Vulnerabilities (CVE)

CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-15497 2 Blackbox, Onelan 4 Icompel, Icompel Firmware, Net-top-box and 1 more 2019-09-04 10.0 HIGH 9.8 CRITICAL
Black Box iCOMPEL 9.2.3 through 11.1.4, as used in ONELAN Net-Top-Box 9.2.3 through 11.1.4 and other products, has default credentials that allow remote attackers to access devices remotely via SSH, HTTP, HTTPS, and FTP.
CVE-2019-15835 1 Wp Better Permalinks Project 1 Wp Better Permalinks 2019-09-04 6.8 MEDIUM 8.8 HIGH
The wp-better-permalinks plugin before 3.0.5 for WordPress has CSRF.
CVE-2019-15836 1 Bootstrapped 1 Wp Ultimate Recipe 2019-09-04 3.5 LOW 5.4 MEDIUM
The wp-ultimate-recipe plugin before 3.12.7 for WordPress has stored XSS.
CVE-2019-15700 1 Frappe 1 Frappe 2019-09-04 4.3 MEDIUM 6.1 MEDIUM
public/js/frappe/form/footer/timeline.js in Frappe Framework 12 through 12.0.8 does not escape HTML in the timeline and thus is affected by crafted "changed value of" text.
CVE-2019-15770 1 Hallme 1 Woocommerce Address Book 2019-09-04 6.8 MEDIUM 8.8 HIGH
The woo-address-book plugin before 1.6.0 for WordPress has save calls without nonce verification checks.
CVE-2015-9375 1 Ithemes 1 Table Rate Shipping 2019-09-04 4.3 MEDIUM 6.1 MEDIUM
Table Rate Shipping Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2019-14943 1 Gitlab 1 Gitlab 2019-09-04 7.5 HIGH 9.8 CRITICAL
An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.1.4. It uses Hard-coded Credentials.
CVE-2019-15074 1 Mantisbt 1 Mantisbt 2019-09-04 6.8 MEDIUM 9.6 CRITICAL
The Timeline feature in my_view_page.php in MantisBT through 2.21.1 has a stored cross-site scripting (XSS) vulnerability, allowing execution of arbitrary code (if CSP settings permit it) after uploading an attachment with a crafted filename. The code is executed for any user having visibility to the issue, whenever My View Page is displayed.
CVE-2019-15834 1 Webp Converter For Media Project 1 Webp Converter For Media 2019-09-04 6.8 MEDIUM 8.8 HIGH
The webp-converter-for-media plugin before 1.0.3 for WordPress has CSRF.
CVE-2019-15504 1 Linux 1 Linux Kernel 2019-09-04 10.0 HIGH 9.8 CRITICAL
drivers/net/wireless/rsi/rsi_91x_usb.c in the Linux kernel through 5.2.9 has a Double Free via crafted USB device traffic (which may be remote via usbip or usbredir).
CVE-2019-15505 1 Linux 1 Linux Kernel 2019-09-04 10.0 HIGH 9.8 CRITICAL
drivers/media/usb/dvb-usb/technisat-usb2.c in the Linux kernel through 5.2.9 has an out-of-bounds read via crafted USB device traffic (which may be remote via usbip or usbredir).
CVE-2019-15774 1 Booking Project 1 Booking 2019-09-04 5.8 MEDIUM 6.1 MEDIUM
The nd-booking plugin before 2.5 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
CVE-2019-15775 1 Learning Courses Project 1 Learning Courses 2019-09-04 5.8 MEDIUM 6.1 MEDIUM
The nd-learning plugin before 4.8 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
CVE-2019-13268 1 Tp-link 4 Archer C2 V1, Archer C2 V1 Firmware, Archer C3200 V1 and 1 more 2019-09-04 5.8 MEDIUM 8.8 HIGH
TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device. They forward ARP requests, which are sent as broadcast packets, between the host and the guest networks. To use this leakage as a direct covert channel, the sender can trivially issue an ARP request to an arbitrary computer on the network. (In general, some routers restrict ARP forwarding only to requests destined for the network's subnet mask, but these routers did not restrict this traffic in any way. Depending on this factor, one must use either the lower 8 bits of the IP address, or the entire 32 bits, as the data payload.)
