CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-7117

    Last Modified: 21 Nov 2024

    A remote Cross-Site Scripting in HPE iLO 5 Web User Interface vulnerability was identified in HPE Integrated Lights-Out 5 (iLO 5) for Gen10 ProLiant Servers earlier than version v1.40.

    Published: 9 Apr 2019
    7.8
    High

    CVE-2018-7118

    Last Modified: 21 Nov 2024

    A local access restriction bypass vulnerability was identified in HPE Service Pack for ProLiant (SPP) Bundled Software earlier than version 2018.09.0.

    Published: 9 Apr 2019
    9.8
    Critical

    CVE-2019-7174

    Last Modified: 21 Nov 2024

    Roxy Fileman 1.4.5 allows attackers to execute renamefile.php (aka Rename File), createdir.php (aka Create Directory), fileslist.php (aka Echo File List), and movefile.php (aka Move File) operations.

    Published: 9 Apr 2019
    9.8
    Critical

    CVE-2019-9134

    Last Modified: 21 Nov 2024

    Architectural Information System 1.0 and earlier versions have a Stack-based buffer overflow, allows remote attackers to execute arbitrary code.

    Published: 9 Apr 2019
    6.1
    Medium

    CVE-2019-6117

    Last Modified: 21 Nov 2024

    The wpape APE GALLERY plugin 1.6.14 for WordPress has stored XSS via the classGallery.php getCategories function.

    Published: 9 Apr 2019
    9.9
    Critical

    CVE-2018-19586

    Last Modified: 21 Nov 2024

    Silverpeas 5.15 through 6.0.2 is affected by an authenticated Directory Traversal vulnerability that can be triggered during file uploads because core/webapi/upload/FileUploadData.java mishandles a StringUtil.java call. This vulnerability enables regular users to write arbitrary files on the underlying system with privileges of the user running the application. Especially, an attacker may leverage the vulnerability to write an executable JSP file in an exposed web directory to execute commands on the underlying system.

    Published: 9 Apr 2019
    8.1
    High

    CVE-2019-8990

    Last Modified: 21 Nov 2024

    The HTTP Connector component of TIBCO Software Inc.'s TIBCO ActiveMatrix BusinessWorks contains a vulnerability that theoretically allows unauthenticated HTTP requests to be processed by the BusinessWorks engine even when authentication is required. This possibility is restricted to circumstances where HTTP "Basic Authentication" policy is used in conjunction with an XML Authentication resource. The BusinessWorks engine might instead use credentials from a prior HTTP request for authorization purposes. Affected releases are TIBCO Software Inc. TIBCO ActiveMatrix BusinessWorks: versions up to and including 6.4.2.

    Published: 9 Apr 2019
    5.5
    Medium

    CVE-2019-9133

    Last Modified: 21 Nov 2024

    When processing subtitles format media file, KMPlayer version 2018.12.24.14 or lower doesn't check object size correctly, which leads to integer underflow then to memory out-of-bound read/write. An attacker can exploit this issue by enticing an unsuspecting user to open a malicious file.

    Published: 9 Apr 2019
    7.8
    High

    CVE-2018-14894

    Last Modified: 21 Nov 2024

    CyberArk Endpoint Privilege Manager 10.2.1.603 and earlier allows an attacker (who is able to edit permissions of a file) to bypass intended access restrictions and execute blocked applications.

    Published: 9 Apr 2019
    8.1
    High

    CVE-2017-17023

    Last Modified: 21 Nov 2024

    The Sophos UTM VPN endpoint interacts with client software provided by NPC Engineering (www.ncp-e.com). The affected client software, "Sophos IPSec Client" 11.04 is a rebranded version of NCP "Secure Entry Client" 10.11 r32792. A vulnerability in the software update feature of the VPN client allows a man-in-the-middle (MITM) or man-on-the-side (MOTS) attacker to execute arbitrary, malicious software on a target user's computer. This is related to SIC_V11.04-64.exe (Sophos), NCP_EntryCl_Windows_x86_1004_31799.exe (NCP), and ncpmon.exe (both Sophos and NCP). The vulnerability exists because: (1) the VPN client requests update metadata over an insecure HTTP connection; and (2) the client software does not check if the software update is signed before running it.

    Published: 9 Apr 2019
    6.1
    Medium

    CVE-2018-20698

    Last Modified: 21 Nov 2024

    The floragunn Search Guard plugin before 6.x-16 for Kibana allows URL injection for login redirects on the login page when basePath is set.

    Published: 9 Apr 2019
    6.5
    Medium

    CVE-2018-19589

    Last Modified: 21 Nov 2024

    Incorrect Access Controls of Security Officer (SO) in PKCS11 R2 provider that ships with the Utimaco CryptoServer HSM product package allows an SO authenticated to a slot to retrieve attributes of keys marked as private keys in external key storage, and also delete keys marked as private keys in external key storage. This compromises the availability of all keys configured with external key storage and may result in an economic attack in which the attacker denies legitimate users access to keys while maintaining possession of an encrypted copy (blob) of the external key store for ransom. This attack has been dubbed reverse ransomware attack and may be executed via a physical connection to the CryptoServer or remote connection if SSH or remote access to LAN CryptoServer has been compromised. The Confidentiality and Integrity of the affected keys, however, remain untarnished.

