Unknown · CVSS Not scored
An issue was discovered in CyberPanel through 1.8.4. On the user edit page, an attacker can edit the administrator's e-mail and password because of the lack of CSRF protection.
Published Jul 2, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 6 of 6).
Published Jul 16, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the server in OpenLDAP before 2.4.48. When the server administrator delegates rootDN (database admin) privileges for certain databases but wants to maintain isolation (e.g., for multi-tenant deployments), slapd does not properly stop a rootDN from requesting authorization as an identity from another database during a SASL bind or with a proxyAuthz (RFC 4370) control. (It is not a common configuration to deploy a system where the server administrator and a DB administrator enjoy different levels of trust.)
Published Jul 26, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Centreon 18.x before 18.10.6, 19.x before 19.04.3, and Centreon web before 2.8.29 allows the attacker to execute arbitrary system commands by using the value "init_script"-"Monitoring Engine Binary" in main.get.php to insert a arbitrary command into the database, and execute it by calling the vulnerable page www/include/configuration/configGenerate/xml/generateFiles.php (which passes the inserted value to the database to shell_exec without sanitizing it, allowing one to execute system arbitrary commands).
Published Jul 1, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Realization Concerto Critical Chain Planner (aka CCPM) 5.10.8071 has SQL Injection in at least in the taskupdt/taskdetails.aspx webpage via the projectname parameter.
Published Jul 12, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow Directory Traversal.
Published Jul 16, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OXID eShop 6.0.x before 6.0.5 and 6.1.x before 6.1.4 allows SQL Injection via a crafted URL, leading to full access by an attacker. This includes all shopping cart options, customer data, and the database. No interaction between the attacker and the victim is necessary.
Published Jul 30, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
XSS was discovered in SquirrelMail through 1.4.22 and 1.5.x through 1.5.2. Due to improper handling of RCDATA and RAWTEXT type elements, the built-in sanitization mechanism can be bypassed. Malicious script content from HTML e-mail can be executed within the application context via crafted use of (for example) a NOEMBED, NOFRAMES, NOSCRIPT, or TEXTAREA element.
Published Jul 1, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 2 of 6).
Published Jul 16, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 4 of 6).
Published Jul 16, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
BKS EBK Ethernet-Buskoppler Pro before 3.01 allows Unrestricted Upload of a File with a Dangerous Type.
Published Jul 5, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 1 of 6).
Published Jul 16, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A cross-site scripting (XSS) vulnerability in noMenu() and noSubMenu() in core/navigation/MENU.php in WIKINDX prior to version 5.8.1 allows remote attackers to inject arbitrary web script or HTML via the method parameter.
Published Jul 8, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability in the web-based management interface of VVX, Trio, SoundStructure, SoundPoint, and SoundStation phones running Polycom UC Software, if exploited, could allow an authenticated, remote attacker with admin privileges to cause a denial of service (DoS) condition or execute arbitrary code.
Published Jul 29, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
MailEnable Enterprise Premium 10.23 did not use appropriate access control checks in a number of areas. As a result, it was possible to perform a number of actions, when logged in as a user, that that user should not have had permission to perform. It was also possible to gain access to areas within the application for which the accounts used were supposed to have insufficient access.
Published Jul 8, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In MailEnable Enterprise Premium 10.23, the potential cross-site request forgery (CSRF) protection mechanism was not implemented correctly and it was possible to bypass it by removing the anti-CSRF token parameter from the request. This could allow an attacker to manipulate a user into unwittingly performing actions within the application (such as sending email, adding contacts, or changing settings) on behalf of the attacker.
Published Jul 8, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the wp-code-highlightjs plugin through 0.6.2 for WordPress. wp-admin/options-general.php?page=wp-code-highlight-js allows CSRF, as demonstrated by an XSS payload in the hljs_additional_css parameter.
Published Jul 19, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
MailEnable Enterprise Premium 10.23 was vulnerable to multiple directory traversal issues, with which authenticated users could add, remove, or potentially read files in arbitrary folders accessible by the IIS user. This could lead to reading other users' credentials including those of SYSADMIN accounts, reading other users' emails, or adding emails or files to other users' accounts.
Published Jul 8, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the application.
Published Jul 17, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Elcom CMS before 10.7 has SQL Injection via EventSearchByState.aspx and EventSearchAdv.aspx.
Published Jul 19, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
MailEnable Enterprise Premium 10.23 was vulnerable to stored and reflected cross-site scripting (XSS) attacks. Because the session cookie did not use the HttpOnly flag, it was possible to hijack the session cookie by exploiting this vulnerability.
Published Jul 8, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
MailEnable Enterprise Premium 10.23 was vulnerable to XML External Entity Injection (XXE) attacks that could be exploited by an unauthenticated user. It was possible for an attacker to use a vulnerability in the configuration of the XML processor to read any file on the host system. Because all credentials were stored in a cleartext file, it was possible to steal all users' credentials (including the highest privileged users).
Published Jul 8, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, etc.) used in the application.
Published Jul 17, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Redbrick Shift through 3.4.3 allows an attacker to extract emails of services (such as Gmail, Outlook, etc.) used in the application.
Published Jul 17, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, etc.) used in the application.
