Unknown · CVSS Not scored
cPanel before 78.0.18 allows local users to escalate to root access because of userdata cache misparsing (SEC-479).
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
cPanel before 82.0.2 has stored XSS in the WHM Tomcat Manager interface (SEC-504).
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
cPanel before 78.0.2 does not properly restrict demo accounts from writing to files via the DCV UAPI (SEC-473).
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
cPanel before 82.0.2 has stored XSS in the WHM Modify Account interface (SEC-512).
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
ip_reass in ip_input.c in libslirp 4.0.0 has a heap-based buffer overflow via a large packet because it mishandles a case involving the first fragment.
Published Jul 29, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Libav 12.3. There is an infinite loop in the function mov_probe in the file libavformat/mov.c, related to offset and tag.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Exiv2::PngImage::readMetadata() in pngimage.cpp in Exiv2 0.27.99.0 allows attackers to cause a denial of service (heap-based buffer over-read) via a crafted image file.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Exiv2 0.27.99.0 has a heap-based buffer over-read in Exiv2::RafImage::readMetadata() in rafimage.cpp.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
libopenmpt before 0.4.3 allows a crash due to a NULL pointer dereference when doing a portamento from an OPL instrument to an empty instrument note map slot.
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
cPanel before 82.0.2 has Self XSS in the cPanel and webmail master templates (SEC-506).
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
libopenmpt before 0.4.5 allows a crash during playback due to an out-of-bounds read in XM and MT2 files.
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in image_save_png in image/image-png.cpp in Free Lossless Image Format (FLIF) 0.3. Attackers can trigger a heap-based buffer over-read in libpng via a crafted flif file.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Simple Membership plugin before 3.8.5 for WordPress has CSRF affecting the Bulk Operation section.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in the Viral Quiz Maker - OnionBuzz plugin before 1.2.7 for WordPress. One could exploit the id parameter in the set_count ajax nopriv handler due to there being no sanitization prior to use in a SQL query in saveQuestionVote. This allows an unauthenticated/unprivileged user to perform a SQL injection attack capable of remote code execution and information disclosure.
Published Jul 21, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A stack-based buffer overflow in the upnpd binary running on NETGEAR WNDR3400v3 routers with firmware version 1.0.1.18_1.0.63 allows an attacker to remotely execute arbitrary code via a crafted UPnP SSDP packet.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An XSS vulnerability in the "Email Subscribers & Newsletters" plugin 4.1.6 for WordPress allows an attacker to inject malicious JavaScript code through a publicly available subscription form using the esfpx_name wp-admin/admin-ajax.php POST parameter.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in EspoCRM before 5.6.6. Stored XSS exists due to lack of filtration of user-supplied data in Create Case. A malicious attacker can modify the firstName and lastName to contain JavaScript code.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Openbravo ERP before 3.0PR19Q1.3 is affected by Directory Traversal. This vulnerability could allow remote authenticated attackers to replace a file on the server via the getAttachmentDirectoryForNewAttachment inpKey value.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2.
Published Jul 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
EspoCRM 5.6.4 is vulnerable to user password hash enumeration. A malicious authenticated attacker can brute-force a user password hash by 1 symbol at a time using specially crafted api/v1/User?filterList filters.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Veeam ONE Reporter 9.5.0.3201 allows XSS via the Add/Edit Widget with a crafted Caption field to setDashboardWidget in CommonDataHandlerReadOnly.ashx.
Published Jul 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A cross-site scripting (XSS) vulnerability in upload.php in SunHater KCFinder 3.20-test1, 3.20-test2, 3.12, and earlier allows remote attackers to inject arbitrary web script or HTML via the CKEditorFuncNum parameter.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Bitdefender products for Windows (Bitdefender Endpoint Security Tool versions prior to 6.6.8.115; and Bitdefender Antivirus Plus, Bitdefender Internet Security, and Bitdefender Total Security versions prior to 23.0.24.120) that can lead to local code injection. A local attacker with administrator privileges can create a malicious DLL file in %SystemRoot%\System32\ that will be executed with local user privileges.
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
headerv2.go in mastercactapus proxyprotocol before 0.0.2, as used in the mastercactapus caddy-proxyprotocol plugin through 0.0.2 for Caddy, allows remote attackers to cause a denial of service (webserver panic and daemon crash) via a crafted HAProxy PROXY v2 request with truncated source/destination address data.
Published Jul 23, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A CSRF vulnerability in Settings form in the Custom Simple Rss plugin 2.0.6 for WordPress allows attackers to change the plugin settings.
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Foxit PhantomPDF before 8.3.10. The application could be exposed to Heap Corruption due to data desynchrony when adding AcroForm.
Published Jul 21, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 1.
