VYPR

CVEs

101,977 total · page 1520 of 2,040

  • CVE-2019-19226HigMar 4, 2020
    risk 0.49cvss 7.5epss 0.03

    A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to enable or disable MAC address filtering by submitting a crafted Forms/WlanMacFilter_1 POST request without being authenticated on the admin…

  • CVE-2019-19225HigMar 4, 2020
    risk 0.49cvss 7.5epss 0.03

    A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to change DNS servers without being authenticated on the admin interface by submitting a crafted Forms/dns_1 POST request.

  • CVE-2019-19224HigMar 4, 2020
    risk 0.49cvss 7.5epss 0.03

    A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to download the configuration (binary file) settings by submitting a rom-0 GET request without being authenticated on the admin interface.

  • CVE-2019-19223HigMar 4, 2020
    risk 0.49cvss 7.5epss 0.04

    A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to reboot the router by submitting a reboot.html GET request without being authenticated on the admin interface.

  • CVE-2020-7988HigMar 4, 2020
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in tools/pass-change/result.php in phpIPAM 1.4. CSRF can be used to change the password of any user/admin, to escalate privileges, and to gain access to more data and functionality. This issue exists due to the lack of a requirement to provide the old…

  • CVE-2020-5251HigMar 4, 2020
    risk 0.43cvss 7.7epss 0.01

    In parser-server before version 4.1.0, you can fetch all the users objects, by using regex in the NoSQL query. Using the NoSQL, you can use a regex on sessionToken and find valid accounts this way.

  • CVE-2019-3404HigMar 4, 2020
    risk 0.49cvss 7.5epss 0.01

    By adding some special fields to the uri ofrouter app function, the user could abuse background app cgi functions withoutauthentication. This affects 360 router P0 and F5C.

  • CVE-2020-5536HigMar 4, 2020
    risk 0.57cvss 8.8epss 0.01

    OpenBlocks IoT VX2 prior to Ver.4.0.0 (Ver.3 Series) allows an attacker on the same network segment to bypass authentication and to initialize the device via unspecified vectors.

  • CVE-2020-5535HigMar 4, 2020
    risk 0.57cvss 8.8epss 0.01

    OpenBlocks IoT VX2 prior to Ver.4.0.0 (Ver.3 Series) allows an attacker on the same network segment to execute arbitrary OS commands with root privileges via unspecified vectors.

  • CVE-2020-1734HigMar 3, 2020
    risk 0.41cvss 7.4epss 0.00

    A flaw was found in the pipe lookup plugin of ansible. Arbitrary commands can be run, when the pipe lookup plugin uses subprocess.Popen() with shell=True, by overwriting ansible facts and the variable is not escaped by quote plugin. An attacker could take advantage and run…

  • CVE-2020-5403HigMar 3, 2020
    risk 0.49cvss 7.5epss 0.01

    Reactor Netty HttpServer, versions 0.9.3 and 0.9.4, is exposed to a URISyntaxException that causes the connection to be closed prematurely instead of producing a 400 response.

  • CVE-2020-1893HigMar 3, 2020
    risk 0.00cvss 7.5epss 0.01

    Insufficient boundary checks when decoding JSON in TryParse reads out of bounds memory, potentially leading to DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0, 4.40.0, 4.39.0, versions between 4.33.0 and 4.38.0 (inclusive), versions between 4.9.0 and 4.32.0…

  • CVE-2020-1892HigMar 3, 2020
    risk 0.00cvss 8.1epss 0.01

    Insufficient boundary checks when decoding JSON in JSON_parser allows read access to out of bounds memory, potentially leading to information leak and DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0, 4.40.0, 4.39.0, versions between 4.33.0 and 4.38.0…

  • CVE-2020-1888HigMar 3, 2020
    risk 0.00cvss 7.5epss 0.01

    Insufficient boundary checks when decoding JSON in handleBackslash reads out of bounds memory, potentially leading to DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0, 4.40.0, 4.39.0, versions between 4.33.0 and 4.38.0 (inclusive), versions between 4.9.0 and…

  • CVE-2019-3696HigMar 3, 2020
    risk 0.55cvss 8.4epss 0.00

    A Improper Limitation of a Pathname to a Restricted Directory vulnerability in the packaging of pcp of SUSE Linux Enterprise High Performance Computing 15-ESPOS, SUSE Linux Enterprise High Performance Computing 15-LTSS, SUSE Linux Enterprise Module for Development Tools 15, SUSE…

  • CVE-2019-3695HigMar 3, 2020
    risk 0.55cvss 8.4epss 0.00

    A Improper Control of Generation of Code vulnerability in the packaging of pcp of SUSE Linux Enterprise High Performance Computing 15-ESPOS, SUSE Linux Enterprise High Performance Computing 15-LTSS, SUSE Linux Enterprise Module for Development Tools 15, SUSE Linux Enterprise…

  • CVE-2018-5951HigMar 2, 2020
    risk 0.49cvss 7.5epss 0.04

    An issue was discovered in Mikrotik RouterOS. Crafting a packet that has a size of 1 byte and sending it to an IPv6 address of a RouterOS box with IP Protocol 97 will cause RouterOS to reboot imminently. All versions of RouterOS that supports EoIPv6 are vulnerable to this attack.