    Published: 9 Apr 2019
    5.3
    Medium

    CVE-2018-13366

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability in Fortinet FortiOS 6.0.1, 5.6.7 and below allows attacker to reveals serial number of FortiGate via hostname field defined in connection control setup packets of PPTP protocol.

    Published: 9 Apr 2019
    5.3
    Medium

    CVE-2019-10242

    Last Modified: 21 Nov 2024

    In Eclipse Kura versions up to 4.0.0, the SkinServlet did not checked the path passed during servlet call, potentially allowing path traversal in get requests for a limited number of file types.

    Published: 9 Apr 2019
    5.3
    Medium

    CVE-2019-10243

    Last Modified: 21 Nov 2024

    In Eclipse Kura versions up to 4.0.0, Kura exposes the underlying Ui Web server version in its replies. This can be used as a hint by an attacker to specifically craft attacks to the web server run by Kura.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-10244

    Last Modified: 21 Nov 2024

    In Eclipse Kura versions up to 4.0.0, the Web UI package and component services, the Artemis simple Mqtt component and the emulator position service (not part of the device distribution) could potentially be target of XXE attack due to an improper factory and parser initialisation.

    Published: 9 Apr 2019
    8.8
    High

    CVE-2018-15640

    Last Modified: 21 Nov 2024

    Improper access control in the Helpdesk App of Odoo Enterprise 10.0 through 12.0 allows remote authenticated attackers to obtain elevated privileges via a crafted request.

    Published: 9 Apr 2019
    6.5
    Medium

    CVE-2018-15631

    Last Modified: 21 Nov 2024

    Improper access control in the Discuss App of Odoo Community 12.0 and earlier, and Odoo Enterprise 12.0 and earlier allows remote authenticated attackers to e-mail themselves arbitrary files from the database, via a crafted RPC request.

    Published: 9 Apr 2019
    5.9
    Medium

    CVE-2018-15635

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in the Discuss App of Odoo Community 12.0 and earlier, and Odoo Enterprise 12.0 and earlier allows remote attackers to inject arbitrary web script in the browser of an internal user of the system by tricking them into inviting a follower on a document with a crafted name.

    Published: 9 Apr 2019
    7.2
    High

    CVE-2017-17544

    Last Modified: 21 Nov 2024

    A privilege escalation vulnerability in Fortinet FortiOS 6.0.0 to 6.0.6, 5.6.0 to 5.6.10, 5.4 and below allows admin users to elevate their profile to super_admin via restoring modified configurations.

    Published: 9 Apr 2019
    6.5
    Medium

    CVE-2019-5615

    Last Modified: 21 Nov 2024

    Users with Site-level permissions can access files containing the username-encrypted passwords of Security Console Global Administrators and clear-text passwords for restoring backups, as well as the salt for those passwords. Valid credentials are required to access these files and malicious users would still need to perform additional work to decrypt the credentials and escalate privileges. This issue affects: Rapid7 InsightVM versions 6.5.11 through 6.5.49.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-3941

    Last Modified: 21 Nov 2024

    Advantech WebAccess 8.3.4 allows unauthenticated, remote attackers to delete arbitrary files via IOCTL 10005 RPC.

    Published: 9 Apr 2019
    9.8
    Critical

    CVE-2019-3940

    Last Modified: 21 Nov 2024

    Advantech WebAccess 8.3.4 is vulnerable to file upload attacks via unauthenticated RPC call. An unauthenticated, remote attacker can use this vulnerability to execute arbitrary code.

    Published: 9 Apr 2019
    8
    High

    CVE-2019-3845

    Last Modified: 21 Nov 2024

    A lack of access control was found in the message queues maintained by Satellite's QPID broker and used by katello-agent in versions before Satellite 6.2, Satellite 6.1 optional and Satellite Capsule 6.1. A malicious user authenticated to a host registered to Satellite (or Capsule) can use this flaw to access QMF methods to any host also registered to Satellite (or Capsule) and execute privileged commands.

    Published: 9 Apr 2019
    8.8
    High

    CVE-2019-11028

    Last Modified: 21 Nov 2024

    GAT-Ship Web Module before 1.40 suffers from a vulnerability allowing authenticated attackers to upload any file type to the server via the "Documents" area. This vulnerability is related to "uploadDocFile.aspx".

    Published: 9 Apr 2019
    5.4
    Medium

    CVE-2019-10634

    Last Modified: 21 Nov 2024

    An XSS vulnerability in the Zyxel NAS 326 version 5.21 and below allows a remote authenticated attacker to inject arbitrary JavaScript or HTML via the user, group, and file-share description fields.

