CVE-2019-12000 to CVE-2019-12999
200 CVEs with public proof-of-concept exploits.
- CVE-2019-120412 PoCslib/common/html_re.js in remarkable 1.7.1 allows Regular Expression Denial of Service (ReDoS) via a CDATA section.
- CVE-2019-120421 PoCInsecure permissions of the section object Global\PandaDevicesAgentSharedMemory and the event Global\PandaDevicesAgentSharedMemoryChange…
- CVE-2019-120431 PoCIn remarkable 1.7.1, lib/parser_inline.js mishandles URL filtering, which allows attackers to trigger XSS via unprintable characters, as…
- CVE-2019-120461 PoCLemonLDAP::NG -2.0.3 has Incorrect Access Control.
- CVE-2019-120864 PoCsA Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.x before 2.9.9. When Default Typing is enabled (either globally…
- CVE-2019-120871 PoCSamsung S9+, S10, and XCover 4 P(9.0) devices can become temporarily inoperable because of an unprotected intent in the ContainerAgent…
- CVE-2019-120944 PoCsHorde Groupware Webmail Edition through 5.2.22 allows XSS via an admin/user.php?form=update_f&user_name= or…
- CVE-2019-120954 PoCsHorde Trean, as used in Horde Groupware Webmail Edition through 5.2.22 and other products, allows CSRF, as demonstrated by the…
- CVE-2019-120992 PoCsIn PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because…
- CVE-2019-121061 PoCThe updateDevice function in minissdpd.c in MiniUPnP MiniSSDPd 1.4 and 1.5 allows a remote attacker to crash the process due to a Use…
- CVE-2019-121071 PoCThe upnp_event_prepare function in upnpevents.c in MiniUPnP MiniUPnPd through 2.1 allows a remote attacker to leak information from the…
- CVE-2019-121081 PoCA Denial Of Service vulnerability in MiniUPnP MiniUPnPd through 2.1 exists due to a NULL pointer dereference in GetOutboundPinholeTimeout…
- CVE-2019-121091 PoCA Denial Of Service vulnerability in MiniUPnP MiniUPnPd through 2.1 exists due to a NULL pointer dereference in GetOutboundPinholeTimeout…
- CVE-2019-121101 PoCAn AddPortMapping Denial Of Service vulnerability in MiniUPnP MiniUPnPd through 2.1 exists due to a NULL pointer dereference in…
- CVE-2019-121111 PoCA Denial Of Service vulnerability in MiniUPnP MiniUPnPd through 2.1 exists due to a NULL pointer dereference in copyIPv6IfDifferent in…
- CVE-2019-121341 PoCCSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in Workday through 32 via a value (provided by…
- CVE-2019-121372 PoCsTypora 0.9.9.24.6 on macOS allows directory traversal, for execution of arbitrary programs, via a file:/// or ../ substring in a shared…
- CVE-2019-121381 PoCMacDown 0.7.1 allows directory traversal, for execution of arbitrary programs, via a file:/// or ../ substring in a shared note.
- CVE-2019-121472 PoCsThe Sangoma Session Border Controller (SBC) 2.3.23-119 GA web interface is vulnerable to Argument Injection via special characters in the…
- CVE-2019-121482 PoCsThe Sangoma Session Border Controller (SBC) 2.3.23-119 GA web interface is vulnerable to an authentication bypass via an argument…
- CVE-2019-121633 PoCsGAT-Ship Web Module through 1.30 allows remote attackers to obtain potentially sensitive information via {} in a…
- CVE-2019-121694 PoCsATutor 2.2.4 allows Arbitrary File Upload and Directory Traversal, resulting in remote code execution via a ".." pathname in a ZIP archive…
- CVE-2019-121702 PoCsATutor through 2.2.4 is vulnerable to arbitrary file uploads via the mods/_core/backups/upload.php (aka backup) component. This may result…
- CVE-2019-121711 PoCDropbox.exe (and QtWebEngineProcess.exe in the Web Helper) in the Dropbox desktop application 71.4.108.0 store cleartext credentials in…
- CVE-2019-121721 PoCTypora 0.9.9.21.1 (1913) allows arbitrary code execution via a modified file: URL syntax in the HREF attribute of an AREA element, as…
- CVE-2019-121731 PoCMacDown 0.7.1 (870) allows remote code execution via a file:\\\ URI, with a .app pathname, in the HREF attribute of an A element. This is…
- CVE-2019-121741 PoChide.me before 2.4.4 on macOS suffers from a privilege escalation vulnerability in the…
- CVE-2019-121802 PoCsAn issue was discovered in SmartBear ReadyAPI through 2.8.2 and 3.0.0 and SoapUI through 5.5. When opening a project, the Groovy "Load…
- CVE-2019-121819 PoCsA privilege escalation vulnerability exists in SolarWinds Serv-U before 15.1.7 for Linux.
