CVE-2019-18000 to CVE-2019-18999
89 CVEs with public proof-of-concept exploits.
- CVE-2019-181942 PoCsTotalAV 2020 4.14.31 has a quarantine flaw that allows privilege escalation. Exploitation uses an NTFS directory junction to restore a…
- CVE-2019-181992 PoCsAn issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices. Because of the lack of proper encryption of 2.4 GHz…
- CVE-2019-182002 PoCsAn issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices. Because of the lack of proper encryption of 2.4 GHz…
- CVE-2019-182012 PoCsAn issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices. Because of the lack of proper encryption of 2.4 GHz…
- CVE-2019-182031 PoCOn the RICOH MP 501 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the…
- CVE-2019-182121 PoCXMLLanguageService.java in XML Language Server (aka lsp4xml) before 0.9.1, as used in Red Hat XML Language Support (aka vscode-xml) before…
- CVE-2019-182131 PoCXML Language Server (aka lsp4xml) before 0.9.1, as used in Red Hat XML Language Support (aka vscode-xml) before 0.9.1 for Visual Studio…
- CVE-2019-182171 PoCProFTPD before 1.3.6b and 1.3.7rc before 1.3.7rc2 allows remote unauthenticated denial-of-service due to incorrect handling of overly long…
- CVE-2019-182764 PoCsAn issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run with its effective…
- CVE-2019-182771 PoCA flaw was found in HAProxy before 2.0.6. In legacy mode, messages featuring a transfer-encoding header missing the "chunked" value were…
- CVE-2019-182781 PoCWhen executing VideoLAN VLC media player 3.0.8 with libqt on Windows, Data from a Faulting Address controls Code Flow starting at…
- CVE-2019-182921 PoCA vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000…
- CVE-2019-183041 PoCA vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000…
- CVE-2019-183051 PoCA vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000…
- CVE-2019-183071 PoCA vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000…
- CVE-2019-183452 PoCsA reflected XSS issue was discovered in DAViCal through 1.1.8. It echoes the action parameter without encoding. If a user visits an…
- CVE-2019-183471 PoCA stored XSS issue was discovered in DAViCal through 1.1.8. It does not adequately sanitize output of various fields that can be set by…
- CVE-2019-183502 PoCsIn Ant Design Pro 4.0.0, reflected XSS in the user/login redirect GET parameter affects the authorization component, leading to execution…
- CVE-2019-183591 PoCA buffer over-read was discovered in ReadMP3APETag in apetag.c in MP3Gain 1.6.2. The vulnerability causes an application crash, which…
- CVE-2019-183702 PoCsAn issue was discovered on Xiaomi Mi WiFi R3G devices before 2.28.23-stable. The backup file is in tar.gz format. After uploading, the…
- CVE-2019-183714 PoCsAn issue was discovered on Xiaomi Mi WiFi R3G devices before 2.28.23-stable. There is a directory traversal vulnerability to read…
- CVE-2019-183931 PoCPluginServlet.java in Ignite Realtime Openfire through 4.4.2 does not ensure that retrieved files are located under the Openfire home…
- CVE-2019-183943 PoCsA Server Side Request Forgery (SSRF) vulnerability in FaviconServlet.java in Ignite Realtime Openfire through 4.4.2 allows attackers to…
- CVE-2019-183961 PoCAn issue was discovered in certain Oi third-party firmware that may be installed on Technicolor TD5130v2 devices. A Command Injection in…
- CVE-2019-184091 PoCThe ruby_parser-legacy (aka legacy) gem 1.0.0 for Ruby allows local privilege escalation because of world-writable files. For example, if…
- CVE-2019-184131 PoCIn TypeStack class-validator 0.10.2, validate() input validation can be bypassed because certain internal attributes can be overwritten…
- CVE-2019-184182 PoCsclonos.php in ClonOS WEB control panel 19.09 allows remote attackers to gain full access via change password requests because there is no…
- CVE-2019-184191 PoCA cross-site scripting (XSS) vulnerability in index.php in ClonOS WEB control panel 19.09 allows remote attackers to inject arbitrary web…
- CVE-2019-184264 PoCsKEVA vulnerability in WhatsApp Desktop versions prior to 0.3.9309 when paired with WhatsApp for iPhone versions prior to 2.20.10 allows…
- CVE-2019-185671 PoCBromium client - out of bound read results in race condition causing Kernel memory leaks or denial of service
- CVE-2019-186081 PoCCezerin v0.33.0 allows unauthorized order-information modification because certain internal attributes can be overwritten via a…
- CVE-2019-186191 PoCIncorrect parameter validation in the synaTee component of Synaptics WBF drivers using an SGX enclave (all versions prior to 2019-11-15)…
- CVE-2019-186241 PoCOpera Mini for Android allows attackers to bypass intended restrictions on .apk file download/installation via an RTLO (aka Right to Left…
- CVE-2019-1863418 PoCsIn Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the privileged sudo…
- CVE-2019-186531 PoCA Cross Site Scripting (XSS) issue exists in Avast AntiVirus (Free, Internet Security, and Premiere Edition) 19.3.2369 build 19.3.4241.440…
- CVE-2019-186541 PoCA Cross Site Scripting (XSS) issue exists in AVG AntiVirus (Internet Security Edition) 19.3.3084 build 19.3.4241.440 in the Network…
- CVE-2019-186552 PoCsFile Sharing Wizard version 1.5.0 build 2008 is affected by a Structured Exception Handler based buffer overflow vulnerability. An…
- CVE-2019-186651 PoCThe Log module in SECUDOS DOMOS before 5.6 allows local file inclusion.
