VYPR

CVEs

101,977 total · page 1511 of 2,040

  • CVE-2020-1707HigMar 20, 2020
    risk 0.46cvss 7.0epss 0.00

    A vulnerability was found in all openshift/postgresql-apb 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the container openshift/postgresql-apb. An attacker with access to the container could use this flaw to…

  • CVE-2020-10597HigMar 20, 2020
    risk 0.46cvss 7.1epss 0.01

    Delta Industrial Automation DOPSoft, Version 4.00.08.15 and prior. Multiple out-of-bounds read vulnerabilities may be exploited by processing specially crafted project files, which may allow an attacker to read information and/or crash the application.

  • CVE-2019-19345HigMar 20, 2020
    risk 0.46cvss 7.0epss 0.00

    A vulnerability was found in all openshift/mediawiki-apb 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mediawiki-apb. An attacker with access to the container could use this flaw to modify…

  • CVE-2020-10682HigMar 20, 2020
    risk 0.51cvss 7.8epss 0.02

    The Filemanager in CMS Made Simple 2.2.13 allows remote code execution via a .php.jpegd JPEG file, as demonstrated by m1_files[] to admin/moduleinterface.php. The file should be sent as application/octet-stream and contain PHP code (it need not be a valid JPEG file).

  • CVE-2019-19487HigMar 20, 2020
    risk 0.58cvss 8.8epss 0.05

    Command Injection in minPlayCommand.php in Centreon (19.04.4 and below) allows an attacker to achieve command injection via a plugin test.

  • CVE-2019-19029HigMar 20, 2020
    risk 0.40cvss 7.2epss 0.02

    Cloud Native Computing Foundation Harbor prior to 1.8.6 and 1.9.3 allows SQL Injection via user-groups in the VMware Harbor Container Registry for the Pivotal Platform.

  • CVE-2019-19025HigMar 20, 2020
    risk 0.50cvss 8.8epss 0.01

    Cloud Native Computing Foundation Harbor prior to 1.8.6 and 1.9.3 allows CSRF in the VMware Harbor Container Registry for the Pivotal Platform.

  • CVE-2019-19023HigMar 20, 2020
    risk 0.50cvss 8.8epss 0.02

    Cloud Native Computing Foundation Harbor prior to 1.8.6 and 1.9.3 has a Privilege Escalation Vulnerability in the VMware Harbor Container Registry for the Pivotal Platform.

  • CVE-2019-18785HigMar 20, 2020
    risk 0.49cvss 7.5epss 0.01

    SuiteCRM 7.10.x prior to 7.10.21 and 7.11.x prior to 7.11.9 mishandles API access tokens and credentials.

  • CVE-2018-20335HigMar 20, 2020
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in ASUSWRT 3.0.0.4.384.20308. An unauthenticated user can trigger a DoS of the httpd service via the /APP_Installation.asp?= URI.

  • CVE-2018-20333HigMar 20, 2020
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in ASUSWRT 3.0.0.4.384.20308. An unauthenticated user can request /update_applist.asp to see if a USB device is attached to the router and if there are apps installed on the router.

  • CVE-2019-16108HigMar 20, 2020
    risk 0.49cvss 7.5epss 0.01

    phpBB 3.2.7 allows adding an arbitrary Cascading Style Sheets (CSS) token sequence to a page through BBCode.

  • CVE-2019-16071HigMar 20, 2020
    risk 0.57cvss 8.8epss 0.01

    Enigma NMS 65.0.0 and prior allows administrative users to create low-privileged accounts that do not have the ability to modify any settings in the system, only view the components. However, it is possible for a low-privileged user to perform all actions as an administrator by…

  • CVE-2020-10669HigMar 19, 2020
    risk 0.49cvss 7.5epss 0.03

    The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to authentication bypass on the page /home.jsp. An unauthenticated attacker able to connect to the device's web interface can get a copy of the documents uploaded by any users. NOTE: this is…

  • CVE-2019-16068HigMar 19, 2020
    risk 0.60cvss 8.8epss 0.01

    A CSRF vulnerability exists in NETSAS ENIGMA NMS version 65.0.0 and prior that could allow an attacker to be able to trick a victim into submitting a malicious manage_files.cgi request. This can be triggered via XSS or an IFRAME tag included within the site.

  • CVE-2019-16063HigMar 19, 2020
    risk 0.49cvss 7.5epss 0.01

    NETSAS Enigma NMS 65.0.0 and prior does not encrypt sensitive data rendered within web pages. It is possible for an attacker to expose unencrypted sensitive data.