    Published: 9 Apr 2019
    8.8
    High

    CVE-2019-10633

    Last Modified: 21 Nov 2024

    An eval injection vulnerability in the Python web server routing on the Zyxel NAS 326 version 5.21 and below allows a remote authenticated attacker to execute arbitrary code via the tjp6jp6y4, simZysh, and ck6fup6 APIs.

    Published: 9 Apr 2019
    6.5
    Medium

    CVE-2019-10632

    Last Modified: 21 Nov 2024

    A directory traversal vulnerability in the file browser component on the Zyxel NAS 326 version 5.21 and below allows a lower privileged user to change the location of any other user's files.

    Published: 9 Apr 2019
    8.8
    High

    CVE-2019-10631

    Last Modified: 21 Nov 2024

    Shell Metacharacter Injection in the package installer on Zyxel NAS 326 version 5.21 and below allows an authenticated attacker to execute arbitrary code via multiple different requests.

    Published: 9 Apr 2019
    8.8
    High

    CVE-2019-10630

    Last Modified: 21 Nov 2024

    A plaintext password vulnerability in the Zyxel NAS 326 through 5.21 allows an elevated privileged user to get the admin password of the device.

    Published: 9 Apr 2019
    4.9
    Medium

    CVE-2019-3893

    Last Modified: 21 Nov 2024

    In Foreman it was discovered that the delete compute resource operation, when executed from the Foreman API, leads to the disclosure of the plaintext password or token for the affected compute resource. A malicious user with the "delete_compute_resource" permission can use this flaw to take control over compute resources managed by foreman. Versions before 1.20.3, 1.21.1, 1.22.0 are vulnerable.

    Published: 9 Apr 2019
    5.5
    Medium

    CVE-2019-0782

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0702, CVE-2019-0755, CVE-2019-0767, CVE-2019-0775.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-0783

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0609, CVE-2019-0639, CVE-2019-0680, CVE-2019-0769, CVE-2019-0770, CVE-2019-0771, CVE-2019-0773.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-0784

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the way that the ActiveX Data objects (ADO) handles objects in memory, aka 'Windows ActiveX Remote Code Execution Vulnerability'.

    Published: 9 Apr 2019
    7.8
    High

    CVE-2019-0797

    Last Modified: 29 Oct 2025

    An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0808.

    Published: 9 Apr 2019
    6.1
    Medium

    CVE-2019-0798

    Last Modified: 21 Nov 2024

    A spoofing vulnerability exists when a Lync Server or Skype for Business Server does not properly sanitize a specially crafted request, aka 'Skype for Business and Lync Spoofing Vulnerability'.

    Published: 9 Apr 2019
    7.8
    High

    CVE-2019-0808

    Last Modified: 29 Oct 2025

    An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0797.

    Published: 9 Apr 2019
    7.8
    High

    CVE-2019-0809

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists when the Visual Studio C++ Redistributable Installer improperly validates input before loading dynamic link library (DLL) files, aka 'Visual Studio Remote Code Execution Vulnerability'.

    Published: 9 Apr 2019
    6.5
    Medium

    CVE-2019-0821

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists in the way that the Windows SMB Server handles certain requests, aka 'Windows SMB Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0703, CVE-2019-0704.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-0770

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0609, CVE-2019-0639, CVE-2019-0680, CVE-2019-0769, CVE-2019-0771, CVE-2019-0773, CVE-2019-0783.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-0771

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0609, CVE-2019-0639, CVE-2019-0680, CVE-2019-0769, CVE-2019-0770, CVE-2019-0773, CVE-2019-0783.

    Published: 9 Apr 2019
    8.8
    High

    CVE-2019-0772

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0665, CVE-2019-0666, CVE-2019-0667.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-0773

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0609, CVE-2019-0639, CVE-2019-0680, CVE-2019-0769, CVE-2019-0770, CVE-2019-0771, CVE-2019-0783.

    Published: 9 Apr 2019
    6.5
    Medium

    CVE-2019-0774

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0614.

    Published: 9 Apr 2019
    4.7
    Medium

    CVE-2019-0775

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0702, CVE-2019-0755, CVE-2019-0767, CVE-2019-0782.

    Published: 9 Apr 2019
    5.5
    Medium

    CVE-2019-0776

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.

    Published: 9 Apr 2019
    5.4
    Medium

    CVE-2019-0777

    Last Modified: 21 Nov 2024

    A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka 'Team Foundation Server Cross-site Scripting Vulnerability'.

    Published: 9 Apr 2019
    5.4
    Medium

    CVE-2019-0778

    Last Modified: 21 Nov 2024

    A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-0779

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka 'Microsoft Edge Memory Corruption Vulnerability'.

    Published: 9 Apr 2019
    7.5
    High

    CVE-2019-0780

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka 'Microsoft Browser Memory Corruption Vulnerability'.

    Published: 9 Apr 2019