CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2019-10742

    Last Modified: 21 Nov 2024

    Axios up to and including 0.18.0 allows attackers to cause a denial of service (application crash) by continuing to accepting content after maxContentLength is exceeded.

    Published: 7 May 2019
    7.1
    High

    CVE-2019-4208

    Last Modified: 21 Nov 2024

    IBM TRIRIGA Application Platform 3.5.3 and 3.6.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 159129.

    Published: 7 May 2019
    3.3
    Low

    CVE-2019-4207

    Last Modified: 21 Nov 2024

    IBM TRIRIGA Application Platform 3.5.3 and 3.6.0 may disclose sensitive information only available to a local user that could be used in further attacks against the system. IBM X-Force ID: 159148.

    Published: 7 May 2019
    4.3
    Medium

    CVE-2018-2008

    Last Modified: 21 Nov 2024

    IBM TRIRIGA Application Platform 3.5.3 and 3.6.0 could disclose sensitive information to an authenticated user that could aid in further attacks against the system. IBM X-Force ID: 155146.

    Published: 7 May 2019
    4.3
    Medium

    CVE-2018-2001

    Last Modified: 21 Nov 2024

    IBM Cram Social Program Management 6.1.1, 6.2.0, 7.0.4, and 7.0.5 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 154891.

    Published: 7 May 2019
    6.1
    Medium

    CVE-2019-7427

    Last Modified: 21 Nov 2024

    XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/linkdownalertConfig.jsp" file in the autorefTime or graphTypes parameter.

    Published: 7 May 2019
    6.1
    Medium

    CVE-2019-7426

    Last Modified: 21 Nov 2024

    XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/linkdownalertConfig.jsp" file in the groupDesc, groupName, groupID, or task parameter.

    Published: 7 May 2019
    6.1
    Medium

    CVE-2018-20503

    Last Modified: 21 Nov 2024

    Allied Telesis 8100L/8 devices allow XSS via the edit-ipv4_interface.php vlanid or subnet_mask parameter.

    Published: 7 May 2019
    7.5
    High

    CVE-2018-19456

    Last Modified: 21 Nov 2024

    The WP Backup+ (aka WPbackupplus) plugin through 2018-11-22 for WordPress allows remote attackers to obtain sensitive information from server folders and files, as demonstrated by download.sql.

    Published: 7 May 2019
    9.8
    Critical

    CVE-2018-14485

    Last Modified: 21 Nov 2024

    BlogEngine.NET 3.3 allows XXE attacks via the POST body to metaweblog.axd.

    Published: 7 May 2019
    6.1
    Medium

    CVE-2018-14478

    Last Modified: 21 Nov 2024

    ecard.php in Coppermine Photo Gallery (CPG) 1.5.46 has XSS via the sender_name, recipient_email, greetings, or recipient_name parameter.

    Published: 7 May 2019
    7.5
    High

    CVE-2018-13994

    Last Modified: 21 Nov 2024

    The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 is vulnerable to a denial-of-service attack by making more than 120 connections.

    Published: 7 May 2019
    8.8
    High

    CVE-2018-13993

    Last Modified: 21 Nov 2024

    The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 is prone to CSRF.

    Published: 7 May 2019
    8.2
    High

    CVE-2018-13992

    Last Modified: 21 Nov 2024

    The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 allows for plaintext transmission (HTTP) of user credentials by default.

    Published: 7 May 2019
    5.3
    Medium

    CVE-2018-13991

    Last Modified: 21 Nov 2024

    The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 leaks private information in firmware images.

    Published: 7 May 2019
    6.1
    Medium

    CVE-2019-11629

    Last Modified: 21 Nov 2024

    Sonatype Nexus Repository Manager 2.x before 2.14.13 allows XSS.

    Published: 7 May 2019
    8.1
    High

    CVE-2019-10869

    Last Modified: 17 Aug 2026

    Path Traversal and Unrestricted File Upload exists in the Ninja Forms plugin before 3.0.23 for WordPress (when the Uploads add-on is activated). This allows an attacker to traverse the file system to access files and execute code via the includes/fields/upload.php (aka upload/submit page) name and tmp_name parameters.

