8.1
    High

    CVE-2019-9506

    Last Modified: 21 Nov 2024

    The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation. This allows practical brute-force attacks (aka "KNOB") that can decrypt traffic and inject arbitrary ciphertext without the victim noticing.

    Published:10 Aug 2019
    7.8
    High

    CVE-2019-9491

    Last Modified: 22 Oct 2019

    Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the same directory, potentially leading to arbitrary remote code execution (RCE) when executed.

    Source:hyp3rlinx
    Published:21 Oct 2019
    5.5
    Medium

    CVE-2019-9465

    Last Modified: 21 Nov 2024

    In the Titan M handling of cryptographic operations, there is a possible information disclosure due to an unusual root cause. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-10 Android ID: A-133258003

    Published:7 Jan 2020
    5.5
    Medium

    CVE-2019-9213

    Last Modified: 6 Mar 2019

    In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related to a capability check for the wrong task.

    Source:Google Security Research
    Published:27 Feb 2019
    8.8
    High

    CVE-2019-9202

    Last Modified: 21 Nov 2024

    Nagios IM (component of Nagios XI) before 2.2.7 allows authenticated users to execute arbitrary code via API key issues.

    Published:28 Mar 2019
    9.8
    Critical

    CVE-2019-9194

    Last Modified: 28 Mar 2019

    elFinder before 2.1.48 has a command injection vulnerability in the PHP connector.

    Source:Metasploit
    Published:26 Feb 2019
    7.2
    High

    CVE-2019-9193

    Last Modified: 8 May 2019

    In PostgreSQL 9.3 through 11.2, the "COPY TO/FROM PROGRAM" function allows superusers and users in the 'pg_execute_server_program' group to execute arbitrary code in the context of the database's operating system user. This functionality is enabled by default and can be abused to run arbitrary operating system commands on Windows, Linux, and macOS. NOTE: Third parties claim/state this is not an issue because PostgreSQL functionality for ‘COPY TO/FROM PROGRAM’ is acting as intended. References state that in PostgreSQL, a superuser can execute commands as the server user without using the ‘COPY FROM PROGRAM’.

    Source:Metasploit
    Published:20 Mar 2019
    8.8
    High

    CVE-2019-9189

    Last Modified: 12 Nov 2019

    Prima Systems FlexAir, Versions 2.4.9api3 and prior. The application allows the upload of arbitrary Python scripts when configuring the main central controller. These scripts can be immediately executed because of root code execution, not as a web server user, allowing an authenticated attacker to gain full system access.

    Source:LiquidWorm
    Published:5 Jun 2019
    9.8
    Critical

    CVE-2019-9184

    Last Modified: 28 Feb 2019

    SQL injection vulnerability in the J2Store plugin 3.x before 3.3.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the product_option[] parameter.

    Source:Andrei Conache
    Published:26 Feb 2019
    7.8
    High

    CVE-2019-9162

    Last Modified: 1 Mar 2019

    In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient ASN.1 length checks (aka an array index error), making out-of-bounds read and write operations possible, leading to an OOPS or local privilege escalation. This affects snmp_version and snmp_helper.

    Source:Google Security Research
    Published:11 Feb 2019
    7.5
    High

    CVE-2019-9153

    Last Modified: 21 Nov 2024

    Improper Verification of a Cryptographic Signature in OpenPGP.js <=4.1.2 allows an attacker to forge signed messages by replacing its signatures with a "standalone" or "timestamp" signature.

    Published:22 Aug 2019
    9.8
    Critical

    CVE-2019-9083

    Last Modified: 28 Aug 2019

    SQLiteManager 1.20 and 1.24 allows SQL injection via the /sqlitemanager/main.php dbsel parameter. NOTE: This product is discontinued.

