CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2018-20777

    Last Modified: 21 Nov 2024

    Frog CMS 0.9.5 has XSS via the admin/?/snippet/edit/1 Body field.

    Published: 11 Feb 2019
    6.1
    Medium

    CVE-2018-20778

    Last Modified: 21 Nov 2024

    admin/?/plugin/file_manager in Frog CMS 0.9.5 allows XSS by creating a new file containing a crafted attribute of an IMG element.

    Published: 11 Feb 2019
    9.8
    Critical

    CVE-2018-20779

    Last Modified: 21 Nov 2024

    Traq 3.7.1 allows SQL Injection via a tickets?search= URI.

    Published: 11 Feb 2019
    7.2
    High

    CVE-2018-20772

    Last Modified: 21 Nov 2024

    Frog CMS 0.9.5 allows PHP code execution via <?php to the admin/?/layout/edit/1 URI.

    Published: 11 Feb 2019
    8.8
    High

    CVE-2018-20780

    Last Modified: 21 Nov 2024

    Traq 3.7.1 allows admin/users/new CSRF to create an admin account (aka group_id=1).

    Published: 11 Feb 2019
    8.6
    High

    CVE-2019-5736

    Last Modified: 21 Nov 2024

    runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.

    Published: 11 Feb 2019
    7.5
    High

    CVE-2019-3821

    Last Modified: 5 May 2025

    A flaw was found in the way civetweb frontend was handling requests for ceph RGW server with SSL enabled. An unauthenticated attacker could create multiple connections to ceph RADOS gateway to exhaust file descriptors for ceph-radosgw service resulting in a remote denial of service.

    Published: 11 Feb 2019
    6.1
    Medium

    CVE-2019-8331

    Last Modified: 21 Nov 2024

    In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.

    Published: 11 Feb 2019
    7.8
    High

    CVE-2019-9162

    Last Modified: 21 Nov 2024

    In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient ASN.1 length checks (aka an array index error), making out-of-bounds read and write operations possible, leading to an OOPS or local privilege escalation. This affects snmp_version and snmp_helper.

    Published: 11 Feb 2019
    6.1
    Medium

    CVE-2019-7693

    Last Modified: 21 Nov 2024

    Axios Italia Axios RE 1.7.0/7.0.0 devices have XSS via the RELogOff.aspx Error_Parameters parameter. In some situations, the XSS would be on the family.axioscloud.it cloud service; however, the vendor also supports "Sissi in Rete (con server)" for offline operation.

    Published: 10 Feb 2019
    6.5
    Medium

    CVE-2019-7704

    Last Modified: 21 Nov 2024

    wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an attempt at excessive memory allocation, as demonstrated by wasm-merge and wasm-opt.

    Published: 10 Feb 2019
    6.5
    Medium

    CVE-2019-7703

    Last Modified: 21 Nov 2024

    In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp. Remote attackers could leverage this vulnerability to cause a denial-of-service via a wasm file, as demonstrated by wasm-merge.

    Published: 10 Feb 2019
    6.5
    Medium

    CVE-2019-7697

    Last Modified: 21 Nov 2024

    An issue was discovered in Bento4 v1.5.1-627. There is an assertion failure in AP4_AtomListWriter::Action in Core/Ap4Atom.cpp, leading to a denial of service (program crash), as demonstrated by mp42hls.

    Published: 10 Feb 2019
    6.5
    Medium

    CVE-2019-7698

    Last Modified: 21 Nov 2024

    An issue was discovered in AP4_Array<AP4_CttsTableEntry>::EnsureCapacity in Core/Ap4Array.h in Bento4 1.5.1-627. Crafted MP4 input triggers an attempt at excessive memory allocation, as demonstrated by mp42hls, a related issue to CVE-2018-20095.

