VYPR

CVEs

37,997 total · page 600 of 760

  • CVE-2013-3367CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.03

    Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3.

  • CVE-2010-4533CriNov 13, 2019
    risk 0.57cvss 9.8epss 0.01

    offlineimap before 6.3.4 added support for SSL server certificate validation but it is still possible to use SSL v2 protocol, which is a flawed protocol with multiple security deficiencies.

  • CVE-2019-2205CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.03

    In ProxyResolverV8::SetPacScript of proxy_resolver_v8.cc, there is a possible memory corruption due to a use after free. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2019-2204CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.01

    In FindSharedFunctionInfo of objects.cc, there is a possible out of bounds read due to a mistake in AST traversal. This could lead to remote code execution in the pacprocessor with no additional execution privileges needed. User interaction is not needed for exploitation.…

  • CVE-2019-2036CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.02

    In okToConnect of HidHostService.java, there is a possible permission bypass due to an incorrect state check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2013-4657CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.02

    Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service.

  • CVE-2019-16948CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.01

    An SSRF issue was discovered in Enghouse Web Chat 6.1.300.31. In any POST request, one can replace the port number at WebServiceLocation=http://localhost:8085/UCWebServices/ with a range of ports to determine what is visible on the internal network (as opposed to what general…

  • CVE-2013-4654CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.03

    Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND..

  • CVE-2019-18839CriNov 13, 2019
    risk 0.59cvss 9.0epss 0.05

    FUDForum 3.0.9 is vulnerable to Stored XSS via the nlogin parameter. This may result in remote code execution. An attacker can use a user account to fully compromise the system using a POST request. When the admin visits the user information, the payload will execute. This will…

  • CVE-2013-4656CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.02

    Symlink Traversal vulnerability in ASUS RT-AC66U and RT-N56U due to misconfiguration in the SMB service.

  • CVE-2019-6188CriNov 12, 2019
    risk 0.64cvss 9.8epss 0.01

    The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T460p, BIOS versions up to R07ET90W, and T470p, BIOS versions up to R0FET50W, which may allow for unauthorized access.

  • CVE-2019-17330CriNov 12, 2019
    risk 0.62cvss 9.6epss 0.01

    The Web server component of TIBCO Software Inc.'s TIBCO EBX contains multiple vulnerabilities that theoretically allow authenticated users to perform stored cross-site scripting (XSS) attacks, and unauthenticated users to perform reflected cross-site scripting attacks. Affected…

  • CVE-2010-3438CriNov 12, 2019
    risk 0.64cvss 9.8epss 0.02

    libpoe-component-irc-perl before v6.32 does not remove carriage returns and line feeds. This can be used to execute arbitrary IRC commands by passing an argument such as "some text\rQUIT" to the 'privmsg' handler, which would cause the client to disconnect from the server.

  • CVE-2019-1449CriNov 12, 2019
    risk 0.64cvss 9.8epss 0.07

    A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially crafted file, which could lead to a standard user, any AppContainer sandbox, and Office LPAC Protected View to escalate privileges to SYSTEM.To exploit this…

  • CVE-2019-1384CriNov 12, 2019
    risk 0.65cvss 9.9epss 0.08

    A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messages.To exploit this vulnerability, an attacker could send a specially crafted authentication request, aka 'Microsoft Windows Security Feature Bypass…

  • CVE-2019-1373CriNov 12, 2019
    risk 0.65cvss 9.8epss 0.22

    A remote code execution vulnerability exists in Microsoft Exchange through the deserialization of metadata via PowerShell, aka 'Microsoft Exchange Remote Code Execution Vulnerability'.

  • CVE-2019-12719CriNov 12, 2019
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Picture_Manage_mvc.aspx in AUO SunVeillance Monitoring System before v1.1.9e. There is an incorrect access control vulnerability that can allow an unauthenticated user to upload files via a modified authority parameter.

