Unknown · CVSS Not scored
AbanteCart 1.2.12 has reflected cross-site scripting (XSS) via the sort parameter, as demonstrated by a /apparel--accessories?sort= substring.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
GitLab Community and Enterprise Edition 11.x before 11.3.13, 11.4.x before 11.4.11, and 11.5.x before 11.5.4 has Incorrect Access Control.
Published Mar 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Zenphoto 1.4.14 has multiple cross-site scripting (XSS) vulnerabilities via different URL parameters.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in the function ui_clip_handle_data() that results in an information leak.
Published Mar 15, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Digi TransPort LR54 4.4.0.26 and possible earlier devices have Improper Input Validation that allows users with 'super' CLI access privileges to bypass a restricted shell and execute arbitrary commands as root.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site scripting (XSS) vulnerability in OpenText Portal 7.4.4 allows remote attackers to inject arbitrary web script or HTML via the vgnextoid parameter to a menuitem URI.
Published Mar 22, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Podcast Generator 2.7 has stored cross-site scripting (XSS) via the URL addcategory parameter.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A Denial of Service vulnerability related to message decoding in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
Published Mar 21, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A Denial of Service vulnerability related to adding an item to a list in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
Published Mar 21, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A Denial of Service vulnerability related to preemptive item deletion in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier allows a remote attacker to send a combination of messages to lmgrd or the vendor daemon, causing the heartbeat between lmgrd and the vendor daemon to stop, and the vendor daemon to shut down.
Published Mar 21, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The function hso_get_config_data in drivers/net/usb/hso.c in the Linux kernel through 4.19.8 reads if_num from the USB device (as a u8) and uses it to index a small array, resulting in an object out-of-bounds (OOB) read that potentially allows arbitrary read in the kernel address space.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
SolarWinds Serv-U FTP Server 15.1.6.25 has reflected cross-site scripting (XSS) in the Web management interface via URL path and HTTP POST parameter.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Microweber 1.0.8 has reflected cross-site scripting (XSS) vulnerabilities.
Published Mar 17, 2019 · Updated Aug 5, 2024
High · CVSS 7.1
An issue was discovered in /cgi-bin/luci on Teltonika RTU9XX (e.g., RUT950) R_31.04.89 before R_00.05.00.5 devices. The authentication functionality is not protected from automated tools used to make login attempts to the application. An anonymous attacker has the ability to make unlimited login attempts with an automated tool. This ability could lead to cracking a targeted user's password.
Published Mar 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
GitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before 11.5.3 allows Directory Traversal in Templates API.
Published Mar 26, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Qt 5.11. A malformed PPM image causes a division by zero and a crash in qppmhandler.cpp.
Published Mar 15, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Fleetco Fleet Maintenance Management (FMM) 1.2 and earlier allows uploading an arbitrary ".php" file with the application/x-php Content-Type to the accidents_add.php?submit=1 URI, as demonstrated by the value_Images_1 field, which leads to remote command execution on the remote server. Any authenticated user can exploit this.
Published Mar 2, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Kentix MultiSensor-LAN 5.63.00 devices and previous allow Authentication Bypass via an Alternate Path or Channel.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have a security bypass vulnerability. Successful exploitation could lead to privilege escalation.
Published Mar 5, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Markdown editor in YXBJ before 8.3.2 on macOS has stored XSS. This behavior may be encountered by some Evernote users; however, it is a vulnerability in YXBJ, not a vulnerability in Evernote.
Published Mar 2, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
HMS Industrial Networks Netbiter WS100 3.30.5 devices and previous have reflected XSS in the login form.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ADTRAN PMAA 1.6.2-1, 1.6.3, and 1.6.4. NETCONF Access Management (NACM) allows unprivileged users to create privileged users and execute arbitrary commands via the use of the diagnostic-profile over RESTCONF.
Published Mar 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Webgalamb through 7.0, log files are exposed to the internet with predictable files/logs/sql_error_log/YYYY-MM-DD-sql_error_log.log filenames. The log file could contain sensitive client data (email addresses) and also facilitates exploitation of SQL injection errors.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered on Shenzhen Skyworth DT741 Converged Intelligent Terminal (G/EPON+IPTV) SDOTBGN1, DT721-cb SDOTBGN1, and DT741-cb SDOTBGN1 devices. A long password to the Web_passwd function allows remote attackers to cause a denial of service (segmentation fault) or achieve unauthenticated remote code execution because of control of registers S0 through S4 and T4 through T7.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
wg7.php in Webgalamb 7.0 makes opportunistic calls to htmlspecialchars() instead of using a templating engine with proper contextual encoding. Because it is possible to insert arbitrary strings into the database, any JavaScript could be executed by the administrator, leading to XSS.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Monstra CMS 1.6 allows XSS via an uploaded SVG document to the admin/index.php?id=filesmanager&path=uploads/ URI. NOTE: this is a discontinued product.
