CVE Feed

    Dashboard / CVE

    7.4
    High

    CVE-2019-1746

    Last Modified: 21 Nov 2024

    A vulnerability in the Cluster Management Protocol (CMP) processing code in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation when processing CMP management packets. An attacker could exploit this vulnerability by sending malicious CMP management packets to an affected device. A successful exploit could cause the switch to crash, resulting in a DoS condition. The switch will reload automatically.

    Published: 27 Mar 2019
    7.8
    High

    CVE-2019-1745

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to inject arbitrary commands that are executed with elevated privileges. The vulnerability is due to insufficient input validation of commands supplied by the user. An attacker could exploit this vulnerability by authenticating to a device and submitting crafted input to the affected commands. An exploit could allow the attacker to gain root privileges on the affected device.

    Published: 27 Mar 2019
    5.3
    Medium

    CVE-2019-1742

    Last Modified: 21 Nov 2024

    A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access sensitive configuration information. The vulnerability is due to improper access control to files within the web UI. An attacker could exploit this vulnerability by sending a malicious request to an affected device. A successful exploit could allow the attacker to gain access to sensitive configuration information.

    Published: 27 Mar 2019
    8.8
    High

    CVE-2019-1743

    Last Modified: 21 Nov 2024

    A vulnerability in the web UI framework of Cisco IOS XE Software could allow an authenticated, remote attacker to make unauthorized changes to the filesystem of the affected device. The vulnerability is due to improper input validation. An attacker could exploit this vulnerability by crafting a malicious file and uploading it to the device. An exploit could allow the attacker to gain elevated privileges on the affected device.

    Published: 27 Mar 2019
    8.6
    High

    CVE-2019-1740

    Last Modified: 21 Nov 2024

    A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability are due to a parsing issue on DNS packets. An attacker could exploit this vulnerability by sending crafted DNS packets through routers that are running an affected version and have NBAR enabled. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2019-1741

    Last Modified: 21 Nov 2024

    A vulnerability in the Cisco Encrypted Traffic Analytics (ETA) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to a logic error that exists when handling a malformed incoming packet, leading to access to an internal data structure after it has been freed. An attacker could exploit this vulnerability by sending crafted, malformed IP packets to an affected device. A successful exploit could allow the attacker to cause an affected device to reload, resulting in a DoS condition.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2019-1739

    Last Modified: 21 Nov 2024

    A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to a parsing issue on DNS packets. An attacker could exploit this vulnerability by sending crafted DNS packets through routers that are running an affected version and have NBAR enabled. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2019-1738

    Last Modified: 21 Nov 2024

    A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to a parsing issue on DNS packets. An attacker could exploit these vulnerabilities by sending crafted DNS packets through routers that are running an affected version and have NBAR enabled. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition.

    Published: 27 Mar 2019
    8.6
    High

    CVE-2019-1737

    Last Modified: 21 Nov 2024

    A vulnerability in the processing of IP Service Level Agreement (SLA) packets by Cisco IOS Software and Cisco IOS XE software could allow an unauthenticated, remote attacker to cause an interface wedge and an eventual denial of service (DoS) condition on the affected device. The vulnerability is due to improper socket resources handling in the IP SLA responder application code. An attacker could exploit this vulnerability by sending crafted IP SLA packets to an affected device. An exploit could allow the attacker to cause an interface to become wedged, resulting in an eventual denial of service (DoS) condition on the affected device.

    Published: 27 Mar 2019
    8.8
    High

    CVE-2018-19648

    Last Modified: 21 Nov 2024

    An issue was discovered in ADTRAN PMAA 1.6.2-1, 1.6.3, and 1.6.4. NETCONF Access Management (NACM) allows unprivileged users to create privileged users and execute arbitrary commands via the use of the diagnostic-profile over RESTCONF.

    Published: 27 Mar 2019
    6.5
    Medium

    CVE-2018-14814

    Last Modified: 21 Nov 2024

    WECON Technology PI Studio HMI versions 4.1.9 and prior and PI Studio versions 4.2.34 and prior lacks proper validation of user-supplied data, which may result in a read past the end of an allocated object.

