CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2019-11591

    Last Modified: 21 Nov 2024

    The WebDorado Contact Form plugin before 1.13.5 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directory traversal, because there can be a discrepancy between the $_POST['action'] value and the $_GET['action'] value, and the latter is unsanitized.

    Published: 29 Apr 2019
    8.8
    High

    CVE-2019-11590

    Last Modified: 21 Nov 2024

    The 10Web Form Maker plugin before 1.13.5 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directory traversal, because there can be a discrepancy between the $_POST['action'] value and the $_GET['action'] value, and the latter is unsanitized.

    Published: 29 Apr 2019
    7.5
    High

    CVE-2019-3560

    Last Modified: 13 Feb 2025

    An improperly performed length calculation on a buffer in PlaintextRecordLayer could lead to an infinite loop and denial-of-service based on user input. This issue affected versions of fizz prior to v2019.03.04.00.

    Published: 29 Apr 2019
    6.1
    Medium

    CVE-2019-11776

    Last Modified: 21 Nov 2024

    In Eclipse BIRT versions 1.0 to 4.7, the Report Viewer allows Reflected XSS in URL parameter. Attacker can execute the payload in victim's browser context.

    Published: 29 Apr 2019
    6.5
    Medium

    CVE-2019-20398

    Last Modified: 21 Nov 2024

    A NULL pointer dereference is present in libyang before v1.0-r3 in the function lys_extension_instances_free() due to a copy of unresolved extensions in lys_restr_dup(). Applications that use libyang to parse untrusted input yang files may crash.

    Published: 29 Apr 2019
    5.3
    Medium

    CVE-2019-11579

    Last Modified: 21 Nov 2024

    dhcp.c in dhcpcd before 7.2.1 contains a 1-byte read overflow with DHO_OPTSOVERLOADED.

    Published: 28 Apr 2019
    5.9
    Medium

    CVE-2019-11578

    Last Modified: 21 Nov 2024

    auth.c in dhcpcd before 7.2.1 allowed attackers to infer secrets by performing latency attacks.

    Published: 28 Apr 2019
    9.8
    Critical

    CVE-2019-11577

    Last Modified: 21 Nov 2024

    dhcpcd before 7.2.1 contains a buffer overflow in dhcp6_findna in dhcp6.c when reading NA/TA addresses.

    Published: 28 Apr 2019
    9.8
    Critical

    CVE-2019-11576

    Last Modified: 21 Nov 2024

    Gitea before 1.8.0 allows 1FA for user accounts that have completed 2FA enrollment. If a user's credentials are known, then an attacker could send them to the API without requiring the 2FA one-time password.

    Published: 28 Apr 2019
    6.5
    Medium

    CVE-2019-15141

    Last Modified: 21 Nov 2024

    WriteTIFFImage in coders/tiff.c in ImageMagick 7.0.8-43 Q16 allows attackers to cause a denial-of-service (application crash resulting from a heap-based buffer over-read) via a crafted TIFF image file, related to TIFFRewriteDirectory, TIFFWriteDirectory, TIFFWriteDirectorySec, and TIFFWriteDirectoryTagColormap in tif_dirwrite.c of LibTIFF. NOTE: this occurs because of an incomplete fix for CVE-2019-11597.

    Published: 28 Apr 2019
    6.5
    Medium

    CVE-2020-19143

    Last Modified: 21 Nov 2024

    Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the "TIFFVGetField" funtion in the component 'libtiff/tif_dir.c'.

    Published: 28 Apr 2019
    6.5
    Medium

    CVE-2020-19144

    Last Modified: 21 Nov 2024

    Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the 'in _TIFFmemcpy' funtion in the component 'tif_unix.c'.

    Published: 28 Apr 2019
    8.8
    High

    CVE-2019-11568

    Last Modified: 21 Nov 2024

    An issue was discovered in AikCms v2.0. There is a File upload vulnerability, as demonstrated by an admin/page/system/nav.php request with PHP code in a .php file with the application/octet-stream content type.

