8.8
    High

    CVE-2019-13024

    Last Modified: 2 Jul 2019

    Centreon 18.x before 18.10.6, 19.x before 19.04.3, and Centreon web before 2.8.29 allows the attacker to execute arbitrary system commands by using the value "init_script"-"Monitoring Engine Binary" in main.get.php to insert a arbitrary command into the database, and execute it by calling the vulnerable page www/include/configuration/configGenerate/xml/generateFiles.php (which passes the inserted value to the database to shell_exec without sanitizing it, allowing one to execute system arbitrary commands).

    Source:Askar
    Published:1 Jul 2019
    7.5
    High

    CVE-2019-13000

    Last Modified: 21 Nov 2024

    Eclair through 0.3 allows attackers to trigger loss of funds because of Incorrect Access Control. NOTE: README.md states "it is beta-quality software and don't put too much money in it."

    Published:31 Jan 2020
    7.5
    High

    CVE-2019-12999

    Last Modified: 21 Nov 2024

    Lightning Network Daemon (lnd) before 0.7 allows attackers to trigger loss of funds because of Incorrect Access Control.

    Published:31 Jan 2020
    8.8
    High

    CVE-2019-12991

    Last Modified: 12 Jul 2019

    Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 5 of 6).

    Source:Chris Lyne
    Published:16 Jul 2019
    9.8
    Critical

    CVE-2019-12989

    Last Modified: 12 Jul 2019

    Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow SQL Injection.

    Source:Chris Lyne
    Published:16 Jul 2019
    6.1
    Medium

    CVE-2019-12962

    Last Modified: 19 Mar 2021

    LiveZilla Server before 8.0.1.1 is vulnerable to XSS in mobile/index.php via the Accept-Language HTTP header.

    Source:Clément Cruchet
    Published:25 Jun 2019
    6.1
    Medium

    CVE-2019-12949

    Last Modified: 21 Nov 2024

    In pfSense 2.4.4-p2 and 2.4.4-p3, if it is possible to trick an authenticated administrator into clicking on a button on a phishing page, an attacker can leverage XSS to upload arbitrary executable code, via diag_command.php and rrd_fetch_json.php (timePeriod parameter), to a server. Then, the remote attacker can run any command with root privileges on that server.

    Published:25 Jun 2019
    7.8
    High

    CVE-2019-12937

    Last Modified: 21 Nov 2024

    apps/gsudo.c in gsudo in ToaruOS through 1.10.9 has a buffer overflow allowing local privilege escalation to the root user via the DISPLAY environment variable.

    Published:23 Jun 2019
    6.5
    Medium

    CVE-2019-12922

    Last Modified: 13 Sept 2019

    A CSRF issue in phpMyAdmin 4.9.0.1 allows deletion of any server in the Setup page.

    Source:Manuel García Cárdenas
    Published:13 Sept 2019
    6.1
    Medium

    CVE-2019-12905

    Last Modified: 22 Jun 2020

    FileRun 2019.05.21 allows XSS via the filename to the ?module=fileman&section=do&page=up URI. This issue has been fixed in FileRun 2019.06.01.

    Source:Emre ÖVÜNÇ
    Published:20 Jun 2019
    9.8
    Critical

    CVE-2019-12890

    Last Modified: 21 Nov 2024

    RedwoodHQ 2.5.5 does not require any authentication for database operations, which allows remote attackers to create admin users via a con.automationframework users insert_one call.

    Published:19 Jun 2019
    7
    High

    CVE-2019-12889

    Last Modified: 21 Nov 2024

    An unauthenticated privilege escalation exists in SailPoint Desktop Password Reset 7.2. A user with local access to only the Windows logon screen can escalate their privileges to NT AUTHORITY\System. An attacker would need local access to the machine for a successful exploit. The attacker must disconnect the computer from the local network / WAN and connect it to an internet facing access point / network. At that point, the attacker can execute the password-reset functionality, which will expose a web browser. Browsing to a site that calls local Windows system functions (e.g., file upload) will expose the local file system. From there an attacker can launch a privileged command shell.

    Published:20 Aug 2019
    8.8
    High

    CVE-2019-12840

    Last Modified: 16 Jul 2019

    In Webmin through 1.910, any user authorized to the "Package Updates" module can execute arbitrary commands with root privileges via the data parameter to update.cgi.