  • CVE-2018-20343HigMar 2, 2020
    risk 0.51cvss 7.8epss 0.02

    Multiple buffer overflow vulnerabilities have been found in Ken Silverman Build Engine 1. An attacker could craft a special map file to execute arbitrary code when the map file is loaded.

  • CVE-2018-19798HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.03

    Fleetco Fleet Maintenance Management (FMM) 1.2 and earlier allows uploading an arbitrary ".php" file with the application/x-php Content-Type to the accidents_add.php?submit=1 URI, as demonstrated by the value_Images_1 field, which leads to remote command execution on the remote…

  • CVE-2020-8437HigMar 2, 2020
    risk 0.50cvss 7.5epss 0.12

    The bencoding parser in BitTorrent uTorrent through 3.5.5 (build 45505) misparses nested bencoded dictionaries, which allows a remote attacker to cause a denial of service.

  • CVE-2018-15819HigMar 2, 2020
    risk 0.49cvss 7.5epss 0.02

    EasyIO EasyIO-30P devices before 2.0.5.27 have Incorrect Access Control, related to webuser.js.

  • CVE-2019-18903HigMar 2, 2020
    risk 0.49cvss 7.5epss 0.02

    A Use After Free vulnerability in wicked of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Leap 15.1, Factory allows remote attackers to cause DoS or potentially code execution. This issue affects: SUSE Linux Enterprise Server 12 wicked versions prior…

  • CVE-2019-18902HigMar 2, 2020
    risk 0.49cvss 7.5epss 0.02

    A Use After Free vulnerability in wicked of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Leap 15.1, Factory allows remote attackers to cause DoS or potentially code execution. This issue affects: SUSE Linux Enterprise Server 12 wicked versions prior…

  • CVE-2020-8500HigMar 2, 2020
    risk 0.47cvss 7.2epss 0.04

    In Artica Pandora FMS 7.42, Web Admin users can execute arbitrary code by uploading a .php file via the Updater or Extension component. NOTE: The vendor reports that this is intended functionality

  • CVE-2019-20487HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.00

    An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple actions within the WNR1000V4 web management console are vulnerable to an unauthenticated GET request (exploitable directly or through CSRF), as demonstrated by the setup.cgi?todo=save_htp_account URI.

  • CVE-2019-18897HigMar 2, 2020
    risk 0.55cvss 8.4epss 0.00

    A UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of salt of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Factory allows local attackers to escalate privileges from user salt to root. This issue affects: SUSE Linux Enterprise…

  • CVE-2019-12183HigMar 2, 2020
    risk 0.49cvss 7.5epss 0.02

    Incorrect Access Control in Safescan Timemoto TM-616 and TA-8000 series allows remote attackers to read any file via the administrative API.

  • CVE-2017-12580HigMar 2, 2020
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in IDM UltraEdit through 24.10.0.32. To exploit the vulnerability, on unpatched Windows systems, an attacker could include in the same directory as the affected executable a DLL using the name of a Windows DLL. This DLL must be preloaded by the executable…

  • CVE-2015-1583HigMar 2, 2020
    risk 0.50cvss 8.8epss 0.01

    Multiple cross-site request forgery (CSRF) vulnerabilities in ATutor 2.2 allow remote attackers to hijack the authentication of administrators for requests that (1) create an administrator account via a request to mods/_core/users/admins/create.php or (2) create a user account…

  • CVE-2020-4283HigMar 2, 2020
    risk 0.56cvss 8.6epss 0.01

    IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, and 1.0.4 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.…

  • CVE-2018-17058HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in JABA XPress Online Shop through 2018-09-14. It contains an arbitrary file upload vulnerability in the picture-upload feature of ProductEdit.aspx. An authenticated attacker may bypass the frontend filename validation and upload an arbitrary file via…

  • CVE-2020-9549HigMar 2, 2020
    risk 0.51cvss 7.8epss 0.01

    In PDFResurrect 0.12 through 0.19, get_type in pdf.c has an out-of-bounds write via a crafted PDF document.