- CVE-2019-121821 PoCDirectory Traversal in Safescan Timemoto and TA-8000 series version 1.0 allows unauthenticated remote attackers to execute code via the…
- CVE-2019-121831 PoCIncorrect Access Control in Safescan Timemoto TM-616 and TA-8000 series allows remote attackers to read any file via the administrative API.
- CVE-2019-121852 PoCseLabFTW 1.8.5 is vulnerable to arbitrary file uploads via the /app/controllers/EntityController.php component. This may result in remote…
- CVE-2019-121892 PoCsAn issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the SearchN.do search field.
- CVE-2019-121951 PoCTP-Link TL-WR840N v5 00000005 devices allow XSS via the network name. The attacker must log into the router by breaking the password and…
- CVE-2019-122061 PoCnjs through 0.3.1, used in NGINX, has a heap-based buffer overflow in nxt_utf8_encode in nxt_utf8.c.
- CVE-2019-122151 PoCA full path disclosure vulnerability was discovered in Matomo v3.9.1 where a user can trigger a particular error to discover the full path…
- CVE-2019-122161 PoCAn issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image…
- CVE-2019-122171 PoCAn issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image…
- CVE-2019-122181 PoCAn issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image…
- CVE-2019-122191 PoCAn issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image…
- CVE-2019-122201 PoCAn issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image…
- CVE-2019-122211 PoCAn issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image…
- CVE-2019-122221 PoCAn issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9. There is an out-of-bounds read in the function…
- CVE-2019-122521 PoCIn Zoho ManageEngine ServiceDesk Plus through 10.5, users with the lowest privileges (guest) can view an arbitrary post by appending its…
- CVE-2019-122552 PoCsWind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET security vulnerability: TCP Urgent Pointer =…
- CVE-2019-122581 PoCWind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET security vulnerability: DoS of TCP…
- CVE-2019-122762 PoCsA Path Traversal vulnerability in Controllers/LetsEncryptController.cs in LetsEncryptController in GrandNode 4.40 allows remote,…
- CVE-2019-122792 PoCsNagios XI 5.6.1 allows SQL injection via the username parameter to login.php?forgotpass (aka the reset password form). NOTE: The vendor…
- CVE-2019-122991 PoCSandline Centraleyezer (On Premises) allows Stored XSS using HTML entities in the name field of the Category section.
- CVE-2019-123111 PoCSandline Centraleyezer (On Premises) allows Unrestricted File Upload leading to Stored XSS. An HTML page running a script could be…
- CVE-2019-123131 PoCXSS exists in Shave before 2.5.3 because output encoding is mishandled during the overwrite of an HTML element.
- CVE-2019-123145 PoCsDeltek Maconomy 2.2.5 is prone to local file inclusion via absolute path traversal in the WS.macx1.W_MCS/ PATH_INFO, as demonstrated by a…
- CVE-2019-123233 PoCsThe HC.Server service in Hosting Controller HC10 10.14 allows an Invalid Pointer Write DoS.
- CVE-2019-123311 PoCPHPOffice PhpSpreadsheet before 1.8.0 has an XXE issue. The XmlScanner decodes the sheet1.xml from an .xlsx to utf-8 if something else…
- CVE-2019-123461 PoCIn the miniOrange SAML SP Single Sign On plugin before 4.8.73 for WordPress, the SAML Login Endpoint is vulnerable to XSS via a specially…
- CVE-2019-123473 PoCsIn pfSense 2.4.4-p3, a stored XSS vulnerability occurs when attackers inject a payload into the Name or Description field via an…
- CVE-2019-123481 PoCAn issue was discovered in zzcms 2019. SQL Injection exists in user/ztconfig.php via the daohang or img POST parameter.
