CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2019-1000021

    Last Modified: 21 Nov 2024

    slixmpp version before commit 7cd73b594e8122dddf847953fcfc85ab4d316416 contains an incorrect Access Control vulnerability in XEP-0223 plugin (Persistent Storage of Private Data via PubSub) options profile, used for the configuration of default access model that can result in all of the contacts of the victim can see private data having been published to a PEP node. This attack appears to be exploitable if the user of this library publishes any private data on PEP, the node isn't configured to be private. This vulnerability appears to have been fixed in commit 7cd73b594e8122dddf847953fcfc85ab4d316416 which is included in slixmpp 1.4.2.

    Published: 4 Feb 2019
    9.8
    Critical

    CVE-2019-1000023

    Last Modified: 21 Nov 2024

    OPT/NET BV OPTOSS Next Gen Network Management System (NG-NetMS) version v3.6-2 and earlier versions contains a SQL Injection vulnerability in Identified vulnerable parameters: id, id_access_type and id_attr_access that can result in a malicious attacker can include own SQL commands which database will execute. This attack appears to be exploitable via network connectivity.

    Published: 4 Feb 2019
    6.8
    Medium

    CVE-2018-1675

    Last Modified: 21 Nov 2024

    IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could expose password hashes in stored in system memory on target systems that are configured to use TADDM. IBM X-Force ID: 145110.

    Published: 4 Feb 2019
    7.1
    High

    CVE-2018-1970

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.1 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 153751.

    Published: 4 Feb 2019
    8.8
    High

    CVE-2019-1000003

    Last Modified: 21 Nov 2024

    MapSVG MapSVG Lite version 3.2.3 contains a Cross Site Request Forgery (CSRF) vulnerability in REST endpoint /wp-admin/admin-ajax.php?action=mapsvg_save that can result in an attacker can modify post data, including embedding javascript. This attack appears to be exploitable via the victim must be logged in to WordPress as an admin, and click a link. This vulnerability appears to have been fixed in 3.3.0 and later.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-1000004

    Last Modified: 21 Nov 2024

    yugandhargangu JspMyAdmin2 version 1.0.6 and earlier contains a Cross Site Scripting (XSS) vulnerability in sidebar and table data that can result in Database fields aren't properly sanitized and allow code injection (Cross-Site Scripting). This attack appears to be exploitable via the payload needs to be stored in the database and the victim must see the db value in question.

    Published: 4 Feb 2019
    8.8
    High

    CVE-2019-1000005

    Last Modified: 21 Nov 2024

    mPDF version 7.1.7 and earlier contains a CWE-502: Deserialization of Untrusted Data vulnerability in getImage() method of Image/ImageProcessor class that can result in Arbitry code execution, file write, etc.. This attack appears to be exploitable via attacker must host crafted image on victim server and trigger generation of pdf file with content <img src="phar://path/to/crafted/image">. This vulnerability appears to have been fixed in 7.1.8.

    Published: 4 Feb 2019
    9.8
    Critical

    CVE-2019-1000006

    Last Modified: 21 Nov 2024

    RIOT RIOT-OS version after commit 7af03ab624db0412c727eed9ab7630a5282e2fd3 contains a Buffer Overflow vulnerability in sock_dns, an implementation of the DNS protocol utilizing the RIOT sock API that can result in Remote code executing. This attack appears to be exploitable via network connectivity.

    Published: 4 Feb 2019
    6.5
    Medium

    CVE-2019-1000009

    Last Modified: 21 Nov 2024

    Helm ChartMuseum version >=0.1.0 and < 0.8.1 contains a CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in HTTP API to save charts that can result in a specially crafted chart could be uploaded and saved outside the intended location. This attack appears to be exploitable via A POST request to the HTTP API can save a chart archive outside of the intended directory. If authentication is, optionally, enabled this requires an authorized user to do so. This vulnerability appears to have been fixed in 0.8.1.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-1000010

    Last Modified: 21 Nov 2024

    phpIPAM version 1.3.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in subnet-scan-telnet.php that can result in executing code in victims browser. This attack appears to be exploitable via victim visits link crafted by an attacker. This vulnerability appears to have been fixed in 1.4.