- CVE-2019-186751 PoCThe Linux kernel through 5.3.13 has a start_offset+size Integer Overflow in cpia2_remap_buffer in drivers/media/usb/cpia2/cpia2_core.c…
- CVE-2019-186801 PoCAn issue was discovered in the Linux kernel 4.4.x before 4.4.195. There is a NULL pointer dereference in rds_tcp_kill_sock() in…
- CVE-2019-186834 PoCsAn issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is exploitable for privilege escalation on…
- CVE-2019-186841 PoCSudo through 1.8.29 allows local users to escalate to root if they have write access to file descriptor 3 of the sudo process. This occurs…
- CVE-2019-187931 PoCParallels Plesk Panel 9.5 allows XSS in target/locales/tr-TR/help/index.htm? via the "fileName" parameter.
- CVE-2019-187971 PoCLibSass 3.6.1 has uncontrolled recursion in Sass::Eval::operator()(Sass::Binary_Expression*) in eval.cpp.
- CVE-2019-187981 PoCLibSass before 3.6.3 allows a heap-based buffer over-read in Sass::weaveParents in ast_sel_weave.cpp.
- CVE-2019-187991 PoCLibSass before 3.6.3 allows a NULL pointer dereference in Sass::Parser::parseCompoundSelector in parser_selectors.cpp.
- CVE-2019-188011 PoCAn issue was discovered in Envoy 1.12.0. An untrusted remote client may send HTTP/2 requests that write to the heap outside of the request…
- CVE-2019-1881814 PoCsstrapi before 3.0.0-beta.17.5 mishandles password resets within packages/strapi-admin/controllers/Auth.js and…
- CVE-2019-188191 PoCEximious Logo Designer 3.82 has a User Mode Write AV starting at ExiVectorRender!StrokeText_Blend+0x00000000000003a7.
- CVE-2019-188201 PoCEximious Logo Designer 3.82 has Heap Corruption starting at ntdll!RtlpNtMakeTemporaryKey+0x0000000000001a78.
- CVE-2019-188211 PoCEximious Logo Designer 3.82 has a User Mode Write AV starting at…
- CVE-2019-188241 PoCBarco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The ClickShare Button does not…
- CVE-2019-188251 PoCBarco ClickShare Huddle CS-100 devices before 1.9.0 and CSE-200 devices before 1.9.0 have incorrect Credentials Management. The ClickShare…
- CVE-2019-188291 PoCBarco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The Barco signed…
- CVE-2019-188321 PoCBarco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements…
- CVE-2019-188331 PoCBarco ClickShare Button R9861500D01 devices before 1.9.0 allow Information exposure (issue 2 of 2).. The encryption key of the media…
- CVE-2019-188361 PoCEnvoy 1.12.0 allows a remote denial of service because of resource loops, as demonstrated by a single idle TCP connection being able to…
- CVE-2019-188392 PoCsFUDForum 3.0.9 is vulnerable to Stored XSS via the nlogin parameter. This may result in remote code execution. An attacker can use a user…
- CVE-2019-188421 PoCA cross-site scripting (XSS) vulnerability in the configuration web interface of the Jinan USR IOT USR-WIFI232-S/T/G2/H Low Power WiFi…
- CVE-2019-188452 PoCsThe MsIo64.sys and MsIo32.sys drivers in Patriot Viper RGB before 1.1 allow local users (including low integrity processes) to read and…
- CVE-2019-188462 PoCsOX App Suite through 7.10.2 allows SSRF.