  • CVE-2020-7006HigMar 19, 2020
    risk 0.55cvss 8.4epss 0.02

    Systech Corporation NDS-5000 Terminal Server, NDS/5008 (8 Port, RJ45), firmware Version 02D.30. Successful exploitation of this vulnerability could allow information disclosure, limit system availability, and may allow remote code execution.

  • CVE-2020-10671HigMar 19, 2020
    risk 0.57cvss 8.8epss 0.01

    The Canon Oce Colorwave 500 4.0.0.0 printer's web application is missing any form of CSRF protections. This is a system-wide issue. An attacker could perform administrative actions by targeting a logged-in administrative user. NOTE: this is fixed in the latest version.

  • CVE-2019-16338HigMar 19, 2020
    risk 0.51cvss 7.8epss 0.01

    The tfo_common component in HwordApp.dll in Hancom Office 9.6.1.7634 allows a use-after-free via a crafted .docx file.

  • CVE-2019-16337HigMar 19, 2020
    risk 0.51cvss 7.8epss 0.01

    The hncbd90 component in Hancom Office 9.6.1.9403 allows a use-after-free via an unknown object in a crafted .docx file.

  • CVE-2019-16067HigMar 19, 2020
    risk 0.49cvss 7.5epss 0.01

    NETSAS Enigma NMS 65.0.0 and prior utilises basic authentication over HTTP for enforcing access control to the web application. The use of weak authentication transmitted over cleartext protocols can allow an attacker to steal username and password combinations by intercepting…

  • CVE-2019-16066HigMar 19, 2020
    risk 0.57cvss 8.8epss 0.02

    An unrestricted file upload vulnerability exists in user and system file upload functions in NETSAS Enigma NMS 65.0.0 and prior. This allows an attacker to upload malicious files and perform arbitrary code execution on the system.

  • CVE-2019-16065HigMar 19, 2020
    risk 0.60cvss 8.8epss 0.03

    A remote SQL injection web vulnerability was discovered in the Enigma NMS 65.0.0 and prior web application that allows an attacker to execute SQL commands to expose and compromise the web server, expose database tables and values, and potentially execute system-based commands as…

  • CVE-2019-16061HigMar 19, 2020
    risk 0.57cvss 8.8epss 0.01

    A number of files on the NETSAS Enigma NMS server 65.0.0 and prior are granted weak world-readable and world-writable permissions, allowing any low privileged user with access to the system to read sensitive data (e.g., .htpasswd) and create/modify/delete content (e.g., under…

  • CVE-2019-15656HigMar 19, 2020
    risk 0.49cvss 7.5epss 0.01

    D-Link DSL-2875AL and DSL-2877AL devices through 1.00.05 are prone to information disclosure via a simple crafted request to index.asp on the web management server because of username_v and password_v variables.

  • CVE-2019-15655HigMar 19, 2020
    risk 0.49cvss 7.5epss 0.01

    D-Link DSL-2875AL devices through 1.00.05 are prone to password disclosure via a simple crafted /romfile.cfg request to the web management server. This request doesn't require any authentication and will lead to saving the configuration file. The password is stored in cleartext.

  • CVE-2019-15654HigMar 19, 2020
    risk 0.49cvss 7.5epss 0.02

    Comba AC2400 devices are prone to password disclosure via a simple crafted /09/business/upgrade/upcfgAction.php?download=true request to the web management server. The request doesn't require any authentication and will lead to saving the DBconfig.cfg file. At the end of the…

  • CVE-2019-15653HigMar 19, 2020
    risk 0.49cvss 7.5epss 0.01

    Comba AP2600-I devices through A02,0202N00PD2 are prone to password disclosure via an insecure authentication mechanism. The HTML source code of the login page contains values that allow obtaining the username and password. The username are password values are a double md5 of…

  • CVE-2020-5262HigMar 19, 2020
    risk 0.43cvss 7.7epss 0.01

    In EasyBuild before version 4.1.2, the GitHub Personal Access Token (PAT) used by EasyBuild for the GitHub integration features (like `--new-pr`, `--fro,-pr`, etc.) is shown in plain text in EasyBuild debug log files. This issue is fixed in EasyBuild v4.1.2, and in the `master`+…

  • CVE-2019-11361HigMar 19, 2020
    risk 0.57cvss 8.8epss 0.03

    Zoho ManageEngine Remote Access Plus 10.0.258 does not validate user permissions properly, allowing for privilege escalation and eventually a full application takeover.

