| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-15561 | Cri | 0.64 | 9.8 | 0.01 | Aug 26, 2019 | FlashLingo before 2019-06-12 allows SQL injection, related to flashlingo.js and db.js. | ||
| CVE-2019-15556 | Cri | 0.64 | 9.8 | 0.01 | Aug 26, 2019 | Pvanloon1983 social_network before 2019-07-03 allows SQL injection in includes/form_handlers/register_handler.php. | ||
| CVE-2019-15524 | Cri | 0.64 | 9.8 | 0.03 | Aug 26, 2019 | CSZ CMS 1.2.3 allows arbitrary file upload, as demonstrated by a .php file to admin/filemanager in the File Management Module, which leads to remote code execution by visiting a photo/upload/2019/ URI. | ||
| CVE-2019-15521 | Cri | 0.64 | 9.8 | 0.02 | Aug 26, 2019 | Spoon Library through 2014-02-06, as used in Fork CMS before 1.4.1 and other products, allows PHP object injection via a cookie containing an object. | ||
| CVE-2019-15304 | Cri | 0.59 | 9.1 | 0.03 | Aug 26, 2019 | Lierda Grill Temperature Monitor V1.00_50006 has a default password of admin for the admin account, which allows an attacker to cause a Denial of Service or Information Disclosure via the undocumented access-point configuration page located on the device. This wifi thermometer… | ||
| CVE-2019-15534 | Cri | 0.64 | 9.8 | 0.01 | Aug 26, 2019 | Raml-Module-Builder 26.4.0 allows SQL Injection in PostgresClient.update. | ||
| CVE-2019-6695 | Cri | 0.64 | 9.8 | 0.01 | Aug 23, 2019 | Lack of root file system integrity checking in Fortinet FortiManager VM application images of 6.2.0, 6.0.6 and below may allow an attacker to implant third-party programs by recreating the image through specific methods. | ||
| CVE-2019-6698 | Cri | 0.64 | 9.8 | 0.02 | Aug 23, 2019 | Use of Hard-coded Credentials vulnerability in FortiRecorder all versions below 2.7.4 may allow an unauthenticated attacker with knowledge of the aforementioned credentials and network access to FortiCameras to take control of those, provided they are managed by a FortiRecorder… | ||
| CVE-2019-1581 | Cri | 0.64 | 9.8 | 0.03 | Aug 23, 2019 | A remote code execution vulnerability in the PAN-OS SSH device management interface that can lead to unauthenticated remote users with network access to the SSH management interface gaining root access to PAN-OS. This issue affects PAN-OS 7.1 versions prior to 7.1.24-h1, 7.1.25;… | ||
| CVE-2019-1580 | Cri | 0.64 | 9.8 | 0.03 | Aug 23, 2019 | Memory corruption in PAN-OS 7.1.24 and earlier, PAN-OS 8.0.19 and earlier, PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier will allow a remote, unauthenticated user to craft a message to Secure Shell Daemon (SSHD) and corrupt arbitrary memory. | ||
| CVE-2019-15537 | Cri | 0.64 | 9.8 | 0.02 | Aug 23, 2019 | The proxystatistics module before 3.1.0 for SimpleSAMLphp allows SQL Injection in lib/Auth/Process/DatabaseCommand.php. | ||
| CVE-2019-15536 | Cri | 0.64 | 9.8 | 0.01 | Aug 23, 2019 | The Acclaim block plugin before 2019-06-26 for Moodle allows SQL Injection via delete_records. | ||
| CVE-2019-15535 | Cri | 0.64 | 9.8 | 0.02 | Aug 23, 2019 | Tasking Manager before 3.4.0 allows SQL Injection via custom SQL. | ||
| CVE-2019-10750 | Cri | 0.64 | 9.8 | 0.02 | Aug 23, 2019 | deeply is vulnerable to Prototype Pollution in versions before 3.1.0. The function assign-deep could be tricked into adding or modifying properties of Object.prototype using using a _proto_ payload. | ||
| CVE-2019-10747 | Cri | 0.57 | 9.8 | 0.02 | Aug 23, 2019 | set-value is vulnerable to Prototype Pollution in versions lower than 3.0.1. The function mixin-deep could be tricked into adding or modifying properties of Object.prototype using any of the constructor, prototype and _proto_ payloads. | ||
