CVE List - 2019 / July
Showing 801 - 900 of 1618 CVEs for July 2019 (Page 9 of 17)
CVE ID | Date | Title |
---|---|---|
CVE-2019-3970 | 2019-07-17 | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Arbitrary... |
CVE-2019-3971 | 2019-07-17 | Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to a... |
CVE-2019-3972 | 2019-07-17 | Comodo Antivirus versions 12.0.0.6810 and below are vulnerable to Denial... |
CVE-2019-3973 | 2019-07-17 | Comodo Antivirus versions 11.0.0.6582 and below are vulnerable to Denial... |
CVE-2019-13640 | 2019-07-17 | In qBittorrent before 4.1.7, the function Application::runExternalProgram() located in app/application.cpp... |
CVE-2019-5222 | 2019-07-17 | There is an information disclosure vulnerability on Secure Input of... |
CVE-2019-13643 | 2019-07-18 | Stored XSS in EspoCRM before 5.6.4 allows remote attackers to... |
CVE-2019-13644 | 2019-07-18 | Firefly III before 4.7.17.1 is vulnerable to stored XSS due... |
CVE-2019-13645 | 2019-07-18 | Firefly III before 4.7.17.3 is vulnerable to stored XSS due... |
CVE-2019-13646 | 2019-07-18 | Firefly III before 4.7.17.3 is vulnerable to reflected XSS due... |
CVE-2019-13647 | 2019-07-18 | Firefly III before 4.7.17.3 is vulnerable to stored XSS due... |
CVE-2016-10763 | 2019-07-18 | The CampTix Event Ticketing plugin before 1.5 for WordPress allows... |
CVE-2016-10762 | 2019-07-18 | The CampTix Event Ticketing plugin before 1.5 for WordPress allows... |
CVE-2019-1010094 | 2019-07-18 | domainmod v4.10.0 is affected by: Cross Site Request Forgery (CSRF).... |
CVE-2019-1010095 | 2019-07-18 | DomainMOD v4.10.0 is affected by: Cross Site Request Forgery (CSRF).... |
CVE-2019-1010096 | 2019-07-18 | DomainMOD v4.10.0 is affected by: Cross Site Request Forgery (CSRF).... |
CVE-2019-1010054 | 2019-07-18 | Dolibarr 7.0.0 is affected by: Cross Site Request Forgery (CSRF).... |
CVE-2019-1010066 | 2019-07-18 | Lawrence Livermore National Laboratory msr-safe v1.1.0 is affected by: Incorrect... |
CVE-2019-1010069 | 2019-07-18 | moinejf abcm2ps 8.13.20 is affected by: Incorrect Access Control. The... |
CVE-2019-13915 | 2019-07-18 | b3log Wide before 1.6.0 allows three types of attacks to... |
CVE-2019-13607 | 2019-07-18 | The Opera Mini application through 16.0.14 for iOS has a... |
CVE-2019-9230 | 2019-07-18 | An issue was discovered on AudioCodes Mediant 500L-MSBR, 500-MBSR, M800B-MSBR... |
CVE-2019-13575 | 2019-07-18 | A SQL injection vulnerability exists in WPEverest Everest Forms plugin... |
CVE-2019-9231 | 2019-07-18 | An issue was discovered on AudioCodes Mediant 500L-MSBR, 500-MBSR, M800B-MSBR... |
CVE-2019-13509 | 2019-07-18 | In Docker CE and EE before 18.09.8 (as well as... |
CVE-2019-3570 | 2019-07-18 | Call to the scrypt_enc() function in HHVM can lead to... |
CVE-2019-3734 | 2019-07-18 | Dell EMC Unity and UnityVSA versions prior to 5.0.0.0.5.116 contain... |
CVE-2019-3741 | 2019-07-18 | Dell EMC Unity and UnityVSA versions prior to 5.0.0.0.5.116 contain... |
CVE-2019-3794 | 2019-07-18 | UAA - Login app subject to clickjacking attack |
CVE-2019-1010104 | 2019-07-18 | TechyTalk Quick Chat WordPress Plugin All up to the latest... |
CVE-2019-13948 | 2019-07-18 | SyGuestBook A5 Version 1.2 allows stored XSS because the isValidData... |
CVE-2019-13949 | 2019-07-18 | SyGuestBook A5 Version 1.2 has no CSRF protection mechanism, as... |
CVE-2019-13950 | 2019-07-18 | index.php?c=admin&a=index in SyGuestBook A5 Version 1.2 has stored XSS via... |
