauthenticated remote attacker can cause a heap buffer overflow by specifying a large RsaPubKeyLen, which could cause a denial of service.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2018-10703

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troubleshoot any issues. However, the same functionality allows an attacker to execute commands on the device. The POST parameter "iw_serverip" is susceptible to buffer overflow. By crafting a packet that contains a string of 480 characters, it is possible for an attacker to execute the attack.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2018-10702

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troubleshoot any issues. However, the same functionality allows an attacker to execute commands on the device. The POST parameter "iw_filename" is susceptible to command injection via shell metacharacters.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2018-10701

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troubleshoot any issues. However, the same functionality allows an attacker to execute commands on the device. The POST parameter "iw_filename" is susceptible to buffer overflow. By crafting a packet that contains a string of 162 characters, it is possible for an attacker to execute the attack.

    Published: 7 Jun 2019
    6.1
    Medium

    CVE-2018-10700

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.19 devices. It provides functionality so that an administrator can change the name of the device. However, the same functionality allows an attacker to execute XSS by injecting an XSS payload. The POST parameter "iw_board_deviceName" is susceptible to this injection.

    Published: 7 Jun 2019
    5.5
    Medium

    CVE-2019-2101

    Last Modified: 21 Nov 2024

    In uvc_parse_standard_control of uvc_driver.c, there is a possible out-of-bound read due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-111760968.

    Published: 7 Jun 2019
    7.8
    High

    CVE-2019-2099

    Last Modified: 21 Nov 2024

    In nfa_rw_store_ndef_rx_buf of nfa_rw_act.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-123583388.

    Published: 7 Jun 2019
    7.8
    High

    CVE-2019-2098

    Last Modified: 21 Nov 2024

    In areNotificationsEnabledForPackage of NotificationManagerService.java, there is a possible permissions bypass due to a missing permissions check. This could lead to local escalation of privilege, with no additional privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-128599467.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2019-2102

    Last Modified: 21 Nov 2024

    In the Bluetooth Low Energy (BLE) specification, there is a provided example Long Term Key (LTK). If a BLE device were to use this as a hardcoded LTK, it is theoretically possible for a proximate attacker to remotely inject keystrokes on a paired Android host due to improperly used crypto. User interaction is not needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-128843052.

    Published: 7 Jun 2019
    9.8
    Critical

    CVE-2019-2097

    Last Modified: 21 Nov 2024

    In HAliasAnalyzer.Query of hydrogen-alias-analysis.h, there is possible memory corruption due to type confusion. This could lead to remote code execution from a malicious proxy configuration, with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-117606285.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2018-10699

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. The Moxa AWK 3121 provides certfile upload functionality so that an administrator can upload a certificate file used for connecting to the wireless network. However, the same functionality allows an attacker to execute commands on the device. The POST parameter "iw_privatePass" is susceptible to this injection. By crafting a packet that contains shell metacharacters, it is possible for an attacker to execute the attack.

    Published: 7 Jun 2019
    7.8
    High

    CVE-2019-2096

    Last Modified: 21 Nov 2024

    In EffectRelease of EffectBundle.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege in the audio server with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-123237974.

    Published: 7 Jun 2019
    7
    High

    CVE-2019-2095

    Last Modified: 21 Nov 2024

    In callGenIDChangeListeners and related functions of SkPixelRef.cpp, there is a possible use after free due to a race condition. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-9. Android ID: A-124232283.

    Published: 7 Jun 2019
    7.8
    High

    CVE-2019-2094

    Last Modified: 21 Nov 2024

    In parseMPEGCCData of NuPlayerCCDecoder.cpp, there is a possible out of bounds write due to missing bounds checks. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-129068792.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2019-2093

    Last Modified: 21 Nov 2024

    In huff_dec_1D of nlc_dec.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-9. Android ID: A-119292397.

    Published: 7 Jun 2019
    9.8
    Critical

    CVE-2018-10698

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. The device enables an unencrypted TELNET service by default. This allows an attacker who has been able to gain an MITM position to easily sniff the traffic between the device and the user. Also an attacker can easily connect to the TELNET daemon using the default credentials if they have not been changed by the user.

    Published: 7 Jun 2019
    7.8
    High

    CVE-2019-2092

    Last Modified: 21 Nov 2024

    In isSeparateProfileChallengeAllowed of DevicePolicyManagerService.java, there is a possible permissions bypass due to a missing permission check. This could lead to local escalation of privilege, with no additional permissions required. User interaction is not needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-128599668.

    Published: 7 Jun 2019
    7.8
    High

    CVE-2019-2091

    Last Modified: 21 Nov 2024

    In GetPermittedAccessibilityServicesForUser of DevicePolicyManagerService.java, there is a possible permissions bypass due to a missing permission check. This could lead to local escalation of privilege, with no additional permissions required. User interaction is not needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1. Android ID: A-128599660.

