Vulnerabilities (CVE)

CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-14234 3 Debian, Djangoproject, Fedoraproject 3 Debian Linux, Django, Fedora 2019-08-28 7.5 HIGH 9.8 CRITICAL
An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4. Due to an error in shallow key transformation, key and index lookups for django.contrib.postgres.fields.JSONField, and key lookups for django.contrib.postgres.fields.HStoreField, were subject to SQL injection. This could, for example, be exploited via crafted use of "OR 1=1" in a key or index name to return all records, using a suitably crafted dictionary, with dictionary expansion, as the **kwargs passed to the QuerySet.filter() function.
CVE-2019-15643 1 Etoilewebdesign 1 Ultimate Faq 2019-08-28 4.3 MEDIUM 6.1 MEDIUM
The ultimate-faqs plugin before 1.8.22 for WordPress has XSS.
CVE-2017-18540 1 Deepsoft 1 Weblibrarian 2019-08-28 4.3 MEDIUM 6.1 MEDIUM
The weblibrarian plugin before 3.4.8.7 for WordPress has XSS via front-end short codes.
CVE-2018-6943 1 Ultimatemember 1 Ultimatemember 2019-08-28 4.3 MEDIUM 6.1 MEDIUM
core/lib/upload/um-image-upload.php in the UltimateMember plugin 2.0 for WordPress has a cross-site scripting vulnerability because it fails to properly sanitize user input passed to the $temp variable.
CVE-2018-6944 1 Ultimatemember 1 Ultimate Member 2019-08-28 4.3 MEDIUM 6.1 MEDIUM
core/lib/upload/um-file-upload.php in the UltimateMember plugin 2.0 for WordPress has a cross-site scripting vulnerability because it fails to properly sanitize user input passed to the $temp variable.
CVE-2019-10186 1 Moodle 1 Moodle 2019-08-27 6.8 MEDIUM 8.8 HIGH
A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. A sesskey (CSRF) token was not being utilised by the XML loading/unloading admin tool.
CVE-2019-15516 1 Cuberite 1 Cuberite 2019-08-27 5.0 MEDIUM 7.5 HIGH
Cuberite before 2019-06-11 allows webadmin directory traversal via ....// because the protection mechanism simply removes one ../ substring.
CVE-2019-15566 1 Alfresco 1 Alfresco 2019-08-27 7.5 HIGH 9.8 CRITICAL
The Alfresco application before 1.8.7 for Android allows SQL injection in HistorySearchProvider.java.
CVE-2019-15564 1 Compassionuk 1 Compassion Switzerland 2019-08-27 7.5 HIGH 9.8 CRITICAL
The Compassion Switzerland addons 10.01.4 for Odoo allow SQL injection in models/partner_compassion.py.
CVE-2018-14672 1 Yandex 1 Clickhouse 2019-08-27 5.0 MEDIUM 5.3 MEDIUM
In ClickHouse before 18.12.13, functions for loading CatBoost models allowed path traversal and reading arbitrary files through error messages.
CVE-2019-15517 1 Jc21 1 Nginx Proxy Manager 2019-08-27 4.9 MEDIUM 5.5 MEDIUM
jc21 Nginx Proxy Manager before 2.0.13 allows %2e%2e%2f directory traversal.
CVE-2019-5280 1 Huawei 2 Cloudlink Phone 7900, Cloudlink Phone 7900 Firmware 2019-08-27 5.8 MEDIUM 6.5 MEDIUM
The SIP TLS module of Huawei CloudLink Phone 7900 with V600R019C10 has a TLS certificate verification vulnerability. Due to insufficient verification of specific parameters of the TLS server certificate, attackers can perform man-in-the-middle attacks, leading to the affected phones registered abnormally, affecting the availability of IP phones.
CVE-2014-10375 1 Gnu 1 Exosip 2019-08-27 5.0 MEDIUM 7.5 HIGH
handle_messages in eXtl_tls.c in eXosip before 5.0.0 mishandles a negative value in a content-length header.
CVE-2019-14526 1 Netgear 2 Mr1100, Mr1100 Firmware 2019-08-27 5.8 MEDIUM 8.1 HIGH
An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. The web-interface Cross-Site Request Forgery token is stored in a dynamically generated JavaScript file, and therefore can be embedded in third party pages, and re-used against the Nighthawk web interface. This entirely bypasses the intended security benefits of the use of a CSRF-protection token.
CVE-2019-14527 1 Netgear 2 Mr1100, Mr1100 Firmware 2019-08-27 10.0 HIGH 9.8 CRITICAL
An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. System commands can be executed, via the web interface, after authentication.
CVE-2019-13509 1 Docker 1 Docker 2019-08-27 5.0 MEDIUM 7.5 HIGH
In Docker CE and EE before 18.09.8 (as well as Docker EE before 17.06.2-ee-23 and 18.x before 18.03.1-ee-10), Docker Engine in debug mode may sometimes add secrets to the debug log. This applies to a scenario where docker stack deploy is run to redeploy a stack that includes (non external) secrets. It potentially applies to other API users of the stack API if they resend the secret.