    Published: 27 Mar 2019
    9.8
    Critical

    CVE-2017-9626

    Last Modified: 21 Nov 2024

    Systems using the Marel Food Processing Systems Pluto platform do not restrict remote access. Marel has created an update for Pluto-based applications. This update will restrict remote access by implementing SSH authentication.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2017-7655

    Last Modified: 21 Nov 2024

    In Eclipse Mosquitto version from 1.0 to 1.4.15, a Null Dereference vulnerability was found in the Mosquitto library which could lead to crashes for those applications using the library.

    Published: 27 Mar 2019
    6.7
    Medium

    CVE-2018-12182

    Last Modified: 21 Nov 2024

    Insufficient memory write check in SMM service for EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access.

    Published: 27 Mar 2019
    6.8
    Medium

    CVE-2018-12183

    Last Modified: 21 Nov 2024

    Stack overflow in DxeCore for EDK II may allow an unauthenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access.

    Published: 27 Mar 2019
    6.1
    Medium

    CVE-2018-15585

    Last Modified: 21 Nov 2024

    Cross-Site Scripting (XSS) vulnerability in newwinform.php in GNUBOARD5 before 5.3.1.6 allows remote attackers to inject arbitrary web script or HTML via the popup title parameter.

    Published: 27 Mar 2019
    9.1
    Critical

    CVE-2019-1010257

    Last Modified: 21 Nov 2024

    An Information Disclosure / Data Modification issue exists in article2pdf_getfile.php in the article2pdf Wordpress plugin 0.24, 0.25, 0.26, 0.27. A URL can be constructed which allows overriding the PDF file's path leading to any PDF whose path is known and which is readable to the web server can be downloaded. The file will be deleted after download if the web server has permission to do so. For PHP versions before 5.3, any file can be read by null terminating the string left of the file extension.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2019-1000031

    Last Modified: 21 Nov 2024

    A disk space or quota exhaustion issue exists in article2pdf_getfile.php in the article2pdf Wordpress plugin 0.24, 0.25, 0.26, 0.27. Visiting PDF generation link but not following the redirect will leave behind a PDF file on disk which will never be deleted by the plug-in.

    Published: 27 Mar 2019
    6.1
    Medium

    CVE-2019-10238

    Last Modified: 21 Nov 2024

    Sitemagic CMS v4.4 has XSS in SMFiles/FrmUpload.class.php via the filename parameter.

    Published: 27 Mar 2019
    8.8
    High

    CVE-2019-10237

    Last Modified: 21 Nov 2024

    S-CMS PHP v1.0 has a CSRF vulnerability to add a new admin user via the 4.edu.php/admin/ajax.php?type=admin&action=add&lang=0 URI, a related issue to CVE-2019-9040.

    Published: 27 Mar 2019
    7.1
    High

    CVE-2018-18994

    Last Modified: 21 Nov 2024

    LCDS Laquis SCADA prior to version 4.1.0.4150 allows an out of bounds read when opening a specially crafted project file, which may cause a system crash or allow data exfiltration.

    Published: 27 Mar 2019
    8.1
    High

    CVE-2018-12550

    Last Modified: 21 Nov 2024

    When Eclipse Mosquitto version 1.0 to 1.5.5 (inclusive) is configured to use an ACL file, and that ACL file is empty, or contains only comments or blank lines, then Mosquitto will treat this as though no ACL file has been defined and use a default allow policy. The new behaviour is to have an empty ACL file mean that all access is denied, which is not a useful configuration but is not unexpected.

    Published: 27 Mar 2019
    8.1
    High

    CVE-2018-12551

    Last Modified: 21 Nov 2024

    When Eclipse Mosquitto version 1.0 to 1.5.5 (inclusive) is configured to use a password file for authentication, any malformed data in the password file will be treated as valid. This typically means that the malformed data becomes a username and no password. If this occurs, clients can circumvent authentication and get access to the broker by using the malformed username. In particular, a blank line will be treated as a valid empty username. Other security measures are unaffected. Users who have only used the mosquitto_passwd utility to create and modify their password files are unaffected by this vulnerability.

