VYPR

CVEs

37,995 total · page 606 of 760

  • CVE-2019-12811CriOct 7, 2019
    risk 0.64cvss 9.8epss 0.02

    ActiveX Control in MyBuilder before 6.2.2019.814 allow an attacker to execute arbitrary command via the ShellOpen method. This can be leveraged for code execution

  • CVE-2015-9452CriOct 7, 2019
    risk 0.64cvss 9.8epss 0.02

    The nex-forms-express-wp-form-builder plugin before 4.6.1 for WordPress has SQL injection via the wp-admin/admin.php?page=nex-forms-main nex_forms_Id parameter.

  • CVE-2015-9451CriOct 7, 2019
    risk 0.64cvss 9.8epss 0.02

    The plugmatter-optin-feature-box-lite plugin before 2.0.14 for WordPress has SQL injection via the wp-admin/admin-ajax.php?action=pmfb_mailchimp pmfb_tid parameter.

  • CVE-2015-9450CriOct 7, 2019
    risk 0.64cvss 9.8epss 0.02

    The plugmatter-optin-feature-box-lite plugin before 2.0.14 for WordPress has SQL injection via the wp-admin/admin-ajax.php?action=pmfb_cc pmfb_tid parameter.

  • CVE-2019-15751CriOct 7, 2019
    risk 0.64cvss 9.8epss 0.04

    An unrestricted file upload vulnerability in SITOS six Build v6.2.1 allows remote attackers to execute arbitrary code by uploading a SCORM file with an executable extension. This allows an unauthenticated attacker to upload a malicious file (containing PHP code to execute…

  • CVE-2019-15748CriOct 7, 2019
    risk 0.64cvss 9.8epss 0.02

    SITOS six Build v6.2.1 permits unauthorised users to upload and import a SCORM 2004 package by browsing directly to affected pages. An unauthenticated attacker could use the upload and import functionality to import a malicious SCORM package that includes a PHP file, which could…

  • CVE-2019-15746CriOct 7, 2019
    risk 0.64cvss 9.8epss 0.02

    SITOS six Build v6.2.1 allows an attacker to inject arbitrary PHP commands. As a result, an attacker can compromise the running server and execute system commands in the context of the web user.

  • CVE-2019-17269CriOct 7, 2019
    risk 0.64cvss 9.8epss 0.03

    Intellian Remote Access 3.18 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the Ping Test field.

  • CVE-2019-17267CriOct 7, 2019
    risk 0.57cvss 9.8epss 0.05

    A Polymorphic Typing issue was discovered in FasterXML jackson-databind before 2.9.10. It is related to net.sf.ehcache.hibernate.EhcacheJtaTransactionManagerLookup.

  • CVE-2019-17266CriOct 6, 2019
    risk 0.57cvss 9.8epss 0.03

    libsoup from versions 2.65.1 until 2.68.1 have a heap-based buffer over-read because soup_ntlm_parse_challenge() in soup-auth-ntlm.c does not properly check an NTLM message's length before proceeding with a memcpy.

  • CVE-2019-17240CriOct 6, 2019
    risk 0.70cvss 9.8epss 0.40

    bl-kernel/security.class.php in Bludit 3.9.2 allows attackers to bypass a brute-force protection mechanism by using many different forged X-Forwarded-For or Client-IP HTTP headers.

  • CVE-2019-17218CriOct 6, 2019
    risk 0.59cvss 9.1epss 0.01

    An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. By default, the communication to the web service is unencrypted via http. An attacker is able to intercept and sniff communication to the web service.

  • CVE-2019-17216CriOct 6, 2019
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. Password authentication uses MD5 to hash passwords. Cracking is possible with minimal effort.

  • CVE-2019-17215CriOct 6, 2019
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered on V-Zug Combi-Steam MSLQ devices before Ethernet R07 and before WLAN R05. There is no bruteforce protection (e.g., lockout) established. An attacker might be able to bruteforce the password to authenticate on the device.

  • CVE-2019-17206CriOct 5, 2019
    risk 0.57cvss 9.8epss 0.03

    Uncontrolled deserialization of a pickled object in models.py in Frost Ming rediswrapper (aka Redis Wrapper) before 0.3.0 allows attackers to execute arbitrary scripts.

