CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2019-11025

    Last Modified: 21 Nov 2024

    In clearFilter() in utilities.php in Cacti before 1.2.3, no escaping occurs before printing out the value of the SNMP community string (SNMP Options) in the View poller cache, leading to XSS.

    Published: 8 Apr 2019
    5.5
    Medium

    CVE-2019-11024

    Last Modified: 24 Apr 2026

    The load_pnm function in frompnm.c in libsixel.a in libsixel 1.8.2 has infinite recursion.

    Published: 8 Apr 2019
    8.8
    High

    CVE-2019-11023

    Last Modified: 21 Nov 2024

    The agroot() function in cgraph\obj.c in libcgraph.a in Graphviz 2.39.20160612.1140 has a NULL pointer dereference, as demonstrated by graphml2gv.

    Published: 8 Apr 2019
    9.8
    Critical

    CVE-2019-11018

    Last Modified: 21 Nov 2024

    application\admin\controller\User.php in ThinkAdmin V4.0 does not prevent continued use of an administrator's cookie-based credentials after a password change.

    Published: 8 Apr 2019
    6.1
    Medium

    CVE-2019-11016

    Last Modified: 21 Nov 2024

    Elgg before 1.12.18 and 2.3.x before 2.3.11 has an open redirect.

    Published: 8 Apr 2019
    9.8
    Critical

    CVE-2019-11014

    Last Modified: 21 Nov 2024

    The VStarCam vstc.vscam.client library and vstc.vscam shared object, as used in the Eye4 application (for Android, iOS, and Windows), do not prevent spoofing of the camera server. An attacker can create a fake camera server that listens for the client looking for a camera on the local network. When the camera responds to the client, it responds via the broadcast address, giving all information necessary to impersonate the camera. The attacker then floods the client with responses, causing the original camera to be denied service from the client, and thus causing the client to then communicate exclusively with the attacker's fake camera server. When connecting to the fake camera server, the client sends all details necessary to login to the camera (username and password).

    Published: 8 Apr 2019
    5.5
    Medium

    CVE-2019-1798

    Last Modified: 21 Nov 2024

    A vulnerability in the Portable Executable (PE) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a lack of proper input and validation checking mechanisms for PE files sent an affected device. An attacker could exploit this vulnerability by sending malformed PE files to the device running an affected version ClamAV Software. An exploit could allow the attacker to cause an out-of-bounds read condition, resulting in a crash that could result in a denial of service condition on an affected device.

    Published: 8 Apr 2019
    5.5
    Medium

    CVE-2019-1788

    Last Modified: 21 Nov 2024

    A vulnerability in the Object Linking & Embedding (OLE2) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a lack of proper input and validation checking mechanisms for OLE2 files sent an affected device. An attacker could exploit this vulnerability by sending malformed OLE2 files to the device running an affected version ClamAV Software. An exploit could allow the attacker to cause an out-of-bounds write condition, resulting in a crash that could result in a denial of service condition on an affected device.

    Published: 8 Apr 2019
    5.5
    Medium

    CVE-2019-1787

    Last Modified: 21 Nov 2024

    A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of proper data handling mechanisms within the device buffer while indexing remaining file data on an affected device. An attacker could exploit this vulnerability by sending crafted PDF files to an affected device. A successful exploit could allow the attacker to cause a heap buffer out-of-bounds read condition, resulting in a crash that could result in a denial of service condition on an affected device.

    Published: 8 Apr 2019
    7.8
    High

    CVE-2019-1785

    Last Modified: 21 Nov 2024

    A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a lack of proper error-handling mechanisms when processing nested RAR files sent to an affected device. An attacker could exploit this vulnerability by sending a crafted RAR file to an affected device. An exploit could allow the attacker to view or create arbitrary files on the targeted system.

    Published: 8 Apr 2019
    5.5
    Medium

    CVE-2019-1786

    Last Modified: 21 Nov 2024

    A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of proper data handling mechanisms within the device buffer while indexing remaining file data on an affected device. An attacker could exploit this vulnerability by sending crafted PDF files to an affected device. A successful exploit could allow the attacker to cause an out-of-bounds read condition, resulting in a crash that could result in a denial of service condition on an affected device.

    Published: 8 Apr 2019
    6.5
    Medium

    CVE-2019-11010

    Last Modified: 21 Nov 2024

    In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a memory leak in the function ReadMPCImage of coders/mpc.c, which allows attackers to cause a denial of service via a crafted image file.