    Source:Rafael Pedrero
    Published:17 Mar 2019
    8.8
    High

    CVE-2019-9082

    Last Modified: 16 Apr 2020

    ThinkPHP before 3.2.4, as used in Open Source BMS v1.1.1 and other products, allows Remote Command Execution via public//?s=index/\think\app/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]= followed by the command.

    Source:Metasploit
    Published:24 Feb 2019
    Low

    CVE-2019-9081

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published:24 Feb 2019
    8.1
    High

    CVE-2019-9053

    Last Modified: 2 Apr 2019

    An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve unauthenticated blind time-based SQL injection via the m1_idlist parameter.

    Source:Daniele Scanu
    Published:26 Mar 2019
    7.2
    High

    CVE-2019-9041

    Last Modified: 4 Mar 2019

    An issue was discovered in ZZZCMS zzzphp V1.6.1. In the inc/zzz_template.php file, the parserIfLabel() function's filtering is not strict, resulting in PHP code execution, as demonstrated by the if:assert substring.

    Source:Yang Chenglong
    Published:23 Feb 2019
    7.5
    High

    CVE-2019-9017

    Last Modified: 3 May 2019

    DWRCC in SolarWinds DameWare Mini Remote Control 10.0 x64 has a Buffer Overflow associated with the size field for the machine name.

    Source:Dino Barlattani
    Published:2 May 2019
    5.9
    Medium

    CVE-2019-8997

    Last Modified: 21 Nov 2024

    An XML External Entity Injection (XXE) vulnerability in the Management System (console) of BlackBerry AtHoc versions earlier than 7.6 HF-567 could allow an attacker to potentially read arbitrary local files from the application server or make requests on the network by entering maliciously crafted XML in an existing field.

    Published:21 Mar 2019
    9.8
    Critical

    CVE-2019-8985

    Last Modified: 21 Nov 2024

    On Netis WF2411 with firmware 2.1.36123 and other Netis WF2xxx devices (possibly WF2411 through WF2880), there is a stack-based buffer overflow that does not require authentication. This can cause denial of service (device restart) or remote code execution. This vulnerability can be triggered by a GET request with a long HTTP "Authorization: Basic" header that is mishandled by user_auth->user_ok in /bin/boa.

    Published:21 Feb 2019
    9.6
    Critical

    CVE-2019-8982

    Last Modified: 14 Mar 2019

    com/wavemaker/studio/StudioService.java in WaveMaker Studio 6.6 mishandles the studioService.download?method=getContent&inUrl= value, leading to disclosure of local files and SSRF.

    Source:Gionathan Reale
    Published:21 Feb 2019
    9.8
    Critical

    CVE-2019-8979

    Last Modified: 21 Nov 2024

    Kohana through 3.3.6 has SQL Injection when the order_by() parameter can be controlled.

    Published:21 Feb 2019
    8.1
    High

    CVE-2019-8978

    Last Modified: 21 Nov 2024

    An improper authentication vulnerability can be exploited through a race condition that occurs in Ellucian Banner Web Tailor 8.8.3, 8.8.4, and 8.9 and Banner Enterprise Identity Services 8.3, 8.3.1, 8.3.2, and 8.4, in conjunction with SSO Manager. This vulnerability allows remote attackers to steal a victim's session (and cause a denial of service) by repeatedly requesting the initial Banner Web Tailor main page with the IDMSESSID cookie set to the victim's UDCID, which in the case tested is the institutional ID. During a login attempt by a victim, the attacker can leverage the race condition and will be issued the SESSID that was meant for this victim.

    Published:14 May 2019
    7.8
    High

    CVE-2019-8956

    Last Modified: 21 Nov 2024

    In the Linux Kernel before versions 4.20.8 and 4.19.21 a use-after-free error in the "sctp_sendmsg()" function (net/sctp/socket.c) when handling SCTP_SENDALL flag can be exploited to corrupt memory.