    Published: 4 Feb 2019
    6.5
    Medium

    CVE-2019-1000011

    Last Modified: 21 Nov 2024

    API Platform version from 2.2.0 to 2.3.5 contains an Incorrect Access Control vulnerability in GraphQL delete mutations that can result in a user authorized to delete a resource can delete any resource. This attack appears to be exploitable via the user must be authorized. This vulnerability appears to have been fixed in 2.3.6.

    Published: 4 Feb 2019
    8.8
    High

    CVE-2019-1000012

    Last Modified: 21 Nov 2024

    Hex package manager version 0.14.0 through 0.18.2 contains a Signing oracle vulnerability in Package registry verification that can result in Package modifications not detected, allowing code execution. This attack appears to be exploitable via victim fetches packages from malicious/compromised mirror. This vulnerability appears to have been fixed in 0.19.

    Published: 4 Feb 2019
    8.8
    High

    CVE-2019-1000013

    Last Modified: 21 Nov 2024

    Hex package manager hex_core version 0.3.0 and earlier contains a Signing oracle vulnerability in Package registry verification that can result in Package modifications not detected, allowing code execution. This attack appears to be exploitable via victim fetches packages from malicious/compromised mirror. This vulnerability appears to have been fixed in 0.4.0.

    Published: 4 Feb 2019
    8.8
    High

    CVE-2019-1000014

    Last Modified: 21 Nov 2024

    Erlang/OTP Rebar3 version 3.7.0 through 3.7.5 contains a Signing oracle vulnerability in Package registry verification that can result in Package modifications not detected, allowing code execution. This attack appears to be exploitable via Victim fetches packages from malicious/compromised mirror. This vulnerability appears to have been fixed in 3.8.0.

    Published: 4 Feb 2019
    7.8
    High

    CVE-2019-1000018

    Last Modified: 19 Mar 2025

    rssh version 2.3.4 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in allowscp permission that can result in Local command execution. This attack appear to be exploitable via An authorized SSH user with the allowscp permission.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-1000024

    Last Modified: 21 Nov 2024

    OPT/NET BV NG-NetMS version v3.6-2 and earlier versions contains a Cross Site Scripting (XSS) vulnerability in /js/libs/jstree/demo/filebrowser/index.php page. The "id" and "operation" GET parameters can be used to inject arbitrary JavaScript which is returned in the page's response that can result in Cross-site scripting.This attack appear to be exploitable via network connectivity.

    Published: 4 Feb 2019
    9.8
    Critical

    CVE-2016-1000271

    Last Modified: 21 Nov 2024

    Joomla extension DT Register version before 3.1.12 (Joomla 3.x) / 2.8.18 (Joomla 2.5) contains an SQL injection in "/index.php?controller=calendar&format=raw&cat[0]=SQLi&task=events". This attack appears to be exploitable if the attacker can reach the web server.

    Published: 4 Feb 2019
    6.2
    Medium

    CVE-2019-4038

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 6.0 and 7.0 could allow an attacker to create unexpected control flow paths through the application, potentially bypassing security checks. Exploitation of this weakness can result in a limited form of code injection. IBM X-Force ID: 156162.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2018-1000998

    Last Modified: 21 Nov 2024

    FreeBSD CVSweb version 2.x contains a Cross Site Scripting (XSS) vulnerability in all pages that can result in limited impact--CVSweb is anonymous & read-only. It might impact other sites on same domain. This attack appears to be exploitable via victim must load specially crafted url. This vulnerability appears to have been fixed in 3.x.

    Published: 4 Feb 2019
    5.3
    Medium

    CVE-2018-1801

    Last Modified: 21 Nov 2024

    IBM App Connect V11.0.0.0 through V11.0.0.1, IBM Integration Bus V10.0.0.0 through V10.0.0.13, IBM Integration Bus V9.0.0.0 through V9.0.0.10, and WebSphere Message Broker V8.0.0.0 through V8.0.0.9 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to consume memory resources. IBM X-Force ID: 149639.