    Published: 10 Feb 2019
    6.5
    Medium

    CVE-2019-7699

    Last Modified: 21 Nov 2024

    A heap-based buffer over-read occurs in AP4_BitStream::WriteBytes in Codecs/Ap4BitStream.cpp in Bento4 v1.5.1-627. Remote attackers could leverage this vulnerability to cause an exception via crafted mp4 input, which leads to a denial of service.

    Published: 10 Feb 2019
    6.5
    Medium

    CVE-2019-7700

    Last Modified: 21 Nov 2024

    A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-merge.

    Published: 10 Feb 2019
    6.5
    Medium

    CVE-2019-7701

    Last Modified: 21 Nov 2024

    A heap-based buffer over-read was discovered in wasm::SExpressionParser::skipWhitespace() in wasm-s-parser.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm2js.

    Published: 10 Feb 2019
    6.5
    Medium

    CVE-2019-7702

    Last Modified: 21 Nov 2024

    A NULL pointer dereference was discovered in wasm::SExpressionWasmBuilder::parseExpression in wasm-s-parser.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-as.

    Published: 10 Feb 2019
    7.5
    High

    CVE-2018-20769

    Last Modified: 21 Nov 2024

    An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices before R18-05 073.xxx.0487.15000. There is a Local File Inclusion vulnerability.

    Published: 10 Feb 2019
    9.8
    Critical

    CVE-2018-20770

    Last Modified: 21 Nov 2024

    An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices before R18-05 073.xxx.0487.15000. There is Blind SQL Injection.

    Published: 10 Feb 2019
    9.8
    Critical

    CVE-2018-20771

    Last Modified: 21 Nov 2024

    An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices before R18-05 073.xxx.0487.15000. There is unauthenticated Remote Command Execution.

    Published: 10 Feb 2019
    8.8
    High

    CVE-2018-20767

    Last Modified: 21 Nov 2024

    An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices before R18-05 073.xxx.0487.15000. There is authenticated remote command execution.

    Published: 10 Feb 2019
    9.8
    Critical

    CVE-2018-20768

    Last Modified: 21 Nov 2024

    An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices before R18-05 073.xxx.0487.15000. An attacker can execute PHP code by leveraging a writable file.

    Published: 10 Feb 2019
    9.8
    Critical

    CVE-2019-7692

    Last Modified: 21 Nov 2024

    install/install.php in CIM 0.9.3 allows remote attackers to execute arbitrary PHP code via a crafted prefix value because of configuration file mishandling in the N=83 case, as demonstrated by a call to the PHP fputs function that creates a .php file in the public folder.

    Published: 10 Feb 2019
    9.8
    Critical

    CVE-2018-13792

    Last Modified: 21 Nov 2024

    Multiple SQL injection vulnerabilities in the monitoring feature in the HTTP API in ABBYY FlexiCapture before 12 Release 2 allow an attacker to execute arbitrary SQL commands via the mask, sortOrder, filter, or Order parameter.

    Published: 10 Feb 2019
    7.5
    High

    CVE-2019-7675

    Last Modified: 21 Nov 2024

    An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. The default management application is delivered over cleartext HTTP with Basic Authentication, as demonstrated by the /admin/index.html URI.

    Published: 9 Feb 2019
    9.8
    Critical

    CVE-2019-7684

    Last Modified: 21 Nov 2024

    inxedu through 2018-12-24 has a vulnerability that can lead to the upload of a malicious JSP file. The vulnerable code location is com.inxedu.os.common.controller.VideoUploadController#gok4 (com/inxedu/os/common/controller/VideoUploadController.java). The attacker uses the /video/uploadvideo fileType parameter to change the list of acceptable extensions from jpg,gif,png,jpeg to jpg,gif,png,jsp,jpeg.

    Published: 9 Feb 2019
    9.8
    Critical

    CVE-2009-5154

    Last Modified: 21 Nov 2024

    An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. There is a default password of meinsm for the admin account.

    Published: 9 Feb 2019
    9.8
    Critical

    CVE-2019-7674

    Last Modified: 21 Nov 2024

    An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. /admin/access accepts a request to set the "aaaaa" password, considered insecure for some use cases, from a user.

