CVE Feed

    Dashboard / CVE

    8.1
    High

    CVE-2019-9675

    Last Modified: 21 Nov 2024

    An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the link value is used only when an archive contains a symlink, which currently cannot happen: "This issue allows theoretical compromise of security, but a practical attack is usually impossible.

    Published: 8 Feb 2019
    8.8
    High

    CVE-2019-7638

    Last Modified: 21 Nov 2024

    SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Map1toN in video/SDL_pixels.c.

    Published: 8 Feb 2019
    9.8
    Critical

    CVE-2019-6139

    Last Modified: 21 Nov 2024

    Forcepoint User ID (FUID) server versions up to 1.2 have a remote arbitrary file upload vulnerability on TCP port 5001. Successful exploitation of this vulnerability may lead to remote code execution. To fix this vulnerability, upgrade to FUID version 1.3 or higher. To prevent the vulnerability on FUID versions 1.2 and below, apply local firewall rules on the FUID server to disable all external access to port TCP/5001. FUID requires this port only for local connections through the loopback interface.

    Published: 7 Feb 2019
    —
    Unknown

    CVE-2017-17834

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 7 Feb 2019
    7.5
    High

    CVE-2018-1340

    Last Modified: 21 Nov 2024

    Prior to 1.0.0, Apache Guacamole used a cookie for client-side storage of the user's session token. This cookie lacked the "secure" flag, which could allow an attacker eavesdropping on the network to intercept the user's session token if unencrypted HTTP requests are made to the same domain.

    Published: 7 Feb 2019
    6.1
    Medium

    CVE-2019-1670

    Last Modified: 31 Jul 2025

    A vulnerability in the web-based management interface of Cisco Unified Intelligence Center Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web interface of an affected system. The vulnerability is due to insufficient input validation of a user-supplied value. An attacker could exploit this vulnerability by convincing a user to click a specific link. A successful exploit could allow the attacker to submit arbitrary requests to the affected system via a web browser with the privileges of the user.

    Published: 7 Feb 2019
    6.1
    Medium

    CVE-2019-1671

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected system. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of the affected system. An attacker could exploit this vulnerability by persuading a user of the interface to click a maliciously crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.

    Published: 7 Feb 2019
    6.1
    Medium

    CVE-2019-1661

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by persuading a user of the interface to click a malicious link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information.

    Published: 7 Feb 2019
    5.3
    Medium

    CVE-2019-1660

    Last Modified: 21 Nov 2024

    A vulnerability in the Simple Object Access Protocol (SOAP) of Cisco TelePresence Management Suite (TMS) software could allow an unauthenticated, remote attacker to gain unauthorized access to an affected device. The vulnerability is due to a lack of proper access and authentication controls on the affected TMS software. An attacker could exploit this vulnerability by gaining access to internal, trusted networks to send crafted SOAP calls to the affected device. If successful, an exploit could allow the attacker to access system management tools. Under normal circumstances, this access should be prohibited.

    Published: 7 Feb 2019
    5
    Medium

    CVE-2019-1679

    Last Modified: 21 Nov 2024

    A vulnerability in the web interface of Cisco TelePresence Conductor, Cisco Expressway Series, and Cisco TelePresence Video Communication Server (VCS) Software could allow an authenticated, remote attacker to trigger an HTTP request from an affected server to an arbitrary host. This type of attack is commonly referred to as server-side request forgery (SSRF). The vulnerability is due to insufficient access controls for the REST API of Cisco Expressway Series and Cisco TelePresence VCS. An attacker could exploit this vulnerability by submitting a crafted HTTP request to the affected server. Versions prior to XC4.3.4 are affected.

    Published: 7 Feb 2019
    4.3
    Medium

    CVE-2019-1680

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco Webex Business Suite could allow an unauthenticated, remote attacker to inject arbitrary text into a user's browser. The vulnerability is due to improper validation of input. An attacker could exploit this vulnerability by convincing a targeted user to view a malicious URL. A successful exploit could allow the attacker to inject arbitrary text into the user's browser. The attacker could use the content injection to conduct spoofing attacks. Versions prior than 3.0.9 are affected.