    Published: 8 Apr 2019
    8.1
    High

    CVE-2019-11009

    Last Modified: 21 Nov 2024

    In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadXWDImage of coders/xwd.c, which allows attackers to cause a denial of service or information disclosure via a crafted image file.

    Published: 8 Apr 2019
    8.8
    High

    CVE-2019-11008

    Last Modified: 21 Nov 2024

    In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer overflow in the function WriteXWDImage of coders/xwd.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image file.

    Published: 8 Apr 2019
    8.1
    High

    CVE-2019-11007

    Last Modified: 21 Nov 2024

    In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the ReadMNGImage function of coders/png.c, which allows attackers to cause a denial of service or information disclosure via an image colormap.

    Published: 8 Apr 2019
    9.1
    Critical

    CVE-2019-11006

    Last Modified: 21 Nov 2024

    In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadMIFFImage of coders/miff.c, which allows attackers to cause a denial of service or information disclosure via an RLE packet.

    Published: 8 Apr 2019
    9.8
    Critical

    CVE-2019-11005

    Last Modified: 21 Nov 2024

    In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a stack-based buffer overflow in the function SVGStartElement of coders/svg.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a quoted font family value.

    Published: 8 Apr 2019
    6.5
    Medium

    CVE-2019-10845

    Last Modified: 21 Nov 2024

    An issue was discovered in Uniqkey Password Manager 1.14. When entering new credentials to a site that isn't registered within this product, a pop-up window will appear asking the user if they want to save these new credentials. The code of the pop-up window can be read and, to some extent, manipulated by remote servers. This pop-up window will stay on any page the user visits within the browser until a decision is made. A malicious web server can forcefully manipulate the pop-up and cause it not to appear, stopping users from securing their credentials. This vulnerability is related to id="uniqkey-password-popup" and password-popup/popup.html, but is a different vulnerability than CVE-2019-10676.

    Published: 8 Apr 2019
    6.1
    Medium

    CVE-2019-11004

    Last Modified: 21 Nov 2024

    In Materialize through 1.0.0, XSS is possible via the Toast feature.

    Published: 8 Apr 2019
    6.1
    Medium

    CVE-2019-11003

    Last Modified: 21 Nov 2024

    In Materialize through 1.0.0, XSS is possible via the Autocomplete feature.

    Published: 8 Apr 2019
    6.1
    Medium

    CVE-2019-11002

    Last Modified: 21 Nov 2024

    In Materialize through 1.0.0, XSS is possible via the Tooltip feature.

    Published: 8 Apr 2019
    7.2
    High

    CVE-2019-11001

    Last Modified: 6 Nov 2025

    On Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W devices through 1.0.227, an authenticated admin can use the "TestEmail" functionality to inject and run OS commands as root, as demonstrated by shell metacharacters in the addr1 field.

    Published: 8 Apr 2019
    6.5
    Medium

    CVE-2019-10676

    Last Modified: 21 Nov 2024

    An issue was discovered in Uniqkey Password Manager 1.14. Upon entering new credentials to a site that is not registered within this product, a pop-up window will appear prompting the user if they want to save this new password. This pop-up window will persist on any page the user enters within the browser until a decision is made. The code of the pop-up window can be read by remote servers and contains the login credentials and URL in cleartext. A malicious server could easily grab this information from the pop-up. This is related to id="uniqkey-password-popup" and password-popup/popup.html.

    Published: 8 Apr 2019
    9.8
    Critical

    CVE-2014-5435

    Last Modified: 21 Nov 2024

    An arbitrary memory write vulnerability exists in the dual_onsrv.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.2, that could lead to possible remote code execution or denial of service. Honeywell strongly encourages and recommends all customers running unsupported versions of EKPS prior to R400 to upgrade to a supported version.

    Published: 8 Apr 2019
    7.5
    High

    CVE-2014-5436

    Last Modified: 21 Nov 2024

    A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.2, which could lead to possible information disclosure. Honeywell strongly encourages and recommends all customers running unsupported versions of EKPS prior to R400 to upgrade to a supported version.

    Published: 8 Apr 2019
    9.8
    Critical

    CVE-2014-9186

    Last Modified: 21 Nov 2024

    A file inclusion vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.2, which could lead to accepting an arbitrary file into the function, and potential information disclosure or remote code execution. Honeywell strongly encourages and recommends all customers running unsupported versions of EKPS prior to R400 to upgrade to a supported version.