CVE-2018-19386 1 Solarwinds 1 Database Performance Analyzer 2019-08-27 4.3 MEDIUM 6.1 MEDIUM
SolarWinds Database Performance Analyzer 11.1.457 contains an instance of Reflected XSS in its idcStateError component, where the page parameter is reflected into the HREF of the 'Try Again' Button on the page, aka a /iwc/idcStateError.iwc?page= URI.
CVE-2019-14257 1 Zenoss 1 Zenoss 2019-08-27 7.2 HIGH 7.8 HIGH
pyraw in Zenoss 2.5.3 allows local privilege escalation by modifying environment variables to redirect execution before privileges are dropped, aka ZEN-31765.
CVE-2016-6858 1 Sap 1 Hybris 2019-08-27 3.5 LOW 5.4 MEDIUM
Cross-site scripting (XSS) vulnerability in the Create Employee feature in Hybris Management Console (HMC) in SAP Hybris before 5.0.4.11, 5.1.0.x before 5.1.0.11, 5.1.1.x before 5.1.1.12, 5.2.0.x and 5.3.0.x before 5.3.0.10, 5.4.x before 5.4.0.9, 5.5.0.x before 5.5.0.9, 5.5.1.x before 5.5.1.10, 5.6.x before 5.6.0.8, and 5.7.x before 5.7.0.9 allows remote authenticated users to inject arbitrary web script or HTML via the Name field.
CVE-2019-11013 1 Softvelum 1 Nimble Streamer 2019-08-27 4.0 MEDIUM 6.5 MEDIUM
Nimble Streamer 3.0.2-2 through 3.5.4-9 has a ../ directory traversal vulnerability. Successful exploitation could allow an attacker to traverse the file system to access files or directories that are outside of the restricted directory on the remote server.
CVE-2014-8871 1 Sap 1 Hybris 2019-08-27 5.0 MEDIUM 7.5 HIGH
Directory traversal vulnerability in hybris Commerce software suite 5.0.3.3 and earlier, 5.0.0.3 and earlier, 5.0.4.4 and earlier, 5.1.0.1 and earlier, 5.1.1.2 and earlier, 5.2.0.3 and earlier, and 5.3.0.1 and earlier.
CVE-2019-13477 1 Centos-webpanel 1 Centos Web Panel 2019-08-27 4.3 MEDIUM 8.8 HIGH
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.837, CSRF in the forgot password function allows an attacker to change the password for the root account.
CVE-2019-11585 1 Atlassian 1 Jira 2019-08-27 5.8 MEDIUM 6.1 MEDIUM
The startup.jsp resource in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to redirect users to a different website which they may use as part of performing a phishing attack via an open redirect.
CVE-2019-10687 1 Kbpublisher 1 Kbpublisher 2019-08-27 7.5 HIGH 9.8 CRITICAL
KBPublisher 6.0.2.1 has SQL Injection via the admin/index.php?module=report entry_id[0] parameter, the admin/index.php?module=log id parameter, or an index.php?View=print&id[]= request.
CVE-2019-11586 1 Atlassian 1 Jira 2019-08-27 4.3 MEDIUM 4.3 MEDIUM
The AddResolution.jspa resource in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to create new resolutions via a Cross-site request forgery (CSRF) vulnerability.
CVE-2019-11587 1 Atlassian 1 Jira 2019-08-27 4.3 MEDIUM 6.5 MEDIUM
Various exposed resources of the ViewLogging class in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allow remote attackers to modify various settings via Cross-site request forgery (CSRF).
CVE-2019-11588 1 Atlassian 1 Jira 2019-08-27 4.3 MEDIUM 4.3 MEDIUM
The ViewSystemInfo class doGarbageCollection method in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to trigger garbage collection via a Cross-site request forgery (CSRF) vulnerability.
CVE-2019-15091 1 Artica 1 Integria Ims 2019-08-27 7.5 HIGH 9.8 CRITICAL
filemgr.php in Artica Integria IMS 5.0.86 allows index.php?sec=wiki&sec2=operation/wiki/wiki&action=upload arbitrary file upload.
CVE-2019-3967 1 Open-emr 1 Openemr 2019-08-27 4.0 MEDIUM 6.5 MEDIUM
In OpenEMR 5.0.1 and earlier, the patient file download interface contains a directory traversal flaw that allows authenticated attackers to download arbitrary files from the host system.
CVE-2019-14221 1 1crm 1 1crm On-premise 2019-08-27 3.5 LOW 5.4 MEDIUM
1CRM On-Premise Software 8.5.7 allows XSS via a payload that is mishandled during a Run Report operation.
CVE-2019-15520 1 Comelz 1 Quark 2019-08-27 5.0 MEDIUM 5.3 MEDIUM
comelz Quark before 2019-03-26 allows directory traversal to locations outside of the project directory.
