CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2017-2677

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2017. Notes: none

    Published: 2 Apr 2019
    —
    Unknown

    CVE-2017-2678

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2017. Notes: none

    Published: 2 Apr 2019
    —
    Unknown

    CVE-2017-2679

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2017. Notes: none

    Published: 2 Apr 2019
    8.1
    High

    CVE-2019-6531

    Last Modified: 21 Nov 2024

    An attacker could retrieve passwords from a HTTP GET request from the Kunbus PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) if the attacker is in an MITM position.

    Published: 2 Apr 2019
    7.5
    High

    CVE-2018-12680

    Last Modified: 21 Nov 2024

    The Serialize.deserialize() method in CoAPthon 3.1, 4.0.0, 4.0.1, and 4.0.2 mishandles certain exceptions, leading to a denial of service in applications that use this library (e.g., the standard CoAP server, CoAP client, CoAP reverse proxy, example collect CoAP server and client) when they receive crafted CoAP messages.

    Published: 2 Apr 2019
    7.5
    High

    CVE-2018-12679

    Last Modified: 21 Nov 2024

    The Serialize.deserialize() method in CoAPthon3 1.0 and 1.0.1 mishandles certain exceptions, leading to a denial of service in applications that use this library (e.g., the standard CoAP server, CoAP client, example collect CoAP server and client) when they receive crafted CoAP messages.

    Published: 2 Apr 2019
    9.8
    Critical

    CVE-2019-10708

    Last Modified: 21 Nov 2024

    S-CMS PHP v1.0 has SQL injection via the 4/js/scms.php?action=unlike id parameter.

    Published: 2 Apr 2019
    9.8
    Critical

    CVE-2019-10707

    Last Modified: 21 Nov 2024

    MKCMS V5.0 has SQL injection via the bplay.php play parameter.

    Published: 2 Apr 2019
    9.8
    Critical

    CVE-2018-19275

    Last Modified: 21 Nov 2024

    The BluStar component in Mitel InAttend before 2.5 SP3 and CMG before 8.4 SP3 Suite Servers has a default password, which could allow remote attackers to gain unauthorized access and execute arbitrary scripts with potential impacts to the confidentiality, integrity and availability of the system.

    Published: 2 Apr 2019
    9.8
    Critical

    CVE-2019-10692

    Last Modified: 21 Nov 2024

    In the wp-google-maps plugin before 7.11.18 for WordPress, includes/class.rest-api.php in the REST API does not sanitize field names before a SELECT statement.

    Published: 2 Apr 2019
    7.5
    High

    CVE-2019-7477

    Last Modified: 21 Nov 2024

    A vulnerability in SonicWall SonicOS and SonicOSv TLS CBC Cipher allow remote attackers to obtain sensitive plaintext data when CBC cipher suites are enabled. This vulnerability affected SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 version 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8, 6.4.0.0, 6.5.1.8, 6.0.5.3-86o and SonicOSv 6.5.0.2-8v_RC363 (VMWARE), 6.5.0.2.8v_RC367 (AZURE), SonicOSv 6.5.0.2.8v_RC368 (AWS), SonicOSv 6.5.0.2.8v_RC366 (HYPER_V).

    Published: 2 Apr 2019
    6.5
    Medium

    CVE-2019-7474

    Last Modified: 21 Nov 2024

    A vulnerability in SonicWall SonicOS and SonicOSv, allow authenticated read-only admin to leave the firewall in an unstable state by downloading certificate with specific extension. This vulnerability affected SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 version 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8, 6.4.0.0, 6.5.1.8, 6.0.5.3-86o and SonicOSv 6.5.0.2-8v_RC363 (VMWARE), 6.5.0.2.8v_RC367 (AZURE), SonicOSv 6.5.0.2.8v_RC368 (AWS), SonicOSv 6.5.0.2.8v_RC366 (HYPER_V).

    Published: 2 Apr 2019
    9.8
    Critical

    CVE-2019-7475

    Last Modified: 21 Nov 2024

    A vulnerability in SonicWall SonicOS and SonicOSv with management enabled system on specific configuration allow unprivileged user to access advanced routing services. This vulnerability affected SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 version 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8, 6.4.0.0, 6.5.1.8, 6.0.5.3-86o and SonicOSv 6.5.0.2-8v_RC363 (VMWARE), 6.5.0.2.8v_RC367 (AZURE), SonicOSv 6.5.0.2.8v_RC368 (AWS), SonicOSv 6.5.0.2.8v_RC366 (HYPER_V).