  • CVE-2020-3266HigMar 19, 2020
    risk 0.51cvss 7.8epss 0.01

    A vulnerability in the CLI of Cisco SD-WAN Solution software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability…

  • CVE-2020-3265HigMar 19, 2020
    risk 0.51cvss 7.8epss 0.00

    A vulnerability in Cisco SD-WAN Solution software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating system. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a…

  • CVE-2020-3264HigMar 19, 2020
    risk 0.46cvss 7.1epss 0.01

    A vulnerability in Cisco SD-WAN Solution software could allow an authenticated, local attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted traffic to…

  • CVE-2020-1705HigMar 19, 2020
    risk 0.46cvss 7.0epss 0.00

    A vulnerability was found in openshift/template-service-broker-operator in all 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the openshift/template-service-broker-operator. An attacker with access to the…

  • CVE-2019-16012HigMar 19, 2020
    risk 0.57cvss 8.1epss 0.54

    A vulnerability in the web UI of Cisco SD-WAN Solution vManage software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. The vulnerability exists because the web UI improperly validates SQL values. An attacker could exploit…

  • CVE-2014-2723HigMar 19, 2020
    risk 0.57cvss 8.8epss 0.02

    In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configuration error, and is not the result of an…

  • CVE-2014-2722HigMar 19, 2020
    risk 0.57cvss 8.8epss 0.02

    In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configuration error, and is not the result of an…

  • CVE-2014-2721HigMar 19, 2020
    risk 0.57cvss 8.8epss 0.02

    In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configuration error, and is not the result of an…

  • CVE-2020-10678HigMar 19, 2020
    risk 0.57cvss 8.8epss 0.01

    In Octopus Deploy before 2020.1.5, for customers running on-premises Active Directory linked to their Octopus server, an authenticated user can leverage a bug to escalate privileges.

  • CVE-2020-10675HigMar 19, 2020
    risk 0.42cvss 7.5epss 0.02

    The Library API in buger jsonparser through 2019-12-04 allows attackers to cause a denial of service (infinite loop) via a Delete call.

  • CVE-2020-10648HigMar 19, 2020
    risk 0.51cvss 7.8epss 0.01

    Das U-Boot through 2020.01 allows attackers to bypass verified boot restrictions and subsequently boot arbitrary images by providing a crafted FIT image to a system configured to boot the default configuration.

  • CVE-2020-10673HigMar 18, 2020
    risk 0.51cvss 8.8epss 0.08

    FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to com.caucho.config.types.ResourceRef (aka caucho-quercus).

  • CVE-2020-10672HigMar 18, 2020
    risk 0.50cvss 8.8epss 0.03

    FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.aries.transaction.jms.internal.XaPooledConnectionFactory (aka aries.transaction.jms).

  • CVE-2019-18979HigMar 18, 2020
    risk 0.51cvss 7.8epss 0.00

    Adaware antivirus 12.6.1005.11662 and 12.7.1055.0 has a quarantine flaw that allows privilege escalation. Exploitation uses an NTFS directory junction to restore a malicious DLL from quarantine into the system32 folder.

  • CVE-2019-3762HigMar 18, 2020
    risk 0.49cvss 7.5epss 0.01

    Data Protection Central versions 1.0, 1.0.1, 18.1, 18.2, and 19.1 contains an Improper Certificate Chain of Trust Vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by obtaining a CA signed certificate from Data Protection Central to…

  • CVE-2019-20529HigMar 18, 2020
    risk 0.00cvss 7.5epss 0.01

    In core/doctype/prepared_report/prepared_report.py in Frappe 11 and 12, data files generated with Prepared Report were being stored as public files (no authentication is required to access; having a link is sufficient) instead of private files.

  • CVE-2019-18582HigMar 18, 2020
    risk 0.47cvss 7.2epss 0.05

    Dell EMC Data Protection Advisor versions 6.3, 6.4, 6.5, 18.2 versions prior to patch 83, and 19.1 versions prior to patch 71 contain a server-side template injection vulnerability in the REST API. A remote authenticated malicious user with administrative privileges may…

  • CVE-2019-18581HigMar 18, 2020
    risk 0.47cvss 7.2epss 0.04

    Dell EMC Data Protection Advisor versions 6.3, 6.4, 6.5, 18.2 versions prior to patch 83, and 19.1 versions prior to patch 71 contain a server missing authorization vulnerability in the REST API. A remote authenticated malicious user with administrative privileges may…

  • CVE-2019-12769HigMar 18, 2020
    risk 0.57cvss 8.8epss 0.01

    SolarWinds Serv-U Managed File Transfer (MFT) Web client before 15.1.6 Hotfix 2 is vulnerable to Cross-Site Request Forgery in the file upload functionality via ?Command=Upload with the Dir and File parameters.

  • CVE-2019-12123HigMar 18, 2020
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in ONAP SDNC before Dublin. By executing sla/printAsXml with a crafted module parameter, an authenticated user can execute an arbitrary command. All SDC setups that include admportal are affected.