VYPR

CVEs

101,977 total · page 1535 of 2,040

  • CVE-2019-15583HigJan 28, 2020
    risk 0.49cvss 7.5epss 0.01

    An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE). When an issue was moved to a public project from a private one, the associated private labels and the private project namespace would be disclosed…

  • CVE-2019-13521HigJan 27, 2020
    risk 0.51cvss 7.8epss 0.06

    A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software version 16.00.00 and earlier may result in the limited exposure of information related to the targeted workstation. Rockwell Automation has released version…

  • CVE-2019-13519HigJan 27, 2020
    risk 0.51cvss 7.8epss 0.06

    A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software version 16.00.00 and earlier may result in the limited exposure of information related to the targeted workstation. Rockwell Automation has released version…

  • CVE-2013-2499HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.03

    SimpleHRM 2.3 and earlier could allow remote attackers to bypass the authentication process in 'user_manager.php' via spoofing a cookie.

  • CVE-2013-2474HigJan 27, 2020
    risk 0.53cvss 7.5epss 0.10

    Directory traversal vulnerability in AWS XMS 2.5 allows remote attackers to view arbitrary files via the 'what' parameter.

  • CVE-2013-2267HigJan 27, 2020
    risk 0.51cvss 7.2epss 0.09

    PHP Code Injection vulnerability in FUDforum Bulletin Board Software 3.0.4 could allow remote attackers to execute arbitrary code on the system.

  • CVE-2019-11288HigJan 27, 2020
    risk 0.46cvss 7.0epss 0.00

    In Pivotal tc Server, 3.x versions prior to 3.2.19 and 4.x versions prior to 4.0.10, and Pivotal tc Runtimes, 7.x versions prior to 7.0.99.B, 8.x versions prior to 8.5.47.A, and 9.x versions prior to 9.0.27.A, when a tc Runtime instance is configured with the JMX Socket…

  • CVE-2019-19824HigJan 27, 2020
    risk 0.59cvss 8.8epss 0.25

    On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCmd parameter to the boafrm/formSysCmd URI, even if the GUI (syscmd.htm) is not available. This allows for full control over the device's internals. This affects…

  • CVE-2019-19823HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.06

    A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords in flash memory and in a file. This affects TOTOLINK A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0,…

  • CVE-2019-19822HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.09

    A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attackers to retrieve the configuration, including sensitive data (usernames and passwords). This affects TOTOLINK A3002RU through 2.0.0, A702R through 2.1.3, N301RT…

  • CVE-2019-17095HigJan 27, 2020
    risk 0.53cvss 8.1epss 0.04

    A command injection vulnerability has been discovered in the bootstrap stage of Bitdefender BOX 2, versions 2.1.47.42 and 2.1.53.45. The API method `/api/download_image` unsafely handles the production firmware URL supplied by remote servers, leading to arbitrary execution of…

  • CVE-2019-17094HigJan 27, 2020
    risk 0.54cvss 8.3epss 0.01

    A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows a local attacker to obtain code execution on the device. This issue affects: Belkin WeMo Insight Switch firmware version 2.00.11396 and prior versions.

  • CVE-2014-8742HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.04

    Directory traversal vulnerability in the ReportDownloadServlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to read arbitrary files via unspecified vectors.

  • CVE-2014-7303HigJan 27, 2020
    risk 0.51cvss 7.8epss 0.01

    SGI Tempo, as used on SGI ICE-X systems, uses weak permissions for certain files, which allows local users to obtain password hashes and possibly other unspecified sensitive information by reading etc/dbdump.db.

  • CVE-2014-7302HigJan 27, 2020
    risk 0.51cvss 7.8epss 0.01

    SGI Tempo, as used on SGI ICE-X systems, uses weak permissions for certain files, which allows local users to change the permissions of arbitrary files by executing /opt/sgi/sgimc/bin/vx.

  • CVE-2014-3979HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    Bytemark Symbiosis allows remote attackers to cause a denial of service via a crafted username, which triggers the firewall to blacklist the IP.

  • CVE-2020-7952HigJan 27, 2020
    risk 0.51cvss 7.8epss 0.02

    rendersystemdx9.dll in Valve Dota 2 before 7.23f allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is affected by memory corruption.

  • CVE-2020-7951HigJan 27, 2020
    risk 0.51cvss 7.8epss 0.02

    meshsystem.dll in Valve Dota 2 before 7.23e allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is affected by memory corruption.

  • CVE-2020-7950HigJan 27, 2020
    risk 0.51cvss 7.8epss 0.02

    meshsystem.dll in Valve Dota 2 before 7.23f allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is mishandled during a vulnerable function call.

  • CVE-2020-7949HigJan 27, 2020
    risk 0.54cvss 7.8epss 0.04

    schemasystem.dll in Valve Dota 2 before 7.23f allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted map is mishandled during a GetValue call.

  • CVE-2020-7238HigJan 27, 2020
    risk 0.00cvss 7.5epss 0.04

    Netty 4.1.43.Final allows HTTP Request Smuggling because it mishandles Transfer-Encoding whitespace (such as a [space]Transfer-Encoding:chunked line) and a later Content-Length header. This issue exists because of an incomplete fix for CVE-2019-16869.

  • CVE-2019-17190HigJan 27, 2020
    risk 0.51cvss 7.8epss 0.01

    A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101. The vulnerability is due to an insecure ACL set by the AvastBrowserUpdate.exe (which is running as NT AUTHORITY\SYSTEM) when AvastSecureBrowser.exe checks for new updates. When the update…

  • CVE-2015-0294HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    GnuTLS before 3.3.13 does not validate that the signature algorithms match when importing a certificate.

