VYPR

CVEs

101,977 total · page 1545 of 2,040

  • CVE-2019-20004HigJan 5, 2020
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered on Intelbras IWR 3000N 1.8.7 devices. When the administrator password is changed from a certain client IP address, administrative authorization remains available to any client at that IP address, leading to complete control of the router.

  • CVE-2019-20337HigJan 5, 2020
    risk 0.47cvss 7.2epss 0.01

    In PHP Scripts Mall advanced-real-estate-script 4.0.9, the news_edit.php news_id parameter is vulnerable to SQL Injection.

  • CVE-2019-19911HigJan 5, 2020
    risk 0.42cvss 7.5epss 0.02

    There is a DoS vulnerability in Pillow before 6.2.2 caused by FpxImagePlugin.py calling the range function on an unvalidated 32-bit integer if the number of bands is large. On Windows running 32-bit Python, this results in an OverflowError or MemoryError due to the 2 GB limit.…

  • CVE-2019-19629HigJan 5, 2020
    risk 0.49cvss 7.5epss 0.01

    In GitLab EE 10.5 through 12.5.3, 12.4.5, and 12.3.8, when transferring a public project to a private group, private code would be disclosed via the Group Search API provided by the Elasticsearch integration.

  • CVE-2019-19314HigJan 5, 2020
    risk 0.42cvss 7.5epss 0.01

    GitLab EE 8.4 through 12.5, 12.4.3, and 12.3.6 stored several tokens in plaintext.

  • CVE-2019-19313HigJan 5, 2020
    risk 0.42cvss 7.5epss 0.01

    GitLab EE 12.3 through 12.5, 12.4.3, and 12.3.6 allows Denial of Service. Certain characters were making it impossible to create, edit, or view issues and commits.

  • CVE-2020-5496HigJan 3, 2020
    risk 0.57cvss 8.8epss 0.02

    FontForge 20190801 has a heap-based buffer overflow in the Type2NotDefSplines() function in splinesave.c.

  • CVE-2019-19959HigJan 3, 2020
    risk 0.00cvss 7.5epss 0.03

    ext/misc/zipfile.c in SQLite 3.30.1 mishandles certain uses of INSERT INTO in situations involving embedded '\0' characters in filenames, leading to a memory-management error that can be detected by (for example) valgrind.

  • CVE-2020-5395HigJan 3, 2020
    risk 0.57cvss 8.8epss 0.02

    FontForge 20190801 has a use-after-free in SFD_GetFontMetaData in sfd.c.

  • CVE-2014-5140HigJan 3, 2020
    risk 0.53cvss 8.8epss 0.03

    The bindReplace function in the query factory in includes/classes/database.php in Loaded Commerce 7 does not properly handle : (colon) characters, which allows remote authenticated users to conduct SQL injection attacks via the First name and Last name fields in the address book.

  • CVE-2012-5693HigJan 3, 2020
    risk 0.57cvss 8.8epss 0.02

    Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the ipAddressTB parameter to (1) remoteAttack.pl or (2) guessPassword.pl in frameworkgui/; the filename parameter to (3) CSAttack.pl or…

  • CVE-2019-11993HigJan 3, 2020
    risk 0.49cvss 7.5epss 0.02

    A security vulnerability has been identified in HPE SimpliVity 380 Gen 9, HPE SimpliVity 380 Gen 10, HPE SimpliVity 380 Gen 10 G, HPE SimpliVity 2600 Gen 10, SimpliVity OmniCube, SimpliVity OmniStack for Cisco, SimpliVity OmniStack for Lenovo and SimpliVity OmniStack for Dell…

  • CVE-2019-5064HigJan 3, 2020
    risk 0.58cvss 8.8epss 0.11

    An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV, before version 4.2.0. A specially crafted JSON file can cause a buffer overflow, resulting in multiple heap corruptions and potentially code execution. An attacker…

  • CVE-2019-5063HigJan 3, 2020
    risk 0.59cvss 8.8epss 0.21

    An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV 4.1.0. A specially crafted XML file can cause a buffer overflow, resulting in multiple heap corruptions and potential code execution. An attacker can provide a…

  • CVE-2019-19261HigJan 3, 2020
    risk 0.57cvss 8.8epss 0.01

    GitLab Enterprise Edition (EE) 6.7 and later through 12.5 allows SSRF.