- CVE-2019-123491 PoCAn issue was discovered in zzcms 2019. SQL Injection exists in /admin/dl_sendsms.php via the id parameter.
- CVE-2019-123501 PoCAn issue was discovered in zzcms 2019. SQL Injection exists in dl/dl_download.php via an id parameter value with a trailing comma.
- CVE-2019-123511 PoCAn issue was discovered in zzcms 2019. SQL Injection exists in dl/dl_print.php via an id parameter value with a trailing comma.
- CVE-2019-123521 PoCAn issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /dl/dl_sendmail.php (when the attacker has dls_print…
- CVE-2019-123531 PoCAn issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /admin/dl_sendmail.php (when the attacker has admin…
- CVE-2019-123541 PoCAn issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /admin/showbad.php (when the attacker has admin…
- CVE-2019-123551 PoCAn issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /user/dls_print.php (when the attacker has dls_print…
- CVE-2019-123561 PoCAn issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /user/dls_download.php (when the attacker has…
- CVE-2019-123571 PoCAn issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /admin/deluser.php (when the attacker has admin…
- CVE-2019-123581 PoCAn issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /dl/dl_sendsms.php (when the attacker has dls_print…
- CVE-2019-123591 PoCAn issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /admin/ztliuyan_sendmail.php (when the attacker has admin…
- CVE-2019-123631 PoCAn CSRF issue was discovered in the JN-Jones MyBB-2FA plugin through 2014-11-05 for MyBB. An attacker can forge a request to an installed…
- CVE-2019-123651 PoCThe Newton application through 10.0.23 for Android allows XSS via an event attribute and arbitrary file loading via a src attribute, if…
- CVE-2019-123661 PoCThe Nine application through 4.5.3a for Android allows XSS via an event attribute and arbitrary file loading via a src attribute, if the…
- CVE-2019-123671 PoCThe BlueMail application through 1.9.5.36 for Android allows XSS via an event attribute and arbitrary file loading via a src attribute, if…
- CVE-2019-123681 PoCThe Edison Mail application through 1.7.1 for Android allows XSS via an event attribute and arbitrary file loading via a src attribute, if…
- CVE-2019-123691 PoCThe TypeApp application through 1.9.5.35 for Android allows XSS via an event attribute and arbitrary file loading via a src attribute, if…
- CVE-2019-123701 PoCThe Spark application through 2.0.2 for Android allows XSS via an event attribute and arbitrary file loading via a src attribute, if the…
- CVE-2019-123723 PoCsPetraware pTransformer ADC before 2.1.7.22827 allows SQL Injection via the User ID parameter to the login form.
- CVE-2019-123843 PoCsFasterXML jackson-databind 2.x before 2.9.9.1 might allow attackers to have a variety of impacts by leveraging failure to block the…
- CVE-2019-123851 PoCAn issue was discovered in Ampache through 3.9.1. The search engine is affected by a SQL Injection, so any user able to perform…
- CVE-2019-123861 PoCAn issue was discovered in Ampache through 3.9.1. A stored XSS exists in the localplay.php LocalPlay "add instance" functionality. The…
- CVE-2019-123951 PoCIn Webbukkit Dynmap 3.0-beta-3 or below, due to a missing login check in servlet/MapStorageHandler.java, an attacker can see a map image…
- CVE-2019-124012 PoCsSolr versions 1.3.0 to 1.4.1, 3.1.0 to 3.6.2 and 4.0.0 to 4.10.4 are vulnerable to an XML resource consumption attack (a.k.a. Lol Bomb)…
- CVE-2019-124093 PoCsThe 8.1.1 and 8.2.0 releases of Apache Solr contain an insecure setting for the ENABLE_REMOTE_JMX_OPTS configuration option in the default…
- CVE-2019-124221 PoCApache Shiro before 1.4.2, when using the default "remember me" configuration, cookies could be susceptible to a padding attack.
- CVE-2019-124531 PoCIn MicroStrategy Web before 10.1 patch 10, stored XSS is possible in the FLTB parameter due to missing input validation.
- CVE-2019-124571 PoCFileRun 2019.05.21 allows images/extjs Directory Listing. This issue has been fixed in FileRun 2019.06.01.