| CVE-2019-10746 | Cri | 0.57 | 9.8 | 0.04 | Aug 23, 2019 | mixin-deep is vulnerable to Prototype Pollution in versions before 1.3.2 and version 2.0.0. The function mixin-deep could be tricked into adding or modifying properties of Object.prototype using a constructor payload. | ||
| CVE-2019-15519 | Cri | 0.64 | 9.8 | 0.03 | Aug 23, 2019 | Power-Response before 2019-02-02 allows directory traversal (up to the application's main directory) via a plugin. | ||
| CVE-2019-15494 | Cri | 0.64 | 9.8 | 0.02 | Aug 23, 2019 | openITCOCKPIT before 3.7.1 allows SSRF, aka RVID 5-445b21. | ||
| CVE-2019-15490 | Cri | 0.64 | 9.8 | 0.02 | Aug 23, 2019 | openITCOCKPIT before 3.7.1 allows code injection, aka RVID 1-445b21. | ||
| CVE-2019-15505 | Cri | 0.64 | 9.8 | 0.08 | Aug 23, 2019 | drivers/media/usb/dvb-usb/technisat-usb2.c in the Linux kernel through 5.2.9 has an out-of-bounds read via crafted USB device traffic (which may be remote via usbip or usbredir). | ||
| CVE-2019-15504 | Cri | 0.64 | 9.8 | 0.04 | Aug 23, 2019 | drivers/net/wireless/rsi/rsi_91x_usb.c in the Linux kernel through 5.2.9 has a Double Free via crafted USB device traffic (which may be remote via usbip or usbredir). | ||
| CVE-2018-20987 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The newsletters-lite plugin before 4.6.8.6 for WordPress has PHP object injection. | ||
| CVE-2015-9334 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The email-newsletter plugin through 20.15 for WordPress has SQL injection. | ||
| CVE-2013-7483 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The slidedeck2 plugin before 2.3.5 for WordPress has file inclusion. | ||
| CVE-2017-18586 | Cri | 0.52 | 9.1 | 0.03 | Aug 22, 2019 | The insert-pages plugin before 3.2.4 for WordPress has directory traversal via custom template paths. | ||
| CVE-2016-10930 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The wp-support-plus-responsive-ticket-system plugin before 7.1.0 for WordPress has insecure direct object reference via a ticket number. | ||
| CVE-2014-10390 | Cri | 0.59 | 9.1 | 0.03 | Aug 22, 2019 | The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has directory traversal. | ||
| CVE-2014-10389 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has incorrect authentication. | ||
| CVE-2014-10387 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has SQL injection. | ||
| CVE-2019-11031 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | Mirasys VMS before V7.6.1 and 8.x before V8.3.2 mishandles the auto-update feature of IDVRUpdateService2 in DVRServer.exe. An attacker can upload files with a Setup-Files action, and then execute these files with SYSTEM privileges. | ||
| CVE-2019-11030 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | Mirasys VMS before V7.6.1 and 8.x before V8.3.2 mishandles the Mirasys.Common.Utils.Security.DataCrypt method in Common.dll in AuditTrailService in SMServer.exe. This method triggers insecure deserialization within the .NET garbage collector, in which a gadget (contained in a… | ||
| CVE-2019-15322 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The shortcode-factory plugin before 2.8 for WordPress has Local File Inclusion. | ||
| CVE-2019-15321 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The option-tree plugin before 2.7.3 for WordPress has Object Injection because serialized classes are mishandled. | ||
| CVE-2019-15320 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The option-tree plugin before 2.7.3 for WordPress has Object Injection because the + character is mishandled. | ||
| CVE-2019-15319 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The option-tree plugin before 2.7.0 for WordPress has Object Injection by leveraging a valid nonce. | ||