    Source:AkkuS
    Published:15 Jun 2019
    8.8
    High

    CVE-2019-12836

    Last Modified: 21 Nov 2024

    The Bobronix JEditor editor before 3.0.6 for Jira allows an attacker to add a URL/Link (to an existing issue) that can cause forgery of a request to an out-of-origin domain. This in turn may allow for a forged request that can be invoked in the context of an authenticated user, leading to stealing of session tokens and account takeover.

    Published:21 Jun 2019
    8.8
    High

    CVE-2019-12828

    Last Modified: 21 Jun 2019

    An issue was discovered in Electronic Arts Origin before 10.5.39. Due to improper sanitization of the origin:// and origin2:// URI schemes, it is possible to inject additional arguments into the Origin process and ultimately leverage code execution by loading a backdoored Qt plugin remotely via the platformpluginpath argument supplied with a Windows network share.

    Source:Dominik Penner
    Published:14 Jun 2019
    9.8
    Critical

    CVE-2019-12815

    Last Modified: 4 Nov 2025

    An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information disclosure without authentication, a related issue to CVE-2015-3306.

    Published:19 Jul 2019
    5.9
    Medium

    CVE-2019-12814

    Last Modified: 27 Aug 2025

    A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.x through 2.9.9. When Default Typing is enabled (either globally or for a specific property) for an externally exposed JSON endpoint and the service has JDOM 1.x or 2.x jar in the classpath, an attacker can send a specifically crafted JSON message that allows them to read arbitrary local files on the server.

    Published:4 Jun 2019
    6.1
    Medium

    CVE-2019-12801

    Last Modified: 3 Jul 2019

    out/out.GroupMgr.php in SeedDMS 5.1.11 has Stored XSS by making a new group with a JavaScript payload as the "GROUP" Name.

    Source:Nimit Jain
    Published:17 Jun 2019
    Unknown

    CVE-2019-12796

    https://github.com/PeterUpfold/CVE-2019-12796

    7.8
    High

    CVE-2019-12788

    Last Modified: 11 Jun 2019

    An issue was discovered in Photodex ProShow Producer v9.0.3797 (an application that runs with Administrator privileges). It is possible to perform a buffer overflow via a crafted file.

    Source:Yonatan_Correa
    Published:10 Jun 2019
    9.8
    Critical

    CVE-2019-12765

    Last Modified: 18 Jun 2020

    An issue was discovered in Joomla! before 3.9.7. The CSV export of com_actionslogs is vulnerable to CSV injection.

    Source:i4bdullah
    Published:11 Jun 2019
    7.8
    High

    CVE-2019-12750

    Last Modified: 21 Nov 2024

    Symantec Endpoint Protection, prior to 14.2 RU1 & 12.1 RU6 MP10 and Symantec Endpoint Protection Small Business Edition, prior to 12.1 RU6 MP10c (12.1.7491.7002), may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.

    Published:31 Jul 2019
    5.4
    Medium

    CVE-2019-12745

    Last Modified: 24 Jun 2019

    out/out.UsrMgr.php in SeedDMS before 5.1.11 allows Stored Cross-Site Scripting (XSS) via the name field.

    Source:Nimit Jain
    Published:20 Jun 2019
    7.5
    High

    CVE-2019-12744

    Last Modified: 25 Jun 2021

    SeedDMS before 5.1.11 allows Remote Command Execution (RCE) because of unvalidated file upload of PHP scripts, a different vulnerability than CVE-2018-12940.

    Source:Bryan Leong
    Published:20 Jun 2019
    5.3
    Medium

    CVE-2019-12735

    Last Modified: 7 Jun 2019

    getchar.c in Vim before 8.1.1365 and Neovim before 0.3.6 allows remote attackers to execute arbitrary OS commands via the :source! command in a modeline, as demonstrated by execute in Vim, and assert_fails or nvim_input in Neovim.

    Source:Arminius
    Published:5 Jun 2019
    9.8
    Critical

    CVE-2019-12725

    Last Modified: 24 Nov 2020

    Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web application mishandles a few HTTP parameters. An unauthenticated attacker can exploit this issue by injecting OS commands inside the vulnerable parameters.

