CVE-2019-3000 to CVE-2019-3999
88 CVEs with public proof-of-concept exploits.
- CVE-2019-30105 PoCsKEVVulnerability in the Oracle Solaris product of Oracle Systems (component: XScreenSaver). The supported version that is affected is 11.…
- CVE-2019-30252 PoCsVulnerability in the Oracle Hospitality RES 3700 component of Oracle Food and Beverage Applications. The supported version that is…
- CVE-2019-33941 PoCThere was a local file disclosure vulnerability in Confluence Server and Confluence Data Center via page exporting. An attacker with…
- CVE-2019-339633 PoCsKEVThe Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from version 6.7.0 before…
- CVE-2019-33985 PoCsKEVConfluence Server and Data Center had a path traversal vulnerability in the downloadallattachments resource. A remote attacker who has…
- CVE-2019-34011 PoCThe ManageFilters.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to…
- CVE-2019-34021 PoCThe ConfigurePortalPages.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers…
- CVE-2019-34032 PoCsThe /rest/api/2/user/picker rest resource in Jira before version 7.13.3, from version 8.0.0 before version 8.0.4, and from version 8.1.0…
- CVE-2019-346511 PoCsRob Richards XmlSecLibs, all versions prior to v3.0.3, as used for example by SimpleSAMLphp, performed incorrect validation of…
- CVE-2019-34661 PoCThe pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary…
- CVE-2019-34741 PoCPath traversal vulnerability in Filr web application
- CVE-2019-34751 PoCLocal privilege escalation in Filr famtd
- CVE-2019-34951 PoCAn issue was discovered on Wifi-soft UniBox controller 0.x through 2.x devices. network/mesh/edit-nds.php is vulnerable to arbitrary file…
- CVE-2019-34961 PoCAn issue was discovered on Wifi-soft UniBox controller 3.x devices. The tools/controller/diagnostic_tools_controller Diagnostic Tools…
- CVE-2019-34971 PoCAn issue was discovered on Wifi-soft UniBox controller 0.x through 2.x devices. The tools/ping Ping feature of the Diagnostic Tools…
- CVE-2019-35011 PoCThe OUGC Awards plugin before 1.8.19 for MyBB allows XSS via a crafted award reason that is mishandled on the awards page or in a user…
- CVE-2019-35681 PoCKEVA buffer overflow vulnerability in WhatsApp VOIP stack allowed remote code execution via specially crafted series of RTCP packets sent to…
- CVE-2019-35721 PoCAn issue was discovered in libming 0.4.8. There is a heap-based buffer over-read in the function writePNG in the file util/dbl2png.c of…
- CVE-2019-35751 PoCSqla_yaml_fixtures 0.9.1 allows local users to execute arbitrary python code via the fixture_text argument in sqla_yaml_fixtures.load.
- CVE-2019-36211 PoCDLP Endpoint Windows lock screen bypass with physical access
- CVE-2019-36631 PoCAdvanced Threat Defense (ATD) - Unprotected storage of shared credentials vulnerability
- CVE-2019-36911 PoCLocal privilege escalation from user munge to root
- CVE-2019-36921 PoCLocal privilege escalation from user news to root in the packaging of inn
- CVE-2019-36971 PoCLocal privilege escalation from user gnump3d to root
- CVE-2019-37011 PoCAn issue was discovered in can_can_gw_rcv in net/can/gw.c in the Linux kernel through 4.19.13. The CAN frame modification rules allow…
- CVE-2019-37192 PoCsDell SupportAssist Client versions prior to 3.2.0.90 contain a remote code execution vulnerability. An unauthenticated attacker, sharing…
- CVE-2019-37591 PoCThe RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 contain a code…
- CVE-2019-37782 PoCsOpen Redirect in spring-security-oauth2
- CVE-2019-37996 PoCsDirectory Traversal with spring-cloud-config-server
- CVE-2019-38103 PoCsA flaw was found in moodle versions 3.6 to 3.6.1, 3.5 to 3.5.3, 3.4 to 3.4.6, 3.1 to 3.1.15 and earlier unsupported versions. The…
- CVE-2019-38141 PoCIt was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in…
- CVE-2019-38321 PoCIt was discovered the fix for CVE-2018-19758 (libsndfile) was not complete and still allows a read beyond the limits of a buffer in…
- CVE-2019-38422 PoCsIn systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT…
- CVE-2019-38431 PoCIt was discovered that a systemd service that uses DynamicUser property can create a SUID/SGID binary that would be allowed to run as the…
- CVE-2019-38441 PoCIt was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries,…
- CVE-2019-39101 PoCCrestron AM-100 before firmware version 1.6.0.2 contains an authentication bypass in the web interface's return.cgi script.…
- CVE-2019-39112 PoCsReflected cross-site scripting (XSS) vulnerability in LabKey Server Community Edition before 18.3.0-61806.763 allows an unauthenticated…
- CVE-2019-39122 PoCsAn open redirect vulnerability in LabKey Server Community Edition before 18.3.0-61806.763 via the /__r1/ returnURL parameter allows an…
- CVE-2019-39131 PoCCommand manipulation in LabKey Server Community Edition before 18.3.0-61806.763 allows an authenticated remote attacker to unmount any…
- CVE-2019-39141 PoCRemote command injection vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows a remote, authenticated…
- CVE-2019-39171 PoCThe Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 allows a remote, unauthenticated attacker to enable telnetd on…
- CVE-2019-39181 PoCThe Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 contains multiple hard coded credentials for the Telnet and SSH…
- CVE-2019-39191 PoCThe Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to command injection via crafted HTTP request…
- CVE-2019-39201 PoCThe Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to authenticated command injection via crafted…
- CVE-2019-39212 PoCsThe Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via crafted HTTP POST…