    Published: 7 May 2019
    4.9
    Medium

    CVE-2019-9708

    Last Modified: 21 Nov 2024

    An issue was discovered in Mahara 17.10 before 17.10.8, 18.04 before 18.04.4, and 18.10 before 18.10.1. A site administrator can suspend the system user (root), causing all users to be locked out from the system.

    Published: 7 May 2019
    9.8
    Critical

    CVE-2019-11560

    Last Modified: 21 Nov 2024

    A buffer overflow vulnerability in the streaming server provided by hisilicon in HI3516 models allows an unauthenticated attacker to remotely run arbitrary code by sending a special RTSP over HTTP packet. The vulnerability was found in many cameras using hisilicon's hardware and software, as demonstrated by TENVIS cameras 1.3.3.3, 1.2.7.2, 1.2.1.4, 7.1.20.1.2, and 13.1.1.1.7.2; FDT FD7902 11.3.14.1.3 and 10.3.14.1.3; FOSCAM cameras 3.2.1.1.1_0815 and 3.2.2.2.1_0815; and Dericam cameras V11.3.8.1.12.

    Published: 7 May 2019
    5.4
    Medium

    CVE-2019-9709

    Last Modified: 21 Nov 2024

    An issue was discovered in Mahara 17.10 before 17.10.8, 18.04 before 18.04.4, and 18.10 before 18.10.1. The collection title is vulnerable to Cross Site Scripting (XSS) due to not escaping it when viewing the collection's SmartEvidence overview page (if that feature is turned on). This can be exploited by any logged-in user.

    Published: 7 May 2019
    3.7
    Low

    CVE-2019-11808

    Last Modified: 21 Nov 2024

    Ratpack versions before 1.6.1 generate a session ID using a cryptographically weak PRNG in the JDK's ThreadLocalRandom. This means that if an attacker can determine a small window for the server start time and obtain a session ID value, they can theoretically determine the sequence of session IDs.

    Published: 7 May 2019
    7.5
    High

    CVE-2019-11810

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.7. A NULL pointer dereference can occur when megasas_create_frame_pool() fails in megasas_alloc_cmds() in drivers/scsi/megaraid/megaraid_sas_base.c. This causes a Denial of Service, related to a use-after-free.

    Published: 7 May 2019
    7
    High

    CVE-2019-11811

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read access to /proc/ioports after the ipmi_si module is removed, related to drivers/char/ipmi/ipmi_si_intf.c, drivers/char/ipmi/ipmi_si_mem_io.c, and drivers/char/ipmi/ipmi_si_port_io.c.

    Published: 7 May 2019
    7.8
    High

    CVE-2017-18279

    Last Modified: 21 Nov 2024

    Lack of check of buffer length before copying can lead to buffer overflow in camera module in Small Cell SoC, Snapdragon Mobile, Snapdragon Wear in FSM9055, FSM9955, IPQ4019, IPQ8064, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCA9531, QCA9558, QCA9563, QCA9880, QCA9886, QCA9980, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 800, SD 810, SD 820, SD 835, SDM630, SDM636, SDM660, SDX20, Snapdragon_High_Med_2016.

    Published: 6 May 2019
    7.8
    High

    CVE-2017-18278

    Last Modified: 21 Nov 2024

    An integer underflow may occur due to lack of check when received data length from font_mgr_qsee_request_service is bigger than the minimal value of the segment header, which may result in a buffer overflow, in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850.

    Published: 6 May 2019
    7.8
    High

    CVE-2017-18276

    Last Modified: 21 Nov 2024

    Secure camera logic allows display/secure camera controllers to access HLOS memory during secure display or camera session in Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 835, SD 845, SD 850

    Published: 6 May 2019
    5.5
    Medium

    CVE-2017-18275

    Last Modified: 21 Nov 2024

    A new account can be inserted into simContacts service using Android command line tool in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845.

    Published: 6 May 2019
    7.8
    High

    CVE-2017-18274

    Last Modified: 21 Nov 2024

    While iterating through the models contained in a fixed-size array in the actData structure, which also stores an incorrect number of models that is greater than the size of the array, a buffer overflow occurs in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835

    Published: 6 May 2019
    7.8
    High

    CVE-2017-18173

    Last Modified: 21 Nov 2024

    In case of using an invalid android verified boot signature with very large length, an integer underflow occurs in Snapdragon Mobile in SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 810, SD 820, SD 835, SDM630, SDM636, SDM660, Snapdragon_High_Med_2016.