    Published: 8 Apr 2019
    8.1
    High

    CVE-2019-4210

    Last Modified: 21 Nov 2024

    IBM QRadar SIEM 7.3.2 could allow a user to bypass authentication exposing certain functionality which could lead to information disclosure or modification of application configuration. IBM X-Force ID: 158986.

    Published: 8 Apr 2019
    8.8
    High

    CVE-2019-4155

    Last Modified: 21 Nov 2024

    IBM API Connect's Developer Portal 2018.1 and 2018.4.1.3 is impacted by a privilege escalation vulnerability when integrated with an OpenID Connect (OIDC) user registry. IBM X-Force ID: 158544.

    Published: 8 Apr 2019
    5.5
    Medium

    CVE-2019-4143

    Last Modified: 21 Nov 2024

    The IBM Cloud Private Key Management Service (IBM Cloud Private 3.1.1 and 3.1.2) could allow a local user to obtain sensitive from the KMS plugin container log. IBM X-Force ID: 158348.

    Published: 8 Apr 2019
    5.3
    Medium

    CVE-2019-4051

    Last Modified: 21 Nov 2024

    Some URIs in IBM API Connect 2018.1 and 2018.4.1.3 disclose system specification information like the machine id, system uuid, filesystem paths, network interface names along with their mac addresses. An attacker can use this information in targeted attacks. IBM X-Force ID: 156542.

    Published: 8 Apr 2019
    4.3
    Medium

    CVE-2019-4045

    Last Modified: 21 Nov 2024

    IBM Business Automation Workflow and IBM Business Process Manager 18.0.0.0, 18.0.0.1, and 18.0.0.2 provide embedded document management features. Because of a missing restriction in an API, a client might spoof the last modified by value of a document. IBM X-Force ID: 156241.

    Published: 8 Apr 2019
    4.3
    Medium

    CVE-2018-2000

    Last Modified: 21 Nov 2024

    IBM Business Automation Workflow 18.0.0.0 and 18.0.0.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 154890.

    Published: 8 Apr 2019
    4.3
    Medium

    CVE-2018-1999

    Last Modified: 21 Nov 2024

    IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could reveal sensitive version information about the server from error pages that could aid an attacker in further attacks against the system. IBM X-Force ID: 154889.

    Published: 8 Apr 2019
    4.3
    Medium

    CVE-2018-1997

    Last Modified: 21 Nov 2024

    IBM Business Automation Workflow and Business Process Manager 18.0.0.0, 18.0.0.1, and 18.0.0.2 are vulnerable to a denial of service attack. An authenticated attacker might send a specially crafted request that exhausts server-side memory. IBM X-Force ID: 154774.

    Published: 8 Apr 2019
    5.4
    Medium

    CVE-2018-1943

    Last Modified: 21 Nov 2024

    IBM Cloud Private 3.1.0 and 3.1.1 is vulnerable to HTTP HOST header injection, caused by improper validation of input. By persuading a victim to visit a specially-crafted Web page, a remote attacker could exploit this vulnerability to inject arbitrary HTTP headers, which will allow the attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 153385.

    Published: 8 Apr 2019
    5.3
    Medium

    CVE-2018-1885

    Last Modified: 21 Nov 2024

    IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could allow an unauthenticated attacker to obtain sensitve information using a specially cracted HTTP request. IBM X-Force ID: 152020.

    Published: 8 Apr 2019
    4.7
    Medium

    CVE-2018-1882

    Last Modified: 21 Nov 2024

    In a certain atypical IBM Spectrum Protect 7.1 and 8.1 configurations, the node password could be displayed in plain text in the IBM Spectrum Protect client trace file. IBM X-Force ID: 151968.

    Published: 8 Apr 2019
    6.1
    Medium

    CVE-2018-1853

    Last Modified: 21 Nov 2024

    IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 151014.

    Published: 8 Apr 2019
    5.1
    Medium

    CVE-2018-1787

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect 7.1 and 8.1 is affected by a password exposure vulnerability caused by insecure file permissions. IBM X-Force ID: 148872.

