CVE-2019-13000 to CVE-2019-13999
151 CVEs with public proof-of-concept exploits.
- CVE-2019-130211 PoCThe administrative passwords for all versions of Bond JetSelect are stored within an unprotected file on the filesystem, rather than…
- CVE-2019-130221 PoCBond JetSelect (all versions) has an issue in the Java class (ENCtool.jar) and corresponding password generation algorithm (used to set…
- CVE-2019-130246 PoCsCentreon 18.x before 18.10.6, 19.x before 19.04.3, and Centreon web before 2.8.29 allows the attacker to execute arbitrary system commands…
- CVE-2019-130252 PoCsCompal CH7465LG CH7465LG-NCIP-6.12.18.24-5p8-NOSH devices have Incorrect Access Control because of Improper Input Validation. The attacker…
- CVE-2019-130271 PoCRealization Concerto Critical Chain Planner (aka CCPM) 5.10.8071 has SQL Injection in at least in the taskupdt/taskdetails.aspx webpage…
- CVE-2019-130292 PoCsMultiple stored Cross-site scripting (XSS) issues in the admin panel and survey system in REDCap 8 before 8.10.20 and 9 before 9.1.2 allow…
- CVE-2019-130301 PoCeQ-3 Homematic CCU3 AddOn 'Mediola NEO Server for Homematic CCU3' prior to 2.4.5 allows uncontrolled admin access to start or stop the…
- CVE-2019-130501 PoCInteraction between the sks-keyserver code through 1.2.0 of the SKS keyserver network, and GnuPG through 2.2.16, makes it risky to have a…
- CVE-2019-130511 PoCPi-Hole 4.3 allows Command Injection.
- CVE-2019-130521 PoCLogitech Unifying devices allow live decryption if the pairing of a keyboard to a receiver is sniffed.
- CVE-2019-130531 PoCLogitech Unifying devices allow keystroke injection, bypassing encryption. The attacker must press a "magic" key combination while…
- CVE-2019-130541 PoCThe Logitech R500 presentation clicker allows attackers to determine the AES key, leading to keystroke injection. On Windows, any text may…
- CVE-2019-130551 PoCCertain Logitech Unifying devices allow attackers to dump AES keys and addresses, leading to the capability of live decryption of Radio…
- CVE-2019-130561 PoCAn issue was discovered in CyberPanel through 1.8.4. On the user edit page, an attacker can edit the administrator's e-mail and password…
- CVE-2019-130632 PoCsWithin Sahi Pro 8.0.0, an attacker can send a specially crafted URL to include any victim files on the system via the script parameter on…
- CVE-2019-130661 PoCSahi Pro 8.0.0 has a script manager arena located at _s_/dyn/pro/DBReports with many different areas that are vulnerable to reflected XSS,…
- CVE-2019-130681 PoCpublic/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).