    Published: 2 Apr 2019
    6.1
    Medium

    CVE-2018-15180

    Last Modified: 21 Nov 2024

    qTest Portal in QASymphony qTest Manager 9.0.0 has an Open Redirect via the /portal/loginform redirect parameter.

    Published: 2 Apr 2019
    7.8
    High

    CVE-2018-4049

    Last Modified: 21 Nov 2024

    An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's “Games” directory, version 1.2.48.36 (Windows 64-bit Installer). An attacker can overwrite executables of installed games to exploit this vulnerability and execute arbitrary code with elevated privileges.

    Published: 2 Apr 2019
    5.5
    Medium

    CVE-2018-4053

    Last Modified: 21 Nov 2024

    An exploitable local denial-of-service vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS. An attacker can send malicious data to the root-listening service, causing the application to terminate and become unavailable.

    Published: 2 Apr 2019
    5.5
    Medium

    CVE-2018-4051

    Last Modified: 21 Nov 2024

    An exploitable local privilege escalation vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS. An attacker can globally create directories and subdirectories on the root file system, as well as change the permissions of existing directories.

    Published: 2 Apr 2019
    5.5
    Medium

    CVE-2018-4052

    Last Modified: 21 Nov 2024

    An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS. An attacker can pass a PID and receive information running on it that would usually only be accessible to the root user.

    Published: 2 Apr 2019
    7.8
    High

    CVE-2018-3974

    Last Modified: 21 Nov 2024

    An exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's install directory. An attacker can overwrite an executable that is launched as a system service on boot by default to exploit this vulnerability and execute arbitrary code with system privileges.

    Published: 2 Apr 2019
    8.8
    High

    CVE-2019-5515

    Last Modified: 21 Nov 2024

    VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) and Fusion (11.x before 11.0.3, 10.x before 10.1.6) updates address an out-of-bounds write vulnerability in the e1000 and e1000e virtual network adapters. Exploitation of this issue may lead to code execution on the host from the guest but it is more likely to result in a denial of service of the guest.

    Published: 2 Apr 2019
    8.8
    High

    CVE-2019-5524

    Last Modified: 21 Nov 2024

    VMware Workstation (14.x before 14.1.6) and Fusion (10.x before 10.1.6) contain an out-of-bounds write vulnerability in the e1000 virtual network adapter. This issue may allow a guest to execute code on the host.

    Published: 2 Apr 2019
    8.1
    High

    CVE-2019-1010260

    Last Modified: 21 Nov 2024

    Using ktlint to download and execute custom rulesets can result in arbitrary code execution as the served jars can be compromised by a MITM. This attack is exploitable via Man in the Middle of the HTTP connection to the artifact servers. This vulnerability appears to have been fixed in 0.30.0 and later; after commit 5e547b287d6c260d328a2cb658dbe6b7a7ff2261.

    Published: 2 Apr 2019
    9.8
    Critical

    CVE-2019-9759

    Last Modified: 21 Nov 2024

    An issue was discovered in TONGDA Office Anywhere 10.18.190121. There is a SQL Injection vulnerability via the general/approve_center/list/input_form/work_handle.php run_id parameter.

    Published: 2 Apr 2019
    4.4
    Medium

    CVE-2019-4093

    Last Modified: 21 Nov 2024

    IBM Tivoli Storage Manager (IBM Spectrum Protect 8.1.7) could allow a user to restore files and directories using IBM Spectrum Prootect Client Web User Interface on Windows that they should not have access to due to incorrect file permissions. IBM X-Force ID: 157981.

    Published: 2 Apr 2019
    6.5
    Medium

    CVE-2019-4080

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server Admin Console 7.5, 8.0, 8.5, and 9.0 is vulnerable to a potential denial of service, caused by improper parameter parsing. A remote attacker could exploit this to consume all available CPU resources. IBM X-Force ID: 157380.