Published Jul 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
canUnpack in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (SEGV or buffer overflow, and application crash) or possibly have unspecified other impact via a crafted UPX packed file.
Published Jul 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
PDFResurrect 0.15 has a buffer overflow via a crafted PDF file because data associated with startxref and %%EOF is mishandled.
Published Jul 29, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Possible buffer overflow and over read possible due to missing bounds checks for fixed limits if we consider widevine HLOS client as non-trustable in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in Kamorta, QCS404, Rennell, SC7180, SDX55, SM6150, SM7150, SM8250, SXR2130
Published Jul 30, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
EspoCRM 5.6.4 is vulnerable to stored XSS due to lack of filtration of user-supplied data in the Knowledge base. A malicious attacker can inject JavaScript code in the body parameter during api/v1/KnowledgeBaseArticle knowledge-base record creation.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Veeam ONE Reporter 9.5.0.3201 allows XSS via a crafted Description(config) field to addDashboard or editDashboard in CommonDataHandlerReadOnly.ashx.
Published Jul 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Octopus Deploy versions 3.0.19 to 2019.7.2, when a web request proxy is configured, an authenticated user (in certain limited circumstances) could trigger a deployment that writes the web request proxy password to the deployment log in cleartext. This is fixed in 2019.7.3. The fix was back-ported to LTS 2019.6.5 as well as LTS 2019.3.7.
Published Jul 25, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An Integer overflow in the getElfSections function in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an allocation of excessive memory.
Published Jul 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A SQL injection vulnerability exists in the 10Web Photo Gallery plugin before 1.5.31 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system via filemanager/model.php.
Published Jul 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Pallets Werkzeug before 0.15.5, SharedDataMiddleware mishandles drive names (such as C:) in Windows pathnames.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Docker 19.03.x before 19.03.1 linked against the GNU C Library (aka glibc), code injection can occur when the nsswitch facility dynamically loads a library inside a chroot that contains the contents of the container.
Published Jul 29, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
OpenSNS v6.1.0 allows SQL Injection via the index.php?s=/ucenter/Config/ uid parameter because of the getNeedQueryData function in Application/Common/Model/UserModel.class.php.
Published Jul 25, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in EspoCRM before 5.6.6. Stored XSS exists due to lack of filtration of user-supplied data in Create User. A malicious attacker can modify the firstName and lastName to contain JavaScript code.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Register write via debugfs is disabled by default to prevent register writing via debugfs. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9206, MDM9207C, MDM9607, Nicobar, QCS405, SA6155P, SC8180X, SDX55, SM8150
Published Jul 30, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
HAProxy through 2.0.2 allows attackers to cause a denial of service (ha_panic) via vectors related to htx_manage_client_side_cookies in proto_htx.c.
Published Jul 23, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
SSDP Responder 1.x through 1.5 mishandles incoming network messages, leading to a stack-based buffer overflow by 1 byte. This results in a crash of the server, but only when strict stack checking is enabled. This is caused by an off-by-one error in ssdp_recv in ssdpd.c.
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In the Linux kernel before 5.2.3, drivers/block/floppy.c allows a denial of service by setup_format_params division-by-zero. Two consecutive ioctls can trigger the bug: the first one should set the drive geometry with .sect and .rate values that make F_SECT_PER_TRACK be zero. Next, the floppy format operation should be called. It can be triggered by an unprivileged local user even when a floppy disk has not been inserted. NOTE: QEMU creates the floppy device by default.
Published Jul 26, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Xavier PHP Management Panel 3.0 is vulnerable to Reflected POST-based XSS via the username parameter when registering a new user at admin/includes/adminprocess.php. If there is an error when registering the user, the unsanitized username will reflect via the error page. Due to the lack of CSRF protection on the admin/includes/adminprocess.php endpoint, an attacker is able to chain the XSS with CSRF in order to cause remote exploitation.
Published Jul 26, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
dwarf_elf_load_headers.c in libdwarf before 2019-07-05 allows attackers to cause a denial of service (division by zero) via an ELF file with a zero-size section group (SHT_GROUP), as demonstrated by dwarfdump.
Published Jul 24, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Joget Workflow 6.0.20, CSV Injection, also known as Formula Injection, exists, as demonstrated by jw/web/userview/crm_community/crm_userview_sales/_/account_new with the Account ID or Account Name field. NOTE: the vendor disputes the relevance of this finding because CSV is not the intended export format for spreadsheet applications
Published Jul 28, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Xpdf 4.01.01. There is an integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "multiple bytes per line" case.
Published Jul 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Foxit PhantomPDF before 8.3.10. The application could be exposed to Memory Corruption due to the use of an invalid pointer copy, resulting from a destructed string object.
Published Jul 21, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, due to an out of bounds read.
Published Jul 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
Published Jul 26, 2019 · Updated Aug 5, 2024