    Published: 9 Feb 2019
    7.5
    High

    CVE-2019-7673

    Last Modified: 21 Nov 2024

    An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. Administrator Credentials are stored in the 13-character DES hash format.

    Published: 9 Feb 2019
    7.2
    High

    CVE-2019-7676

    Last Modified: 21 Nov 2024

    A weak password vulnerability was discovered in Enphase Envoy R3.*.*. One can login via TCP port 8888 with the admin password for the admin account.

    Published: 9 Feb 2019
    6.1
    Medium

    CVE-2019-7677

    Last Modified: 21 Nov 2024

    XSS exists in Enphase Envoy R3.*.* via the profileName parameter to the /home URI on TCP port 8888.

    Published: 9 Feb 2019
    9.8
    Critical

    CVE-2019-7678

    Last Modified: 21 Nov 2024

    A directory traversal vulnerability was discovered in Enphase Envoy R3.*.* via images/, include/, include/js, or include/css on TCP port 8888.

    Published: 9 Feb 2019
    6.5
    Medium

    CVE-2019-7662

    Last Modified: 21 Nov 2024

    An assertion failure was discovered in wasm::WasmBinaryBuilder::getType() in wasm-binary.cpp in Binaryen 1.38.22. This allows remote attackers to cause a denial of service (failed assertion and crash) via a crafted wasm file.

    Published: 9 Feb 2019
    8.1
    High

    CVE-2019-7659

    Last Modified: 21 Nov 2024

    Genivia gSOAP 2.7.x and 2.8.x before 2.8.75 allows attackers to cause a denial of service (application abort) or possibly have unspecified other impact if a server application is built with the -DWITH_COOKIES flag. This affects the C/C++ libgsoapck/libgsoapck++ and libgsoapssl/libgsoapssl++ libraries, as these are built with that flag.

    Published: 9 Feb 2019
    9.8
    Critical

    CVE-2019-7653

    Last Modified: 21 Nov 2024

    The Debian python-rdflib-tools 4.2.2-1 package for RDFLib 4.2.2 has CLI tools that can load Python modules from the current working directory, allowing code injection, because "python -m" looks in this directory, as demonstrated by rdf2dot. This issue is specific to use of the debian/scripts directory.

    Published: 9 Feb 2019
    7.5
    High

    CVE-2019-7651

    Last Modified: 21 Nov 2024

    EPP.sys in Emsisoft Anti-Malware prior to version 2018.12 allows an attacker to bypass ACLs because Interpreted Device Characteristics lacks FILE_DEVICE_SECURE_OPEN and therefore files and directories "inside" the \\.\EPP device are not properly protected, leading to unintended impersonation or object creation. This vulnerability has been fixed in version 2018.12 and later.

    Published: 8 Feb 2019
    5.5
    Medium

    CVE-2018-9190

    Last Modified: 21 Nov 2024

    A null pointer dereference vulnerability in Fortinet FortiClientWindows 6.0.2 and earlier allows attacker to cause a denial of service via the NDIS miniport driver.

    Published: 8 Feb 2019
    5.8
    Medium

    CVE-2019-1672

    Last Modified: 21 Nov 2024

    A vulnerability in the Decryption Policy Default Action functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to bypass a configured drop policy and allow traffic onto the network that should have been denied. The vulnerability is due to the incorrect handling of SSL-encrypted traffic when Decrypt for End-User Notification is disabled in the configuration. An attacker could exploit this vulnerability by sending a SSL connection through the affected device. A successful exploit could allow the attacker to bypass a configured drop policy to block specific SSL connections. Releases 10.1.x and 10.5.x are affected.