    Published: 4 Feb 2019
    —
    Unknown

    CVE-2018-1000999

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: [CVE-2018-20323]. Reason: This candidate is a duplicate of [CVE-2018-20323]. Notes: All CVE users should reference [CVE-2018-20323] instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 4 Feb 2019
    4
    Medium

    CVE-2018-1962

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.1 Virtual Appliance does not invalidate session tokens when the logout button is pressed. The lack of proper session termination may allow attackers with local access to login into a closed browser session. IBM X-Force ID: 153658.

    Published: 4 Feb 2019
    9.8
    Critical

    CVE-2018-20752

    Last Modified: 21 Nov 2024

    An issue was discovered in Recon-ng before 4.9.5. Lack of validation in the modules/reporting/csv.py file allows CSV injection. More specifically, when a Twitter user possesses an Excel macro for a username, it will not be properly sanitized when exported to a CSV file. This can result in remote code execution for the attacker.

    Published: 4 Feb 2019
    6.5
    Medium

    CVE-2019-1000002

    Last Modified: 21 Nov 2024

    Gitea version 1.6.2 and earlier contains a Incorrect Access Control vulnerability in Delete/Edit file functionallity that can result in the attacker deleting files outside the repository he/she has access to. This attack appears to be exploitable via the attacker must get write access to "any" repository including self-created ones.. This vulnerability appears to have been fixed in 1.6.3, 1.7.0-rc2.

    Published: 4 Feb 2019
    7.4
    High

    CVE-2019-1000007

    Last Modified: 21 Nov 2024

    aioxmpp version 0.10.2 and earlier contains a Improper Handling of Structural Elements vulnerability in Stanza Parser, rollback during error processing, aioxmpp.xso.model.guard function that can result in Denial of Service, Other. This attack appears to be exploitable via Remote. A crafted stanza can be sent to an application which uses the vulnerable components to either inject data in a different context or cause the application to reconnect (potentially losing data). This vulnerability appears to have been fixed in 0.10.3.

    Published: 4 Feb 2019
    6.5
    Medium

    CVE-2019-1000008

    Last Modified: 21 Nov 2024

    All versions of Helm between Helm >=2.0.0 and < 2.12.2 contains a CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The commands `helm fetch --untar` and `helm lint some.tgz` that can result when chart archive files are unpacked a file may be unpacked outside of the target directory. This attack appears to be exploitable via a victim must run a helm command on a specially crafted chart archive. This vulnerability appears to have been fixed in 2.12.2.

    Published: 4 Feb 2019
    6.5
    Medium

    CVE-2019-1000017

    Last Modified: 21 Nov 2024

    Chamilo Chamilo-lms version 1.11.8 and earlier contains an Incorrect Access Control vulnerability in Tickets component that can result in an authenticated user can read all tickets available on the platform, due to lack of access controls. This attack appears to be exploitable via ticket_id=[ticket number]. This vulnerability appears to have been fixed in 1.11.x after commit 33e2692a37b5b6340cf5bec1a84e541460983c03.

    Published: 4 Feb 2019
    8.8
    High

    CVE-2019-1000022

    Last Modified: 21 Nov 2024

    Taoensso Sente version Prior to version 1.14.0 contains a Cross Site Request Forgery (CSRF) vulnerability in WebSocket handshake endpoint that can result in CSRF attack, possible leak of anti-CSRF token. This attack appears to be exploitable via malicious request against WebSocket handshake endpoint. This vulnerability appears to have been fixed in 1.14.0 and later.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7329

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the form action on multiple views utilizes $_SERVER['PHP_SELF'] insecurely, mishandling any arbitrary input appended to the webroot URL, without any proper filtration, leading to XSS.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7335

    Last Modified: 21 Nov 2024

    Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code in the view 'log' as it insecurely prints the 'Log Message' value on the web page without applying any proper filtration. This relates to the view=logs value.