| CVE-2018-20985 | Cri | 0.64 | 9.8 | 0.08 | Aug 22, 2019 | The wp-payeezy-pay plugin before 2.98 for WordPress has local file inclusion in pay.php, donate.php, donate-rec, and pay-rec. | ||
| CVE-2018-20984 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The patreon-connect plugin before 1.2.2 for WordPress has Object Injection. | ||
| CVE-2017-18583 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The post-pay-counter plugin before 2.731 for WordPress has PHP Object Injection. | ||
| CVE-2017-18580 | Cri | 0.65 | 9.8 | 0.12 | Aug 22, 2019 | The shortcodes-ultimate plugin before 5.0.1 for WordPress has remote code execution via a filter in a meta, post, or user shortcode. | ||
| CVE-2016-10927 | Cri | 0.65 | 10.0 | 0.02 | Aug 22, 2019 | The nelio-ab-testing plugin before 4.5.11 for WordPress has SSRF in ajax/iesupport.php. | ||
| CVE-2016-10926 | Cri | 0.65 | 10.0 | 0.02 | Aug 22, 2019 | The nelio-ab-testing plugin before 4.5.9 for WordPress has SSRF in ajax/iesupport.php. | ||
| CVE-2016-10923 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The woocommerce-store-toolkit plugin before 1.5.8 for WordPress has privilege escalation. | ||
| CVE-2016-10922 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The woocommerce-store-toolkit plugin before 1.5.7 for WordPress has privilege escalation. | ||
| CVE-2014-10384 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The memphis-documents-library plugin before 3.0 for WordPress has Local File Inclusion. | ||
| CVE-2014-10383 | Cri | 0.64 | 9.8 | 0.03 | Aug 22, 2019 | The memphis-documents-library plugin before 3.0 for WordPress has Remote File Inclusion. | ||
| CVE-2019-15318 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The yikes-inc-easy-mailchimp-extender plugin before 6.5.3 for WordPress has code injection via the admin input field. | ||
| CVE-2018-20981 | Cri | 0.59 | 9.1 | 0.02 | Aug 22, 2019 | The ninja-forms plugin before 3.3.9 for WordPress has insufficient restrictions on submission-data retrieval during Export Personal Data requests. | ||
| CVE-2018-20979 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The contact-form-7 plugin before 5.0.4 for WordPress has privilege escalation because of capability_type mishandling in register_post_type. | ||
| CVE-2017-18573 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The simple-login-log plugin before 1.1.2 for WordPress has SQL injection. | ||
| CVE-2017-18571 | Cri | 0.64 | 9.8 | 0.02 | Aug 22, 2019 | The search-everything plugin before 8.1.7 for WordPress has SQL injection related to WordPress 4.7.x, a different vulnerability than CVE-2014-2316. |
- risk 0.64cvss 9.8epss 0.01
FlashLingo before 2019-06-12 allows SQL injection, related to flashlingo.js and db.js.
- risk 0.64cvss 9.8epss 0.01
Pvanloon1983 social_network before 2019-07-03 allows SQL injection in includes/form_handlers/register_handler.php.
- risk 0.64cvss 9.8epss 0.03
CSZ CMS 1.2.3 allows arbitrary file upload, as demonstrated by a .php file to admin/filemanager in the File Management Module, which leads to remote code execution by visiting a photo/upload/2019/ URI.
- risk 0.64cvss 9.8epss 0.02
Spoon Library through 2014-02-06, as used in Fork CMS before 1.4.1 and other products, allows PHP object injection via a cookie containing an object.
- risk 0.59cvss 9.1epss 0.03
Lierda Grill Temperature Monitor V1.00_50006 has a default password of admin for the admin account, which allows an attacker to cause a Denial of Service or Information Disclosure via the undocumented access-point configuration page located on the device. This wifi thermometer…
- risk 0.64cvss 9.8epss 0.01
Raml-Module-Builder 26.4.0 allows SQL Injection in PostgresClient.update.