- CVE-2019-124581 PoCFileRun 2019.05.21 allows css/ext-ux Directory Listing. This issue has been fixed in FileRun 2019.06.01.
- CVE-2019-124591 PoCFileRun 2019.05.21 allows customizables/plugins/audio_player Directory Listing. This issue has been fixed in FileRun 2019.06.01.
- CVE-2019-124602 PoCsWeb Port 1.19.1 allows XSS via the /access/setup type parameter.
- CVE-2019-124613 PoCsWeb Port 1.19.1 allows XSS via the /log type parameter.
- CVE-2019-124751 PoCIn MicroStrategy Web before 10.4.6, there is stored XSS in metric due to insufficient input validation.
- CVE-2019-124761 PoCAn authentication bypass vulnerability in the password reset functionality in Zoho ManageEngine ADSelfService Plus before 5.0.6 allows an…
- CVE-2019-124773 PoCsSupra Smart Cloud TV allows remote file inclusion in the openLiveURL function, which allows a local attacker to broadcast fake video…
- CVE-2019-124801 PoCBACnet Protocol Stack through 0.8.6 has a segmentation fault leading to denial of service in BACnet APDU Layer because a malformed DCC in…
- CVE-2019-124811 PoCAn issue was discovered in GPAC 0.7.1. There is a NULL pointer dereference in the function GetESD at isomedia/track.c in libgpac.a, as…
- CVE-2019-124821 PoCAn issue was discovered in GPAC 0.7.1. There is a NULL pointer dereference in the function gf_isom_get_original_format_type at…
- CVE-2019-124831 PoCAn issue was discovered in GPAC 0.7.1. There is a heap-based buffer overflow in the function ReadGF_IPMPX_RemoveToolNotificationListener…
- CVE-2019-124891 PoCAn issue was discovered on Fastweb Askey RTV1907VW 0.00.81_FW_200_Askey 2018-10-02 18:08:18 devices. By using the usb_remove service…
- CVE-2019-124901 PoCAn issue was discovered in Simple Machines Forum (SMF) before 2.0.16. Reverse tabnabbing can occur because of use of _blank for external…
- CVE-2019-125002 PoCsThe Xiaomi M365 scooter 2019-02-12 before 1.5.1 allows spoofing of "suddenly accelerate" commands. This occurs because Bluetooth Low…
- CVE-2019-125021 PoCThere is a lack of CSRF countermeasures on MOBOTIX S14 MX-V4.2.1.61 cameras, as demonstrated by adding an admin account via the…
- CVE-2019-125063 PoCsDue to unencrypted and unauthenticated data communication, the wireless presenter Logitech R700 Laser Presentation Remote R-R0010 is prone…
- CVE-2019-125101 PoCAuth Bypass Via X-Forwarded-For Header in SOAP API
- CVE-2019-125111 PoCRoot Command Injection via MAC Address in SOAP API
- CVE-2019-125121 PoCStored XSS via X-Forwarded-For Header During Incorrect Login
- CVE-2019-125131 PoCStored XSS via DHCP Discover Request Hostname
- CVE-2019-125171 PoCAn XSS issue was discovered in the slickquiz plugin through 1.3.7.1 for WordPress. The save_quiz_score functionality available via the…
- CVE-2019-125183 PoCsAnviz CrossChex access control management software 4.3.8.0 and 4.3.12 is vulnerable to a buffer overflow vulnerability.
- CVE-2019-125382 PoCsAn issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the SiteLookup.do search field.
- CVE-2019-125412 PoCsAn issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the SolutionSearch.do searchText parameter.
- CVE-2019-125422 PoCsAn issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the SearchN.do userConfigID parameter.
- CVE-2019-125432 PoCsAn issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the PurchaseRequest.do serviceRequestId parameter.