Published Mar 2, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered on Systrome ISG-600C, ISG-600H, and ISG-800W 1.1-R2.1_TRUNK-20180914.bin devices. There is CSRF via /ui/?g=obj_keywords_add and /ui/?g=obj_keywords_addsave with resultant XSS because of a lack of csrf token validation.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
subscriber.php in Webgalamb through 7.0 is vulnerable to SQL injection via the Client-IP HTTP request header.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
messagepartthemes/default/defaultrenderer.cpp in messagelib in KDE Applications before 18.12.0 does not properly restrict the handling of an http-equiv="REFRESH" value.
Published Mar 12, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Webgalamb through 7.0, an arbitrary code execution vulnerability could be exploited remotely without authentication. Exploitation requires authentication bypass to access administrative functions of the site to upload a crafted CSV file with a malicious payload that becomes part of a PHP eval() expression in the subscriber.php file.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
wg7.php in Webgalamb 7.0 lacks security measures to prevent CSRF attacks, as demonstrated by wg7.php?options=1 to change the administrator password.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Webgalamb through 7.0, system/ajax.php functionality is supposed to be available only to the administrator. However, by using one of the bgsend, atment_sddd1xGz, or xls_bgimport query parameters, most of these methods become available to unauthenticated users.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_employer_ajax_profile() function through the admin-ajax.php file, which allows remote unauthenticated attackers to enumerate information about users.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Webgalamb through 7.0, a system/ajax.php "wgmfile restore" directory traversal vulnerability could lead to arbitrary code execution by authenticated administrator users, because PHP files are restored under the document root directory.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Simplenia Pages plugin 2.6.0 for Atlassian Bitbucket Server has XSS.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_reset_pass() function through the admin-ajax.php file, which allows remote unauthenticated attackers to reset the password of a user's account.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The REST API in Wowza Streaming Engine 4.7.4.01 allows traversal of the directory structure and retrieval of a file via a remote, specifically crafted HTTP request.
Published Mar 18, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A vulnerability was found in Portainer before 1.20.0. Portainer stores LDAP credentials, corresponding to a master password, in cleartext and allows their retrieval via API calls.
Published Mar 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cobham Satcom Sailor 250 and 500 devices before 1.25 contained persistent XSS, which could be exploited by an unauthenticated threat actor via the /index.lua?pageID=Phone%20book name field.
Published Mar 15, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cobham Satcom Sailor 250 and 500 devices before 1.25 contained an unauthenticated password reset vulnerability. This could allow modification of any user account's password (including the default "admin" account), without prior knowledge of their password. All that is required is knowledge of the username and attack vector (/index.lua?pageID=Administration usernameAdmChange, passwordAdmChange1, and passwordAdmChange2 fields).
Published Mar 15, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cobham Satcom Sailor 800 and 900 devices contained persistent XSS, which required administrative access to exploit. The vulnerability was exploitable by acquiring a copy of the device's configuration file, inserting an XSS payload into a relevant field (e.g., Satellite name), and then restoring the malicious configuration file.
Published Mar 15, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cobham Satcom Sailor 800 and 900 devices contained a vulnerability that allowed for arbitrary writing of content to the system's configuration file. This was exploitable via multiple attack vectors depending on the device's configuration. Further analysis also indicated this vulnerability could be leveraged to achieve a Denial of Service (DoS) condition, where the device would require a factory reset to return to normal operation.
Published Mar 15, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Webmin 1.890 has XSS via /config.cgi?webmin, the /shell/index.cgi history parameter, /shell/index.cgi?stripped=1, or the /webminlog/search.cgi uall or mall parameter.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
ColossusCoinXT through 1.0.5 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service, exploitable by an attacker who acquires even a small amount of stake/coins in the system. The attacker sends invalid headers/blocks, which are stored on the victim's disk.
Published Mar 17, 2019 · Updated Aug 5, 2024
Critical · CVSS 10
OpenMRS before 2.24.0 is affected by an Insecure Object Deserialization vulnerability that allows an unauthenticated user to execute arbitrary commands on the targeted system via crafted XML data in a request body.
Published Mar 17, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A reflected XSS vulnerability in the ModCP Profile Editor in MyBB before 1.8.20 allows remote attackers to inject JavaScript via the 'username' parameter.
Published Mar 29, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
LCDS Laquis SCADA prior to version 4.1.0.4150 allows an out of bounds read when opening a specially crafted project file, which may cause a system crash or allow data exfiltration.
Published Mar 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Rockwell Automation EtherNet/IP Web Server Modules 1756-EWEB (includes 1756-EWEBK) Version 5.001 and earlier, and CompactLogix 1768-EWEB Version 2.005 and earlier. A remote attacker could send a crafted UDP packet to the SNMP service causing a denial-of-service condition to occur until the affected product is restarted.
Published Mar 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Opera before 57.0.3098.106 is vulnerable to a DLL Search Order hijacking attack where an attacker can send a ZIP archive composed of an HTML page along with a malicious DLL to the target. Once the document is opened, it may allow the attacker to take full control of the system from any location within the system. The issue lies in the loading of the shcore.dll and dcomp.dll files: these files are being searched for by the program in the same system-wide directory where the HTML file is executed.
Published Mar 21, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal vulnerability in the embedded web server.
Published Mar 10, 2020 · Updated Aug 5, 2024