  • CVE-2020-1871HigJan 3, 2020
    risk 0.53cvss 8.2epss 0.01

    USG9500 with software of V500R001C30SPC100; V500R001C30SPC200; V500R001C30SPC600; V500R001C60SPC500; V500R005C00SPC100; V500R005C00SPC200 have an improper credentials management vulnerability. The software does not properly manage certain credentials. Successful exploit could…

  • CVE-2019-5304HigJan 3, 2020
    risk 0.49cvss 7.5epss 0.01

    Some Huawei products have a buffer error vulnerability. An unauthenticated, remote attacker could send specific MPLS Echo Request messages to the target products. Due to insufficient input validation of some parameters in the messages, successful exploit may cause the device to…

  • CVE-2020-5313HigJan 3, 2020
    risk 0.39cvss 7.1epss 0.03

    libImaging/FliDecode.c in Pillow before 6.2.2 has an FLI buffer overflow.

  • CVE-2020-5310HigJan 3, 2020
    risk 0.50cvss 8.8epss 0.02

    libImaging/TiffDecode.c in Pillow before 6.2.2 has a TIFF decoding integer overflow, related to realloc.

  • CVE-2019-20329HigJan 3, 2020
    risk 0.53cvss 8.1epss 0.01

    OpenLambda 2019-09-10 allows DNS rebinding attacks against the OL server for the REST API on TCP port 5000.

  • CVE-2014-8182HigJan 2, 2020
    risk 0.49cvss 7.5epss 0.03

    An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash the service with crafted DNS responses.

  • CVE-2013-3939HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    xnview.exe in XnView before 2.13 does not properly handle RLE strip lengths during processing of RGB files, which allows remote attackers to execute arbitrary code via the RLE strip size field in a RGB file, which leads to an unexpected sign extension error and a heap-based…

  • CVE-2013-3937HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    Heap-based buffer overflow in xnview.exe in XnView before 2.13 allows remote attackers to execute arbitrary code via the biBitCount field in a BMP file.

  • CVE-2013-3932HigJan 2, 2020
    risk 0.57cvss 8.8epss 0.02

    SQL injection vulnerability in the Jomres (com_jomres) component before 7.3.1 for Joomla! allows remote authenticated users with the "Business Manager" permission to execute arbitrary SQL commands via the id parameter in an editProfile action to administrator/index.php.

  • CVE-2013-3247HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    Heap-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted RLE compressed layer in an XCF file.

  • CVE-2013-3246HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    Stack-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted image layer in an XCF file.

  • CVE-2013-3946HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    Heap-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a levels header.

  • CVE-2013-3945HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    The MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a nband tag.

  • CVE-2013-3944HigJan 2, 2020
    risk 0.53cvss 7.8epss 0.28

    Stack-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via an IMAGE tag.

  • CVE-2010-3782HigJan 2, 2020
    risk 0.57cvss 8.8epss 0.01

    obs-server before 1.7.7 allows logins by 'unconfirmed' accounts due to a bug in the REST api implementation.

  • CVE-2013-3620HigJan 2, 2020
    risk 0.49cvss 7.5epss 0.04

    Hardcoded WSMan credentials in Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before 3.15 (SMT_X9_315) and firmware for Supermicro X8 generation motherboards before SMT X8 312.

  • CVE-2013-3619HigJan 2, 2020
    risk 0.56cvss 8.1epss 0.10

    Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before SMT_X9_317 and firmware for Supermicro X8 generation motherboards before SMT X8 312 contain harcoded private encryption keys for the (1) Lighttpd web server SSL…

  • CVE-2013-4532HigJan 2, 2020
    risk 0.44cvss 7.8epss 0.00

    Qemu 1.1.2+dfsg to 2.1+dfsg suffers from a buffer overrun which could potentially result in arbitrary code execution on the host with the privileges of the QEMU process.