    Published: 7 Feb 2019
    4.3
    Medium

    CVE-2019-1678

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco Meeting Server could allow an authenticated, remote attacker to cause a partial denial of service (DoS) to Cisco Meetings application users who are paired with a Session Initiation Protocol (SIP) endpoint. The vulnerability is due to improper validation of coSpaces configuration parameters. An attacker could exploit this vulnerability by inserting crafted strings in specific coSpace parameters. An exploit could allow the attacker to prevent clients from joining a conference call in the affected coSpace. Versions prior to 2.4.3 are affected.

    Published: 7 Feb 2019
    7.5
    High

    CVE-2019-1675

    Last Modified: 21 Nov 2024

    A vulnerability in the default configuration of the Cisco Aironet Active Sensor could allow an unauthenticated, remote attacker to restart the sensor. The vulnerability is due to a default local account with a static password. The account has privileges only to reboot the device. An attacker could exploit this vulnerability by guessing the account name and password to access the CLI. A successful exploit could allow the attacker to reboot the device repeatedly, creating a denial of service (DoS) condition. It is not possible to change the configuration or view sensitive data with this account. Versions prior to DNAC1.2.8 are affected.

    Published: 7 Feb 2019
    4.6
    Medium

    CVE-2019-1677

    Last Modified: 21 Nov 2024

    A vulnerability in Cisco Webex Meetings for Android could allow an unauthenticated, local attacker to perform a cross-site scripting attack against the application. The vulnerability is due to insufficient validation of the application input parameters. An attacker could exploit this vulnerability by sending a malicious request to the Webex Meetings application through an intent. A successful exploit could allow the attacker to execute script code in the context of the Webex Meetings application. Versions prior to 11.7.0.236 are affected.

    Published: 7 Feb 2019
    7.8
    High

    CVE-2019-3704

    Last Modified: 21 Nov 2024

    VNX Control Station in Dell EMC VNX2 OE for File versions prior to 8.1.9.236 contains OS command injection vulnerability. Due to inadequate restriction configured in sudores, a local authenticated malicious user could potentially execute arbitrary OS commands as root by exploiting this vulnerability.

    Published: 7 Feb 2019
    9.8
    Critical

    CVE-2019-7587

    Last Modified: 21 Nov 2024

    Bo-blog Wind through 1.6.0-r allows SQL Injection via the admin.php/comments/batchdel/ comID parameter because this parameter is mishandled in the mode/admin.mode.php delBlockedBatch function.

    Published: 7 Feb 2019
    9.8
    Critical

    CVE-2019-7585

    Last Modified: 21 Nov 2024

    An issue was discovered in Waimai Super Cms 20150505. web/Lib/Action/PublicAction.class.php allows time-based SQL Injection via the param array parameter to the /index.php?m=public&a=checkemail URI.

    Published: 7 Feb 2019
    8.8
    High

    CVE-2019-7582

    Last Modified: 21 Nov 2024

    The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf file that triggers a memory allocation failure.

    Published: 7 Feb 2019
    8.8
    High

    CVE-2019-7581

    Last Modified: 21 Nov 2024

    The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf file that triggers a memory allocation failure, a different vulnerability than CVE-2018-7876.

    Published: 7 Feb 2019
    8.8
    High

    CVE-2019-7580

    Last Modified: 21 Nov 2024

    ThinkCMF 5.0.190111 allows remote attackers to execute arbitrary PHP code via the portal/admin_category/addpost.html alias parameter because the mishandling of a single quote character allows data/conf/route.php injection.

    Published: 7 Feb 2019
    9.8
    Critical

    CVE-2019-4008

    Last Modified: 21 Nov 2024

    API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authorization tokens in some URLs can result in the tokens being written to log files. IBM X-Force ID: 155626.

