VYPR

CVEs

37,997 total · page 598 of 760

  • CVE-2019-18184CriNov 27, 2019
    risk 0.64cvss 9.8epss 0.08

    Crestron DMC-STRO 1.0 devices allow remote command execution as root via shell metacharacters to the ping function.

  • CVE-2019-14896CriNov 27, 2019
    risk 0.64cvss 9.8epss 0.09

    A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join_existing function is called…

  • CVE-2011-1939CriNov 26, 2019
    risk 0.67cvss 9.8epss 0.04

    SQL injection vulnerability in Zend Framework 1.10.x before 1.10.9 and 1.11.x before 1.11.6 when using non-ASCII-compatible encodings in conjunction PDO_MySql in PHP before 5.3.6.

  • CVE-2011-1933CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.02

    SQL injection vulnerability in Jifty::DBI before 0.68.

  • CVE-2019-17392CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.01

    Progress Sitefinity 12.1 has a Weak Password Recovery Mechanism for a Forgotten Password because the HTTP Host header is mishandled.

  • CVE-2019-18580CriNov 26, 2019
    risk 0.65cvss 10.0epss 0.05

    Dell EMC Storage Monitoring and Reporting version 4.3.1 contains a Java RMI Deserialization of Untrusted Data vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by sending a crafted RMI request to execute arbitrary code on the target host.

  • CVE-2019-12526CriNov 26, 2019
    risk 0.65cvss 9.8epss 0.20

    An issue was discovered in Squid before 4.9. URN response handling in Squid suffers from a heap-based buffer overflow. When receiving data from a remote server in response to an URN request, Squid fails to ensure that the response can fit within the buffer. This leads to…

  • CVE-2019-12523CriNov 26, 2019
    risk 0.59cvss 9.1epss 0.04

    An issue was discovered in Squid before 4.9. When handling a URN request, a corresponding HTTP request is made. This HTTP request doesn't go through the access checks that incoming HTTP requests go through. This causes all access checks to be bypassed and allows access to…

  • CVE-2019-19307CriNov 26, 2019
    risk 0.67cvss 9.8epss 0.42

    An integer overflow in parse_mqtt in mongoose.c in Cesanta Mongoose 6.16 allows an attacker to achieve remote DoS (infinite loop), or possibly cause an out-of-bounds write, by sending a crafted MQTT protocol packet.

  • CVE-2019-14842CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.02

    Structured reply is a feature of the newstyle NBD protocol allowing the server to send a reply in chunks. A bounds check which was supposed to test for chunk offsets smaller than the beginning of the request did not work because of signed/unsigned confusion. If one of these…

  • CVE-2019-6675CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.01

    BIG-IP configurations using Active Directory, LDAP, or Client Certificate LDAP for management authentication with multiple servers are exposed to a vulnerability which allows an authentication bypass. This can result in a complete compromise of the system. This issue only…

  • CVE-2019-12489CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.06

    An issue was discovered on Fastweb Askey RTV1907VW 0.00.81_FW_200_Askey 2018-10-02 18:08:18 devices. By using the usb_remove service through an HTTP request, it is possible to inject and execute a command between two & characters in the mount parameter.

  • CVE-2011-4121CriNov 26, 2019
    risk 0.57cvss 9.8epss 0.03

    The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private…

  • CVE-2011-4120CriNov 26, 2019
    risk 0.57cvss 9.8epss 0.02

    Yubico PAM Module before 2.10 performed user authentication when 'use_first_pass' PAM configuration option was not used and the module was configured as 'sufficient' in the PAM configuration. A remote attacker could use this flaw to circumvent common authentication process and…

  • CVE-2019-15958CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.03

    A vulnerability in the REST API of Cisco Prime Infrastructure (PI) and Cisco Evolved Programmable Network Manager (EPNM) could allow an unauthenticated remote attacker to execute arbitrary code with root privileges on the underlying operating system. The vulnerability is due to…

  • CVE-2019-18250CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.02

    In all versions of ABB Power Generation Information Manager (PGIM) and Plant Connect, the affected product is vulnerable to authentication bypass, which may allow an attacker to remotely bypass authentication and extract credentials from the affected device.