  • CVE-2019-20219HigJan 2, 2020
    risk 0.57cvss 8.8epss 0.01

    ngiflib 0.4 has a heap-based buffer over-read in GifIndexToTrueColor in ngiflib.c.

  • CVE-2019-10775HigJan 2, 2020
    risk 0.49cvss 7.5epss 0.01

    ecstatic have a denial of service vulnerability. Successful exploitation could lead to crash of an application.

  • CVE-2013-3935HigJan 2, 2020
    risk 0.57cvss 8.8epss 0.01

    Cross-site request forgery (CSRF) vulnerability in Opsview before 4.4.1 and Opsview Core before 20130522 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via unspecified vectors.

  • CVE-2020-5179HigJan 2, 2020
    risk 0.47cvss 7.2epss 0.03

    Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to execute arbitrary OS commands by navigating to the Diagnostics Ping page and entering shell metacharacters in the Target IP address field. (In some cases, authentication can be achieved with the…

  • CVE-2019-20218HigJan 2, 2020
    risk 0.00cvss 7.5epss 0.04

    selectExpander in select.c in SQLite 3.30.1 proceeds with WITH stack unwinding even after a parsing error.

  • CVE-2019-20213HigJan 2, 2020
    risk 0.49cvss 7.5epss 0.02

    D-Link DIR-859 routers before v1.07b03_beta allow Unauthenticated Information Disclosure via the AUTHORIZED_GROUP=1%0a value, as demonstrated by vpnconfig.php.

  • CVE-2019-20205HigJan 2, 2020
    risk 0.57cvss 8.8epss 0.01

    libsixel 1.8.4 has an integer overflow in sixel_frame_resize in frame.c.

  • CVE-2015-5591HigDec 31, 2019
    risk 0.50cvss 7.2epss 0.02

    SQL injection vulnerability in Zenphoto before 1.4.9 allow remote administrators to execute arbitrary SQL commands.

  • CVE-2019-18568HigDec 31, 2019
    risk 0.57cvss 8.8epss 0.01

    Avira Free Antivirus 15.0.1907.1514 is prone to a local privilege escalation through the execution of kernel code from a restricted user.

  • CVE-2019-20197HigDec 31, 2019
    risk 0.59cvss 8.8epss 0.22

    In Nagios XI 5.6.9, an authenticated user is able to execute arbitrary OS commands via shell metacharacters in the id parameter to schedulereport.php, in the context of the web-server user account.

  • CVE-2013-4357HigDec 31, 2019
    risk 0.49cvss 7.5epss 0.03

    The eglibc package before 2.14 incorrectly handled the getaddrinfo() function. An attacker could use this issue to cause a denial of service.

  • CVE-2013-4161HigDec 31, 2019
    risk 0.51cvss 7.8epss 0.00

    gksu-polkit-0.0.3-6.fc18 was reported as fixing the issue in CVE-2012-5617 but the patch was improperly applied and it did not fixed the security issue.

  • CVE-2019-9668HigDec 31, 2019
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in rovinbhandari FTP through 2012-03-28. receive_file in file_transfer_functions.c allows remote attackers to cause a denial of service (daemon crash) via a 0xffff datalen field value.

  • CVE-2019-9197HigDec 31, 2019
    risk 0.57cvss 8.8epss 0.04

    The com.unity3d.kharma protocol handler in Unity Editor 2018.3 allows remote attackers to execute arbitrary code.

  • CVE-2019-7751HigDec 31, 2019
    risk 0.53cvss 7.5epss 0.14

    A directory traversal and local file inclusion vulnerability in FPProducerInternetServer.exe in Ricoh MarcomCentral, formerly PTI Marketing, FusionPro VDP before 10.0 allows a remote attacker to list or enumerate sensitive contents of files. Furthermore, this could allow for…

  • CVE-2018-19834HigDec 31, 2019
    risk 0.49cvss 7.5epss 0.01

    The quaker function of a smart contract implementation for BOMBBA (BOMB), an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function does not check the caller's identity.

  • CVE-2018-19833HigDec 31, 2019
    risk 0.49cvss 7.5epss 0.01

    The owned function of a smart contract implementation for DDQ, an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function does not check the caller's identity.