- risk 0.64cvss 9.8epss 0.01
Lack of root file system integrity checking in Fortinet FortiManager VM application images of 6.2.0, 6.0.6 and below may allow an attacker to implant third-party programs by recreating the image through specific methods.
- risk 0.64cvss 9.8epss 0.02
Use of Hard-coded Credentials vulnerability in FortiRecorder all versions below 2.7.4 may allow an unauthenticated attacker with knowledge of the aforementioned credentials and network access to FortiCameras to take control of those, provided they are managed by a FortiRecorder…
- risk 0.64cvss 9.8epss 0.03
A remote code execution vulnerability in the PAN-OS SSH device management interface that can lead to unauthenticated remote users with network access to the SSH management interface gaining root access to PAN-OS. This issue affects PAN-OS 7.1 versions prior to 7.1.24-h1, 7.1.25;…
- risk 0.64cvss 9.8epss 0.03
Memory corruption in PAN-OS 7.1.24 and earlier, PAN-OS 8.0.19 and earlier, PAN-OS 8.1.9 and earlier, and PAN-OS 9.0.3 and earlier will allow a remote, unauthenticated user to craft a message to Secure Shell Daemon (SSHD) and corrupt arbitrary memory.
- risk 0.64cvss 9.8epss 0.02
The proxystatistics module before 3.1.0 for SimpleSAMLphp allows SQL Injection in lib/Auth/Process/DatabaseCommand.php.
- risk 0.64cvss 9.8epss 0.01
The Acclaim block plugin before 2019-06-26 for Moodle allows SQL Injection via delete_records.
- risk 0.64cvss 9.8epss 0.02
Tasking Manager before 3.4.0 allows SQL Injection via custom SQL.
- risk 0.64cvss 9.8epss 0.02
deeply is vulnerable to Prototype Pollution in versions before 3.1.0. The function assign-deep could be tricked into adding or modifying properties of Object.prototype using using a _proto_ payload.
- risk 0.57cvss 9.8epss 0.02
set-value is vulnerable to Prototype Pollution in versions lower than 3.0.1. The function mixin-deep could be tricked into adding or modifying properties of Object.prototype using any of the constructor, prototype and _proto_ payloads.
- risk 0.57cvss 9.8epss 0.04
mixin-deep is vulnerable to Prototype Pollution in versions before 1.3.2 and version 2.0.0. The function mixin-deep could be tricked into adding or modifying properties of Object.prototype using a constructor payload.
- risk 0.64cvss 9.8epss 0.03
Power-Response before 2019-02-02 allows directory traversal (up to the application's main directory) via a plugin.
- risk 0.64cvss 9.8epss 0.02
openITCOCKPIT before 3.7.1 allows SSRF, aka RVID 5-445b21.
- risk 0.64cvss 9.8epss 0.02
openITCOCKPIT before 3.7.1 allows code injection, aka RVID 1-445b21.
- risk 0.64cvss 9.8epss 0.08
drivers/media/usb/dvb-usb/technisat-usb2.c in the Linux kernel through 5.2.9 has an out-of-bounds read via crafted USB device traffic (which may be remote via usbip or usbredir).
- risk 0.64cvss 9.8epss 0.04
drivers/net/wireless/rsi/rsi_91x_usb.c in the Linux kernel through 5.2.9 has a Double Free via crafted USB device traffic (which may be remote via usbip or usbredir).
- risk 0.64cvss 9.8epss 0.02
The newsletters-lite plugin before 4.6.8.6 for WordPress has PHP object injection.
- risk 0.64cvss 9.8epss 0.02
The email-newsletter plugin through 20.15 for WordPress has SQL injection.
- risk 0.64cvss 9.8epss 0.02
The slidedeck2 plugin before 2.3.5 for WordPress has file inclusion.
- risk 0.52cvss 9.1epss 0.03
The insert-pages plugin before 3.2.4 for WordPress has directory traversal via custom template paths.