  • CVE-2019-0721CriNov 12, 2019
    risk 0.60cvss 9.1epss 0.12

    A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0719.

  • CVE-2019-0719CriNov 12, 2019
    risk 0.60cvss 9.1epss 0.11

    A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0721.

  • CVE-2019-18925CriNov 12, 2019
    risk 0.64cvss 9.8epss 0.01

    Systematic IRIS WebForms 5.4 and its functionalities can be accessed and used without any form of authentication.

  • CVE-2019-18655CriNov 12, 2019
    risk 0.65cvss 9.8epss 0.15

    File Sharing Wizard version 1.5.0 build 2008 is affected by a Structured Exception Handler based buffer overflow vulnerability. An unauthenticated attacker is able to perform remote command execution and obtain a command shell by sending a HTTP GET request including the…

  • CVE-2019-18658CriNov 12, 2019
    risk 0.64cvss 9.8epss 0.02

    In Helm 2.x before 2.15.2, commands that deal with loading a chart as a directory or packaging a chart provide an opportunity for a maliciously designed chart to include sensitive content such as /etc/passwd, or to execute a denial of service (DoS) via a special file such as…

  • CVE-2011-2936CriNov 12, 2019
    risk 0.64cvss 9.8epss 0.02

    Elgg through 1.7.10 has a SQL injection vulnerability

  • CVE-2011-2897CriNov 12, 2019
    risk 0.64cvss 9.8epss 0.02

    gdk-pixbuf through 2.31.1 has GIF loader buffer overflow when initializing decompression tables due to an input validation flaw

  • CVE-2019-18873CriNov 12, 2019
    risk 0.62cvss 9.0epss 0.08

    FUDForum 3.0.9 is vulnerable to Stored XSS via the User-Agent HTTP header. This may result in remote code execution. An attacker can use a user account to fully compromise the system via a GET request. When the admin visits user information under "User Manager" in the control…

  • CVE-2019-18852CriNov 11, 2019
    risk 0.64cvss 9.8epss 0.02

    Certain D-Link devices have a hardcoded Alphanetworks user account with TELNET access because of /etc/config/image_sign or /etc/alpha_config/image_sign. This affects DIR-600 B1 V2.01 for WW, DIR-890L A1 v1.03, DIR-615 J1 v100 (for DCN), DIR-645 A1 v1.03, DIR-815 A1 v1.01,…

  • CVE-2019-18623CriNov 8, 2019
    risk 0.64cvss 9.8epss 0.01

    Escalation of privileges in EnergyCAP 7 through 7.5.6 allows an attacker to access data. If an unauthenticated user clicks on a link on the public dashboard, the resource opens in EnergyCAP with access rights matching the user who created the dashboard.

  • CVE-2019-18835CriNov 8, 2019
    risk 0.57cvss 9.8epss 0.01

    Matrix Synapse before 1.5.0 mishandles signature checking on some federation APIs. Events sent over /send_join, /send_leave, and /invite may not be correctly signed, or may not come from the expected servers.

  • CVE-2008-7291CriNov 8, 2019
    risk 0.64cvss 9.8epss 0.01

    gri before 2.12.18 generates temporary files in an insecure way.

  • CVE-2007-6745CriNov 7, 2019
    risk 0.64cvss 9.8epss 0.02

    clamav 0.91.2 suffers from a floating point exception when using ScanOLE2.

  • CVE-2019-18818CriNov 7, 2019
    risk 0.75cvss 9.8epss 0.98

    strapi before 3.0.0-beta.17.5 mishandles password resets within packages/strapi-admin/controllers/Auth.js and packages/strapi-plugin-users-permissions/controllers/Auth.js.

  • CVE-2013-1751CriNov 7, 2019
    risk 0.64cvss 9.8epss 0.05

    TWiki before 5.1.4 allows remote attackers to execute arbitrary shell commands by sending a crafted '%MAKETEXT{}%' parameter value containing Perl backtick characters.