- CVE-2019-130692 PoCsextenua SilverSHielD 6.x fails to secure its ProgramData folder, leading to a Local Privilege Escalation to SYSTEM. The attacker must…
- CVE-2019-130701 PoCA stored XSS vulnerability in the Agent/Center component of CyberPower PowerPanel Business Edition 3.4.0 allows a privileged attacker to…
- CVE-2019-130711 PoCCSRF in the Agent/Center component of CyberPower PowerPanel Business Edition 3.4.0 allows an attacker to submit POST requests to any forms…
- CVE-2019-130721 PoCStored XSS in the Filters page (Name field) in ZoneMinder 1.32.3 allows a malicious user to embed and execute JavaScript code in the…
- CVE-2019-130751 PoCTor Browser through 8.5.3 has an information exposure vulnerability. It allows remote attackers to detect the browser's language via…
- CVE-2019-130861 PoCcore/MY_Security.php in CSZ CMS 1.2.2 before 2019-06-20 has member/login/check SQL injection by sending a crafted HTTP User-Agent header…
- CVE-2019-130962 PoCsTronLink Wallet 2.2.0 stores user wallet keystore in plaintext and places them in insecure storage. An attacker can read and reuse the…
- CVE-2019-130972 PoCsThe application API of Cat Runner Decorate Home version 2.8.0 for Android does not sufficiently verify inputs that are assumed to be…
- CVE-2019-130982 PoCsThe user password via the registration form of TronLink Wallet 2.2.0 is stored in the log when the class CreateWalletTwoActivity is…
- CVE-2019-130991 PoCThe Momo application 2.1.9 for Android stores confidential information insecurely on the system (i.e., in cleartext), which allows a…
- CVE-2019-131001 PoCThe Send Anywhere application 9.4.18 for Android stores confidential information insecurely on the system (i.e., in cleartext), which…
- CVE-2019-131012 PoCsAn issue was discovered on D-Link DIR-600M 3.02, 3.03, 3.04, and 3.06 devices. wan.htm can be accessed directly without authentication,…
- CVE-2019-131081 PoCAn integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (SIGSEGV) via a crafted PNG image file,…
- CVE-2019-131091 PoCAn integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (SIGSEGV) via a crafted PNG image file,…
- CVE-2019-131101 PoCA CiffDirectory::readDirectory integer overflow and out-of-bounds read in Exiv2 through 0.27.1 allows an attacker to cause a denial of…
- CVE-2019-131111 PoCA WebPImage::decodeChunks integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (large heap allocation…
- CVE-2019-131121 PoCA PngChunk::parseChunkContent uncontrolled memory allocation in Exiv2 through 0.27.1 allows an attacker to cause a denial of service…
- CVE-2019-131131 PoCExiv2 through 0.27.1 allows an attacker to cause a denial of service (crash due to assertion failure) via an invalid data location in a…
- CVE-2019-131152 PoCsIn libssh2 before 1.9.0, kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has an integer overflow that could lead to…
- CVE-2019-131272 PoCsAn issue was discovered in mxGraph through 4.0.0, related to the "draw.io Diagrams" plugin before 8.3.14 for Confluence and other…
- CVE-2019-131311 PoCSuper Micro SuperDoctor 5, when restrictions are not implemented in agent.cfg, allows remote attackers to execute arbitrary commands via…
- CVE-2019-131321 PoCIn ZeroMQ libzmq before 4.0.9, 4.1.x before 4.1.7, and 4.2.x before 4.3.2, a remote, unauthenticated client connecting to a libzmq…
- CVE-2019-131403 PoCsInteno EG200 EG200-WU7P1U_ADAMO3.16.4-190226_1650 routers have a JUCI ACL misconfiguration that allows the "user" account to extract the…
- CVE-2019-131432 PoCsAn HTTP parameter pollution issue was discovered on Shenzhen Dragon Brothers Fingerprint Bluetooth Round Padlock FB50 2.3. With the user…
- CVE-2019-131441 PoCmyTinyTodo 1.3.3 through 1.4.3 allows CSV Injection. This is fixed in 1.5.
- CVE-2019-131471 PoCIn Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a…
- CVE-2019-131731 PoCfstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists…
- CVE-2019-131861 PoCIn MiniCMS V1.10, stored XSS was found in mc-admin/post-edit.php via the tags box. An attacker can use it to get a user's cookie. This is…
- CVE-2019-132081 PoCWavesSysSvc in Waves MAXX Audio allows privilege escalation because the General registry key has Full Control access for the Users group,…
- CVE-2019-132341 PoCIn the Alkacon OpenCms Apollo Template 10.5.4 and 10.5.5, there is XSS in the search engine.
- CVE-2019-132351 PoCIn the Alkacon OpenCms Apollo Template 10.5.4 and 10.5.5, there is XSS in the Login form.
- CVE-2019-132361 PoCIn system/workplace/ in Alkacon OpenCms 10.5.4 and 10.5.5, there are multiple Reflected and Stored XSS issues in the management interface.