CVE-2019-1010268 | 2019-07-18 | Ladon since 0.6.1 (since ebef0aae48af78c159b6fce81bc6f5e7e0ddb059) is affected by: XML External... |
CVE-2019-1010065 | 2019-07-18 | The Sleuth Kit 4.6.0 and earlier is affected by: Integer... |
CVE-2019-13951 | 2019-07-18 | The set_ipv4() function in zscan_rfc1035.rl in gdnsd 3.x before 3.2.1... |
CVE-2019-13952 | 2019-07-18 | The set_ipv6() function in zscan_rfc1035.rl in gdnsd before 2.4.3 and... |
CVE-2019-1010261 | 2019-07-18 | Gitea 1.7.0 and earlier is affected by: Cross Site Scripting... |
CVE-2019-1010259 | 2019-07-18 | SaltStack Salt 2018.3, 2019.2 is affected by: SQL Injection. The... |
CVE-2019-11230 | 2019-07-18 | In Avast Antivirus before 19.4, a local administrator can trick... |
CVE-2019-13956 | 2019-07-18 | Discuz!ML 3.2 through 3.4 allows remote attackers to execute arbitrary... |
CVE-2019-1010252 | 2019-07-18 | The Linux Foundation ONOS 2.0.0 and earlier is affected by:... |
CVE-2019-1010251 | 2019-07-18 | Open Information Security Foundation Suricata prior to version 4.1.2 is... |
CVE-2019-1010250 | 2019-07-18 | The Linux Foundation ONOS 2.0.0 and earlier is affected by:... |
CVE-2019-1010249 | 2019-07-18 | The Linux Foundation ONOS 2.0.0 and earlier is affected by:... |
CVE-2019-1010248 | 2019-07-18 | Synetics GmbH I-doit 1.12 and earlier is affected by: SQL... |
CVE-2019-3592 | 2019-07-18 | MA for Windows update addresses weak directory permissions |
CVE-2019-1010246 | 2019-07-18 | MailCleaner before c888fbb6aaa7c5f8400f637bcf1cbb844de46cd9 is affected by: Unauthenticated MySQL database password... |
CVE-2019-1010279 | 2019-07-18 | Open Information Security Foundation Suricata prior to version 4.1.3 is... |
CVE-2019-1010112 | 2019-07-18 | OECMS v4.3.R60321 and v4.3 later is affected by: Cross Site... |
CVE-2019-8286 | 2019-07-18 | Information Disclosure in Kaspersky Anti-Virus, Kaspersky Internet Security, Kaspersky Total... |
CVE-2019-13959 | 2019-07-18 | In Bento4 1.5.1-627, AP4_DataBuffer::SetDataSize does not handle reallocation failures, leading... |
CVE-2019-13960 | 2019-07-18 | In libjpeg-turbo 2.0.2, a large amount of memory can be... |
CVE-2019-13961 | 2019-07-18 | A CSRF vulnerability was found in flatCore before 1.5, leading... |
CVE-2019-13962 | 2019-07-18 | lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7... |
CVE-2019-7850 | 2019-07-18 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have a... |
CVE-2019-7848 | 2019-07-18 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an... |
CVE-2019-7847 | 2019-07-18 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an... |
CVE-2019-7846 | 2019-07-18 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an... |
CVE-2019-7941 | 2019-07-18 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an... |
CVE-2019-7843 | 2019-07-18 | Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an... |
CVE-2019-7956 | 2019-07-18 | Adobe Dreamweaver direct download installer versions 19.0 and below, 18.0... |
CVE-2019-7955 | 2019-07-18 | Adobe Experience Manager version 6.4 and ealier have a Reflected... |
CVE-2019-7954 | 2019-07-18 | Adobe Experience Manager version 6.4 and ealier have a Stored... |
CVE-2019-7953 | 2019-07-18 | Adobe Experience Manager version 6.4 and ealier have a Cross-Site... |
CVE-2019-7963 | 2019-07-18 | Adobe Bridge CC version 9.0.2 and earlier versions have an... |
CVE-2019-13969 | 2019-07-19 | Metinfo 6.x allows SQL Injection via the id parameter in... |