    Published: 4 Feb 2019
    4.8
    Medium

    CVE-2019-7337

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3 as the view 'events' (events.php) insecurely displays the limit parameter value, without applying any proper output filtration. This issue exists because of the function sortHeader() in functions.php, which insecurely returns the value of the limit query string parameter without applying any filtration.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7342

    Last Modified: 21 Nov 2024

    POST - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'filter[AutoExecuteCmd]' parameter value in the view filter (filter.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7348

    Last Modified: 21 Nov 2024

    Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'username' parameter value in the view user (user.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    8.8
    High

    CVE-2018-20751

    Last Modified: 21 Nov 2024

    An issue was discovered in crop_page in PoDoFo 0.9.6. For a crafted PDF document, pPage->GetObject()->GetDictionary().AddKey(PdfName("MediaBox"),var) can be problematic due to the function GetObject() being called for the pPage NULL pointer object. The value of pPage at this point is 0x0, which causes a NULL pointer dereference.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7327

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'scale' parameter value in the view frame (frame.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7328

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'scale' parameter value in the view frame (frame.php) via /js/frame.js.php because proper filtration is omitted.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7332

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'eid' (aka Event ID) parameter value in the view download (download.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7334

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'Exportfile' parameter value in the view export (export.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7340

    Last Modified: 21 Nov 2024

    POST - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'filter[Query][terms][0][val]' parameter value in the view filter (filter.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7341

    Last Modified: 21 Nov 2024

    Reflected - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'newMonitor[LinkedMonitors]' parameter value in the view monitor (monitor.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    4.8
    Medium

    CVE-2019-7345

    Last Modified: 21 Nov 2024

    Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the view 'options' (options.php) does no input validation for the WEB_TITLE, HOME_URL, HOME_CONTENT, or WEB_CONSOLE_BANNER value, allowing an attacker to execute HTML or JavaScript code. This relates to functions.php.

    Published: 4 Feb 2019
    7.5
    High

    CVE-2019-7347

    Last Modified: 21 Nov 2024

    A Time-of-check Time-of-use (TOCTOU) Race Condition exists in ZoneMinder through 1.32.3 as a session remains active for an authenticated user even after deletion from the users table. This allows a nonexistent user to access and modify records (add/delete Monitors, Users, etc.).

    Published: 4 Feb 2019
    7.3
    High

    CVE-2019-7350

    Last Modified: 21 Nov 2024

    Session fixation exists in ZoneMinder through 1.32.3, as an attacker can fixate his own session cookies to the next logged-in user, thereby hijacking the victim's account. This occurs because a set of multiple cookies (between 3 and 5) is being generated when a user successfully logs in, and these sets overlap for successive logins.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7324

    Last Modified: 21 Nov 2024

    app/Core/Paginator.php in Kanboard before 1.2.8 has XSS in pagination sorting.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7325

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as multiple views under web/skins/classic/views insecurely utilize $_REQUEST['PHP_SELF'], without applying any proper filtration.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7326

    Last Modified: 21 Nov 2024

    Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'Host' parameter value in the view console (console.php) because proper filtration is omitted. This relates to the index.php?view=monitor Host Name field.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7330

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'show' parameter value in the view frame (frame.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7331

    Last Modified: 21 Nov 2024

    Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3 while editing an existing monitor field named "signal check color" (monitor.php). There exists no input validation or output filtration, leaving it vulnerable to HTML Injection and an XSS attack.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7333

    Last Modified: 21 Nov 2024

    Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable 'Exportfile' parameter value in the view download (download.php) because proper filtration is omitted.

    Published: 4 Feb 2019
    6.1
    Medium

    CVE-2019-7336

    Last Modified: 21 Nov 2024

    Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, as the view _monitor_filters.php contains takes in input from the user and saves it into the session, and retrieves it later (insecurely). The values of the MonitorName and Source parameters are being displayed without any output filtration being applied. This relates to the view=cycle value.

    Published: 4 Feb 2019