Published Jul 17, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The generated Kotlin DSL settings allowed usage of an unencrypted connection for resolving artifacts. The issue was fixed in JetBrains TeamCity 2018.2.3.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability was found in the app 2.0 of the Shenzhen Jisiwei i3 robot vacuum cleaner, while adding a device to the account using a QR-code. The QR-code follows an easily predictable pattern that depends only on the specific device ID of the robot vacuum cleaner. By generating a QR-code containing information about the device ID, it is possible to connect an arbitrary device and gain full access to it. The device ID has an initial "JSW" substring followed by a six digit number that depends on the specific device.
Published Jul 19, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Certain actions could cause privilege escalation for issue attachments in JetBrains YouTrack. The issue was fixed in 2018.4.49168.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In JetBrains Hub versions earlier than 2018.4.11298, the audit events for SMTPSettings show a cleartext password to the admin user. It is only relevant in cases where a password has not changed since 2017, and if the audit log still contains events from before that period.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A CSRF vulnerability was detected in one of the admin endpoints of JetBrains YouTrack. The issue was fixed in YouTrack 2018.4.49852.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An Insecure Direct Object Reference, with Authorization Bypass through a User-Controlled Key, was possible in JetBrains YouTrack. The issue was fixed in 2018.4.49168.
Published Jul 3, 2019 · Updated Aug 4, 2024
High · CVSS 7.8
In Hunesion i-oneNet version 3.0.7 ~ 3.0.53 and 4.0.4 ~ 4.0.16, due to the lack of update file integrity checking in the upgrade process, an attacker can craft malicious file and use it as an update.
Published Jul 10, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Zoho ManageEngine ADManager Plus 6.6.5, ADSelfService Plus 5.7, and DesktopCentral 10.0.380 have Insecure Permissions, leading to Privilege Escalation from low level privileges to System.
Published Jul 17, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An SSRF attack was possible on a JetBrains YouTrack server. The issue (1 of 2) was fixed in JetBrains YouTrack 2018.4.49168.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Incorrect handling of user input in ZIP extraction was detected in JetBrains TeamCity. The issue was fixed in TeamCity 2018.2.2.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A reflected XSS on a user page was detected on one of the JetBrains TeamCity pages. The issue was fixed in TeamCity 2018.2.2.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A query injection was possible in JetBrains YouTrack. The issue was fixed in YouTrack 2018.4.49168.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A possible stored JavaScript injection was detected on one of the JetBrains TeamCity pages. The issue was fixed in TeamCity 2018.2.3.
Published Jul 3, 2019 · Updated Aug 4, 2024
High · CVSS 7.3
In HT2 Labs Learning Locker 3.15.1, it's possible to inject malicious HTML and JavaScript code into the DOM of the website via the PATH_INFO to the dashboards/ URI.
Published Jul 16, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A possible stored JavaScript injection requiring a deliberate server administrator action was detected. The issue was fixed in JetBrains TeamCity 2018.2.3.
Published Jul 3, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A user without the required permissions could gain access to some JetBrains TeamCity settings. The issue was fixed in TeamCity 2018.2.2.
Published Jul 3, 2019 · Updated Aug 4, 2024
High · CVSS 8.8
In Hunesion i-oneNet version 3.0.7 ~ 3.0.53 and 4.0.4 ~ 4.0.16, the specific upload web module doesn't verify the file extension and type, and an attacker can upload a webshell. After the webshell upload, an attacker can use the webshell to perform remote code exection such as running a system command.
Published Jul 10, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Verint Impact 360 15.1. At wfo/help/help_popup.jsp, the helpURL parameter can be changed to embed arbitrary content inside of an iFrame. Attackers may use this in conjunction with social engineering to embed malicious scripts or phishing pages on a site where this product is installed, given the attacker can convince a victim to visit a crafted link.
Published Jul 14, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Buffer overflow in res_pjsip_messaging in Digium Asterisk versions 13.21-cert3, 13.27.0, 15.7.2, 16.4.0 and earlier allows remote authenticated users to crash Asterisk by sending a specially crafted SIP MESSAGE message.
Published Jul 12, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability was found in the app 2.0 of the Shenzhen Jisiwei i3 robot vacuum cleaner. Actions performed on the app such as changing a password, and personal information it communicates with the server, use unencrypted HTTP. As an example, while logging in through the app to a Jisiwei account, the login request is being sent in cleartext. The vulnerability exists in both the Android and iOS version of the app. An attacker could exploit this by using an MiTM attack on the local network to obtain someone's login credentials, which gives them full access to the robot vacuum cleaner.
Published Jul 19, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Symantec Messaging Gateway, prior to 10.7.1, may be susceptible to a privilege escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
Published Jul 11, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An authorization bypass vulnerability in pinboard updates in ThoughtSpot 4.4.1 through 5.1.1 (before 5.1.2) allows a low-privilege user with write access to at least one pinboard to corrupt pinboards of another user in the application by spoofing GUIDs in pinboard update requests, effectively deleting them.
Published Jul 9, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TYPO3 8.x through 8.7.26 and 9.x through 9.5.7 allows Deserialization of Untrusted Data.
Published Jul 9, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SchedMD Slurm 17.11.x, 18.08.0 through 18.08.7, and 19.05.0 allows SQL Injection.
Published Jul 11, 2019 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TYPO3 8.3.0 through 8.7.26 and 9.0.0 through 9.5.7 allows XSS.
Published Jul 9, 2019 · Updated Aug 4, 2024