  • CVE-2011-3584CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.01

    The TYPO3 Core wec_discussion extension before 2.1.1 is vulnerable to SQL Injection due to improper sanitation of user-supplied input.

  • CVE-2011-3583CriNov 26, 2019
    risk 0.64cvss 9.8epss 0.01

    It was found that Typo3 Core versions 4.5.0 - 4.5.5 uses prepared statements that, if the parameter values are not properly replaced, could lead to a SQL Injection vulnerability. This issue can only be exploited if two or more parameters are bound to the query and at least two…

  • CVE-2019-19250CriNov 25, 2019
    risk 0.64cvss 9.8epss 0.01

    OpenTrade before 2019-11-23 allows SQL injection, related to server/modules/api/v1.js and server/utils.js.

  • CVE-2019-19249CriNov 25, 2019
    risk 0.57cvss 9.8epss 0.01

    Controllers/InvitationsController.cs in QueryTree before 3.0.99-beta mishandles invitations.

  • CVE-2019-18374CriNov 25, 2019
    risk 0.64cvss 9.8epss 0.02

    Symantec Critical System Protection (CSP), versions 8.0, 8.0 HF1 & 8.0 MP1, may be susceptible to an authentication bypass vulnerability, which is a type of issue that can potentially allow a threat actor to circumvent existing authentication controls.

  • CVE-2019-5870CriNov 25, 2019
    risk 0.63cvss 9.6epss 0.01

    Use after free in media in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.

  • CVE-2019-5866CriNov 25, 2019
    risk 0.64cvss 9.8epss 0.01

    Out of bounds memory access in JavaScript in Google Chrome prior to 75.0.3770.142 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

  • CVE-2019-5850CriNov 25, 2019
    risk 0.62cvss 9.6epss 0.01

    Use after free in offline mode in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

  • CVE-2012-5582CriNov 25, 2019
    risk 0.57cvss 9.8epss 0.02

    opendnssec misuses libcurl API

  • CVE-2019-18622CriNov 22, 2019
    risk 0.57cvss 9.8epss 0.02

    An issue was discovered in phpMyAdmin before 4.9.2. A crafted database/table name can be used to trigger a SQL injection attack through the designer feature.

  • CVE-2019-13566CriNov 22, 2019
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in the ROS communications-related packages (aka ros_comm or ros-melodic-ros-comm) through 1.14.3. A buffer overflow allows attackers to cause a denial of service and possibly execute arbitrary code via an IP address with a long hostname.

  • CVE-2014-6311CriNov 22, 2019
    risk 0.64cvss 9.8epss 0.02

    generate_doygen.pl in ace before 6.2.7+dfsg-2 creates predictable file names in the /tmp directory which allows attackers to gain elevated privileges.

  • CVE-2014-6310CriNov 22, 2019
    risk 0.64cvss 9.8epss 0.05

    Buffer overflow in CHICKEN 4.9.0 and 4.9.0.1 may allow remote attackers to execute arbitrary code via the 'select' function.

  • CVE-2014-3585CriNov 22, 2019
    risk 0.64cvss 9.8epss 0.01

    redhat-upgrade-tool: Does not check GPG signatures when upgrading versions

  • CVE-2019-18933CriNov 21, 2019
    risk 0.57cvss 9.8epss 0.01

    In Zulip Server versions from 1.7.0 to before 2.0.7, a bug in the new user signup process meant that users who registered their account using social authentication (e.g., GitHub or Google SSO) in an organization that also allows password authentication could have their personal…

  • CVE-2019-18889CriNov 21, 2019
    risk 0.59cvss 9.8epss 0.33

    An issue was discovered in Symfony 3.4.0 through 3.4.34, 4.2.0 through 4.2.11, and 4.3.0 through 4.3.7. Serializing certain cache adapter interfaces could result in remote code injection. This is related to symfony/cache.

