CVE-2019-6000 to CVE-2019-6999
125 CVEs with public proof-of-concept exploits.
- CVE-2019-60001 PoCBuffer overflow in PTP (Picture Transfer Protocol) of EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X…
- CVE-2019-60011 PoCBuffer overflow in PTP (Picture Transfer Protocol) of EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X…
- CVE-2019-61103 PoCsIn OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle…
- CVE-2019-61114 PoCsAn issue was discovered in OpenSSH 7.9. Due to the scp implementation being derived from 1983 rcp, the server chooses which…
- CVE-2019-61121 PoCA Cross-site scripting (XSS) vulnerability in /inc/class-search.php in the Sell Media plugin v2.4.1 for WordPress allows remote attackers…
- CVE-2019-61141 PoCAn issue was discovered in Corel PaintShop Pro 2019 21.0.0.119. An integer overflow in the jp2 parsing library allows an attacker to…
- CVE-2019-61162 PoCsIn Artifex Ghostscript through 9.26, ephemeral or transient procedures can allow access to system operators, leading to remote code…
- CVE-2019-61201 PoCAn issue was discovered in NiceHash Miner before 2.0.3.0. A missing rate limit while adding a wallet via Email address allows remote…
- CVE-2019-61211 PoCAn issue was discovered in NiceHash Miner before 2.0.3.0. Missing Authorization allows an adversary to can gain access to a miner's…
- CVE-2019-61221 PoCA Username Enumeration via Error Message issue was discovered in NiceHash Miner before 2.0.3.0 because an "EMAIL DOES NOT EXIST" error…
- CVE-2019-61281 PoCThe TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory leak, as demonstrated by pal2rgb.
- CVE-2019-61291 PoCpng_create_info_struct in png.c in libpng 1.6.36 has a memory leak, as demonstrated by pngcp. NOTE: a third party has stated "I don't…
- CVE-2019-61321 PoCAn issue was discovered in Bento4 v1.5.1-627. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in…
- CVE-2019-61361 PoCAn issue has been found in libIEC61850 v1.3.1. Ethernet_setProtocolFilter in hal/ethernet/linux/ethernet_linux.c has a SEGV, as…
- CVE-2019-61451 PoCForcepoint VPN Client for Windows versions lower than 6.6.1 have an unquoted search path vulnerability. This enables local privilege…
- CVE-2019-61461 PoCIt has been reported that cross-site scripting (XSS) is possible in Forcepoint Web Security, version 8.x, via host header injection.…
- CVE-2019-61922 PoCsA potential vulnerability has been reported in Lenovo Power Management Driver versions prior to 1.67.17.48 leading to a buffer overflow…
- CVE-2019-62031 PoCA logic issue was addressed with improved state management. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2. An attacker…
- CVE-2019-62051 PoCA memory corruption issue was addressed with improved lock state checking. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS…
- CVE-2019-62073 PoCsAn out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This…
- CVE-2019-62081 PoCA memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS…
- CVE-2019-62091 PoCAn out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This…
- CVE-2019-62131 PoCA buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2,…
- CVE-2019-62141 PoCA type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2,…
- CVE-2019-62151 PoCA type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, tvOS 12.1.2, Safari 12.0.3, iTunes…
- CVE-2019-62181 PoCA memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS…
- CVE-2019-62241 PoCA buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2,…
- CVE-2019-62258 PoCsA memory corruption issue was addressed with improved validation. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2. A…
- CVE-2019-62441 PoCAn issue was discovered in UsualToolCMS 8.0. cmsadmin/a_sqlbackx.php?t=sql allows CSRF attacks that can execute SQL statements, and…
- CVE-2019-62451 PoCAn issue was discovered in Anti-Grain Geometry (AGG) 2.4 as used in SVG++ (aka svgpp) 1.2.3. In the function agg::cell_aa::not_equal, dx…
- CVE-2019-62461 PoCAn issue was discovered in SVG++ (aka svgpp) 1.2.3. After calling the gil::get_color function in Generic Image Library in Boost, the…
- CVE-2019-62471 PoCAn issue was discovered in Anti-Grain Geometry (AGG) 2.4 as used in SVG++ (aka svgpp) 1.2.3. A heap-based buffer overflow bug in…
- CVE-2019-62492 PoCsAn issue was discovered in HuCart v5.7.4. There is a CSRF vulnerability that can add an admin account via…
- CVE-2019-62501 PoCA pointer overflow, with code execution, was discovered in ZeroMQ libzmq (aka 0MQ) 4.2.x and 4.3.x before 4.3.1. A v2_decoder.cpp…
- CVE-2019-62561 PoCA Denial of Service issue was discovered in the LIVE555 Streaming Media libraries as used in Live555 Media Server 0.93. It can cause an…
- CVE-2019-62581 PoCD-Link DIR-822 Rev.Bx devices with firmware v.202KRb06 and older allow a buffer overflow via long MacAddress data in a…
- CVE-2019-62591 PoCAn issue was discovered in idreamsoft iCMS V7.0.13. There is SQL Injection via the app/article/article.admincp.php _data_id parameter.