    Published: 7 Feb 2019
    4.3
    Medium

    CVE-2018-1666

    Last Modified: 21 Nov 2024

    IBM DataPower Gateway 2018.4.1.0, 7.6.0.0 through 7.6.0.11, 7.5.2.0 through 7.5.2.18, 7.5.1.0 through 7.5.1.18, 7.5.0.0 through 7.5.0.19, and 7.7.0.0 through 7.7.1.3 could allow an authenticated user to inject arbitrary messages that would be displayed on the UI. IBM X-Force ID: 144892.

    Published: 7 Feb 2019
    5.3
    Medium

    CVE-2019-7535

    Last Modified: 21 Nov 2024

    index.php in Gurock TestRail 5.3.0.3603 returns potentially sensitive information for an invalid request, as demonstrated by full path disclosure and the identification of PHP as the backend technology.

    Published: 7 Feb 2019
    8.8
    High

    CVE-2019-7569

    Last Modified: 21 Nov 2024

    An issue was discovered in DOYO (aka doyocms) 2.3(20140425 update). There is a CSRF vulnerability that can add a super administrator account via admin.php?c=a_adminuser&a=add&run=1.

    Published: 7 Feb 2019
    9.8
    Critical

    CVE-2019-7568

    Last Modified: 21 Nov 2024

    An issue was discovered in baijiacms V4 that can result in time-based blind SQL injection to get data via the cate parameter in an index.php?act=index request.

    Published: 7 Feb 2019
    5.5
    Medium

    CVE-2019-7559

    Last Modified: 21 Nov 2024

    In btor2parser/btor2parser.c in Boolector Btor2Tools before 2019-01-15, opening a specially crafted input file leads to an out of bounds write in pusht_bfr.

    Published: 7 Feb 2019
    5.5
    Medium

    CVE-2019-7560

    Last Modified: 21 Nov 2024

    In parser/btorsmt2.c in Boolector 3.0.0, opening a specially crafted input file leads to a use after free in get_failed_assumptions or btor_delete.

    Published: 7 Feb 2019
    8.8
    High

    CVE-2019-7566

    Last Modified: 21 Nov 2024

    CSZ CMS 1.1.8 has CSRF via admin/users/new/add.

    Published: 7 Feb 2019
    6.1
    Medium

    CVE-2019-7567

    Last Modified: 21 Nov 2024

    An issue was discovered in Waimai Super Cms 20150505. admin.php?m=Member&a=adminaddsave has XSS via the username or password parameter.

    Published: 7 Feb 2019
    6.5
    Medium

    CVE-2019-7570

    Last Modified: 21 Nov 2024

    A CSRF vulnerability was found in PbootCMS v1.3.6 that can delete users via an admin.php/User/del/ucode/ URI.

    Published: 7 Feb 2019
    8.1
    High

    CVE-2019-6974

    Last Modified: 21 Nov 2024

    In the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles reference counting because of a race condition, leading to a use-after-free.

    Published: 7 Feb 2019
    7.8
    High

    CVE-2019-7221

    Last Modified: 21 Nov 2024

    The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free.

    Published: 7 Feb 2019
    8.1
    High

    CVE-2019-7636

    Last Modified: 21 Nov 2024

    SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in SDL_GetRGB in video/SDL_pixels.c.

    Published: 7 Feb 2019
    8.8
    High

    CVE-2019-7637

    Last Modified: 21 Nov 2024

    SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in SDL_FillRect in video/SDL_surface.c.

    Published: 7 Feb 2019
    5.5
    Medium

    CVE-2019-8357

    Last Modified: 21 Nov 2024

    An issue was discovered in SoX 14.4.2. lsx_make_lpf in effect_i_dsp.c allows a NULL pointer dereference.