    Source:Giuseppe Fuggiano
    Published:19 Jul 2019
    8.8
    High

    CVE-2019-12624

    Last Modified: 9 Jan 2020

    A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Controller (NGWC) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management interface of the affected software. An attacker could exploit this vulnerability by persuading a user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on an affected device by using a web browser and with the privileges of the user.

    Source:Mehmet Onder
    Published:21 Aug 2019
    6.5
    Medium

    CVE-2019-12616

    Last Modified: 11 Jun 2019

    An issue was discovered in phpMyAdmin before 4.9.0. A vulnerability was found that allows an attacker to trigger a CSRF attack against a phpMyAdmin user. The attacker can trick the user, for instance through a broken <img> tag pointing at the victim's phpMyAdmin database, and the attacker can potentially deliver a payload (such as a specific INSERT or DELETE statement) to the victim.

    Source:Riemann
    Published:5 Jun 2019
    9.8
    Critical

    CVE-2019-12594

    Last Modified: 21 Nov 2024

    DOSBox 0.74-2 has Incorrect Access Control.

    Published:2 Jul 2019
    7.5
    High

    CVE-2019-12593

    Last Modified: 4 Jun 2019

    IceWarp Mail Server through 10.4.4 is prone to a local file inclusion vulnerability via webmail/calendar/minimizer/index.php?style=..%5c directory traversal.

    Source:JameelNabbo
    Published:3 Jun 2019
    6.5
    Medium

    CVE-2019-12586

    Last Modified: 21 Nov 2024

    The EAP peer implementation in Espressif ESP-IDF 2.0.0 through 4.0.0 and ESP8266_NONOS_SDK 2.2.0 through 3.1.0 processes EAP Success messages before any EAP method completion or failure, which allows attackers in radio range to cause a denial of service (crash) via a crafted message.

    Published:4 Sept 2019
    6.1
    Medium

    CVE-2019-12562

    Last Modified: 1 Oct 2019

    Stored Cross-Site Scripting in DotNetNuke (DNN) Version before 9.4.0 allows remote attackers to store and embed the malicious script into the admin notification page. The exploit could be used to perfom any action with admin privileges such as managing content, adding users, uploading backdoors to the server, etc. Successful exploitation occurs when an admin user visits a notification page with stored cross-site scripting.

    Source:MaYaSeVeN
    Published:26 Sept 2019
    6.1
    Medium

    CVE-2019-12543

    Last Modified: 4 Jun 2019

    An issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the PurchaseRequest.do serviceRequestId parameter.

    Source:Vingroup
    Published:5 Jun 2019
    6.1
    Medium

    CVE-2019-12542

    Last Modified: 4 Jun 2019

    An issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the SearchN.do userConfigID parameter.

    Source:Vingroup
    Published:5 Jun 2019
    6.1
    Medium

    CVE-2019-12541

    Last Modified: 4 Jun 2019

    An issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the SolutionSearch.do searchText parameter.

    Source:Vingroup
    Published:5 Jun 2019
    6.1
    Medium

    CVE-2019-12538

    Last Modified: 4 Jun 2019

    An issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the SiteLookup.do search field.

    Source:Vingroup
    Published:5 Jun 2019
    9.8
    Critical

    CVE-2019-12518

    Last Modified: 17 Feb 2020

    Anviz CrossChex access control management software 4.3.8.0 and 4.3.12 is vulnerable to a buffer overflow vulnerability.

    Source:Metasploit
    Published:2 Dec 2019
    9.8
    Critical

    CVE-2019-12489

    Last Modified: 21 Nov 2024

    An issue was discovered on Fastweb Askey RTV1907VW 0.00.81_FW_200_Askey 2018-10-02 18:08:18 devices. By using the usb_remove service through an HTTP request, it is possible to inject and execute a command between two & characters in the mount parameter.

    Published:26 Nov 2019
    7.5
    High

    CVE-2019-12480

    Last Modified: 22 Jul 2019

    BACnet Protocol Stack through 0.8.6 has a segmentation fault leading to denial of service in BACnet APDU Layer because a malformed DCC in AtomicWriteFile, AtomicReadFile and DeviceCommunicationControl services. An unauthenticated remote attacker could cause a denial of service (bacserv daemon crash) because there is an invalid read in bacdcode.c during parsing of alarm tag numbers.