    Published: 7 Jun 2019
    7.8
    High

    CVE-2019-2090

    Last Modified: 21 Nov 2024

    In isPackageDeviceAdminOnAnyUser of PackageManagerService.java, there is a possible permissions bypass due to a missing permissions check. This could lead to local escalation of privilege, with no additional permissions required. User interaction is not needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-128599183

    Published: 7 Jun 2019
    8.8
    High

    CVE-2018-10697

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. The Moxa AWK 3121 provides ping functionality so that an administrator can execute ICMP calls to check if the network is working correctly. However, the same functionality allows an attacker to execute commands on the device. The POST parameter "srvName" is susceptible to this injection. By crafting a packet that contains shell metacharacters, it is possible for an attacker to execute the attack.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2018-10696

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. The device provides a web interface to allow an administrator to manage the device. However, this interface is not protected against CSRF attacks, which allows an attacker to trick an administrator into executing actions without his/her knowledge, as demonstrated by the forms/iw_webSetParameters and forms/webSetMainRestart URIs.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2018-10695

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. It provides alert functionality so that an administrator can send emails to his/her account when there are changes to the device's network. However, the same functionality allows an attacker to execute commands on the device. The POST parameters "to1,to2,to3,to4" are all susceptible to buffer overflow. By crafting a packet that contains a string of 678 characters, it is possible for an attacker to execute the attack.

    Published: 7 Jun 2019
    8.1
    High

    CVE-2018-10694

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. The device provides a Wi-Fi connection that is open and does not use any encryption mechanism by default. An administrator who uses the open wireless connection to set up the device can allow an attacker to sniff the traffic passing between the user's computer and the device. This can allow an attacker to steal the credentials passing over the HTTP connection as well as TELNET traffic. Also an attacker can MITM the response and infect a user's computer very easily as well.

    Published: 7 Jun 2019
    8.8
    High

    CVE-2018-10693

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. It provides ping functionality so that an administrator can execute ICMP calls to check if the network is working correctly. However, the same functionality allows an attacker to execute commands on the device. The POST parameter "srvName" is susceptible to a buffer overflow. By crafting a packet that contains a string of 516 characters, it is possible for an attacker to execute the attack.

    Published: 7 Jun 2019
    6.1
    Medium

    CVE-2018-10692

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. The session cookie "Password508" does not have an HttpOnly flag. This allows an attacker who is able to execute a cross-site scripting attack to steal the cookie very easily.

    Published: 7 Jun 2019
    7.5
    High

    CVE-2018-10691

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. It is intended that an administrator can download /systemlog.log (the system log). However, the same functionality allows an attacker to download the file without any authentication or authorization.

    Published: 7 Jun 2019
    8.1
    High

    CVE-2018-10690

    Last Modified: 21 Nov 2024

    An issue was discovered on Moxa AWK-3121 1.14 devices. The device by default allows HTTP traffic thus providing an insecure communication mechanism for a user connecting to the web server. This allows an attacker to sniff the traffic easily and allows an attacker to compromise sensitive data such as credentials.

    Published: 7 Jun 2019
    —
    Unknown

    CVE-2019-5441

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-12739. Reason: This candidate is a reservation duplicate of CVE-2019-12739. Notes: All CVE users should reference CVE-2019-12739 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 7 Jun 2019
    9.8
    Critical

    CVE-2019-12599

    Last Modified: 21 Nov 2024

    SuiteCRM 7.10.x before 7.10.17 and 7.11.x before 7.11.5 allows SQL Injection.

    Published: 7 Jun 2019
    9.8
    Critical

    CVE-2019-12598

    Last Modified: 21 Nov 2024

    SuiteCRM 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allows SQL Injection (issue 1 of 3).

    Published: 7 Jun 2019
    9.8
    Critical

    CVE-2019-12600

    Last Modified: 21 Nov 2024

    SuiteCRM 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allows SQL Injection (issue 2 of 3).

    Published: 7 Jun 2019
    9.8
    Critical

    CVE-2019-12601

    Last Modified: 21 Nov 2024

    SuiteCRM 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allows SQL Injection (issue 3 of 3).

    Published: 7 Jun 2019
    7.8
    High

    CVE-2018-19451

    Last Modified: 21 Nov 2024

    A command injection can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031 when using the Open File action on a Field. An attacker can leverage this to gain remote code execution.

    Published: 7 Jun 2019
    7.8
    High

    CVE-2018-19452

    Last Modified: 21 Nov 2024

    A use after free in the TextBox field Mouse Enter action in IReader_ContentProvider can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031. An attacker can leverage this to gain remote code execution. Relative to CVE-2018-19444, this has a different free location and requires different JavaScript code for exploitation.

    Published: 7 Jun 2019
    4.8
    Medium

    CVE-2018-19461

    Last Modified: 21 Nov 2024

    admin\db\DoSql.php in EmpireCMS through 7.5 allows XSS via crafted SQL syntax to admin/admin.php.

    Published: 7 Jun 2019
    7.2
    High

    CVE-2018-19462

    Last Modified: 21 Nov 2024

    admin\db\DoSql.php in EmpireCMS through 7.5 allows remote attackers to execute arbitrary PHP code via SQL injection that uses a .php filename in a SELECT INTO OUTFILE statement to admin/admin.php.

    Published: 7 Jun 2019