CVE-2019-13970 | 2019-07-19 | In antSword before 2.1.0, self-XSS in the database configuration leads... |
CVE-2019-13971 | 2019-07-19 | OTCMS 3.81 allows XSS via the mode parameter in an... |
CVE-2019-13972 | 2019-07-19 | LayerBB 1.1.3 allows XSS via the application/commands/new.php pm_title variable, a... |
CVE-2019-13973 | 2019-07-19 | LayerBB 1.1.3 allows admin/general.php arbitrary file upload because the custom_logo... |
CVE-2019-13974 | 2019-07-19 | LayerBB 1.1.3 allows conversations.php/cmd/new CSRF. |
CVE-2019-13977 | 2019-07-19 | index.php in Ovidentia 8.4.3 has XSS via tg=groups, tg=maildoms&idx=create&userid=0&bgrp=y, tg=delegat,... |
CVE-2019-13978 | 2019-07-19 | Ovidentia 8.4.3 has SQL Injection via the id parameter in... |
CVE-2019-13648 | 2019-07-19 | In the Linux kernel through 5.2.1 on the powerpc platform,... |
CVE-2019-11552 | 2019-07-19 | Code42 Enterprise and Crashplan for Small Business Client version 6.7... |
CVE-2019-1010151 | 2019-07-19 | zzcms zzmcms 8.3 and earlier is affected by: File Delete... |
CVE-2019-12946 | 2019-07-19 | Elcom CMS before 10.7 has SQL Injection via EventSearchByState.aspx and... |
CVE-2019-1010247 | 2019-07-19 | ZmartZone IAM mod_auth_openidc 2.3.10.1 and earlier is affected by: Cross... |
CVE-2019-13984 | 2019-07-19 | Directus 7 API before 2.3.0 does not validate uploaded files.... |
CVE-2019-13983 | 2019-07-19 | Directus 7 API before 2.2.2 has insufficient anti-automation, as demonstrated... |
CVE-2019-13982 | 2019-07-19 | interfaces/markdown/input.vue in Directus 7 Application before 7.7.0 does not sanitize... |
CVE-2019-13981 | 2019-07-19 | In Directus 7 API through 2.3.0, remote attackers can read... |
CVE-2019-13980 | 2019-07-19 | In Directus 7 API through 2.3.0, uploading of PHP files... |
CVE-2019-13979 | 2019-07-19 | In Directus 7 API before 2.2.1, uploading of PHP files... |
CVE-2019-1010245 | 2019-07-19 | The Linux Foundation ONOS SDN Controller 1.15 and earlier versions... |
CVE-2019-1167 | 2019-07-19 | A security feature bypass vulnerability exists in Windows Defender Application... |
CVE-2019-1010113 | 2019-07-19 | Premium Software CLEditor 1.4.5 and earlier is affected by: Cross... |
CVE-2019-1010100 | 2019-07-19 | Akeo Consulting Rufus 3.0 and earlier is affected by: DLL... |
CVE-2019-1010101 | 2019-07-19 | Akeo Consulting Rufus 3.0 and earlier is affected by: Insecure... |
CVE-2019-1010136 | 2019-07-19 | ChinaMobile GPN2.4P21-C-CN W2001EN-00 is affected by: Incorrect Access Control -... |
CVE-2015-7882 | 2019-07-19 | Authentication bypass when using LDAP authentication in MongoDB Enterprise Server |
CVE-2019-1010142 | 2019-07-19 | scapy 2.4.0 is affected by: Denial of Service. The impact... |
CVE-2019-12193 | 2019-07-19 | H3C H3Cloud OS all versions allows SQL injection via the... |
CVE-2019-1010241 | 2019-07-19 | Jenkins Credentials Binding Plugin Jenkins 1.17 is affected by: CWE-257:... |
CVE-2019-1010239 | 2019-07-19 | DaveGamble/cJSON cJSON 1.7.8 is affected by: Improper Check for Unusual... |
CVE-2019-1010238 | 2019-07-19 | Gnome Pango 1.42 and later is affected by: Buffer Overflow.... |
CVE-2019-11553 | 2019-07-19 | In Code42 for Enterprise through 6.8.4, an administrator without web... |
CVE-2018-17792 | 2019-07-19 | MDaemon Webmail (formerly WorldClient) has CSRF. |
CVE-2019-12453 | 2019-07-19 | In MicroStrategy Web before 10.1 patch 10, stored XSS is... |