- CVE-2019-125512 PoCsIn SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the Memcpy function (provided by the…
- CVE-2019-125522 PoCsIn SweetScape 010 Editor 9.0.1, an integer overflow during the initialization of variables could allow an attacker to cause a denial of…
- CVE-2019-125531 PoCIn SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the StrCat function (provided by the…
- CVE-2019-125541 PoCIn SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the WSubStr function (provided by the…
- CVE-2019-125551 PoCIn SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the SubStr function (provided by the…
- CVE-2019-125622 PoCsStored Cross-Site Scripting in DotNetNuke (DNN) Version before 9.4.0 allows remote attackers to store and embed the malicious script into…
- CVE-2019-125641 PoCIn DouCo DouPHP v1.5 Release 20190516, remote attackers can view the database backup file via a brute-force guessing approach for…
- CVE-2019-125731 PoCA vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client v82 for Linux and macOS could allow an authenticated,…
- CVE-2019-125741 PoCA vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client v1.0 for Windows could allow an authenticated, local…
- CVE-2019-125761 PoCA vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client v82 for macOS could allow an authenticated, local…
- CVE-2019-125771 PoCA vulnerability in the London Trust Media Private Internet Access (PIA) VPN Client v82 for macOS could allow an authenticated, local…
- CVE-2019-125812 PoCsA reflective Cross-site scripting (XSS) vulnerability in the free_time_failed.cgi CGI program in selected Zyxel ZyWall, USG, and UAG…
- CVE-2019-125832 PoCsMissing Access Control in the "Free Time" component of several Zyxel UAG, USG, and ZyWall devices allows a remote attacker to generate…
- CVE-2019-125866 PoCsThe EAP peer implementation in Espressif ESP-IDF 2.0.0 through 4.0.0 and ESP8266_NONOS_SDK 2.2.0 through 3.1.0 processes EAP Success…
- CVE-2019-125876 PoCsThe EAP peer implementation in Espressif ESP-IDF 2.0.0 through 4.0.0 and ESP8266_NONOS_SDK 2.2.0 through 3.1.0 allows the installation of…
- CVE-2019-125881 PoCThe client 802.11 mac implementation in Espressif ESP8266_NONOS_SDK 2.2.0 through 3.1.0 does not validate correctly the RSN AuthKey suite…
- CVE-2019-125891 PoCIn Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process…
- CVE-2019-125933 PoCsIceWarp Mail Server through 10.4.4 is prone to a local file inclusion vulnerability via webmail/calendar/minimizer/index.php?style=..%5c…
- CVE-2019-125941 PoCDOSBox 0.74-2 has Incorrect Access Control.
- CVE-2019-126163 PoCsAn issue was discovered in phpMyAdmin before 4.9.0. A vulnerability was found that allows an attacker to trigger a CSRF attack against a…
- CVE-2019-126241 PoCCisco IOS XE NGWC Legacy Wireless Device Manager GUI Cross-Site Request Forgery Vulnerability
- CVE-2019-127191 PoCAn issue was discovered in Picture_Manage_mvc.aspx in AUO SunVeillance Monitoring System before v1.1.9e. There is an incorrect access…
- CVE-2019-127201 PoCAUO SunVeillance Monitoring System before v1.1.9e is vulnerable to mvc_send_mail.aspx (MailAdd parameter) SQL Injection. An Attacker can…
- CVE-2019-1272513 PoCsZeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web application…
- CVE-2019-127271 PoCOn Ubiquiti airCam 3.1.4 devices, a Denial of Service vulnerability exists in the RTSP Service provided by the ubnt-streamer binary. The…
- CVE-2019-127281 PoCGrails before 3.3.10 used cleartext HTTP to resolve the SDKMan notification service. NOTE: users' apps were not resolving dependencies…
- CVE-2019-127332 PoCsSiteVision 4 allows Remote Code Execution.
- CVE-2019-127341 PoCSiteVision 4 has Incorrect Access Control.
- CVE-2019-127357 PoCsgetchar.c in Vim before 8.1.1365 and Neovim before 0.3.6 allows remote attackers to execute arbitrary OS commands via the :source! command…
- CVE-2019-127444 PoCsSeedDMS before 5.1.11 allows Remote Command Execution (RCE) because of unvalidated file upload of PHP scripts, a different vulnerability…
- CVE-2019-127452 PoCsout/out.UsrMgr.php in SeedDMS before 5.1.11 allows Stored Cross-Site Scripting (XSS) via the name field.