- risk 0.64cvss 9.8epss 0.02
The wp-support-plus-responsive-ticket-system plugin before 7.1.0 for WordPress has insecure direct object reference via a ticket number.
- risk 0.59cvss 9.1epss 0.03
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has directory traversal.
- risk 0.64cvss 9.8epss 0.02
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has incorrect authentication.
- risk 0.64cvss 9.8epss 0.02
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has SQL injection.
- risk 0.64cvss 9.8epss 0.02
Mirasys VMS before V7.6.1 and 8.x before V8.3.2 mishandles the auto-update feature of IDVRUpdateService2 in DVRServer.exe. An attacker can upload files with a Setup-Files action, and then execute these files with SYSTEM privileges.
- risk 0.64cvss 9.8epss 0.02
Mirasys VMS before V7.6.1 and 8.x before V8.3.2 mishandles the Mirasys.Common.Utils.Security.DataCrypt method in Common.dll in AuditTrailService in SMServer.exe. This method triggers insecure deserialization within the .NET garbage collector, in which a gadget (contained in a…
- risk 0.64cvss 9.8epss 0.02
The shortcode-factory plugin before 2.8 for WordPress has Local File Inclusion.
- risk 0.64cvss 9.8epss 0.02
The option-tree plugin before 2.7.3 for WordPress has Object Injection because serialized classes are mishandled.
- risk 0.64cvss 9.8epss 0.02
The option-tree plugin before 2.7.3 for WordPress has Object Injection because the + character is mishandled.
- risk 0.64cvss 9.8epss 0.02
The option-tree plugin before 2.7.0 for WordPress has Object Injection by leveraging a valid nonce.
- risk 0.64cvss 9.8epss 0.08
The wp-payeezy-pay plugin before 2.98 for WordPress has local file inclusion in pay.php, donate.php, donate-rec, and pay-rec.
- risk 0.64cvss 9.8epss 0.02
The patreon-connect plugin before 1.2.2 for WordPress has Object Injection.
- risk 0.64cvss 9.8epss 0.02
The post-pay-counter plugin before 2.731 for WordPress has PHP Object Injection.
- risk 0.65cvss 9.8epss 0.12
The shortcodes-ultimate plugin before 5.0.1 for WordPress has remote code execution via a filter in a meta, post, or user shortcode.
- risk 0.65cvss 10.0epss 0.02
The nelio-ab-testing plugin before 4.5.11 for WordPress has SSRF in ajax/iesupport.php.
- risk 0.65cvss 10.0epss 0.02
The nelio-ab-testing plugin before 4.5.9 for WordPress has SSRF in ajax/iesupport.php.
- risk 0.64cvss 9.8epss 0.02
The woocommerce-store-toolkit plugin before 1.5.8 for WordPress has privilege escalation.
- risk 0.64cvss 9.8epss 0.02
The woocommerce-store-toolkit plugin before 1.5.7 for WordPress has privilege escalation.
- risk 0.64cvss 9.8epss 0.02
The memphis-documents-library plugin before 3.0 for WordPress has Local File Inclusion.
- risk 0.64cvss 9.8epss 0.03
The memphis-documents-library plugin before 3.0 for WordPress has Remote File Inclusion.
- risk 0.64cvss 9.8epss 0.02
The yikes-inc-easy-mailchimp-extender plugin before 6.5.3 for WordPress has code injection via the admin input field.
- risk 0.59cvss 9.1epss 0.02
The ninja-forms plugin before 3.3.9 for WordPress has insufficient restrictions on submission-data retrieval during Export Personal Data requests.
- risk 0.64cvss 9.8epss 0.02
The contact-form-7 plugin before 5.0.4 for WordPress has privilege escalation because of capability_type mishandling in register_post_type.
- risk 0.64cvss 9.8epss 0.02
The simple-login-log plugin before 1.1.2 for WordPress has SQL injection.
- risk 0.64cvss 9.8epss 0.02
The search-everything plugin before 8.1.7 for WordPress has SQL injection related to WordPress 4.7.x, a different vulnerability than CVE-2014-2316.