    Published: 6 May 2019
    7.8
    High

    CVE-2017-18157

    Last Modified: 21 Nov 2024

    A Use After Free Condition can occur in Thermal Engine in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDX20.

    Published: 6 May 2019
    7.8
    High

    CVE-2017-18156

    Last Modified: 21 Nov 2024

    While processing camera buffers in camera driver, a use after free condition can occur in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 625, SD 820, SD 820A, SD 835, SDX20.

    Published: 6 May 2019
    5.5
    Medium

    CVE-2017-15841

    Last Modified: 21 Nov 2024

    When HOST sends a Special command ID packet, Controller triggers a RAM Dump and FW reset in Snapdragon Mobile in version SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 835, Snapdragon_High_Med_2016.

    Published: 6 May 2019
    7.8
    High

    CVE-2017-18131

    Last Modified: 21 Nov 2024

    In QTEE, an incorrect fuse value can be blown in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 820, SD 820A, SD 835, SD 845, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, Snapdragon_High_Med_2016.

    Published: 6 May 2019
    8.8
    High

    CVE-2019-11569

    Last Modified: 21 Nov 2024

    Veeam ONE Reporter 9.5.0.3201 allows CSRF.

    Published: 6 May 2019
    8.8
    High

    CVE-2019-10999

    Last Modified: 21 Nov 2024

    The D-Link DCS series of Wi-Fi cameras contains a stack-based buffer overflow in alphapd, the camera's web server. The overflow allows a remotely authenticated attacker to execute arbitrary code by providing a long string in the WEPEncryption parameter when requesting wireless.htm. Vulnerable devices include DCS-5009L (1.08.11 and below), DCS-5010L (1.14.09 and below), DCS-5020L (1.15.12 and below), DCS-5025L (1.03.07 and below), DCS-5030L (1.04.10 and below), DCS-930L (2.16.01 and below), DCS-931L (1.14.11 and below), DCS-932L (2.17.01 and below), DCS-933L (1.14.11 and below), and DCS-934L (1.05.04 and below).

    Published: 6 May 2019
    7.4
    High

    CVE-2018-18979

    Last Modified: 21 Nov 2024

    An issue was discovered in the Ascensia Contour NEXT ONE application for Android before 2019-01-15. It has a statically coded initialization vector. Extraction of the initialization vector is necessary for deciphering communications between this application and the backend server. This, in combination with retrieving any user's encrypted data from the Ascensia cloud through another vulnerability, allows an attacker to obtain and modify any patient's medical information.

    Published: 6 May 2019
    7.4
    High

    CVE-2018-18978

    Last Modified: 21 Nov 2024

    An issue was discovered in the Ascensia Contour NEXT ONE application for Android before 2019-01-15. It has a statically coded encryption key. Extraction of the encryption key is necessary for deciphering communications between this application and the backend server. This, in combination with retrieving any user's encrypted data from the Ascensia cloud through another vulnerability, allows an attacker to obtain and modify any patient's medical information.

    Published: 6 May 2019
    7.5
    High

    CVE-2018-18977

    Last Modified: 21 Nov 2024

    An issue was discovered in the Ascensia Contour NEXT ONE application for Android before 2019-01-15. An attacker may reverse engineer the codebase to extract sensitive data that contributes to the disclosure of medical information of patients utilizing the Ascensia platform. This occurs because of weak obfuscation.

    Published: 6 May 2019
    5.3
    Medium

    CVE-2018-18976

    Last Modified: 21 Nov 2024

    An issue was discovered in the Ascensia Contour NEXT ONE application for iOS and Android before 2019-01-15. An attacker may retrieve encrypted medical information of any user of the Ascensia cloud platform by performing Direct Object References with a series of user ID values. (This information can be decrypted through a different vulnerability.)