    Published: 7 Feb 2019
    5.5
    Medium

    CVE-2019-3832

    Last Modified: 21 Nov 2024

    It was discovered the fix for CVE-2018-19758 (libsndfile) was not complete and still allows a read beyond the limits of a buffer in wav_write_header() function in wav.c. A local attacker may use this flaw to make the application crash.

    Published: 7 Feb 2019
    5.5
    Medium

    CVE-2019-7222

    Last Modified: 21 Nov 2024

    The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak.

    Published: 7 Feb 2019
    8.8
    High

    CVE-2019-7574

    Last Modified: 21 Nov 2024

    SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decode in audio/SDL_wave.c.

    Published: 7 Feb 2019
    8.1
    High

    CVE-2019-7635

    Last Modified: 21 Nov 2024

    SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Blit1to4 in video/SDL_blit_1.c.

    Published: 7 Feb 2019
    5
    Medium

    CVE-2019-8354

    Last Modified: 21 Nov 2024

    An issue was discovered in SoX 14.4.2. lsx_make_lpf in effect_i_dsp.c has an integer overflow on the result of multiplication fed into malloc. When the buffer is allocated, it is smaller than expected, leading to a heap-based buffer overflow.

    Published: 7 Feb 2019
    5.5
    Medium

    CVE-2019-8355

    Last Modified: 21 Nov 2024

    An issue was discovered in SoX 14.4.2. In xmalloc.h, there is an integer overflow on the result of multiplication fed into the lsx_valloc macro that wraps malloc. When the buffer is allocated, it is smaller than expected, leading to a heap-based buffer overflow in channels_start in remix.c.

    Published: 7 Feb 2019
    5.5
    Medium

    CVE-2019-8356

    Last Modified: 21 Nov 2024

    An issue was discovered in SoX 14.4.2. One of the arguments to bitrv2 in fft4g.c is not guarded, such that it can lead to write access outside of the statically declared array, aka a stack-based buffer overflow.

    Published: 7 Feb 2019
    7.8
    High

    CVE-2018-7813

    Last Modified: 21 Nov 2024

    A Type Confusion (CWE-843) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) on pcwin.dll which could cause remote code to be executed when parsing a GD1 file

    Published: 6 Feb 2019
    7.8
    High

    CVE-2018-7817

    Last Modified: 21 Nov 2024

    A Use After Free (CWE-416) vulnerability exists in Zelio Soft 2 v5.1 and prior versions which could cause remote code execution when opening a specially crafted Zelio Soft project file.

    Published: 6 Feb 2019
    7.8
    High

    CVE-2018-20763

    Last Modified: 21 Nov 2024

    In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bounds write because of missing szLineConv bounds checking.

    Published: 6 Feb 2019
    7.8
    High

    CVE-2018-20761

    Last Modified: 21 Nov 2024

    GPAC version 0.7.1 and earlier has a Buffer Overflow vulnerability in the gf_sm_load_init function in scene_manager.c in libgpac_static.a.

    Published: 6 Feb 2019
    7.8
    High

    CVE-2018-7814

    Last Modified: 21 Nov 2024

    A Stack-based Buffer Overflow (CWE-121) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) which could cause remote code to be executed when parsing a GD1 file

    Published: 6 Feb 2019
    5.5
    Medium

    CVE-2018-7839

    Last Modified: 21 Nov 2024

    A Cryptographic Issue (CWE-310) vulnerability exists in IIoT Monitor 3.1.38 which could allow information disclosure.

    Published: 6 Feb 2019
    7.8
    High

    CVE-2018-20760

    Last Modified: 21 Nov 2024

    In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bounds write because a certain -1 return value is mishandled.

    Published: 6 Feb 2019
    7.8
    High

    CVE-2018-20762

    Last Modified: 21 Nov 2024

    GPAC version 0.7.1 and earlier has a buffer overflow vulnerability in the cat_multiple_files function in applications/mp4box/fileimport.c when MP4Box is used for a local directory containing crafted filenames.

    Published: 6 Feb 2019