CVE-2019-13269 1 Edimax 2 Br-6208ac V1, Br-6208ac V1 Firmware 2019-09-04 5.8 MEDIUM 8.8 HIGH
Edimax BR-6208AC V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device. A DHCP Request is sent to the router with a certain Transaction ID field. Following the DHCP protocol, the router responds with an ACK or NAK message. Studying the NAK case revealed that the router erroneously sends the NAK to both Host and Guest networks with the same Transaction ID as found in the DHCP Request. This allows encoding of data to be sent cross-router into the 32-bit Transaction ID field.
CVE-2019-13270 1 Edimax 2 Br-6208ac V1, Br-6208ac V1 Firmware 2019-09-04 5.8 MEDIUM 8.8 HIGH
Edimax BR-6208AC V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device. In order to transfer data from the host network to the guest network, the sender joins and then leaves an IGMP group. After it leaves, the router (following the IGMP protocol) creates an IGMP Membership Query packet with the Group IP and sends it to both the Host and the Guest networks. The data is transferred within the Group IP field, which is completely controlled by the sender.
CVE-2019-14282 1 Simple Captcha2 Project 1 Simple Captcha2 2019-09-03 7.5 HIGH 9.8 CRITICAL
The simple_captcha2 gem 0.2.3 for Ruby, as distributed on RubyGems.org, included a code-execution backdoor inserted by a third party.
CVE-2019-9177 2019-09-03 N/A N/A
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
CVE-2019-15788 1 Nvidia 1 Clara Genomics Analysis 2019-09-03 7.5 HIGH 9.8 CRITICAL
Clara Genomics Analysis before 0.2.0 has an integer overflow for cudapoa memory management in allocate_block.cpp.
CVE-2019-15569 1 Gov 1 Ccd-data-store-api 2019-09-03 7.5 HIGH 9.8 CRITICAL
HM Courts & Tribunals ccd-data-store-api before 2019-06-10 allows SQL injection, related to SearchQueryFactoryOperation.java and SortDirection.java.
CVE-2019-15779 1 Quadlayers 1 Wp Social Feed Gallery 2019-09-03 6.8 MEDIUM 8.8 HIGH
The insta-gallery plugin before 2.4.8 for WordPress has no nonce validation for qligg_dismiss_notice or qligg_form_item_delete.
CVE-2019-15786 1 Robotis 1 Dynamixel Sdk 2019-09-03 7.5 HIGH 9.8 CRITICAL
ROBOTIS Dynamixel SDK through 3.7.11 has a buffer overflow via a large rxpacket.
CVE-2015-9373 1 Webdevstudios 1 Ithemes Paypal Pro 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
PayPal Pro Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2015-9366 1 Ithemes 1 Custom Url Tracking 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
Custom URL Tracking Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2016-10931 1 Openssl Project 1 Openssl 2019-09-03 6.8 MEDIUM 8.1 HIGH
An issue was discovered in the openssl crate before 0.9.0 for Rust. There is an SSL/TLS man-in-the-middle vulnerability because certificate verification is off by default and there is no API for hostname verification.
CVE-2019-15841 1 Facebook 1 Facebook For Woocommerce 2019-09-03 6.8 MEDIUM 8.8 HIGH
The facebook-for-woocommerce plugin before 1.9.15 for WordPress has CSRF via ajax_woo_infobanner_post_click, ajax_woo_infobanner_post_xout, or ajax_fb_toggle_visibility.
CVE-2015-9370 1 Ithemes 1 Invoices 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
Invoices Add-on for iThemes Exchange before 1.4.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2019-15868 1 Wpaffiliatemanager 1 Affiliates Manager 2019-09-03 6.8 MEDIUM 8.8 HIGH
The affiliates-manager plugin before 2.6.6 for WordPress has CSRF.
CVE-2015-9371 1 Ithemes 1 Manual Purchases 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
Manual Purchases Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2019-15783 1 Lute-tab Project 1 Lute-tab 2019-09-03 7.5 HIGH 9.8 CRITICAL
Lute-Tab before 2019-08-23 has a buffer overflow in pdf_print.cc.
CVE-2015-9372 1 Ithemes 1 Membership 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
Membership Add-on for iThemes Exchange before 1.3.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2019-15822 1 Wpserveur 1 Wps Child Theme Generator 2019-09-03 7.5 HIGH 9.8 CRITICAL
The wps-child-theme-generator plugin before 1.2 for WordPress has classes/helpers.php directory traversal.
CVE-2019-15837 1 Bitwise-it 1 Webp Express 2019-09-03 3.5 LOW 5.4 MEDIUM
The webp-express plugin before 0.14.8 for WordPress has stored XSS.