    Published:21 Feb 2019
    6.1
    Medium

    CVE-2019-8953

    Last Modified: 13 Mar 2019

    The HAProxy package before 0.59_16 for pfSense has XSS via the desc (aka Description) or table_actionsaclN parameter, related to haproxy_listeners.php and haproxy_listeners_edit.php.

    Source:Gionathan Reale
    Published:20 Feb 2019
    6.5
    Medium

    CVE-2019-8943

    Last Modified: 5 Apr 2019

    WordPress through 5.0.3 allows Path Traversal in wp_crop_image(). An attacker (who has privileges to crop an image) can write the output image to an arbitrary directory via a filename containing two image extensions and ../ sequences, such as a filename ending with the .jpg?/../../file.jpg substring.

    Source:Metasploit
    Published:20 Feb 2019
    8.8
    High

    CVE-2019-8942

    Last Modified: 5 Apr 2019

    WordPress before 4.9.9 and 5.x before 5.0.1 allows remote code execution because an _wp_attached_file Post Meta entry can be changed to an arbitrary string, such as one ending with a .jpg?file.php substring. An attacker with author privileges can execute arbitrary code by uploading a crafted image containing PHP code in the Exif metadata. Exploitation can leverage CVE-2019-8943.

    Source:Metasploit
    Published:20 Feb 2019
    6.1
    Medium

    CVE-2019-8937

    Last Modified: 20 Feb 2019

    HotelDruid 2.3.0 has XSS affecting the nsextt, cambia1, mese_fine, origine, and anno parameters in creaprezzi.php, tabella3.php, personalizza.php, and visualizza_tabelle.php.

    Source:Mehmet EMIROGLU
    Published:17 May 2019
    7.5
    High

    CVE-2019-8936

    Last Modified: 21 Nov 2024

    NTP through 4.2.8p12 has a NULL Pointer Dereference.

    Published:7 Mar 2019
    6.1
    Medium

    CVE-2019-8929

    Last Modified: 19 Feb 2019

    An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2. XSS exists in the Administration zone /netflow/jspui/selectDevice.jsp file in these GET parameters: param and rtype.

    Source:Rafael Pedrero
    Published:17 May 2019
    6.1
    Medium

    CVE-2019-8928

    Last Modified: 19 Feb 2019

    An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2. XSS exists in /netflow/jspui/userManagementForm.jsp via these GET parameters: authMeth, passWord, pwd1, and userName.

    Source:Rafael Pedrero
    Published:17 May 2019
    6.1
    Medium

    CVE-2019-8927

    Last Modified: 19 Feb 2019

    An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2. XSS exists in the Administration zone /netflow/jspui/scheduleConfig.jsp file via these GET parameters: devSrc, emailId, excWeekModify, filterFlag, getFilter, mailReport, mset, popup, rep_schedule, rep_Type, schDesc, schName, schSource, selectDeviceDone, task, val10, and val11.

    Source:Rafael Pedrero
    Published:17 May 2019
    6.1
    Medium

    CVE-2019-8926

    Last Modified: 19 Feb 2019

    An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2. XSS exists in the Administration zone /netflow/jspui/popup1.jsp file via these GET parameters: bussAlert, customDev, and selSource.

    Source:Rafael Pedrero
    Published:17 May 2019
    4.3
    Medium

    CVE-2019-8925

    Last Modified: 19 Feb 2019

    An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2. An Absolute Path Traversal vulnerability in the Administration zone, in /netflow/servlet/CReportPDFServlet (via the parameter schFilePath), allows remote authenticated users to bypass intended SecurityManager restrictions and list a parent directory via any file name, such as a schFilePath=C:\boot.ini value.

    Source:Rafael Pedrero
    Published:17 May 2019
    6.1
    Medium

    CVE-2019-8924

    Last Modified: 19 Feb 2019

    XAMPP through 5.6.8 allows XSS via the cds-fpdf.php interpret or titel parameter. NOTE: This product is discontinued.