  • CVE-2019-11325CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in Symfony before 4.2.12 and 4.3.x before 4.3.8. The VarExport component incorrectly escapes strings, allowing some specially crafted ones to escalate to execution of arbitrary PHP code. This is related to symfony/var-exporter.

  • CVE-2019-19033CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.03

    Jalios JCMS 10 allows attackers to access any part of the website and the WebDAV server with administrative privileges via a backdoor account, by using any username and the hardcoded dev password.

  • CVE-2019-19006CriKEVNov 21, 2019
    risk 0.73cvss 9.8epss 0.56

    Sangoma FreePBX 115.0.16.26 and below, 14.0.13.11 and below, 13.0.197.13 and below have Incorrect Access Control.

  • CVE-2019-18349CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.02

    HotkeyP through 4.9 r96 allows privilege escalation in the privilege function in Commands.cpp.

  • CVE-2019-5509CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.02

    ONTAP Select Deploy administration utility versions 2.11.2 through 2.12.2 are susceptible to a code injection vulnerability which when successfully exploited could allow an unauthenticated remote attacker to enable and use a privileged user account.

  • CVE-2018-8879CriNov 21, 2019
    risk 0.65cvss 9.8epss 0.17

    Stack-based buffer overflow in Asuswrt-Merlin firmware for ASUS devices older than 384.4 and ASUS firmware before 3.0.0.4.382.50470 for devices allows remote attackers to execute arbitrary code by providing a long string to the blocking.asp page via a GET or POST request.…

  • CVE-2019-2303CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.01

    SNDCP module may access array out side its boundary when it receives malformed XID message. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009,…

  • CVE-2019-2289CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.01

    Lack of integrity check allows MODEM to accept any NAS messages which can result into authentication bypass of NAS in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2019-2271CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.01

    Buffer over read can happen while parsing downlink session management OTA messages if network sends un-intended values in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music,…

  • CVE-2019-2268CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.01

    Possible OOB read issue in P2P action frames while handling WLAN management frame in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8009, APQ8017, APQ8053,…

  • CVE-2019-16541CriNov 21, 2019
    risk 0.57cvss 9.9epss 0.02

    Jenkins JIRA Plugin 3.0.10 and earlier does not declare the correct (folder) scope for per-folder Jira site definitions, allowing users to select and use credentials with System scope.

  • CVE-2019-16340CriNov 21, 2019
    risk 0.65cvss 9.8epss 0.19

    Belkin Linksys Velop 1.1.8.192419 devices allows remote attackers to discover the recovery key via a direct request for the /sysinfo_json.cgi URI.

  • CVE-2019-10627CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.01

    Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and PDF printers that use IPS versions prior to 2019.2 in PostScript and PDF…

  • CVE-2014-3700CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.03

    eDeploy through at least 2014-10-14 has remote code execution due to eval() of untrusted data

  • CVE-2012-3460CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.01

    cumin: At installation postgresql database user created without password

  • CVE-2013-7171CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.06

    Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp directory which could allow remote attackers to execute arbitrary code with root privileges.

  • CVE-2015-3166CriNov 20, 2019
    risk 0.57cvss 9.8epss 0.05

    The snprintf implementation in PostgreSQL before 9.0.20, 9.1.x before 9.1.16, 9.2.x before 9.2.11, 9.3.x before 9.3.7, and 9.4.x before 9.4.2 does not properly handle system-call errors, which allows attackers to obtain sensitive information or have other unspecified impact via…

  • CVE-2013-2093CriNov 20, 2019
    risk 0.57cvss 9.8epss 0.05

    Dolibarr ERP/CRM 3.3.1 does not properly validate user input in viewimage.php and barcode.lib.php which allows remote attackers to execute arbitrary commands.