    Published: 27 Apr 2019
    7.2
    High

    CVE-2019-11567

    Last Modified: 21 Nov 2024

    An issue was discovered in AikCms v2.0. There is a SQL Injection vulnerability via $_GET['del'], as demonstrated by an admin/page/system/nav.php?del= URI.

    Published: 27 Apr 2019
    9.8
    Critical

    CVE-2019-11565

    Last Modified: 21 Nov 2024

    Server Side Request Forgery (SSRF) exists in the Print My Blog plugin before 1.6.7 for WordPress via the site parameter.

    Published: 27 Apr 2019
    8.8
    High

    CVE-2019-15140

    Last Modified: 21 Nov 2024

    coders/mat.c in ImageMagick 7.0.8-43 Q16 allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact by crafting a Matlab image file that is mishandled in ReadImage in MagickCore/constitute.c.

    Published: 27 Apr 2019
    8.1
    High

    CVE-2019-11597

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.8-43 Q16, there is a heap-based buffer over-read in the function WriteTIFFImage of coders/tiff.c, which allows an attacker to cause a denial of service or possibly information disclosure via a crafted image file.

    Published: 27 Apr 2019
    8.8
    High

    CVE-2019-11557

    Last Modified: 21 Nov 2024

    The WebDorado Contact Form Builder plugin before 1.0.69 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directory traversal, because there can be a discrepancy between the $_POST['action'] value and the $_GET['action'] value, and the latter is unsanitized.

    Published: 26 Apr 2019
    8.1
    High

    CVE-2019-7476

    Last Modified: 21 Nov 2024

    A vulnerability in SonicWall Global Management System (GMS), allow a remote user to gain access to the appliance using existing SSH key. This vulnerability affects GMS versions 9.1, 9.0, 8.7, 8.6, 8.4, 8.3 and earlier.

    Published: 26 Apr 2019
    6.1
    Medium

    CVE-2019-11533

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in ProjectSend before r1070 allows remote attackers to inject arbitrary web script or HTML.

    Published: 26 Apr 2019
    7.5
    High

    CVE-2019-11492

    Last Modified: 21 Nov 2024

    ProjectSend before r1070 writes user passwords to the server logs.

    Published: 26 Apr 2019
    4.8
    Medium

    CVE-2018-18276

    Last Modified: 21 Nov 2024

    XSS exists in the ProFiles 1.5 component for Joomla! via the name or path parameter when creating a new folder in the administrative panel.

    Published: 26 Apr 2019
    6.1
    Medium

    CVE-2018-15582

    Last Modified: 21 Nov 2024

    Cross-Site Scripting (XSS) vulnerability in adm/sms_admin/num_book_write.php and adm/sms_admin/num_book_update.php in gnuboard5 before 5.3.1.6 allows remote attackers to inject arbitrary web script or HTML.

    Published: 26 Apr 2019
    6.1
    Medium

    CVE-2018-15580

    Last Modified: 21 Nov 2024

    Cross-Site Scripting (XSS) vulnerability in adm/contentformupdate.php in gnuboard5 before 5.3.1.6 allows remote attackers to inject arbitrary web script or HTML.

    Published: 26 Apr 2019
    6.1
    Medium

    CVE-2018-15584

    Last Modified: 21 Nov 2024

    Cross-Site Scripting (XSS) vulnerability in adm/boardgroup_form_update.php and adm/boardgroup_list_update.php in gnuboard5 before 5.3.1.6 allows remote attackers to inject arbitrary web script or HTML.

    Published: 26 Apr 2019
    6.1
    Medium

    CVE-2018-15581

    Last Modified: 21 Nov 2024

    Cross-Site Scripting (XSS) vulnerability in adm/faqmasterformupdate.php in gnuboard5 before 5.3.1.6 allows remote attackers to inject arbitrary web script or HTML.

    Published: 26 Apr 2019
    8.1
    High

    CVE-2019-11220

    Last Modified: 21 Nov 2024

    An authentication flaw in Shenzhen Yunni Technology iLnkP2P allows remote attackers to actively intercept user-to-device traffic in cleartext, including video streams and device credentials.