- CVE-2019-132372 PoCsIn Alkacon OpenCms 10.5.4 and 10.5.5, there are multiple resources vulnerable to Local File Inclusion that allow an attacker to access…
- CVE-2019-132411 PoCFlightCrew v0.9.2 and older are vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash)…
- CVE-2019-132421 PoCIrfanView 4.52 has a User Mode Write AV starting at image00400000+0x0000000000013a98.
- CVE-2019-1327227 PoCsKEVIn the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to…
- CVE-2019-132751 PoCAn issue was discovered in the VeronaLabs wp-statistics plugin before 12.6.7 for WordPress. The v1/hit endpoint of the API, when the…
- CVE-2019-132851 PoCCoSoSys Endpoint Protector 5.1.0.2 allows Host Header Injection.
- CVE-2019-132883 PoCsIn Xpdf 4.01.01, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacker can…
- CVE-2019-132911 PoCIn Xpdf 4.01.01, there is a heap-based buffer over-read in the function DCTStream::readScan() located at Stream.cc. It can, for example,…
- CVE-2019-132924 PoCsA SQL Injection issue was discovered in webERP 4.15. Payments.php accepts payment data in base64 format. After this is decoded, it is…
- CVE-2019-132942 PoCsAROX School-ERP Pro has a command execution vulnerability. import_stud.php and upload_fille.php do not have session control. Therefore an…
- CVE-2019-132991 PoCImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read at MagickCore/pixel-accessor.h in GetPixelChannel.
- CVE-2019-133361 PoCThe dbell Wi-Fi Smart Video Doorbell DB01-S Gen 1 allows remote attackers to launch commands with no authentication verification via TCP…
- CVE-2019-133401 PoCIn MiniCMS V1.10, stored XSS was found in mc-admin/post-edit.php via the content box. An attacker can use it to get a user's cookie. This…
- CVE-2019-133411 PoCIn MiniCMS V1.10, stored XSS was found in mc-admin/conf.php (comment box), which can be used to get a user's cookie.
- CVE-2019-133432 PoCsButor Portal before 1.0.27 is affected by a Path Traversal vulnerability leading to a pre-authentication arbitrary file download.…
- CVE-2019-133443 PoCsAn authentication bypass vulnerability in the CRUDLab WP Like Button plugin through 1.6.0 for WordPress allows unauthenticated attackers…
- CVE-2019-133461 PoCIn MyT 1.5.1, the User[username] parameter has XSS.
- CVE-2019-133523 PoCsWolfVision Cynap before 1.30j uses a static, hard-coded cryptographic secret for generating support PINs for the 'forgot password'…
- CVE-2019-133582 PoCslib/DocumentToText.php in OpenCats before 0.9.4-3 has XXE that allows remote users to read files on the underlying operating system. The…
- CVE-2019-133592 PoCsIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.836, a cwpsrv-xxx cookie allows a normal user to craft and upload a session file…
- CVE-2019-133601 PoCIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.836, remote attackers can bypass authentication in the login process by leveraging…
- CVE-2019-133611 PoCSmanos W100 1.0.0 devices have Insecure Permissions, exploitable by an attacker on the same Wi-Fi network.
- CVE-2019-133631 PoCadmin.php?page=notification_by_mail in Piwigo 2.9.5 has XSS via the nbm_send_html_mail, nbm_send_mail_as,…
- CVE-2019-133641 PoCadmin.php?page=account_billing in Piwigo 2.9.5 has XSS via the vat_number, billing_name, company, or billing_address…
- CVE-2019-133701 PoCindex.php/admin/permissions in Ignited CMS through 2017-02-19 allows CSRF to add an administrator.