  • CVE-2019-17197CriOct 5, 2019
    risk 0.64cvss 9.8epss 0.01

    OpenEMR through 5.0.2 has SQL Injection in the Lifestyle demographic filter criteria in library/clinical_rules.php that affects library/patient.inc.

  • CVE-2019-17192CriOct 5, 2019
    risk 0.64cvss 9.8epss 0.03

    The WebRTC component in the Signal Private Messenger application through 4.47.7 for Android processes videoconferencing RTP packets before a callee chooses to answer a call, which might make it easier for remote attackers to cause a denial of service or possibly have unspecified…

  • CVE-2019-17184CriOct 4, 2019
    risk 0.64cvss 9.8epss 0.02

    Xerox AtlaLink B8045/B8055/B8065/B8075/B8090 C8030/C8035/C8045/C8055/C8070 printers with software before 101.00x.089.22600 allow an attacker to gain privileges.

  • CVE-2019-16891CriOct 4, 2019
    risk 0.67cvss 9.8epss 0.45

    Liferay Portal CE 6.2.5 allows remote command execution because of deserialization of a JSON payload.

  • CVE-2019-17133CriOct 4, 2019
    risk 0.64cvss 9.8epss 0.07

    In the Linux kernel through 5.3.2, cfg80211_mgd_wext_giwessid in net/wireless/wext-sme.c does not reject a long SSID IE, leading to a Buffer Overflow.

  • CVE-2019-17132CriOct 4, 2019
    risk 0.68cvss 9.8epss 0.12

    vBulletin through 5.5.4 mishandles custom avatars.

  • CVE-2019-17113CriOct 4, 2019
    risk 0.64cvss 9.8epss 0.03

    In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_InstrumentName and ModPlug_SampleName in libopenmpt_modplug.c do not restrict the lengths of libmodplug output-buffer strings in the C API, leading to a buffer overflow.

  • CVE-2018-10105CriOct 3, 2019
    risk 0.64cvss 9.8epss 0.04

    tcpdump before 4.9.3 mishandles the printing of SMB data (issue 2 of 2).

  • CVE-2018-10103CriOct 3, 2019
    risk 0.64cvss 9.8epss 0.04

    tcpdump before 4.9.3 mishandles the printing of SMB data (issue 1 of 2).

  • CVE-2019-13957CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.01

    In Umbraco 7.3.8, there is SQL Injection in the backoffice/PageWApprove/PageWApproveApi/GetInpectSearch method via the nodeName parameter.

  • CVE-2019-12736CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.02

    JetBrains Ktor framework before 1.2.0-rc does not sanitize the username provided by the user for the LDAP protocol, leading to command injection.

  • CVE-2019-12630CriOct 2, 2019
    risk 0.69cvss 9.8epss 0.66

    A vulnerability in the Java deserialization function used by Cisco Security Manager could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. The vulnerability is due to insecure deserialization of user-supplied content by the affected…

  • CVE-2019-12157CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.02

    In JetBrains UpSource versions before 2018.2 build 1293, there is credential disclosure via RPC commands.

  • CVE-2019-11929CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.04

    Insufficient boundary checks when formatting numbers in number_format allows read/write access to out-of-bounds memory, potentially leading to remote code execution. This issue affects HHVM versions prior to 3.30.10, all versions between 4.0.0 and 4.8.5, all versions between…

  • CVE-2019-10212CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.02

    A flaw was found in, all under 2.0.20, in the Undertow DEBUG log for io.undertow.request.security. If enabled, an attacker could abuse this flaw to obtain the user's credentials from the log files.

  • CVE-2019-13658CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.03

    CA Network Flow Analysis 9.x and 10.0.x have a default credential vulnerability that can allow a remote attacker to execute arbitrary commands and compromise system security.

  • CVE-2019-13025CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.03

    Compal CH7465LG CH7465LG-NCIP-6.12.18.24-5p8-NOSH devices have Incorrect Access Control because of Improper Input Validation. The attacker can send a maliciously modified POST (HTTP) request containing shell commands, which will be executed on the device, to an backend API…

  • CVE-2019-14454CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.02

    SuiteCRM 7.11.x and 7.10.x before 7.11.8 and 7.10.20 is vulnerable to vertical privilege escalation.