  • CVE-2007-3915CriNov 7, 2019
    risk 0.59cvss 9.1epss 0.01

    Mondo 2.24 has insecure handling of temporary files.

  • CVE-2010-2476CriNov 7, 2019
    risk 0.64cvss 9.8epss 0.02

    syscp 1.4.2.1 allows attackers to add arbitrary paths via the documentroot of a domain by appending a colon to it and setting the open basedir path to use that domain documentroot.

  • CVE-2010-2447CriNov 7, 2019
    risk 0.57cvss 9.8epss 0.02

    gitolite before 1.4.1 does not filter src/ or hooks/ from path names.

  • CVE-2019-11996CriNov 7, 2019
    risk 0.64cvss 9.8epss 0.01

    Potential security vulnerabilities have been identified with HPE Nimble Storage systems in multi array group configurations. The vulnerabilities could be exploited by an attacker to gain elevated privileges on the array. The following NimbleOS versions, and all subsequent…

  • CVE-2011-2337CriNov 7, 2019
    risk 0.64cvss 9.8epss 0.01

    A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.

  • CVE-2019-18814CriNov 7, 2019
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in aa_audit_rule_init() in security/apparmor/audit.c.

  • CVE-2019-16872CriNov 7, 2019
    risk 0.57cvss 9.9epss 0.01

    Portainer before 1.22.1 has Incorrect Access Control (issue 1 of 4).

  • CVE-2019-18805CriNov 7, 2019
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in net/ipv4/sysctl_net_ipv4.c in the Linux kernel before 5.0.11. There is a net/ipv4/tcp_input.c signed integer overflow in tcp_ack_update_rtt() when userspace writes a very large integer to /proc/sys/net/ipv4/tcp_min_rtt_wlen, leading to a denial of…

  • CVE-2019-12419CriNov 6, 2019
    risk 0.65cvss 9.8epss 0.14

    Apache CXF before 3.3.4 and 3.2.11 provides all of the components that are required to build a fully fledged OpenId Connect service. There is a vulnerability in the access token services, where it does not validate that the authenticated principal is equal to that of the…

  • CVE-2014-3180CriNov 6, 2019
    risk 0.59cvss 9.1epss 0.01

    In kernel/compat.c in the Linux kernel before 3.17, as used in Google Chrome OS and other products, there is a possible out-of-bounds read. restart_syscall uses uninitialized data when restarting compat_sys_nanosleep. NOTE: this is disputed because the code path is unreachable

  • CVE-2019-5644CriNov 6, 2019
    risk 0.65cvss 10.0epss 0.01

    Computing For Good's Basic Laboratory Information System (also known as C4G BLIS) version 3.5 and earlier suffers from an instance of CWE-284, "Improper Access Control." As a result, an unauthenticated user may alter several facets of a user account, including promoting any user…

  • CVE-2019-5617CriNov 6, 2019
    risk 0.65cvss 10.0epss 0.01

    Computing For Good's Basic Laboratory Information System (also known as C4G BLIS) version 3.4 and earlier suffers from an instance of CWE-284, "Improper Access Control." As a result, an unauthenticated user may change the password of any administrator-level user.

  • CVE-2019-2332CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while accessing the memory as payload size is not validated before access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150,…

  • CVE-2019-2331CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.01

    Possible Integer overflow because of subtracting two integers without checking if the result would overflow or not in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2019-2325CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.01

    Out of boundary access due to token received from ADSP and is used without validation as an index into the array in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2019-2324CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.01

    When ADSP is compromised, the audio port index that`s returned from ADSP might be out of the valid range and leads to out of boundary access in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile,…

  • CVE-2019-2323CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.01

    Lack of check to ensure crypto engine data passed by user is initialized can result in bus error in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206,…

  • CVE-2019-2302CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.01

    While processing vendor command which contains corrupted channel count, an integer overflow occurs and finally will lead to heap overflow. in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…