- CVE-2019-133723 PoCs/web/Lib/Action/IndexAction.class.php in D-Link Central WiFi Manager CWM(100) before v1.03R0100_BETA6 allows remote attackers to execute…
- CVE-2019-133731 PoCAn issue was discovered in the D-Link Central WiFi Manager CWM(100) before v1.03R0100_BETA6. Input does not get validated and arbitrary…
- CVE-2019-133761 PoCphpBB version 3.2.7 allows the stealing of an Administration Control Panel session id by leveraging CSRF in the Remote Avatar feature. The…
- CVE-2019-133792 PoCsOn AVTECH Room Alert 3E devices before 2.2.5, an attacker with access to the device's web interface may escalate privileges from an…
- CVE-2019-133821 PoCUploaderService in SnagIT 2019.1.2 allows elevation of privilege by placing an invalid presentation file in…
- CVE-2019-133831 PoCIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, the Login process allows attackers to check whether a username is valid by…
- CVE-2019-133851 PoCIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.840, File and Directory Information Exposure in filemanager allows attackers to…
- CVE-2019-133861 PoCIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, a hidden action=9 feature in filemanager2.php allows attackers to execute a…
- CVE-2019-133871 PoCIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, Reflected XSS in filemanager2.php (parameter fm_current_dir) allows attackers…
- CVE-2019-133921 PoCA reflected Cross-Site Scripting (XSS) vulnerability in MindPalette NateMail 3.0.15 allows an attacker to execute remote JavaScript in a…
- CVE-2019-133963 PoCsFlightPath 4.x and 5.0-x allows directory traversal and Local File Inclusion through the form_include parameter in an…
- CVE-2019-133981 PoCDynacolor FCM-MB40 v1.2.0.0 devices allow remote attackers to execute arbitrary commands via a crafted parameter to a CGI script, as…
- CVE-2019-133991 PoCDynacolor FCM-MB40 v1.2.0.0 devices have a hard-coded SSL/TLS key that is used during an administrator's SSL conversation.
- CVE-2019-134001 PoCDynacolor FCM-MB40 v1.2.0.0 use /etc/appWeb/appweb.pass to store administrative web-interface credentials in cleartext. These credentials…
- CVE-2019-134011 PoCDynacolor FCM-MB40 v1.2.0.0 devices have CSRF in all scripts under cgi-bin/.
- CVE-2019-134021 PoC/usr/sbin/default.sh and /usr/apache/htdocs/cgi-bin/admin/hardfactorydefault.cgi on Dynacolor FCM-MB40 v1.2.0.0 devices implement an…
- CVE-2019-134031 PoCTemenos CWX version 8.9 has an Broken Access Control vulnerability in the module /CWX/Employee/EmployeeEdit2.aspx, leading to the viewing…
- CVE-2019-134051 PoCAdvan VD-1 allows a remote user to enable Android Debug Bridge without any authentication
- CVE-2019-134061 PoCAdvan VD-1 has a vulnerability that allows remote arbitrary APK installation
- CVE-2019-134071 PoCAdvan VD-1 has a reflected XSS vulnerability in page cgibin/ssi.cgi
- CVE-2019-134081 PoCAdvan VD-1 allows users to download arbitrary files
- CVE-2019-134211 PoCSearch Guard versions before 23.1 had an issue that an administrative user is able to retrieve bcrypt password hashes of other users…
- CVE-2019-134621 PoCLansweeper before 7.1.117.4 allows unauthenticated SQL injection.
- CVE-2019-134661 PoCWestern Digital SSD Dashboard before 2.5.1.0 and SanDisk SSD Dashboard before 2.5.1.0 have Incorrect Access Control. The “generate…
- CVE-2019-134721 PoCPHPWind 9.1.0 has XSS vulnerabilities in the c and m parameters of the index.php file.