  • CVE-2019-13335CriOct 2, 2019
    risk 0.64cvss 9.8epss 0.01

    SalesAgility SuiteCRM 7.10.x 7.10.19 and 7.11.x before and 7.11.7 has SSRF.

  • CVE-2019-17067CriOct 1, 2019
    risk 0.64cvss 9.8epss 0.02

    PuTTY before 0.73 on Windows improperly opens port-forwarding listening sockets, which allows attackers to listen on the same port to steal an incoming connection.

  • CVE-2019-16943CriOct 1, 2019
    risk 0.57cvss 9.8epss 0.05

    A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for a specific property) for an externally exposed JSON endpoint and the service has the p6spy (3.8.6) jar in the classpath, and an…

  • CVE-2019-16942CriOct 1, 2019
    risk 0.57cvss 9.8epss 0.06

    A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for a specific property) for an externally exposed JSON endpoint and the service has the commons-dbcp (1.4) jar in the classpath, and…

  • CVE-2019-10202CriOct 1, 2019
    risk 0.64cvss 9.8epss 0.05

    A series of deserialization vulnerabilities have been discovered in Codehaus 1.9.x implemented in EAP 7. This CVE fixes CVE-2017-17485, CVE-2017-7525, CVE-2017-15095, CVE-2018-5968, CVE-2018-7489, CVE-2018-1000873, CVE-2019-12086 reported for FasterXML jackson-databind by…

  • CVE-2019-15039CriOct 1, 2019
    risk 0.68cvss 9.8epss 0.13

    An issue was discovered in JetBrains TeamCity 2018.2.4. It had a possible remote code execution issue. This was fixed in TeamCity 2019.1.

  • CVE-2019-10431CriOct 1, 2019
    risk 0.58cvss 9.9epss 0.03

    A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.64 and earlier related to the handling of default parameter expressions in constructors allowed attackers to execute arbitrary code in sandboxed scripts.

  • CVE-2019-15940CriOct 1, 2019
    risk 0.64cvss 9.8epss 0.02

    Victure PC530 devices allow unauthenticated TELNET access as root.

  • CVE-2019-2294CriSep 30, 2019
    risk 0.64cvss 9.8epss 0.01

    Usage of hard-coded magic number for calculating heap guard bytes can allow users to corrupt heap blocks without heap algorithm knowledge in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT,…

  • CVE-2019-2252CriSep 30, 2019
    risk 0.64cvss 9.8epss 0.01

    Classic buffer overflow vulnerability while playing the specific video whose Decode picture buffer size is more than 16 in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2019-16932CriSep 30, 2019
    risk 0.68cvss 10.0epss 0.39

    A blind SSRF vulnerability exists in the Visualizer plugin before 3.3.1 for WordPress via wp-json/visualizer/v1/upload-data.

  • CVE-2019-10540CriSep 30, 2019
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow in WLAN NAN function due to lack of check of count value received in NAN availability attribute in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2019-10539CriSep 30, 2019
    risk 0.64cvss 9.8epss 0.01

    Possible buffer overflow issue due to lack of length check when parsing the extended cap IE header length in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice…

  • CVE-2019-10538CriSep 30, 2019
    risk 0.64cvss 9.8epss 0.01

    Lack of check of address range received from firmware response allows modem to respond arbitrary pages into its address range which can compromise HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice…

  • CVE-2019-10509CriSep 30, 2019
    risk 0.64cvss 9.8epss 0.01

    Device record of the pairing device used after free during ACL disconnection in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8909W,…

  • CVE-2019-17040CriSep 30, 2019
    risk 0.57cvss 9.8epss 0.02

    contrib/pmdb2diag/pmdb2diag.c in Rsyslog v8.1908.0 allows out-of-bounds access because the level length is mishandled.

  • CVE-2019-16999CriSep 30, 2019
    risk 0.64cvss 9.8epss 0.01

    CloudBoot through 2019-03-08 allows SQL Injection via a crafted Status field in JSON data to the api/osinstall/v1/device/getNumByStatus URI.