Critical · CVSS 9.1
A directory traversal vulnerability in remote access to backup & restore in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.2.0 allows remote attackers to write or delete files at any location.
Published Aug 21, 2019 · Updated Sep 16, 2024
High · CVSS 7.4
The web api server on Port 8080 of ASUS HG100 firmware up to 1.05.12, which is vulnerable to Slowloris HTTP Denial of Service: an attacker can cause a Denial of Service (DoS) by sending headers very slowly to keep HTTP or HTTPS connections and associated resources alive for a long period of time. CVSS 3.0 Base score 7.4 (Availability impacts). CVSS vector: (CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H).
Published Aug 29, 2019 · Updated Sep 16, 2024
Medium · CVSS 4.3
IBM Maximo Asset Management 7.6.0 and 7.6.1 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 167288.
Published Aug 13, 2020 · Updated Sep 16, 2024
High · CVSS 8.4
Multiple binaries in IBM SDK, Java Technology Edition 7, 7R, and 8 on the AIX platform use insecure absolute RPATHs, which may facilitate code injection and privilege elevation by local users. IBM X-Force ID: 163984.
Published Aug 5, 2019 · Updated Sep 16, 2024
Medium · CVSS 5.3
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is deployed with active debugging code that can create unintended entry points. IBM X-Force ID: 171936.
Published Aug 26, 2020 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The AddResolution.jspa resource in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to create new resolutions via a Cross-site request forgery (CSRF) vulnerability.
Published Aug 23, 2019 · Updated Sep 16, 2024
High · CVSS 7.8
Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a Universal Windows Platform application by manipulating the install software package feature with a race condition and a path traversal exploit in order to run a malicious executable with elevated privileges.
Published Aug 9, 2019 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The ViewSystemInfo class doGarbageCollection method in Jira before version 7.13.6, from version 8.0.0 before version 8.2.3, and from version 8.3.0 before version 8.3.2 allows remote attackers to trigger garbage collection via a Cross-site request forgery (CSRF) vulnerability.
Published Aug 23, 2019 · Updated Sep 16, 2024
High · CVSS 8.1
IBM Open Power Firmware OP910 and OP920 could allow access to BMC via IPMI using default OpenBMC password even after BMC password was changed away from the default password. IBM X-Force ID: 158702.
Published Aug 26, 2019 · Updated Sep 16, 2024
Medium · CVSS 6.3
A stack overflow vulnerabiltity exist in the AT command interface of ALEOS before 4.11.0. The vulnerability may allow code execution
Published Aug 21, 2020 · Updated Sep 16, 2024
Unknown · CVSS Not scored
LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.
Published Aug 15, 2019 · Updated Sep 16, 2024
High · CVSS 7.1
Select Dell Client Commercial and Consumer platforms contain an Improper Access Vulnerability. An unauthenticated attacker with physical access to the system could potentially bypass intended Secure Boot restrictions to run unsigned and untrusted code on expansion cards installed in the system during platform boot. Refer to https://www.dell.com/support/article/us/en/04/sln317683/dsa-2019-043-dell-client-improper-access-control-vulnerability?lang=en for versions affected by this vulnerability.
Published Aug 5, 2019 · Updated Sep 16, 2024
Medium · CVSS 6.5
An insecure storage of sensitive information vulnerability is present in Hickory Smart for iOS mobile devices from Belwith Products, LLC. The application's database was found to contain information that could be used to control the lock devices remotely. This issue affects Hickory Smart for iOS, version 01.01.07 and prior versions.
Published Aug 22, 2019 · Updated Sep 16, 2024
High · CVSS 7.1
IBM Intelligent Operations Center V5.1.0 through V5.2.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 162737.
Published Aug 20, 2019 · Updated Sep 16, 2024
Medium · CVSS 6.7
IBM i 7.4 users who have done a Restore User Profile (RSTUSRPRF) on a system which has been configured with Db2 Mirror for i might have user profiles with elevated privileges caused by incorrect processing during a restore of multiple user profiles. A user with restore privileges could exploit this vulnerability to obtain elevated privileges on the restored system. IBM X-Force ID: 165592.
Published Aug 29, 2019 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The wikirenderer component in Jira before version 7.13.6, and from version 8.0.0 before version 8.3.2 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in image attribute specification.
Published Aug 23, 2019 · Updated Sep 16, 2024
Medium · CVSS 5.3
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 stores user credentials in plain in clear text which can be read by an authenticated user. IBM X-Force ID: 171938.
Published Aug 26, 2020 · Updated Sep 16, 2024
Low · CVSS 3.7
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 171825.
Published Aug 26, 2020 · Updated Sep 16, 2024
Medium · CVSS 6
A buffer overflow exists in the SMS handler API of ALEOS before 4.13.0, 4.9.5, 4.9.4 that may allow code execution as root.
Published Aug 21, 2020 · Updated Sep 16, 2024
Medium · CVSS 5.4
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 171828.
Published Aug 26, 2020 · Updated Sep 16, 2024
Medium · CVSS 5.4
Pivotal Apps Manager, included in Pivotal Application Service versions 2.3.x prior to 2.3.16, 2.4.x prior to 2.4.12, 2.5.x prior to 2.5.8, and 2.6.x prior to 2.6.3, makes a request to the /cloudapplication endpoint via Spring actuator, and subsequent requests via unsecured http. An adjacent unauthenticated user could eavesdrop on the network traffic and gain access to the unencrypted token allowing the attacker to read the type of access a user has over an app. They may also modify the logging level, potentially leading to lost information that would otherwise have been logged.