    Published: 27 Mar 2019
    6.5
    Medium

    CVE-2018-12546

    Last Modified: 21 Nov 2024

    In Eclipse Mosquitto version 1.0 to 1.5.5 (inclusive) when a client publishes a retained message to a topic, then has its access to that topic revoked, the retained message will still be published to clients that subscribe to that topic in the future. In some applications this may result in clients being able cause effects that would otherwise not be allowed.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2018-19016

    Last Modified: 21 Nov 2024

    Rockwell Automation EtherNet/IP Web Server Modules 1756-EWEB (includes 1756-EWEBK) Version 5.001 and earlier, and CompactLogix 1768-EWEB Version 2.005 and earlier. A remote attacker could send a crafted UDP packet to the SNMP service causing a denial-of-service condition to occur until the affected product is restarted.

    Published: 27 Mar 2019
    4.7
    Medium

    CVE-2018-19643

    Last Modified: 21 Nov 2024

    Information leakage issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5.

    Published: 27 Mar 2019
    5
    Medium

    CVE-2018-19644

    Last Modified: 21 Nov 2024

    Reflected cross site script issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5.

    Published: 27 Mar 2019
    7.4
    High

    CVE-2017-18364

    Last Modified: 21 Nov 2024

    phpFK lite has XSS via the faq.php, members.php, or search.php query string or the user.php user parameter.

    Published: 27 Mar 2019
    9.8
    Critical

    CVE-2018-19466

    Last Modified: 21 Nov 2024

    A vulnerability was found in Portainer before 1.20.0. Portainer stores LDAP credentials, corresponding to a master password, in cleartext and allows their retrieval via API calls.

    Published: 27 Mar 2019
    5.1
    Medium

    CVE-2018-19642

    Last Modified: 21 Nov 2024

    Denial of service issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5.

    Published: 27 Mar 2019
    6.1
    Medium

    CVE-2018-19641

    Last Modified: 21 Nov 2024

    Unauthenticated remote code execution issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5.

    Published: 27 Mar 2019
    8.1
    High

    CVE-2019-10233

    Last Modified: 21 Nov 2024

    Teclib GLPI before 9.4.1.1 is affected by a timing attack associated with a cookie.

    Published: 27 Mar 2019
    9.8
    Critical

    CVE-2019-10232

    Last Modified: 21 Nov 2024

    Teclib GLPI through 9.3.3 has SQL injection via the "cycle" parameter in /scripts/unlock_tasks.php.

    Published: 27 Mar 2019
    9.8
    Critical

    CVE-2019-10231

    Last Modified: 21 Nov 2024

    Teclib GLPI before 9.4.1.1 is affected by a PHP type juggling vulnerability allowing bypass of authentication. This occurs in Auth::checkPassword() (inc/auth.class.php).

    Published: 27 Mar 2019
    2.1
    Low

    CVE-2017-2752

    Last Modified: 21 Nov 2024

    A potential security vulnerability caused by incomplete obfuscation of application configuration information was discovered in Tommy Hilfiger TH24/7 Android app versions 2.0.0.11, 2.0.1.14, 2.1.0.16, and 2.2.0.19. HP has no access to customer data as a result of this issue.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2017-2748

    Last Modified: 21 Nov 2024

    A potential security vulnerability caused by the use of insecure (http) transactions during login has been identified with early versions of the Isaac Mizrahi Smartwatch mobile app. HP has no access to customer data as a result of this issue.

    Published: 27 Mar 2019
    7.3
    High

    CVE-2018-5927

    Last Modified: 21 Nov 2024

    HP Support Assistant before 8.7.50.3 allows an unauthorized person with local access to load arbitrary code.