    Published: 2 Apr 2019
    7.1
    High

    CVE-2019-4043

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 5.2.0 snf 6.0.0.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 156239.

    Published: 2 Apr 2019
    3.5
    Low

    CVE-2018-1917

    Last Modified: 21 Nov 2024

    IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could allow an authenticated user to access JSP files and disclose sensitive information. IBM X-Force ID: 152784.

    Published: 2 Apr 2019
    4.3
    Medium

    CVE-2018-1906

    Last Modified: 21 Nov 2024

    IBM InfoSphere Information Server 11.3, 11.5, and 11.7could allow an authenticated user to download code using a specially crafted HTTP request. IBM X-Force ID: 152663.

    Published: 2 Apr 2019
    4.6
    Medium

    CVE-2018-1874

    Last Modified: 21 Nov 2024

    IBM API Connect 5.0.0.0 through 5.0.8.5 could display highly sensitive information to an attacker with physical access to the system. IBM X-Force ID: 151636.

    Published: 2 Apr 2019
    5.9
    Medium

    CVE-2018-1680

    Last Modified: 21 Nov 2024

    IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 145236.

    Published: 2 Apr 2019
    8.8
    High

    CVE-2018-1640

    Last Modified: 21 Nov 2024

    IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 144580.

    Published: 2 Apr 2019
    3.1
    Low

    CVE-2018-1626

    Last Modified: 21 Nov 2024

    IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 does not renew a session variable after a successful authentication which could lead to session fixation/hijacking vulnerability. This could force a user to utilize a cookie that may be known to an attacker. IBM X-Force ID: 144411.

    Published: 2 Apr 2019
    4.3
    Medium

    CVE-2018-1625

    Last Modified: 21 Nov 2024

    IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 generates an error message that includes sensitive information about its environment, users, or associated data. IBM X-Force ID: 144410.

    Published: 2 Apr 2019
    4
    Medium

    CVE-2018-1623

    Last Modified: 21 Nov 2024

    IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 144408.

    Published: 2 Apr 2019
    4.3
    Medium

    CVE-2018-1622

    Last Modified: 21 Nov 2024

    IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 144348.

    Published: 2 Apr 2019
    7.7
    High

    CVE-2018-1618

    Last Modified: 21 Nov 2024

    IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 144343.

    Published: 2 Apr 2019
    9.1
    Critical

    CVE-2019-11035

    Last Modified: 21 Nov 2024

    When processing certain files, PHP EXIF extension in versions 7.1.x below 7.1.28, 7.2.x below 7.2.17 and 7.3.x below 7.3.4 can be caused to read past allocated buffer in exif_iif_add_value function. This may lead to information disclosure or crash.

    Published: 2 Apr 2019
    5.3
    Medium

    CVE-2019-3795

    Last Modified: 21 Nov 2024

    Spring Security versions 4.2.x prior to 4.2.12, 5.0.x prior to 5.0.12, and 5.1.x prior to 5.1.5 contain an insecure randomness vulnerability when using SecureRandomFactoryBean#setSeed to configure a SecureRandom instance. In order to be impacted, an honest application must provide a seed and make the resulting random material available to an attacker for inspection.

    Published: 2 Apr 2019
    5.5
    Medium

    CVE-2019-3882

    Last Modified: 21 Nov 2024

    A flaw was found in the Linux kernel's vfio interface implementation that permits violation of the user's locked memory limit. If a device is bound to a vfio driver, such as vfio-pci, and the local attacker is administratively granted ownership of the device, it may cause a system memory exhaustion and thus a denial of service (DoS). Versions 3.10, 4.14 and 4.18 are vulnerable.

    Published: 2 Apr 2019
    6.8
    Medium

    CVE-2019-3792

    Last Modified: 21 Nov 2024

    Pivotal Concourse version 5.0.0, contains an API that is vulnerable to SQL injection. An Concourse resource can craft a version identifier that can carry a SQL injection payload to the Concourse server, allowing the attacker to read privileged data.

    Published: 1 Apr 2019
    9.8
    Critical

    CVE-2017-8023

    Last Modified: 21 Nov 2024

    EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the Networker Client execution service (nsrexecd) when oldauth authentication method is used. An unauthenticated remote attacker could send arbitrary commands via RPC service to be executed on the host system with the privileges of the nsrexecd service, which runs with administrative privileges.