- CVE-2019-62601 PoCThe ASPEED ast2400 and ast2500 Baseband Management Controller (BMC) hardware and firmware implement Advanced High-performance Bus (AHB)…
- CVE-2019-62632 PoCsAn issue was discovered in Joomla! before 3.9.2. Inadequate checks of the Global Configuration Text Filter settings allowed stored XSS.
- CVE-2019-62671 PoCThe Premium WP Suite Easy Redirect Manager plugin 28.07-17 for WordPress has XSS via a crafted GET request that is mishandled during log…
- CVE-2019-62722 PoCsCommand injection vulnerability in login_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to execute…
- CVE-2019-62732 PoCsdownload_file in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to download arbitrary files.
- CVE-2019-62742 PoCsDirectory traversal vulnerability in storage_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to have…
- CVE-2019-62752 PoCsCommand injection vulnerability in firmware_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to execute…
- CVE-2019-62794 PoCsChinaMobile PLC Wireless Router GPN2.4P21-C-CN devices with firmware W2001EN-00 have an Incorrect Access Control vulnerability via the…
- CVE-2019-62824 PoCsChinaMobile PLC Wireless Router GPN2.4P21-C-CN devices with firmware W2001EN-00 have CSRF via the cgi-bin/webproc?getpage=html/index.html…
- CVE-2019-62831 PoCIn LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::parenthese_scope in prelexer.hpp.
- CVE-2019-62841 PoCIn LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::alternatives in prelexer.hpp.
- CVE-2019-62851 PoCThe SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service…
- CVE-2019-62861 PoCIn LibSass 3.5.5, a heap-based buffer over-read exists in Sass::Prelexer::skip_over_scopes in prelexer.hpp when called from…
- CVE-2019-62901 PoCAn infinite recursion issue was discovered in eval.c in Netwide Assembler (NASM) through 2.14.02. There is a stack exhaustion problem…
- CVE-2019-62911 PoCAn issue was discovered in the function expr6 in eval.c in Netwide Assembler (NASM) through 2.14.02. There is a stack exhaustion problem…
- CVE-2019-62921 PoCAn issue was discovered in singledocparser.cpp in yaml-cpp (aka LibYaml-C++) 0.6.2. Stack Exhaustion occurs in YAML::SingleDocParser, and…
- CVE-2019-62931 PoCAn issue was discovered in the function mark_beginning_as_normal in nfa.c in flex 2.6.4. There is a stack exhaustion problem caused by the…
- CVE-2019-62941 PoCAn issue was discovered in EasyCMS 1.5. There is CSRF via the…
- CVE-2019-63291 PoCHP Support Assistant 8.7.50 and earlier allows a user to gain system privilege and allows unauthorized modification of directories or…
- CVE-2019-63392 PoCsPHAR stream wrapper Arbitrary PHP code execution
- CVE-2019-634022 PoCsKEVDrupal core - Highly critical - Remote Code Execution
- CVE-2019-63411 PoCDrupal core - Moderately critical - Cross Site Scripting - SA-CORE-2019-004
- CVE-2019-64401 PoCZemana AntiMalware before 3.0.658 Beta mishandles update logic.