    Published: 6 May 2019
    7.5
    High

    CVE-2018-18975

    Last Modified: 21 Nov 2024

    An issue was discovered in the Ascensia Contour NEXT ONE app for iOS before 2019-01-15. An attacker may proxy communications between the app and Ascensia backend servers because of a weak certificate-pinning implementation, leading to disclosure of medical information.

    Published: 6 May 2019
    6.5
    Medium

    CVE-2018-4067

    Last Modified: 21 Nov 2024

    An exploitable information disclosure vulnerability exists in the ACEManager template_load.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A specially crafted HTTP request can cause a information leak, resulting in the disclosure of internal paths and files. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 6 May 2019
    8.6
    High

    CVE-2018-13990

    Last Modified: 21 Nov 2024

    The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions prior to 1.35 is vulnerable to brute-force attacks, because of Improper Restriction of Excessive Authentication Attempts.

    Published: 6 May 2019
    8.8
    High

    CVE-2018-4063

    Last Modified: 15 Dec 2025

    An exploitable remote code execution vulnerability exists in the upload.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A specially crafted HTTP request can upload a file, resulting in executable code being uploaded, and routable, to the webserver. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 6 May 2019
    8.8
    High

    CVE-2018-4066

    Last Modified: 21 Nov 2024

    An exploitable cross-site request forgery vulnerability exists in the ACEManager functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A specially crafted HTTP request can cause an authenticated user to perform privileged requests unknowingly, resulting in unauthenticated requests being requested through an authenticated user. An attacker can get an authenticated user to request authenticated pages on the attacker's behalf to trigger this vulnerability.

    Published: 6 May 2019
    8.1
    High

    CVE-2018-4062

    Last Modified: 21 Nov 2024

    A hard-coded credentials vulnerability exists in the snmpd function of the Sierra Wireless AirLink ES450 FW 4.9.3. Activating snmpd outside of the WebUI can cause the activation of the hard-coded credentials, resulting in the exposure of a privileged user. An attacker can activate snmpd without any configuration changes to trigger this vulnerability.

    Published: 6 May 2019
    8.8
    High

    CVE-2018-4073

    Last Modified: 21 Nov 2024

    An exploitable Permission Assignment vulnerability exists in the ACEManager EmbeddedAceSet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. The the binary the endpoint /cgi-bin/Embeded_Ace_TLSet_Task.cgi is a very similar endpoint that is designed for use with setting table values that can cause an arbitrary setting writes, resulting in the unverified changes to any system setting. An attacker can make an authenticated HTTP request, or run the binary as any user, to trigger this vulnerability.

    Published: 6 May 2019
    8.8
    High

    CVE-2018-4072

    Last Modified: 21 Nov 2024

    An exploitable Permission Assignment vulnerability exists in the ACEManager EmbeddedAceSet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. The EmbeddedAceSet_Task.cgi executable is used to change MSCII configuration values within the configuration manager of the AirLink ES450. This binary does not have any restricted configuration settings, so once the MSCIID is discovered, any authenticated user can send configuration changes using the /cgi-bin/Embedded_Ace_Set_Task.cgi endpoint.

    Published: 6 May 2019
    6.1
    Medium

    CVE-2018-13983

    Last Modified: 21 Nov 2024

    ImpressCMS 1.3.10 has XSS via the PATH_INFO to htdocs/install/index.php, htdocs/install/page_langselect.php, or htdocs/install/page_modcheck.php.

    Published: 6 May 2019
    8.8
    High

    CVE-2018-4071

    Last Modified: 21 Nov 2024

    An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. The EmbeddedAceTLGet_Task.cgi executable is used to retrieve MSCII configuration values within the configuration manager of the AirLink ES450. This binary does not have any restricted configuration settings, so once the MSCIID is discovered, any authenticated user can send configuration changes using the /cgi-bin/Embedded_Ace_TLGet_Task.cgi endpoint.

    Published: 6 May 2019
    8.8
    High

    CVE-2018-4070

    Last Modified: 21 Nov 2024

    An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. This binary does not have any restricted configuration settings, so once the MSCIID is discovered, any authenticated user can send configuration changes using the /cgi-bin/Embedded_Ace_Get_Task.cgi endpoint.

    Published: 6 May 2019