    Published: 1 Apr 2019
    8.8
    High

    CVE-2018-17990

    Last Modified: 21 Nov 2024

    An issue was discovered on D-Link DSL-3782 devices with firmware 1.01. An OS command injection vulnerability in Acl.asp allows a remote authenticated attacker to execute arbitrary OS commands via the ScrIPaddrEndTXT parameter.

    Published: 1 Apr 2019
    9.8
    Critical

    CVE-2018-17565

    Last Modified: 21 Nov 2024

    Shell Metacharacter Injection in the SSH configuration interface on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to execute arbitrary system commands and gain a root shell.

    Published: 1 Apr 2019
    9.8
    Critical

    CVE-2018-17564

    Last Modified: 21 Nov 2024

    A Malformed Input String to /cgi-bin/delete_CA on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to delete configuration parameters and gain admin access to the device.

    Published: 1 Apr 2019
    5.3
    Medium

    CVE-2018-17563

    Last Modified: 21 Nov 2024

    A Malformed Input String to /cgi-bin/api-get_line_status on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to dump the device's configuration in cleartext.

    Published: 1 Apr 2019
    5.4
    Medium

    CVE-2018-17989

    Last Modified: 21 Nov 2024

    A stored XSS vulnerability exists in the web interface on D-Link DSL-3782 devices with firmware 1.01 that allows authenticated attackers to inject a JavaScript or HTML payload inside the ACL page. The injected payload would be executed in a user's browser when "/cgi-bin/New_GUI/Acl.asp" is requested.

    Published: 1 Apr 2019
    6.8
    Medium

    CVE-2019-5518

    Last Modified: 21 Nov 2024

    VMware ESXi (6.7 before ESXi670-201903001, 6.5 before ESXi650-201903001, 6.0 before ESXi600-201903001), Workstation (15.x before 15.0.4, 14.x before 14.1.7), Fusion (11.x before 11.0.3, 10.x before 10.1.6) contain an out-of-bounds read/write vulnerability in the virtual USB 1.1 UHCI (Universal Host Controller Interface). Exploitation of this issue requires an attacker to have access to a virtual machine with a virtual USB controller present. This issue may allow a guest to execute code on the host.

    Published: 1 Apr 2019
    6.8
    Medium

    CVE-2019-5519

    Last Modified: 21 Nov 2024

    VMware ESXi (6.7 before ESXi670-201903001, 6.5 before ESXi650-201903001, 6.0 before ESXi600-201903001), Workstation (15.x before 15.0.4, 14.x before 14.1.7), Fusion (11.x before 11.0.3, 10.x before 10.1.6) contain a Time-of-check Time-of-use (TOCTOU) vulnerability in the virtual USB 1.1 UHCI (Universal Host Controller Interface). Exploitation of this issue requires an attacker to have access to a virtual machine with a virtual USB controller present. This issue may allow a guest to execute code on the host.

    Published: 1 Apr 2019
    8.8
    High

    CVE-2019-5514

    Last Modified: 21 Nov 2024

    VMware VMware Fusion (11.x before 11.0.3) contains a security vulnerability due to certain unauthenticated APIs accessible through a web socket. An attacker may exploit this issue by tricking the host user to execute a JavaScript to perform unauthorized functions on the guest machine where VMware Tools is installed. This may further be exploited to execute commands on the guest machines.

    Published: 1 Apr 2019
    6.5
    Medium

    CVE-2018-3979

    Last Modified: 21 Nov 2024

    A remote denial-of-service vulnerability exists in the way the Nouveau Display Driver (the default Ubuntu Nvidia display driver) handles GPU shader execution. A specially crafted pixel shader can cause remote denial-of-service issues. An attacker can provide a specially crafted website to trigger this vulnerability. This vulnerability can be triggered remotely after the user visits a malformed website. No further user interaction is required. Vulnerable versions include Ubuntu 18.04 LTS (linux 4.15.0-29-generic x86_64), Nouveau Display Driver NV117 (vermagic: 4.15.0-29-generic SMP mod_unload).

    Published: 1 Apr 2019