Published Aug 19, 2019 · Updated Sep 16, 2024
Unknown · CVSS Not scored
HTML injection combined with path traversal in the Email service in Gravitee API Management before 1.25.3 allows anonymous users to read arbitrary files via a /management/users/register request.
Published Aug 23, 2022 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Linaro OP-TEE before 3.7.0, by using inconsistent or malformed data, it is possible to call update and final cryptographic functions directly, causing a crash that could leak sensitive information.
Published Aug 11, 2021 · Updated Aug 5, 2024
Unknown · CVSS Not scored
ABBYY network license server in ABBYY FineReader 15 before Release 4 (aka 15.0.112.2130) allows escalation of privileges by local users via manipulations involving files and using symbolic links.
Published Aug 13, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An XSS issue was discovered in TreasuryXpress 19191105. Due to the lack of filtering and sanitization of user input, malicious JavaScript can be executed by the application's administrator(s). A malicious payload can be injected within the Multi Approval security component and inserted via the Note field. As a result, the payload is executed by the application's administrator(s).
Published Aug 20, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In TreasuryXpress 19191105, a logged-in user can discover saved credentials, even though the UI hides them. Using functionality within the application and a malicious host, it is possible to force the application to expose saved SSH/SFTP credentials. This can be done by using the application's editor to change the expected SFTP Host IP to a malicious host, and then using the Check Connectivity option. The application then sends these saved credentials to the malicious host.
Published Aug 20, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An XSS issue was discovered in TreasuryXpress 19191105. Due to the lack of filtering and sanitization of user input, malicious JavaScript can be executed throughout the application. A malicious payload can be injected within the Custom Workflow component and inserted via the Create New Workflow field. As a result, the payload is executed via the navigation bar throughout the application.
Published Aug 20, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in RICOH Streamline NX Client Tool and RICOH Streamline NX PC Client that allows attackers to escalate local privileges.
Published Aug 4, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In JetBrains Upsource before 2020.1, information disclosure is possible because of an incorrect user matching algorithm.
Published Aug 8, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
ise smart connect KNX Vaillant 1.2.839 contain a Denial of Service.
Published Aug 14, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Grafana <= 6.4.3 has an Arbitrary File Read vulnerability, which could be exploited by an authenticated attacker that has privileges to modify the data source configurations.
Published Aug 28, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Wowza Streaming Engine before 4.8.5 has Insecure Permissions which may allow a local attacker to escalate privileges in / usr / local / WowzaStreamingEngine / manager / bin / in the Linux version of the server by writing arbitrary commands in any file and execute them as root. This issue was resolved in Wowza Streaming Engine 4.8.5.
Published Aug 3, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Wowza Streaming Engine before 4.8.5 allows XSS (issue 1 of 2). An authenticated user, with access to the proxy license editing is able to insert a malicious payload that will be triggered in the main page of server settings. This issue was resolved in Wowza Streaming Engine 4.8.5.
Published Aug 3, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Enterprise Access Client Auto-Updater allows for Remote Code Execution prior to version 2.0.1.
Published Aug 26, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Pega Platform 8.2.1 allows LDAP injection because a username can contain a * character and can be of unlimited length. An attacker can specify four characters of a username, followed by the * character, to bypass access control.
Published Aug 13, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The webp-express plugin before 0.14.8 for WordPress has stored XSS.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The pie-register plugin before 3.1.2 for WordPress has SQL injection, a different issue than CVE-2018-10969.
Published Aug 27, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In the Linux kernel before 5.1.13, there is a memory leak in drivers/scsi/libsas/sas_expander.c when SAS expander discovery fails. This will cause a BUG and denial of service.
Published Aug 29, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The wps-hide-login plugin before 1.5.3 for WordPress has an adminhash protection bypass.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The easy-property-listings plugin before 3.4 for WordPress has XSS.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The nd-restaurant-reservations plugin before 1.5 for WordPress has no requirement for nd_rst_import_settings_php_function authentication.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The photoblocks-grid-gallery plugin before 1.1.33 for WordPress has wp-admin/admin.php?page=photoblocks-edit&id= XSS.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The visitors-traffic-real-time-statistics plugin before 1.13 for WordPress has CSRF.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The wp-ultimate-recipe plugin before 3.12.7 for WordPress has stored XSS.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The wps-hide-login plugin before 1.5.3 for WordPress has a protection bypass via wp-login.php in the Referer field.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The wps-hide-login plugin before 1.5.3 for WordPress has an action=rp&key&login protection bypass.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The simple-301-redirects-addon-bulk-uploader plugin through 1.2.4 for WordPress has no requirement for authentication for action=bulk301export or action=bulk301clearlist.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
wolfSSL 4.1.0 has a one-byte heap-based buffer over-read in DecodeCertExtensions in wolfcrypt/src/asn.c because reading the ASN_BOOLEAN byte is mishandled for a crafted DER certificate in GetLength_ex.
Published Aug 26, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The webp-converter-for-media plugin before 1.0.3 for WordPress has CSRF.
Published Aug 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The icegram plugin before 1.10.29 for WordPress has ig_cat_list XSS.
Published Aug 30, 2019 · Updated Aug 5, 2024