- CVE-2019-64414 PoCsAn issue was discovered on Shenzhen Coship RT3050 4.0.0.40, RT3052 4.0.0.48, RT7620 10.0.0.49, WM3300 5.0.0.54, and WM3300 5.0.0.55…
- CVE-2019-64422 PoCsAn issue was discovered in NTPsec before 1.1.3. An authenticated attacker can write one byte out of bounds in ntpd via a malformed config…
- CVE-2019-64433 PoCsAn issue was discovered in NTPsec before 1.1.3. Because of a bug in ctl_getitem, there is a stack-based buffer over-read in read_sysvars…
- CVE-2019-64442 PoCsAn issue was discovered in NTPsec before 1.1.3. process_control() in ntp_control.c has a stack-based buffer over-read because…
- CVE-2019-64452 PoCsAn issue was discovered in NTPsec before 1.1.3. An authenticated attacker can cause a NULL pointer dereference and ntpd crash in…
- CVE-2019-64461 PoCAn issue was discovered in NumPy before 1.16.3. It uses the pickle Python module unsafely, which allows remote attackers to execute…
- CVE-2019-644727 PoCsThe ES File Explorer File Manager application through 4.1.9.7.4 for Android allows remote attackers to read arbitrary files or execute…
- CVE-2019-64521 PoCKyocera Command Center RX TASKalfa4501i and TASKalfa5052ci allows remote attackers to abuse the Test button in the machine address book to…
- CVE-2019-64534 PoCsmIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can…
- CVE-2019-64541 PoCAn issue was discovered in sd-bus in systemd 239. bus_process_object() in libsystemd/sd-bus/bus-objects.c allocates a variable-length…
- CVE-2019-64551 PoCAn issue was discovered in GNU Recutils 1.8. There is a double-free problem in the function rec_mset_elem_destroy() in the file rec-mset.c.
- CVE-2019-64561 PoCAn issue was discovered in GNU Recutils 1.8. There is a NULL pointer dereference in the function rec_fex_size() in the file rec-fex.c of…
- CVE-2019-64571 PoCAn issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_aggregate_reg_new in rec-aggregate.c in librec.a.
- CVE-2019-64581 PoCAn issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_buf_new in rec-buf.c when called from rec_parse_rset in…
- CVE-2019-64591 PoCAn issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_extract_type in rec-utils.c in librec.a.
- CVE-2019-64601 PoCAn issue was discovered in GNU Recutils 1.8. There is a NULL pointer dereference in the function rec_field_set_name() in the file…
- CVE-2019-64671 PoCAn error in the nxdomain redirect feature can cause BIND to exit with an INSIST assertion failure in query.c
- CVE-2019-64872 PoCsTP-Link WDR Series devices through firmware v3 (such as TL-WDR5620 V3.0) are affected by command injection (after login) leading to remote…
- CVE-2019-64961 PoCThe ThreadX-based firmware on Marvell Avastar Wi-Fi devices, models 88W8787, 88W8797, 88W8801, 88W8897, and 88W8997, allows remote…
- CVE-2019-64982 PoCsGattLib 0.2 has a stack-based buffer over-read in gattlib_connect in dbus/gattlib.c because strncpy is misused.
- CVE-2019-65071 PoCAn issue was discovered in creditease-sec insight through 2018-09-11. login_user_delete in srcpm/app/admin/views.py allows CSRF.
- CVE-2019-65081 PoCAn issue was discovered in creditease-sec insight through 2018-09-11. role_perm_delete in srcpm/app/admin/views.py allows CSRF.
- CVE-2019-65091 PoCAn issue was discovered in creditease-sec insight through 2018-09-11. depart_delete in srcpm/app/admin/views.py allows CSRF.
- CVE-2019-65101 PoCAn issue was discovered in creditease-sec insight through 2018-09-11. user_delete in srcpm/app/admin/views.py allows CSRF.
- CVE-2019-65431 PoCAVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version…
- CVE-2019-65451 PoCAVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version…
- CVE-2019-65881 PoCIn Liferay Portal before 7.1 CE GA4, an XSS vulnerability exists in the SimpleCaptcha API when custom code passes unsanitized input into…
- CVE-2019-66902 PoCspython-gnupg 0.4.3 allows context-dependent attackers to trick gnupg to decrypt other ciphertext than intended. To perform the attack, the…
- CVE-2019-66911 PoCphpwind 9.0.2.170426 UTF8 allows SQL Injection via the admin.php?m=backup&c=backup&a=doback tabledb[] parameter, related to the "--backup…
- CVE-2019-66933 PoCsKEVUse of a hard-coded cryptographic key to cipher sensitive data in FortiOS configuration backup file may allow an attacker with access to…
- CVE-2019-67031 PoCIncorrect access control in migla_ajax_functions.php in the Calmar Webmedia Total Donations plugin through 2.0.5 for WordPress allows…
- CVE-2019-67062 PoCsLua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example, a crash outcome might be achieved by an attacker who is able to…
- CVE-2019-67071 PoCPHPSHE 1.7 has SQL injection via the admin.php?mod=product&act=state product_id[] parameter.
- CVE-2019-67081 PoCPHPSHE 1.7 has SQL injection via the admin.php?mod=order state parameter.
- CVE-2019-67101 PoCZyxel NBG-418N v2 v1.00(AAXM.4)C0 devices allow login.cgi CSRF.