- CVE-2019-188521 PoCCertain D-Link devices have a hardcoded Alphanetworks user account with TELNET access because of /etc/config/image_sign or…
- CVE-2019-188581 PoCCODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.
- CVE-2019-188593 PoCsDigi AnywhereUSB 14 allows XSS via a link for the Digi Page.
- CVE-2019-188621 PoCmaidag in GNU Mailutils before 3.8 is installed setuid and allows local privilege escalation in the url mode.
- CVE-2019-188732 PoCsFUDForum 3.0.9 is vulnerable to Stored XSS via the User-Agent HTTP header. This may result in remote code execution. An attacker can use a…
- CVE-2019-188831 PoCXSS exists in Lavalite CMS 5.7 via the admin/profile name or designation field.
- CVE-2019-188841 PoCindex.php/team_members/add_team_member in RISE Ultimate Project Manager 2.3 has CSRF for adding authorized users.
- CVE-2019-188851 PoCfs/btrfs/volumes.c in the Linux kernel before 5.1 allows a btrfs_verify_dev_extents NULL pointer dereference via a crafted btrfs image…
- CVE-2019-188891 PoCAn issue was discovered in Symfony 3.4.0 through 3.4.34, 4.2.0 through 4.2.11, and 4.3.0 through 4.3.7. Serializing certain cache adapter…
- CVE-2019-188901 PoCA SQL injection vulnerability in Redmine through 3.2.9 and 3.3.x before 3.3.10 allows Redmine users to access protected information via a…
- CVE-2019-188931 PoCXSS in the Video Downloader component before 1.5 of Avast Secure Browser 77.1.1831.91 and AVG Secure Browser 77.0.1790.77 allows websites…
- CVE-2019-188941 PoCIn Avast Premium Security 19.8.2393, attackers can send a specially crafted request to the local web server run by Avast Antivirus on port…
- CVE-2019-188952 PoCsScanguard through 2019-11-12 on Windows has Insecure Permissions for the installation directory, leading to privilege escalation via a…
- CVE-2019-188981 PoCtrousers: Local privilege escalation from tss to root
- CVE-2019-189091 PoCThe VPN software within HP ThinPro does not safely handle user supplied input, which may be leveraged by an attacker to inject commands…
- CVE-2019-189101 PoCThe Citrix Receiver wrapper function does not safely handle user supplied input, which may be leveraged by an attacker to inject commands…
- CVE-2019-189151 PoCA potential security vulnerability has been identified with certain versions of HP System Event Utility prior to version 1.4.33. This…
- CVE-2019-189221 PoCA Directory Traversal in the Web interface of the Allied Telesis AT-GS950/8 until Firmware AT-S107 V.1.1.3 [1.00.047] allows…
- CVE-2019-189291 PoCWestern Digital My Cloud EX2 Ultra firmware 2.31.183 allows web users (including guest accounts) to remotely execute arbitrary code via a…
- CVE-2019-189301 PoCWestern Digital My Cloud EX2 Ultra firmware 2.31.183 allows web users (including guest account) to remotely execute arbitrary code via a…
- CVE-2019-189311 PoCWestern Digital My Cloud EX2 Ultra firmware 2.31.195 allows a Buffer Overflow with Extended Instruction Pointer (EIP) control via crafted…
- CVE-2019-1893523 PoCsKEVProgress Telerik UI for ASP.NET AJAX through 2019.3.1023 contains a .NET deserialization vulnerability in the RadAsyncUpload function.…
- CVE-2019-189512 PoCsSibSoft Xfilesharing through 2.5.1 allows op=page&tmpl=../ directory traversal to read arbitrary files.
- CVE-2019-189522 PoCsSibSoft Xfilesharing through 2.5.1 allows cgi-bin/up.cgi arbitrary file upload. This can be combined with CVE-2019-18951 to achieve remote…
- CVE-2019-189542 PoCsPomelo v2.2.5 allows external control of critical state data. A malicious user input can corrupt arbitrary methods and attributes in…
- CVE-2019-189561 PoCDivisa Proxia Suite 9 < 9.12.16, 9.11.19, 9.10.26, 9.9.8, 9.8.43 and 9.7.10, 10.0 < 10.0.32, and 10.1 < 10.1.5, SparkSpace 1.0 < 1.0.30,…
- CVE-2019-189571 PoCMicrostrategy Library in MicroStrategy before 2019 before 11.1.3 has reflected XSS.
- CVE-2019-189882 PoCsKEVTeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the same key is used for different customers'…