- CVE-2019-39221 PoCThe Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via crafted HTTP POST…
- CVE-2019-39244 PoCsMikroTik RouterOS before 6.43.12 (stable) and 6.42.12 (long-term) is vulnerable to an intermediary vulnerability. The software will…
- CVE-2019-39251 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to command injection via SNMP OID…
- CVE-2019-39261 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to command injection via SNMP OID…
- CVE-2019-39271 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 anyone can change the administrator and moderator passwords via the…
- CVE-2019-39296 PoCsKEVThe Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent…
- CVE-2019-39301 PoCThe Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent…
- CVE-2019-39311 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to argumention injection to the curl binary via…
- CVE-2019-39321 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to authentication bypass due to a hard-coded…
- CVE-2019-39331 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to bypass the presentation code simply by requesting…
- CVE-2019-39341 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to bypass the presentation code sending a crafted…
- CVE-2019-39351 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to act as a moderator to a slide show via crafted…
- CVE-2019-39371 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 stores usernames, passwords, slideshow passcode, and other…
- CVE-2019-39381 PoCCrestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 stores usernames, passwords, and other configuration options in the…
- CVE-2019-39431 PoCMikroTik RouterOS versions Stable 6.43.12 and below, Long-term 6.42.12 and below, and Testing 6.44beta75 and below are vulnerable to an…
- CVE-2019-39461 PoCFuji Electric V-Server before 6.0.33.0 is vulnerable to denial of service via a crafted UDP message sent to port 8005. An unauthenticated,…
- CVE-2019-39471 PoCFuji Electric V-Server before 6.0.33.0 stores database credentials in project files as plaintext. An attacker that can gain access to the…
- CVE-2019-39483 PoCsThe Amcrest IP2M-841B V2.520.AC00.18.R, Dahua IPC-XXBXX V2.622.0000000.9.R, Dahua IPC HX5X3X and HX4X3X V2.800.0000008.0.R, Dahua DH-IPC…
- CVE-2019-39581 PoCInsufficient output sanitization in WallacePOS 1.4.3 allows a remote, authenticated attacker to conduct persistent cross-site scripting…
- CVE-2019-39591 PoCCross-site request forgery in WallacePOS 1.4.3 allows a remote attacker to perform sensitive application actions by tricking legitimate…
- CVE-2019-39601 PoCUnrestricted upload of file with dangerous type in WallacePOS 1.4.3 allows a remote, authenticated attacker to execute arbitrary code by…
- CVE-2019-39631 PoCIn OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the patient_id parameter. This could allow an…
- CVE-2019-39641 PoCIn OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the doc_id parameter. This could allow an attacker…
- CVE-2019-39651 PoCIn OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the document_id parameter. This could allow an…
- CVE-2019-39661 PoCIn OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the foreign_id parameter. This could allow an…
- CVE-2019-39671 PoCIn OpenEMR 5.0.1 and earlier, the patient file download interface contains a directory traversal flaw that allows authenticated attackers…
- CVE-2019-39681 PoCIn OpenEMR 5.0.1 and earlier, an authenticated attacker can execute arbitrary commands on the host system via the Scanned Forms interface…
- CVE-2019-39691 PoCComodo Antivirus versions up to 12.0.0.6810 are vulnerable to Local Privilege Escalation due to CmdAgent's handling of COM clients. A…
- CVE-2019-39701 PoCComodo Antivirus versions up to 12.0.0.6810 are vulnerable to Arbitrary File Write due to Cavwp.exe handling of Comodo's Antivirus…
- CVE-2019-39711 PoCComodo Antivirus versions up to 12.0.0.6810 are vulnerable to a local Denial of Service affecting CmdVirth.exe via its LPC port…
- CVE-2019-39721 PoCComodo Antivirus versions 12.0.0.6810 and below are vulnerable to Denial of Service affecting CmdAgent.exe via an unprotected section…
- CVE-2019-39731 PoCComodo Antivirus versions 11.0.0.6582 and below are vulnerable to Denial of Service affecting CmdGuard.sys via its filter port…
- CVE-2019-39781 PoCRouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below allow remote unauthenticated attackers to trigger DNS queries via port 8291.…
- CVE-2019-39805 PoCsThe Solarwinds Dameware Mini Remote Client agent v12.1.0.89 supports smart card authentication which can allow a user to upload an…
- CVE-2019-39811 PoCMikroTik Winbox 3.20 and below is vulnerable to man in the middle attacks. A man in the middle can downgrade the client's authentication…
- CVE-2019-39921 PoCELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can access the…
- CVE-2019-39931 PoCELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can recover a…
- CVE-2019-39941 PoCELOG 3.1.4-57bea22 and below is affected by a denial of service vulnerability due to a use after free. A remote unauthenticated attacker…
- CVE-2019-39951 PoCELOG 3.1.4-57bea22 and below is affected by a denial of service vulnerability due to a NULL pointer dereference. A remote unauthenticated…
- CVE-2019-39961 PoCELOG 3.1.4-57bea22 and below can be used as an HTTP GET request proxy when unauthenticated remote attackers send crafted HTTP POST requests.
- CVE-2019-39971 PoCAuthentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthenticated attacker to…
- CVE-2019-39981 PoCAuthentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to modify…
- CVE-2019-39995 PoCsImproper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, unauthenticated…