- CVE-2019-127502 PoCsSymantec Endpoint Protection, prior to 14.2 RU1 & 12.1 RU6 MP10 and Symantec Endpoint Protection Small Business Edition, prior to 12.1 RU6…
- CVE-2019-127581 PoCSymantec Endpoint Protection, prior to 14.2 RU2, may be susceptible to an unsigned code execution vulnerability, which may allow an…
- CVE-2019-127601 PoCA deserialization vulnerability exists in the way parso through 0.4.0 handles grammar parsing from the cache. Cache loading relies on…
- CVE-2019-127611 PoCA code injection issue was discovered in PyXDG before 0.26 via crafted Python code in a Category element of a Menu XML document in a .menu…
- CVE-2019-127651 PoCAn issue was discovered in Joomla! before 3.9.7. The CSV export of com_actionslogs is vulnerable to CSV injection.
- CVE-2019-127711 PoCCommand injection is possible in ThinStation through 6.1.1 via shell metacharacters after the cgi-bin/CdControl.cgi action= substring, or…
- CVE-2019-127791 PoClibqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under…
- CVE-2019-127803 PoCsThe Belkin Wemo Enabled Crock-Pot allows command injection in the Wemo UPnP API via the SmartDevURL argument to the SetSmartDevInfo…
- CVE-2019-127861 PoCAn issue was discovered on D-Link DIR-818LW devices from 2.05.B03 to 2.06B01 BETA. There is a command injection in HNAP1 SetWanSettings…
- CVE-2019-127871 PoCAn issue was discovered on D-Link DIR-818LW devices from 2.05.B03 to 2.06B01 BETA. There is a command injection in HNAP1 SetWanSettings…
- CVE-2019-127883 PoCsAn issue was discovered in Photodex ProShow Producer v9.0.3797 (an application that runs with Administrator privileges). It is possible to…
- CVE-2019-127891 PoCAn issue was discovered on Actiontec T2200H T2200H-31.128L.08 devices, as distributed by Telus. By attaching a UART adapter to the UART…
- CVE-2019-127991 PoCIn createInstanceFromNamedArguments in Shopware through 5.6.x, a crafted web request can trigger a PHP object instantiation vulnerability,…
- CVE-2019-128011 PoCout/out.GroupMgr.php in SeedDMS 5.1.11 has Stored XSS by making a new group with a JavaScript payload as the "GROUP" Name.
- CVE-2019-128132 PoCsAn issue was discovered in Digital Persona U.are.U 4500 Fingerprint Reader v24. The key and salt used for obfuscating the fingerprint…
- CVE-2019-128141 PoCA Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.x through 2.9.9. When Default Typing is enabled (either globally…
- CVE-2019-128152 PoCsAn arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information disclosure…
- CVE-2019-128283 PoCsAn issue was discovered in Electronic Arts Origin before 10.5.39. Due to improper sanitization of the origin:// and origin2:// URI…
- CVE-2019-128341 PoCIn HT2 Labs Learning Locker 3.15.1, it's possible to inject malicious HTML and JavaScript code into the DOM of the website via the…
- CVE-2019-128361 PoCThe Bobronix JEditor editor before 3.0.6 for Jira allows an attacker to add a URL/Link (to an existing issue) that can cause forgery of a…
- CVE-2019-1284010 PoCsIn Webmin through 1.910, any user authorized to the "Package Updates" module can execute arbitrary commands with root privileges via the…
- CVE-2019-128631 PoCSolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) allows Stored HTML Injection by administrators via the Web Console Settings…
- CVE-2019-128641 PoCSolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) is vulnerable to Information Leakage, because of improper error handling…
- CVE-2019-128891 PoCAn unauthenticated privilege escalation exists in SailPoint Desktop Password Reset 7.2. A user with local access to only the Windows logon…
- CVE-2019-128903 PoCsRedwoodHQ 2.5.5 does not require any authentication for database operations, which allows remote attackers to create admin users via a…
- CVE-2019-128931 PoCAlternate Pic View 2.600 has a User Mode Write AV starting at PicViewer!PerfgrapFinalize+0x00000000000a8868.
- CVE-2019-128941 PoCAlternate Pic View 2.600 has a Read Access Violation at the Instruction Pointer after a call from…
- CVE-2019-128951 PoCIn Alternate Pic View 2.600, the Exception Handler Chain is Corrupted starting at PicViewer!PerfgrapFinalize+0x00000000000b916d.