    Source:mmorillo
    Published:30 May 2019
    5.5
    Medium

    CVE-2019-12477

    Last Modified: 6 Jun 2019

    Supra Smart Cloud TV allows remote file inclusion in the openLiveURL function, which allows a local attacker to broadcast fake video without any authentication via a /remote/media_control?action=setUri&uri= URI.

    Source:Dhiraj Mishra
    Published:7 Jun 2019
    6.8
    Medium

    CVE-2019-12476

    Last Modified: 21 Nov 2024

    An authentication bypass vulnerability in the password reset functionality in Zoho ManageEngine ADSelfService Plus before 5.0.6 allows an attacker with physical access to gain a shell with SYSTEM privileges via the restricted thick client browser. The attack uses a long sequence of crafted keyboard input.

    Published:17 Jun 2019
    6.1
    Medium

    CVE-2019-12475

    Last Modified: 21 Nov 2024

    In MicroStrategy Web before 10.4.6, there is stored XSS in metric due to insufficient input validation.

    Published:17 Jul 2019
    6.1
    Medium

    CVE-2019-12461

    Last Modified: 22 Jun 2020

    Web Port 1.19.1 allows XSS via the /log type parameter.

    Source:Emre ÖVÜNÇ
    Published:30 May 2019
    6.1
    Medium

    CVE-2019-12460

    Last Modified: 22 Jun 2020

    Web Port 1.19.1 allows XSS via the /access/setup type parameter.

    Source:Emre ÖVÜNÇ
    Published:30 May 2019
    6.1
    Medium

    CVE-2019-12453

    Last Modified: 21 Nov 2024

    In MicroStrategy Web before 10.1 patch 10, stored XSS is possible in the FLTB parameter due to missing input validation.

    Published:19 Jul 2019
    7.5
    High

    CVE-2019-12422

    Last Modified: 21 Nov 2024

    Apache Shiro before 1.4.2, when using the default "remember me" configuration, cookies could be susceptible to a padding attack.

    Published:18 Nov 2019
    9.8
    Critical

    CVE-2019-12409

    Last Modified: 21 Nov 2024

    The 8.1.1 and 8.2.0 releases of Apache Solr contain an insecure setting for the ENABLE_REMOTE_JMX_OPTS configuration option in the default solr.in.sh configuration file shipping with Solr. If you use the default solr.in.sh file from the affected releases, then JMX monitoring will be enabled and exposed on RMI_PORT (default=18983), without any authentication. If this port is opened for inbound traffic in your firewall, then anyone with network access to your Solr nodes will be able to access JMX, which may in turn allow them to upload malicious code for execution on the Solr server.

    Published:18 Nov 2019
    7.5
    High

    CVE-2019-12402

    Last Modified: 21 Nov 2024

    The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a denial of service attack if an attacker can choose the file names inside of an archive created by Compress.

    Published:27 Aug 2019
    7.5
    High

    CVE-2019-12401

    Last Modified: 21 Nov 2024

    Solr versions 1.3.0 to 1.4.1, 3.1.0 to 3.6.2 and 4.0.0 to 4.10.4 are vulnerable to an XML resource consumption attack (a.k.a. Lol Bomb) via it’s update handler.?By leveraging XML DOCTYPE and ENTITY type elements, the attacker can create a pattern that will expand when the server parses the XML causing OOMs.

    Published:9 Sept 2019
    5.5
    Medium

    CVE-2019-12400

    Last Modified: 21 Nov 2024

    In version 2.0.3 Apache Santuario XML Security for Java, a caching mechanism was introduced to speed up creating new XML documents using a static pool of DocumentBuilders. However, if some untrusted code can register a malicious implementation with the thread context class loader first, then this implementation might be cached and re-used by Apache Santuario - XML Security for Java, leading to potential security flaws when validating signed documents, etc. The vulnerability affects Apache Santuario - XML Security for Java 2.0.x releases from 2.0.3 and all 2.1.x releases before 2.1.4.

    Published:23 Aug 2019