CVE-2019-14937 1 Vanderbilt 1 Redcap 2019-08-27 6.0 MEDIUM 7.5 HIGH
REDCap before 9.3.0 allows time-based SQL injection in the edit calendar event via the cal_id parameter, such as cal_id=55 and sleep(3) to Calendar/calendar_popup_ajax.php. The attacker can obtain a user's login sessionid from the database, and then re-login into REDCap to compromise all data.
CVE-2019-11140 1 Intel 8 Compute Card Cd1iv128mk, Compute Card Firmware, Compute Stick Firmware and 5 more 2019-08-27 4.6 MEDIUM 6.7 MEDIUM
Insufficient session validation in system firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
CVE-2019-15518 1 Swoole 1 Swoole 2019-08-27 5.0 MEDIUM 5.3 MEDIUM
Swoole before 4.2.13 allows directory traversal in swPort_http_static_handler.
CVE-2019-13476 1 Centos-webpanel 1 Centos Web Panel 2019-08-27 3.5 LOW 5.4 MEDIUM
In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.837, XSS in the domain parameter allows a low-privilege user to achieve root access via the email list page.
CVE-2018-17557 2019-08-27 N/A N/A
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-20986. Reason: This candidate is a reservation duplicate of CVE-2018-20986. Notes: All CVE users should reference CVE-2018-20986 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
CVE-2018-20986 1 Advancedcustomfields 1 Advanced Custom Fields 2019-08-27 3.5 LOW 5.4 MEDIUM
The advanced-custom-fields (aka Elliot Condon Advanced Custom Fields) plugin before 5.7.8 for WordPress has XSS by authors.
CVE-2014-10377 1 Cformsii Project 1 Cformsii 2019-08-27 4.3 MEDIUM 6.1 MEDIUM
The cforms2 plugin before 13.2 for WordPress has XSS in lib_ajax.php.
CVE-2018-20961 1 Linux 1 Linux Kernel 2019-08-27 10.0 HIGH 9.8 CRITICAL
In the Linux kernel before 4.16.4, a double free vulnerability in the f_midi_set_alt function of drivers/usb/gadget/function/f_midi.c in the f_midi driver may allow attackers to cause a denial of service or possibly have unspecified other impact.
CVE-2019-15488 1 Igniterealtime 1 Openfire 2019-08-26 4.3 MEDIUM 6.1 MEDIUM
Ignite Realtime Openfire before 4.4.1 has reflected XSS via an LDAP setup test.
CVE-2019-14430 1 Youphptube 1 Youphptube 2019-08-26 5.0 MEDIUM 5.3 MEDIUM
plugin/Audit/Objects/AuditTable.php in YouPHPTube through 7.2 allows SQL Injection.
CVE-2019-15476 1 Former Project 1 Former 2019-08-26 4.3 MEDIUM 6.1 MEDIUM
Former before 4.2.1 has XSS via a checkbox value.
CVE-2019-15482 1 Selectize-plugin-a11y Project 1 Selectize-plugin-a11y 2019-08-26 4.3 MEDIUM 6.1 MEDIUM
selectize-plugin-a11y before 1.1.0 has XSS via the msg field.
CVE-2019-3966 1 Open-emr 1 Openemr 2019-08-26 4.3 MEDIUM 6.1 MEDIUM
In OpenEMR 5.0.1 and earlier, controller.php contains a reflected XSS vulnerability in the foreign_id parameter. This could allow an attacker to execute arbitrary code in the context of a user's session.
CVE-2019-11584 1 Atlassian 1 Jira 2019-08-26 4.3 MEDIUM 6.1 MEDIUM
The MigratePriorityScheme resource in Jira before version 8.3.2 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the priority icon url of an issue priority.
CVE-2019-15104 1 Zohocorp 1 Manageengine Applications Manager 2019-08-26 9.0 HIGH 8.8 HIGH
An issue was discovered in Zoho ManageEngine OpManager through 12.4x. There is a SQL Injection vulnerability in jsp/NewThresholdConfiguration.jsp via the resourceid parameter. Therefore, a low-authority user can gain the authority of SYSTEM on the server. One can consequently upload a malicious file using the "Execute Program Action(s)" feature.
CVE-2018-12101 1 Clippercms 1 Clippercms 2019-08-26 3.5 LOW 5.4 MEDIUM
CMS Clipper 1.3.3 has XSS in the Security tab search, User Groups, Resource Groups, and User/Resource Group Links fields.
CVE-2019-14427 1 Webstudio 1 Ultimate Loan Manager 2019-08-26 4.3 MEDIUM 6.1 MEDIUM
XSS exists in WEB STUDIO Ultimate Loan Manager 2.0 by adding a branch under the Branches button that sets the notes parameter with crafted JavaScript code.
CVE-2019-15494 1 It-novum 1 Openitcockpit 2019-08-26 7.5 HIGH 9.8 CRITICAL
openITCOCKPIT before 3.7.1 allows SSRF, aka RVID 5-445b21.
CVE-2019-15491 1 It-novum 1 Openitcockpit 2019-08-26 6.8 MEDIUM 8.8 HIGH
openITCOCKPIT before 3.7.1 has CSRF, aka RVID 2-445b21.