- CVE-2019-134732 PoCsTELESTAR Bobs Rock Radio, Dabman D10, Dabman i30 Stereo, Imperial i110, Imperial i150, Imperial i200, Imperial i200-cd, Imperial i400,…
- CVE-2019-134741 PoCTELESTAR Bobs Rock Radio, Dabman D10, Dabman i30 Stereo, Imperial i110, Imperial i150, Imperial i200, Imperial i200-cd, Imperial i400,…
- CVE-2019-134751 PoCIn MobaXterm 11.1, the mobaxterm: URI handler has an argument injection vulnerability that allows remote attackers to execute arbitrary…
- CVE-2019-134761 PoCIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.837, XSS in the domain parameter allows a low-privilege user to achieve root…
- CVE-2019-134772 PoCsIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.837, CSRF in the forgot password function allows an attacker to change the…
- CVE-2019-134811 PoCAn issue was discovered on D-Link DIR-818LW devices with firmware 2.06betab01. There is a command injection in HNAP1 (exploitable with…
- CVE-2019-134881 PoCA cross-site scripting (XSS) vulnerability in static/js/trape.js in Trape through 2019-05-08 allows remote attackers to inject arbitrary…
- CVE-2019-134932 PoCsIn Sitecore 9.0 rev 171002, Persistent XSS exists in the Media Library and File Manager. An authenticated unprivileged user can modify the…
- CVE-2019-134943 PoCsnodeimp.exe in Castle Rock SNMPc before 9.0.12.1 and 10.x before 10.0.9 has a stack-based buffer overflow via a long variable string in a…
- CVE-2019-134961 PoCOne Identity Cloud Access Manager before 8.1.4 Hotfix 1 allows OTP bypass via vectors involving a man in the middle, the One Identity…
- CVE-2019-134971 PoCOne Identity Cloud Access Manager before 8.1.4 Hotfix 1 allows CSRF for logout requests.
- CVE-2019-134981 PoCOne Identity Cloud Access Manager 8.1.3 does not use HTTP Strict Transport Security (HSTS), which may allow man-in-the-middle (MITM)…
- CVE-2019-135051 PoCThe Appointment Hour Booking plugin 1.1.44 for WordPress allows XSS via the E-mail field, as demonstrated by email_1.
- CVE-2019-135061 PoC@nuxt/devalue before 1.2.3, as used in Nuxt.js before 2.6.2, mishandles object keys, leading to XSS.
- CVE-2019-135071 PoChidea.com AZ Admin 1.0 has news_det.php?cod= SQL Injection.
- CVE-2019-135291 PoCAn attacker could send a malicious link to an authenticated operator, which may allow remote attackers to perform actions with the…
- CVE-2019-135642 PoCsXSS exists in Ping Identity Agentless Integration Kit before 1.5.
- CVE-2019-135741 PoCIn lib/mini_magick/image.rb in MiniMagick before 4.9.4, a fetched remote image filename could cause remote command execution because…
- CVE-2019-135775 PoCsSnmpAdm.exe in MAPLE WBT SNMP Administrator v2.0.195.15 has an Unauthenticated Remote Buffer Overflow via a long string to the CE Remote…
- CVE-2019-135842 PoCsThe remote admin webserver on FANUC Robotics Virtual Robot Controller 8.23 allows Directory Traversal via a forged HTTP request.
- CVE-2019-135853 PoCsThe remote admin webserver on FANUC Robotics Virtual Robot Controller 8.23 has a Buffer Overflow via a forged HTTP request.
- CVE-2019-135972 PoCs_s_/sprm/_s_/dyn/Player_setScriptFile in Sahi Pro 8.0.0 allows command execution. It allows one to run ".sah" scripts via Sahi Launcher.…
- CVE-2019-135993 PoCsIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.848, the Login process allows attackers to check whether a username is valid by…
- CVE-2019-136032 PoCsAn issue was discovered in the HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader Windows Biometric Framework…
- CVE-2019-136042 PoCsThere is a short key vulnerability in HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader v24. The key for…
- CVE-2019-136052 PoCsIn CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.838 to 0.9.8.846, remote attackers can bypass authentication in the login process…
- CVE-2019-136071 PoCThe Opera Mini application through 16.0.14 for iOS has a UXSS vulnerability that can be triggered by performing navigation to a…
- CVE-2019-136081 PoCKEVCitrix StoreFront Server before 1903, 7.15 LTSR before CU4 (3.12.4000), and 7.6 LTSR before CU8 (3.0.8000) allows XXE attacks.