    Published: 26 Apr 2019
    8.2
    High

    CVE-2019-11219

    Last Modified: 21 Nov 2024

    The algorithm used to generate device IDs (UIDs) for devices that utilize Shenzhen Yunni Technology iLnkP2P suffers from a predictability flaw that allows remote attackers to establish direct connections to arbitrary devices.

    Published: 26 Apr 2019
    7.8
    High

    CVE-2019-6689

    Last Modified: 21 Nov 2024

    An issue was discovered in Dillon Kane Tidal Workload Automation Agent 3.2.0.5 (formerly known as Cisco Workload Automation or CWA). The Enterprise Scheduler for AIX allows local users to gain privileges via Command Injection in crafted Tidal Job Buffers (TJB) parameters. NOTE: this vulnerability exists because the CVE-2014-3272 solution did not address AIX operating systems.

    Published: 26 Apr 2019
    8.6
    High

    CVE-2019-3707

    Last Modified: 21 Nov 2024

    Dell EMC iDRAC9 versions prior to 3.30.30.30 contain an authentication bypass vulnerability. A remote attacker may potentially exploit this vulnerability to bypass authentication and gain access to the system by sending specially crafted input data to the WS-MAN interface.

    Published: 26 Apr 2019
    8.6
    High

    CVE-2019-3706

    Last Modified: 21 Nov 2024

    Dell EMC iDRAC9 versions prior to 3.24.24.24, 3.21.26.22, 3.22.22.22 and 3.21.25.22 contain an authentication bypass vulnerability. A remote attacker may potentially exploit this vulnerability to bypass authentication and gain access to the system by sending specially crafted data to the iDRAC web interface.

    Published: 26 Apr 2019
    9.8
    Critical

    CVE-2019-3705

    Last Modified: 21 Nov 2024

    Dell EMC iDRAC6 versions prior to 2.92, iDRAC7/iDRAC8 versions prior to 2.61.60.60, and iDRAC9 versions prior to 3.20.21.20, 3.21.24.22, 3.21.26.22 and 3.23.23.23 contain a stack-based buffer overflow vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to crash the webserver or execute arbitrary code on the system with privileges of the webserver by sending specially crafted input data to the affected system.

    Published: 26 Apr 2019
    9.8
    Critical

    CVE-2019-2725

    Last Modified: 25 Aug 2026

    Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services). Supported versions that are affected are 10.3.6.0.0 and 12.1.3.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

    Published: 26 Apr 2019
    7.5
    High

    CVE-2019-9806

    Last Modified: 21 Nov 2024

    A vulnerability exists during authorization prompting for FTP transaction where successive modal prompts are displayed and cannot be immediately dismissed. This allows for a denial of service (DOS) attack. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    9.8
    Critical

    CVE-2018-18512

    Last Modified: 21 Nov 2024

    A use-after-free vulnerability can occur while playing a sound notification in Thunderbird. The memory storing the sound data is immediately freed, although the sound is still being played asynchronously, leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 60.5.

    Published: 26 Apr 2019
    7.5
    High

    CVE-2018-18513

    Last Modified: 21 Nov 2024

    A crash can occur when processing a crafted S/MIME message or an XPI package containing a crafted signature. This can be used as a denial-of-service (DOS) attack because Thunderbird reopens the last seen message on restart, triggering the crash again. This vulnerability affects Thunderbird < 60.5.

    Published: 26 Apr 2019
    9.8
    Critical

    CVE-2019-9789

    Last Modified: 21 Nov 2024

    Mozilla developers and community members reported memory safety bugs present in Firefox 65. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    7.4
    High

    CVE-2019-9803

    Last Modified: 21 Nov 2024

    The Upgrade-Insecure-Requests (UIR) specification states that if UIR is enabled through Content Security Policy (CSP), navigation to a same-origin URL must be upgraded to HTTPS. Firefox will incorrectly navigate to an HTTP URL rather than perform the security upgrade requested by the CSP in some circumstances, allowing for potential man-in-the-middle attacks on the linked resources. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    9.8
    Critical