    Published: 8 Apr 2019
    7.8
    High

    CVE-2018-20341

    Last Modified: 21 Nov 2024

    WINMAGIC SecureDoc Disk Encryption software before 8.3 has an Unquoted Service Path vulnerability, which could allow an attacker to execute arbitrary code on a target system. If the executable is enclosed in quote tags "" then the system will know where to find it. However if the path of where the application binary is located doesn't contain any quotes then Windows will try to find it and execute it inside every folder of this path until they reach the executable.

    Published: 8 Apr 2019
    4.8
    Medium

    CVE-2018-19006

    Last Modified: 21 Nov 2024

    OSIsoft PI Vision, versions PI Vision 2017, and PI Vision 2017 R2, The application contains a cross-site scripting vulnerability where displays that reference AF elements and attributes containing JavaScript are affected. This vulnerability requires the ability of authorized AF users to store JavaScript in AF elements and attributes.

    Published: 8 Apr 2019
    9.8
    Critical

    CVE-2017-7912

    Last Modified: 21 Nov 2024

    Hanwha Techwin SRN-4000, SRN-4000 firmware versions prior to SRN4000_v2.16_170401, A specially crafted http request and response could allow an attacker to gain access to the device management page with admin privileges without proper authentication.

    Published: 8 Apr 2019
    9.8
    Critical

    CVE-2019-10914

    Last Modified: 21 Nov 2024

    pubRsaDecryptSignedElementExt in MatrixSSL 4.0.1 Open, as used in Inside Secure TLS Toolkit, has a stack-based buffer overflow during X.509 certificate verification because of missing validation in psRsaDecryptPubExt in crypto/pubkey/rsa_pub.c.

    Published: 8 Apr 2019
    8.1
    High

    CVE-2019-11598

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.8-40 Q16, there is a heap-based buffer over-read in the function WritePNMImage of coders/pnm.c, which allows an attacker to cause a denial of service or possibly information disclosure via a crafted image file. This is related to SetGrayscaleImage in MagickCore/quantize.c.

    Published: 8 Apr 2019
    3.5
    Low

    CVE-2019-3797

    Last Modified: 21 Nov 2024

    This affects Spring Data JPA in versions up to and including 2.1.5, 2.0.13 and 1.11.19. Derived queries using any of the predicates ‘startingWith’, ‘endingWith’ or ‘containing’ could return more results than anticipated when a maliciously crafted query parameter value is supplied. Also, LIKE expressions in manually defined queries could return unexpected results if the parameter values bound did not have escaped reserved characters properly.

    Published: 8 Apr 2019
    7
    High

    CVE-2019-3842

    Last Modified: 9 Jun 2025

    In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable. It is possible for an attacker, in some particular configurations, to set a XDG_SEAT environment variable which allows for commands to be checked against polkit policies using the "allow_active" element rather than "allow_any".

    Published: 8 Apr 2019
    4.2
    Medium

    CVE-2019-9619

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 8 Apr 2019
    4.3
    Medium

    CVE-2019-10741

    Last Modified: 21 Nov 2024

    K-9 Mail v5.600 can include the original quoted HTML code of a specially crafted, benign looking, email within (digitally signed) reply messages. The quoted part can contain conditional statements that show completely different text if opened in a different email client. This can be abused by an attacker to obtain valid S/MIME or PGP signatures for arbitrary content to be displayed to a third party. NOTE: the vendor states "We don't plan to take any action because of this."

    Published: 7 Apr 2019
    4.3
    Medium

    CVE-2019-10740

    Last Modified: 21 Nov 2024

    In Roundcube Webmail before 1.3.10, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-parts within a crafted multipart email. The encrypted part(s) can further be hidden using HTML/CSS or ASCII newline characters. This modified multipart email can be re-sent by the attacker to the intended receiver. If the receiver replies to this (benign looking) email, they unknowingly leak the plaintext of the encrypted message part(s) back to the attacker.

    Published: 7 Apr 2019
    4.3
    Medium

    CVE-2019-10735

    Last Modified: 21 Nov 2024

    In Claws Mail 3.14.1, an attacker in possession of S/MIME or PGP encrypted emails can wrap them as sub-parts within a crafted multipart email. The encrypted part(s) can further be hidden using HTML/CSS or ASCII newline characters. This modified multipart email can be re-sent by the attacker to the intended receiver. If the receiver replies to this (benign looking) email, they unknowingly leak the plaintext of the encrypted message part(s) back to the attacker.

    Published: 7 Apr 2019