    Source:Rafael Pedrero
    Published:17 May 2019
    9.8
    Critical

    CVE-2019-8923

    Last Modified: 19 Feb 2019

    XAMPP through 5.6.8 and previous allows SQL injection via the cds-fpdf.php jahr parameter. NOTE: This product is discontinued.

    Source:Rafael Pedrero
    Published:14 May 2019
    7.8
    High

    CVE-2019-8852

    Last Modified: 21 Nov 2024

    A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. An application may be able to execute arbitrary code with kernel privileges.

    Published:27 Oct 2020
    8.8
    High

    CVE-2019-8820

    Last Modified: 5 Nov 2019

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, watchOS 6.1, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.

    Source:Google Security Research
    Published:8 Nov 2019
    7.8
    High

    CVE-2019-8805

    Last Modified: 21 Nov 2024

    A validation issue existed in the entitlement verification. This issue was addressed with improved validation of the process entitlement. This issue is fixed in macOS Catalina 10.15.1. An application may be able to execute arbitrary code with system privileges.

    Published:18 Dec 2019
    6.1
    Medium

    CVE-2019-8791

    Last Modified: 21 Nov 2024

    An issue existed in the parsing of URL schemes. This issue was addressed with improved URL validation. This issue is fixed in Shazam Android App Version 9.25.0, Shazam iOS App Version 12.11.0. Processing a maliciously crafted URL may lead to an open redirect.

    Published:18 Dec 2019
    7.8
    High

    CVE-2019-8781

    Last Modified: 21 Nov 2024

    A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15. An application may be able to execute arbitrary code with kernel privileges.

    Published:18 Dec 2019
    8.8
    High

    CVE-2019-8765

    Last Modified: 30 Oct 2019

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in watchOS 6.1. Processing maliciously crafted web content may lead to arbitrary code execution.

    Source:Google Security Research
    Published:8 Nov 2019
    7.8
    High

    CVE-2019-8717

    Last Modified: 9 Oct 2019

    A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15, tvOS 13. An application may be able to execute arbitrary code with kernel privileges.

    Source:Google Security Research
    Published:18 Dec 2019
    6.1
    Medium

    CVE-2019-8690

    Last Modified: 12 Aug 2019

    A logic issue existed in the handling of document loads. This issue was addressed with improved state management. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to universal cross site scripting.

    Source:Google Security Research
    Published:29 Aug 2019
    8.8
    High

    CVE-2019-8689

    Last Modified: 29 Aug 2019

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Source:Google Security Research
    Published:29 Aug 2019
    8.8
    High

    CVE-2019-8672

    Last Modified: 30 Jul 2019

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Source:Google Security Research
    Published:29 Aug 2019
    8.8
    High

    CVE-2019-8671

    Last Modified: 30 Jul 2019

    Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

    Source:Google Security Research
    Published:29 Aug 2019
    5.3
    Medium

    CVE-2019-8663

    Last Modified: 15 Aug 2019

    This issue was addressed with improved checks. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6. A remote attacker may be able to leak memory.

    Source:Google Security Research
    Published:18 Dec 2019
    9.8
    Critical

    CVE-2019-8662

    Last Modified: 11 Nov 2019

    This issue was addressed with improved checks. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3. An attacker may be able to trigger a use-after-free in an application deserializing an untrusted NSDictionary.

    Source:Google Security Research
    Published:18 Dec 2019
    9.8
    Critical

    CVE-2019-8661

    Last Modified: 5 Aug 2019

    A use after free issue was addressed with improved memory management. This issue is fixed in macOS Mojave 10.14.6. A remote attacker may be able to cause arbitrary code execution.

    Source:Google Security Research
    Published:18 Dec 2019
    9.8
    Critical

    CVE-2019-8660

    Last Modified: 30 Jul 2019

    A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3. A remote attacker may be able to cause unexpected application termination or arbitrary code execution.

    Source:Google Security Research
    Published:18 Dec 2019