- CVE-2019-136161 PoCSDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c…
- CVE-2019-136171 PoCnjs through 0.3.3, used in NGINX, has a heap-based buffer over-read in nxt_vsprintf in nxt/nxt_sprintf.c during error handling, as…
- CVE-2019-136231 PoCIn NSA Ghidra before 9.1, path traversal can occur in RestoreTask.java (from the package ghidra.app.plugin.core.archive) via an archive…
- CVE-2019-136252 PoCsNSA Ghidra before 9.0.1 allows XXE when a project is opened or restored, or a tool is imported, as demonstrated by a project.prp file.
- CVE-2019-136261 PoCSDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow…
- CVE-2019-136331 PoCBlinger.io v.1.0.2519 is vulnerable to Blind/Persistent XSS. An attacker can send arbitrary JavaScript code via a built-in communication…
- CVE-2019-136431 PoCStored XSS in EspoCRM before 5.6.4 allows remote attackers to execute malicious JavaScript and inject arbitrary source code into the…
- CVE-2019-136441 PoCFirefly III before 4.7.17.1 is vulnerable to stored XSS due to lack of filtration of user-supplied data in a budget name. The JavaScript…
- CVE-2019-136451 PoCFirefly III before 4.7.17.3 is vulnerable to stored XSS due to lack of filtration of user-supplied data in image file names. The…
- CVE-2019-136461 PoCFirefly III before 4.7.17.3 is vulnerable to reflected XSS due to lack of filtration of user-supplied data in a search query. NOTE: It is…
- CVE-2019-136471 PoCFirefly III before 4.7.17.3 is vulnerable to stored XSS due to lack of filtration of user-supplied data in image file content. The…
- CVE-2019-136941 PoCUse after free in WebRTC in Google Chrome prior to 77.0.3865.120 allowed a remote attacker to potentially exploit heap corruption via a…
- CVE-2019-136982 PoCsOut of bounds memory access in JavaScript in Google Chrome prior to 73.0.3683.103 allowed a remote attacker to potentially exploit heap…
- CVE-2019-137202 PoCsKEVUse after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a…
- CVE-2019-137642 PoCsType confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a…
- CVE-2019-137683 PoCsUse after free in FileAPI in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially perform a sandbox escape via a…
- CVE-2019-139161 PoCAn issue was discovered in Cypress (formerly Broadcom) WICED Studio 6.2 CYW20735B1 and CYW20819A1. As a Bluetooth Low Energy (BLE) packet…
- CVE-2019-139561 PoCDiscuz!ML 3.2 through 3.4 allows remote attackers to execute arbitrary PHP code via a modified language cookie, as demonstrated by…
- CVE-2019-139612 PoCsA CSRF vulnerability was found in flatCore before 1.5, leading to the upload of arbitrary .php files via acp/core/files.upload-script.php.
- CVE-2019-139711 PoCOTCMS 3.81 allows XSS via the mode parameter in an apiRun.php?mudi=autoRun request.
- CVE-2019-139721 PoCLayerBB 1.1.3 allows XSS via the application/commands/new.php pm_title variable, a related issue to CVE-2019-17997.
- CVE-2019-139731 PoCLayerBB 1.1.3 allows admin/general.php arbitrary file upload because the custom_logo filename suffix is not restricted, and .php may be…
- CVE-2019-139772 PoCsindex.php in Ovidentia 8.4.3 has XSS via tg=groups, tg=maildoms&idx=create&userid=0&bgrp=y, tg=delegat, tg=site&idx=create,…
- CVE-2019-139781 PoCOvidentia 8.4.3 has SQL Injection via the id parameter in an index.php?tg=delegat&idx=mem request.