  • CVE-2015-0243HigJan 27, 2020
    risk 0.51cvss 8.8epss 0.05

    Multiple buffer overflows in contrib/pgcrypto in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 allow remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via…

  • CVE-2015-0242HigJan 27, 2020
    risk 0.51cvss 8.8epss 0.05

    Stack-based buffer overflow in the *printf function implementations in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1, when running on a Windows system, allows remote authenticated users to cause a denial of service…

  • CVE-2015-0241HigJan 27, 2020
    risk 0.51cvss 8.8epss 0.06

    The to_char function in PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 allows remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a (1) large number of digits when…

  • CVE-2013-6056HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    OSSIM before 4.3.3.1 has tele_compress.php path traversal vulnerability

  • CVE-2013-5659HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.01

    Wiz 5.0.3 has a user mode write access violation

  • CVE-2012-1496HigJan 27, 2020
    risk 0.60cvss 8.8epss 0.03

    Local file inclusion in WebCalendar before 1.2.5.

  • CVE-2011-4558HigJan 27, 2020
    risk 0.50cvss 7.2epss 0.04

    Tiki 8.2 and earlier allows remote administrators to execute arbitrary PHP code via crafted input to the regexres and regex parameters.

  • CVE-2020-8009HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    AVB MOTU devices through 2020-01-22 allow /.. Directory Traversal, as demonstrated by reading the /etc/passwd file.

  • CVE-2019-17102HigJan 27, 2020
    risk 0.54cvss 8.3epss 0.02

    An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91. The API method `/api/update_setup` does not perform firmware signature checks atomically, leading to an exploitable race condition (TOCTTOU) that allows…

  • CVE-2020-5522HigJan 27, 2020
    risk 0.48cvss 7.4epss 0.01

    The kantan netprint App for Android 2.0.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

  • CVE-2020-5521HigJan 27, 2020
    risk 0.48cvss 7.4epss 0.01

    The kantan netprint App for iOS 2.0.2 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

  • CVE-2020-5520HigJan 27, 2020
    risk 0.48cvss 7.4epss 0.01

    The netprint App for iOS 3.2.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

  • CVE-2017-14807HigJan 27, 2020
    risk 0.53cvss 8.1epss 0.01

    An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in susestudio-ui-server of SUSE Studio onsite allows remote attackers with admin privileges in Studio to alter SQL statements, allowing for extraction and modification of data.…

  • CVE-2019-20432HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    In the Lustre file system before 2.12.3, the mdt module has an out-of-bounds access and panic due to the lack of validation for specific fields of packets sent by a client. mdt_file_secctx_unpack does not validate the value of name_size derived from req_capsule_get_size.

  • CVE-2019-20431HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    In the Lustre file system before 2.12.3, the ptlrpc module has an osd_map_remote_to_local out-of-bounds access and panic due to the lack of validation for specific fields of packets sent by a client. osd_bufs_get in the osd_ldiskfs module does not validate a certain length value.

  • CVE-2019-20430HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    In the Lustre file system before 2.12.3, the mdt module has an LBUG panic (via a large MDT Body eadatasize field) due to the lack of validation for specific fields of packets sent by a client.

  • CVE-2019-20429HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic (via a modified lm_bufcount field) due to the lack of validation for specific fields of packets sent by a client. This is caused by interaction between sptlrpc_svc_unwrap_request and…

  • CVE-2019-20428HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic due to the lack of validation for specific fields of packets sent by a client. The ldl_request_cancel function mishandles a large lock_count parameter.

  • CVE-2019-20426HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds access and panic due to the lack of validation for specific fields of packets sent by a client. In the function ldlm_cancel_hpreq_check, there is no lock_count bounds check.

  • CVE-2019-20425HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds access and panic due to the lack of validation for specific fields of packets sent by a client. In the function lustre_msg_string, there is no validation of a certain length value derived from…

  • CVE-2019-20424HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.03

    In the Lustre file system before 2.12.3, mdt_object_remote in the mdt module has a NULL pointer dereference and panic due to the lack of validation for specific fields of packets sent by a client.

  • CVE-2019-20423HigJan 27, 2020
    risk 0.49cvss 7.5epss 0.02

    In the Lustre file system before 2.12.3, the ptlrpc module has a buffer overflow and panic due to the lack of validation for specific fields of packets sent by a client. The function target_handle_connect() mishandles a certain size value when a client connects to a server,…

  • CVE-2019-20421HigJan 27, 2020
    risk 0.42cvss 7.5epss 0.04

    In Jp2Image::readMetadata() in jp2image.cpp in Exiv2 0.27.2, an input file can result in an infinite loop and hang, with high CPU consumption. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted file.

  • CVE-2020-7991HigJan 26, 2020
    risk 0.60cvss 8.8epss 0.03

    Adive Framework 2.0.8 has admin/config CSRF to change the Administrator password.

  • CVE-2020-7984HigJan 26, 2020
    risk 0.49cvss 7.5epss 0.02

    SolarWinds N-central before 12.1 SP1 HF5 and 12.2 before SP1 HF2 allows remote attackers to retrieve cleartext domain admin credentials from the Agent & Probe settings, and obtain other sensitive information. The attacker can use a customer ID to self register and read any…

  • CVE-2020-3142HigJan 26, 2020
    risk 0.49cvss 7.5epss 0.01

    A vulnerability in Cisco Webex Meetings Suite sites and Cisco Webex Meetings Online sites could allow an unauthenticated, remote attendee to join a password-protected meeting without providing the meeting password. The connection attempt must initiate from a Webex mobile…

  • CVE-2020-3115HigJan 26, 2020
    risk 0.57cvss 8.8epss 0.00

    A vulnerability in the CLI of the Cisco SD-WAN Solution vManage software could allow an authenticated, local attacker to elevate privileges to root-level privileges on the underlying operating system. The vulnerability is due to insufficient input validation. An attacker could…