CVE-2019-15831 1 Wp-buy 1 Visitor Traffic Real Time Statistics 2019-09-03 6.8 MEDIUM 8.8 HIGH
The visitors-traffic-real-time-statistics plugin before 1.12 for WordPress has CSRF in the settings page.
CVE-2019-15832 1 Wp-buy 1 Visitor Traffic Real Time Statistics 2019-09-03 6.8 MEDIUM 8.8 HIGH
The visitors-traffic-real-time-statistics plugin before 1.13 for WordPress has CSRF.
CVE-2019-15777 1 Shapepress 1 Wp Dsgvo Tools 2019-09-03 3.5 LOW 5.4 MEDIUM
The shapepress-dsgvo plugin before 2.2.19 for WordPress has wp-admin/admin-ajax.php?action=admin-common-settings&admin_email= XSS.
CVE-2015-9374 1 Ithemes 1 Stripe 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
Stripe Add-on for iThemes Exchange before 1.2.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
CVE-2019-15829 1 Greentreelabs 1 Gallery Photoblocks 2019-09-03 3.5 LOW 4.8 MEDIUM
The photoblocks-grid-gallery plugin before 1.1.33 for WordPress has wp-admin/admin.php?page=photoblocks-edit&id= XSS.
CVE-2019-14281 1 Datagrid Project 1 Datagrid 2019-09-03 7.5 HIGH 9.8 CRITICAL
The datagrid gem 1.0.6 for Ruby, as distributed on RubyGems.org, included a code-execution backdoor inserted by a third party.
CVE-2015-9380 1 10web 1 Photo Gallery 2019-09-03 6.8 MEDIUM 8.8 HIGH
The photo-gallery plugin before 1.2.42 for WordPress has CSRF.
CVE-2019-15827 1 Onesignal 1 Onesignal-free-web-push-notifications 2019-09-03 3.5 LOW 5.4 MEDIUM
The onesignal-free-web-push-notifications plugin before 1.17.8 for WordPress has XSS via the subdomain parameter.
CVE-2019-15541 1 Rustls Project 1 Rustls 2019-09-03 5.0 MEDIUM 7.5 HIGH
rustls-mio/examples/tlsserver.rs in the rustls crate before 0.16.0 for Rust allows attackers to cause a denial of service (loop of conn_event and ready) by arranging for a client to never be writable.
CVE-2018-15510 1 Totemo 1 Totemomail 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in the 'Certificate' feature of totemomail 6.0.0 build 570 allows remote attackers to inject arbitrary web script or HTML.
CVE-2019-12754 1 Symantec 1 Vip 2019-09-03 3.5 LOW 4.8 MEDIUM
Symantec My VIP portal, previous version which has already been auto updated, was susceptible to a cross-site scripting (XSS) exploit, which is a type of issue that can enable attackers to inject client-side scripts into web pages viewed by other users or potentially bypass access controls such as the same-origin policy.
CVE-2018-15511 1 Totemo 1 Totemomail 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in the 'Notification template' feature of totemomail 6.0.0 build 570 allows remote attackers to inject arbitrary web script or HTML.
CVE-2018-15513 1 Totemo 1 Totemomail 2019-09-03 5.0 MEDIUM 5.3 MEDIUM
Log viewer in totemomail 6.0.0 build 570 allows access to sessionIDs of high privileged users by leveraging access to a read-only auditor role.
CVE-2019-15864 1 Holest 1 Breadcrumbs By Menu 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
The breadcrumbs-by-menu plugin before 1.0.3 for WordPress has XSS.
CVE-2018-15512 1 Totemo 1 Totemomail 2019-09-03 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in the 'Authorisation Service' feature of totemomail 6.0.0 build 570 allows remote attackers to inject arbitrary web script or HTML.
CVE-2018-11796 1 Apache 1 Tika 2019-09-03 5.0 MEDIUM 7.5 HIGH
In Apache Tika 1.19 (CVE-2018-11761), we added an entity expansion limit for XML parsing. However, Tika reuses SAXParsers and calls reset() after each parse, which, for Xerces2 parsers, as per the documentation, removes the user-specified SecurityManager and thus removes entity expansion limits after the first parse. Apache Tika versions from 0.1 to 1.19 are therefore still vulnerable to entity expansions which can lead to a denial of service attack. Users should upgrade to 1.19.1 or later.
CVE-2019-15851 2019-09-03 N/A N/A
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-13590. Reason: This candidate is a reservation duplicate of CVE-2019-13590. Notes: All CVE users should reference CVE-2019-13590 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.