    CVE-2019-9805

    Last Modified: 21 Nov 2024

    A latent vulnerability exists in the Prio library where data may be read from uninitialized memory for some functions, leading to potential memory corruption. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    7.5
    High

    CVE-2019-9799

    Last Modified: 21 Nov 2024

    Insufficient bounds checking of data during inter-process communication might allow a compromised content process to be able to read memory from the parent process under certain conditions. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    5.3
    Medium

    CVE-2019-9797

    Last Modified: 21 Nov 2024

    Cross-origin images can be read in violation of the same-origin policy by exporting an image after using createImageBitmap to read the image and then rendering the resulting bitmap image within a canvas element. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    7.4
    High

    CVE-2019-9798

    Last Modified: 21 Nov 2024

    On Android systems, Firefox can load a library from APITRACE_LIB, which is writable by all users and applications. This could allow malicious third party applications to execute a man-in-the-middle attack if a malicious code was written to that location and loaded. *Note: This issue only affects Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    7.5
    High

    CVE-2019-9802

    Last Modified: 21 Nov 2024

    If a Sandbox content process is compromised, it can initiate an FTP download which will then use a child process to render the downloaded data. The downloaded data can then be passed to the Chrome process with an arbitrary file length supplied by an attacker, bypassing sandbox protections and allow for a potential memory read of adjacent data from the privileged Chrome process, which may include sensitive data. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    9.8
    Critical

    CVE-2019-9804

    Last Modified: 21 Nov 2024

    In Firefox Developer Tools it is possible that pasting the result of the 'Copy as cURL' command into a command shell on macOS will cause the execution of unintended additional bash script commands if the URL was maliciously crafted. This is the result of an issue with the native version of Bash on macOS. *Note: This issue only affects macOS. Other operating systems are unaffected.*. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    4.3
    Medium

    CVE-2019-9807

    Last Modified: 21 Nov 2024

    When arbitrary text is sent over an FTP connection and a page reload is initiated, it is possible to create a modal alert message with this text as the content. This could potentially be used for social engineering attacks. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    5.3
    Medium

    CVE-2019-9808

    Last Modified: 21 Nov 2024

    If WebRTC permission is requested from documents with data: or blob: URLs, the permission notifications do not properly display the originating domain. The notification states "Unknown origin" as the requestee, leading to user confusion about which site is asking for this permission. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    7.5
    High

    CVE-2019-9809

    Last Modified: 21 Nov 2024

    If the source for resources on a page is through an FTP connection, it is possible to trigger a series of modal alert messages for these resources through invalid credentials or locations. These messages cannot be immediately dismissed, allowing for a denial of service (DOS) attack. This vulnerability affects Firefox < 66.

    Published: 26 Apr 2019
    6.1
    Medium

    CVE-2019-0186

    Last Modified: 21 Nov 2024

    The input fields of the Apache Pluto "Chat Room" demo portlet 3.0.0 and 3.0.1 are vulnerable to Cross-Site Scripting (XSS) attacks. Mitigation: * Uninstall the ChatRoomDemo war file - or - * migrate to version 3.1.0 of the chat-room-demo war file

    Published: 26 Apr 2019
    7.8
    High

    CVE-2019-11493

    Last Modified: 21 Nov 2024

    VeryPDF 4.1 has a Memory Overflow leading to Code Execution because pdfocx!CxImageTIF::operator in pdfocx.ocx (used by pdfeditor.exe and pdfcmd.exe) is mishandled.

    Published: 26 Apr 2019
    6.1
    Medium

    CVE-2019-11543

    Last Modified: 21 Nov 2024

    XSS exists in the admin web console in Pulse Secure Pulse Connect Secure (PCS) 9.0RX before 9.0R3.4, 8.3RX before 8.3R7.1, and 8.1RX before 8.1R15.1 and Pulse Policy Secure 9.0RX before 9.0R3.2, 5.4RX before 5.4R7.1, and 5.2RX before 5.2R12.1.

    Published: 26 Apr 2019