- CVE-2019-67142 PoCsAn issue was discovered in BlogEngine.NET through 3.3.6.0. A path traversal and Local File Inclusion vulnerability in PostList.ascx.cs can…
- CVE-2019-67154 PoCspub/sns.php in the W3 Total Cache plugin before 0.9.4 for WordPress allows remote attackers to read arbitrary files via the SubscribeURL…
- CVE-2019-67161 PoCAn unauthenticated Insecure Direct Object Reference (IDOR) in Wicket Core in LogonBox Nervepoint Access Manager 2013 through 2017 allows a…
- CVE-2019-67241 PoCThe barracudavpn component of the Barracuda VPN Client prior to version 5.0.2.7 for Linux, macOS, and OpenBSD runs as a privileged process…
- CVE-2019-67261 PoCThe WP Fastest Cache plugin through 0.8.9.0 for WordPress allows remote attackers to delete arbitrary files because…
- CVE-2019-67781 PoCIn QEMU 3.0.0, tcp_emu in slirp/tcp_subr.c has a heap-based buffer overflow.
- CVE-2019-67791 PoCCscms 4.1.8 allows admin.php/links/save CSRF to add, modify, or delete friend links.
- CVE-2019-67801 PoCThe Wise Chat plugin before 2.7 for WordPress mishandles external links because rendering/filters/post/WiseChatLinksPostFilter.php omits…
- CVE-2019-67851 PoCAn issue was discovered in GitLab Community and Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. It…
- CVE-2019-67932 PoCsAn issue was discovered in GitLab Enterprise Edition before 11.5.8, 11.6.x before 11.6.6, and 11.7.x before 11.7.1. The Jira integration…
- CVE-2019-67991 PoCAn issue was discovered in phpMyAdmin before 4.8.5. When the AllowArbitraryServer configuration setting is set to true, with the use of a…
- CVE-2019-68021 PoCCRLF Injection in pypiserver 1.2.5 and below allows attackers to set arbitrary HTTP headers and possibly conduct XSS attacks via a %0d%0a…
- CVE-2019-68031 PoCtypora through 0.9.9.20.3 beta has XSS, with resultant remote command execution, via the left outline bar.
- CVE-2019-68041 PoCAn XSS issue was discovered on the Job Edit page in Rundeck Community Edition before 3.0.13, related to…
- CVE-2019-68061 PoCA CWE-200: Information Exposure vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon…
- CVE-2019-68071 PoCA CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2019-68142 PoCsA CWE-287: Improper Authentication vulnerability exists in the NET55XX Encoder with firmware prior to version 2.1.9.7 which could cause…
- CVE-2019-69561 PoCAn issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. It is a buffer over-read in ps_mix_phase in libfaad/ps_dec.c.
- CVE-2019-69651 PoCAn XSS issue was discovered in i-doit Open 1.12 via the src/tools/php/qr/qr.php url parameter.
- CVE-2019-69661 PoCAn issue was discovered in Bento4 1.5.1-628. The AP4_ElstAtom class in Core/Ap4ElstAtom.cpp has an attempted excessive memory allocation…
- CVE-2019-69672 PoCsAirTies Air5341 1.0.0.12 devices allow cgi-bin/login CSRF.
- CVE-2019-69712 PoCsAn issue was discovered on TP-Link TL-WR1043ND V2 devices. An attacker can send a cookie in an HTTP authentication packet to the router…
- CVE-2019-69721 PoCAn issue was discovered on TP-Link TL-WR1043ND V2 devices. The credentials can be easily decoded and cracked by brute-force, WordList, or…
- CVE-2019-69733 PoCsSricam IP CCTV cameras are vulnerable to denial of service via multiple incomplete HTTP requests because the web server (based on gSOAP…
- CVE-2019-69741 PoCIn the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles reference counting because of a race…
- CVE-2019-69773 PoCsgdImageColorMatch in gd_color_match.c in the GD Graphics Library (aka LibGD) 2.2.5, as used in the imagecolormatch function in PHP before…
- CVE-2019-69791 PoCAn issue was discovered in the User IP History Logs (aka IP_History_Logs) plugin 1.0.2 for MyBB. There is XSS via the…
- CVE-2019-69881 PoCAn issue was discovered in OpenJPEG 2.3.0. It allows remote attackers to cause a denial of service (attempted excessive memory allocation)…
- CVE-2019-69891 PoCTP-Link TL-WR940N is vulnerable to a stack-based buffer overflow, caused by improper bounds checking by the ipAddrDispose function. By…
- CVE-2019-69911 PoCA classic Stack-based buffer overflow exists in the zmLoadUser() function in zm_user.cpp of the zmu binary in ZoneMinder through 1.32.3,…