    Published: 27 Mar 2019
    7.8
    High

    CVE-2019-6536

    Last Modified: 21 Nov 2024

    Opening a specially crafted LCDS LAquis SCADA before 4.3.1.71 ELS file may result in a write past the end of an allocated buffer, which may allow an attacker to execute remote code in the context of the current process.

    Published: 27 Mar 2019
    9.1
    Critical

    CVE-2018-5926

    Last Modified: 21 Nov 2024

    A potential vulnerability has been identified in HP Remote Graphics Software’s certificate authentication process version 7.5.0 and earlier.

    Published: 27 Mar 2019
    9.8
    Critical

    CVE-2018-5923

    Last Modified: 21 Nov 2024

    In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2019-9860

    Last Modified: 21 Nov 2024

    Due to unencrypted signal communication and predictability of rolling codes, an attacker can "desynchronize" an ABUS Secvest wireless remote control (FUBE50014 or FUBE50015) relative to its controlled Secvest wireless alarm system FUAA50000 3.01.01, so that sent commands by the remote control are not accepted anymore.

    Published: 27 Mar 2019
    6.5
    Medium

    CVE-2019-9862

    Last Modified: 21 Nov 2024

    An issue was discovered on ABUS Secvest wireless alarm system FUAA50000 3.01.01 in conjunction with Secvest remote control FUBE50014 or FUBE50015. Because "encrypted signal transmission" is missing, an attacker is able to eavesdrop sensitive data as cleartext (for instance, the current rolling code state).

    Published: 27 Mar 2019
    9.8
    Critical

    CVE-2019-9863

    Last Modified: 21 Nov 2024

    Due to the use of an insecure algorithm for rolling codes in the ABUS Secvest wireless alarm system FUAA50000 3.01.01 and its remote controls FUBE50014 and FUBE50015, an attacker is able to predict valid future rolling codes, and can thus remotely control the alarm system in an unauthorized way.

    Published: 27 Mar 2019
    6.1
    Medium

    CVE-2019-5926

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in KinagaCMS versions prior to 6.5 allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2019-5927

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in 'an' App for iOS Version 3.2.0 and earlier allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 27 Mar 2019
    6.5
    Medium

    CVE-2018-16207

    Last Modified: 21 Nov 2024

    PowerAct Pro Master Agent for Windows Version 5.13 and earlier allows authenticated attackers to bypass access restriction to alter or edit unauthorized files via unspecified vectors.

    Published: 27 Mar 2019
    6.5
    Medium

    CVE-2019-9917

    Last Modified: 21 Nov 2024

    ZNC before 1.7.3-rc1 allows an existing remote user to cause a Denial of Service (crash) via invalid encoding.

    Published: 27 Mar 2019
    6.1
    Medium

    CVE-2019-10118

    Last Modified: 21 Nov 2024

    Snipe-IT before 4.6.14 has XSS, as demonstrated by log_meta values and the user's last name in the API.

    Published: 27 Mar 2019
    7.5
    High

    CVE-2019-7167

    Last Modified: 21 Nov 2024

    Zcash, before the Sapling network upgrade (2018-10-28), had a counterfeiting vulnerability. A key-generation process, during evaluation of polynomials related to a to-be-proven statement, produced certain bypass elements. Availability of these elements allowed a cheating prover to bypass a consistency check, and consequently transform the proof of one statement into an ostensibly valid proof of a different statement, thereby breaking the soundness of the proof system. This misled the original Sprout zk-SNARK verifier into accepting the correctness of a transaction.

    Published: 27 Mar 2019
    6.3
    Medium

    CVE-2019-3876

    Last Modified: 21 Nov 2024

    A flaw was found in the /oauth/token/request custom endpoint of the OpenShift OAuth server allowing for XSS generation of CLI tokens due to missing X-Frame-Options and CSRF protections. If not otherwise prevented, a separate XSS vulnerability via JavaScript could further allow for the extraction of these tokens.

    Published: 27 Mar 2019