  • CVE-2020-6801HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.01

    Mozilla developers reported memory safety bugs present in Firefox 72. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 73.

  • CVE-2020-6800HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.02

    Mozilla developers and community members reported memory safety bugs present in Firefox 72 and Firefox ESR 68.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. In…

  • CVE-2020-6799HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.02

    Command line arguments could have been injected during Firefox invocation as a shell handler for certain unsupported file types. This required Firefox to be configured as the default handler for a given file type and for a file downloaded to be opened in a third party…

  • CVE-2020-6796HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.02

    A content process could have modified shared memory relating to crash reporting information, crash itself, and cause an out-of-bound write. This could have caused memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 73 and Firefox < ESR68.5.

  • CVE-2019-17026HigKEVMar 2, 2020
    risk 0.76cvss 8.8epss 0.43

    Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. We are aware of targeted attacks in the wild abusing this flaw. This vulnerability affects Firefox ESR < 68.4.1, Thunderbird < 68.4.1, and Firefox < 72.0.1.

  • CVE-2020-9545HigMar 2, 2020
    risk 0.49cvss 7.5epss 0.01

    Pale Moon 28.x before 28.8.4 has a segmentation fault related to module scripting, as demonstrated by a Lacoste web site.

  • CVE-2020-9540HigMar 2, 2020
    risk 0.51cvss 7.8epss 0.00

    Sophos HitmanPro.Alert before build 861 allows local elevation of privilege.

  • CVE-2020-9535HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.02

    fmwlan.c on D-Link DIR-615Jx10 devices has a stack-based buffer overflow via the formWlanSetup_Wizard webpage parameter when f_radius_ip1 is malformed.

  • CVE-2020-9534HigMar 2, 2020
    risk 0.57cvss 8.8epss 0.02

    fmwlan.c on D-Link DIR-615Jx10 devices has a stack-based buffer overflow via the formWlanSetup webpage parameter when f_radius_ip1 is malformed.

  • CVE-2020-6804HigFeb 28, 2020
    risk 0.00cvss 8.8epss 0.01

    A reflected XSS vulnerability exists within the gateway, allowing an attacker to craft a specialized URL which could steal the user's authentication token. When combined with CVE-2020-6803, an attacker could fully compromise the system.

  • CVE-2019-7007HigFeb 28, 2020
    risk 0.49cvss 7.5epss 0.02

    A directory traversal vulnerability has been found in the Avaya Equinox Management(iView)versions R9.1.9.0 and earlier. Successful exploitation could potentially allow an unauthenticated attacker to access files that are outside the restricted directory on the remote server.

  • CVE-2019-4301HigFeb 28, 2020
    risk 0.55cvss 8.4epss 0.01

    BigFix Self-Service Application (SSA) is vulnerable to arbitrary code execution if Javascript code is included in Running Message or Post Message HTML.

  • CVE-2020-9449HigFeb 28, 2020
    risk 0.57cvss 8.8epss 0.01

    An insecure random number generation vulnerability in BlaB! AX, BlaB! AX Pro, BlaB! WS (client), and BlaB! WS Pro (client) version 19.11 allows an attacker (with a guest or user session cookie) to escalate privileges by retrieving the cookie salt value and creating a valid…

  • CVE-2019-10805HigFeb 28, 2020
    risk 0.49cvss 7.5epss 0.01

    valib through 2.0.0 allows Internal Property Tampering. A maliciously crafted JavaScript object can bypass several inspection functions provided by valib. Valib uses a built-in function (hasOwnProperty) from the unsafe user-input to examine an object. It is possible for a…

  • CVE-2018-21035HigFeb 28, 2020
    risk 0.49cvss 7.5epss 0.02

    In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).

  • CVE-2019-19943HigFeb 28, 2020
    risk 0.49cvss 7.5epss 0.04

    The HTTP service in quickweb.exe in Pablo Quick 'n Easy Web Server 3.3.8 allows Remote Unauthenticated Heap Memory Corruption via a large host or domain parameter. It may be possible to achieve remote code execution because of a double free.

  • CVE-2020-1881HigFeb 28, 2020
    risk 0.49cvss 7.5epss 0.01

    NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have have a resource management error vulnerability. An attacker needs to perform specific operations to trigger a function of the affected device. Due to improper…

  • CVE-2020-1876HigFeb 28, 2020
    risk 0.49cvss 7.5epss 0.01

    NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an out-of-bounds write vulnerability. An unauthenticated attacker crafts malformed packets with specific parameter and sends the packets to the affected products. Due to…