    Published: 8 Feb 2019
    6.8
    Medium

    CVE-2019-1676

    Last Modified: 21 Nov 2024

    A vulnerability in the Session Initiation Protocol (SIP) call processing of Cisco Meeting Server (CMS) software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition of the Cisco Meeting Server. The vulnerability is due to insufficient validation of Session Description Protocol (SDP) messages. An attacker could exploit this vulnerability by sending a crafted SDP message to the CMS call bridge. An exploit could allow the attacker to cause the CMS to reload, causing a DoS condition for all connected clients. Versions prior to 2.3.9 are affected.

    Published: 8 Feb 2019
    9.8
    Critical

    CVE-2018-1352

    Last Modified: 21 Nov 2024

    A format string vulnerability in Fortinet FortiOS 5.6.0 allows attacker to execute unauthorized code or commands via the SSH username variable.

    Published: 8 Feb 2019
    5.4
    Medium

    CVE-2019-1673

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface. The vulnerability is due to insufficient input validation of some parameters passed to the web-based management interface. An attacker could exploit this vulnerability by convincing a user of the interface to click a specific link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. For information about fixed software releases, consult the Cisco bug ID at https://quickview.cloudapps.cisco.com/quickview/bug/CSCvn64652. When considering software upgrades, customers are advised to regularly consult the advisories for Cisco products, which are available from the Cisco Security Advisories and Alerts page, to determine exposure and a complete upgrade solution.

    Published: 8 Feb 2019
    7.3
    High

    CVE-2018-18364

    Last Modified: 21 Nov 2024

    Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1 may be susceptible to a DLL hijacking vulnerability, which is a type of issue whereby a potential attacker attempts to execute unexpected code on your machine. This occurs via placement of a potentially foreign file (DLL) that the attacker then attempts to run via a linked application.

    Published: 8 Feb 2019
    9.8
    Critical

    CVE-2018-20764

    Last Modified: 21 Nov 2024

    A buffer overflow exists in HelpSystems tcpcrypt on Linux, used for BoKS encrypted telnet through BoKS version 6.7.1. Since tcpcrypt is setuid, exploitation leads to privilege escalation.

    Published: 8 Feb 2019
    7.5
    High

    CVE-2019-7648

    Last Modified: 21 Nov 2024

    controller/fetchpwd.php and controller/doAction.php in Hotels_Server through 2018-11-05 rely on base64 in an attempt to protect password storage.

    Published: 8 Feb 2019
    8.1
    High

    CVE-2019-7639

    Last Modified: 21 Nov 2024

    An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect password, even though a failure entry is recorded in the /var/log/messages file.

    Published: 8 Feb 2019
    7.2
    High

    CVE-2019-6242

    Last Modified: 19 Dec 2025

    Kentico v10.0.42 allows Global Administrators to read the cleartext SMTP Password by navigating to the SMTP configuration page. NOTE: the vendor considers this a best-practice violation but not a vulnerability. The vendor plans to fix it at a future time

    Published: 8 Feb 2019
    8.8
    High

    CVE-2019-7632

    Last Modified: 21 Nov 2024

    LifeSize Team, Room, Passport, and Networker 220 devices allow Authenticated Remote OS Command Injection, as demonstrated by shell metacharacters in the support/mtusize.php mtu_size parameter. The lifesize default password for the cli account may sometimes be used for authentication.

    Published: 8 Feb 2019
    9.8
    Critical

    CVE-2019-7401

    Last Modified: 12 Aug 2025

    NGINX Unit before 1.7.1 might allow an attacker to cause a heap-based buffer overflow in the router process with a specially crafted request. This may result in a denial of service (router process crash) or possibly have unspecified other impact.

    Published: 8 Feb 2019
    5.9
    Medium

    CVE-2019-7628

    Last Modified: 21 Nov 2024

    Pagure 5.2 leaks API keys by e-mailing them to users. Few e-mail servers validate TLS certificates, so it is easy for man-in-the-middle attackers to read these e-mails and gain access to Pagure on behalf of other users. This issue is found in the API token expiration reminder cron job in files/api_key_expire_mail.py; disabling that job is also a viable solution. (E-mailing a substring of the API key was an attempted, but rejected, solution.)

    Published: 8 Feb 2019