- CVE-2019-128961 PoCEdraw Max 7.9.3 has Heap Corruption starting at ntdll!RtlpNtMakeTemporaryKey+0x0000000000001a77.
- CVE-2019-128971 PoCEdraw Max 7.9.3 has a Read Access Violation at the Instruction Pointer after a call from ObjectModule!Paint::Clear+0x0000000000000074.
- CVE-2019-128981 PoCDelta Electronics DeviceNet Builder 2.04 has a User Mode Write AV starting at image00400000+0x000000000017a45e.
- CVE-2019-128991 PoCDelta Electronics DeviceNet Builder 2.04 has a User Mode Write AV starting at ntdll!RtlQueueWorkItem+0x00000000000005e3.
- CVE-2019-129053 PoCsFileRun 2019.05.21 allows XSS via the filename to the ?module=fileman§ion=do&page=up URI. This issue has been fixed in FileRun…
- CVE-2019-129191 PoCOn Shenzhen Cylan Clever Dog Smart Camera DOG-2W and DOG-2W-V4 devices, an attacker on the local network has unauthenticated access to the…
- CVE-2019-129201 PoCOn Shenzhen Cylan Clever Dog Smart Camera DOG-2W and DOG-2W-V4 devices, an attacker on the network can login remotely to the camera and…
- CVE-2019-129223 PoCsA CSRF issue in phpMyAdmin 4.9.0.1 allows deletion of any server in the Setup page.
- CVE-2019-129281 PoCThe QMP migrate command in QEMU version 4.0.0 and earlier is vulnerable to OS command injection, which allows the remote attacker to…
- CVE-2019-129341 PoCAn issue was discovered in the wp-code-highlightjs plugin through 0.6.2 for WordPress.…
- CVE-2019-129351 PoCShopware before 5.5.8 has XSS via the Query String to the backend/Login or backend/Login/load/ URI.
- CVE-2019-129371 PoCapps/gsudo.c in gsudo in ToaruOS through 1.10.9 has a buffer overflow allowing local privilege escalation to the root user via the DISPLAY…
- CVE-2019-129414 PoCsAutoPi Wi-Fi/NB and 4G/LTE devices before 2019-10-15 allows an attacker to perform a brute-force attack or dictionary attack to gain…
- CVE-2019-129491 PoCIn pfSense 2.4.4-p2 and 2.4.4-p3, if it is possible to trick an authenticated administrator into clicking on a button on a phishing page,…
- CVE-2019-129541 PoCSolarWinds Network Performance Monitor (Orion Platform 2018, NPM 12.3, NetPath 1.1.3) allows XSS by authenticated users via a crafted…
- CVE-2019-129623 PoCsLiveZilla Server before 8.0.1.1 is vulnerable to XSS in mobile/index.php via the Accept-Language HTTP header.
- CVE-2019-129661 PoCFeHelper through 2019-06-19 allows arbitrary code execution during a JSON format operation, as demonstrated by the…
- CVE-2019-129671 PoCStephan Mooltipass Moolticute through 0.42.1 (and possibly earlier versions) has Incorrect Access Control.
- CVE-2019-129703 PoCsXSS was discovered in SquirrelMail through 1.4.22 and 1.5.x through 1.5.2. Due to improper handling of RCDATA and RAWTEXT type elements,…
- CVE-2019-129711 PoCBKS EBK Ethernet-Buskoppler Pro before 3.01 allows Unrestricted Upload of a File with a Dangerous Type.
- CVE-2019-129721 PoCAn issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a…
- CVE-2019-129852 PoCsCitrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 1 of 6).
- CVE-2019-129862 PoCsCitrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 2 of 6).
- CVE-2019-129872 PoCsCitrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 3 of 6).
- CVE-2019-129882 PoCsCitrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 4 of 6).
- CVE-2019-129894 PoCsKEVCitrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow SQL Injection.
- CVE-2019-129902 PoCsCitrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow Directory Traversal.
- CVE-2019-129913 PoCsKEVCitrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 5 of 6).
- CVE-2019-129921 PoCCitrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 6 of 6).
- CVE-2019-129971 PoCIn Loopchain through 2.2.1.3, an attacker can escalate privileges from a low-privilege shell by changing the environment (aka injection in…