CSV
14,809 results for "vulnerability" Page 103
CVE-2019-5420 CRITICAL Exploit

A remote code execution vulnerability in development mode Rails <5.2.2.1, <6.0.0.beta3 can allow an attacker to guess the automatically generated development mode secret token. This secret token can be used in combination with other Rails internals to escalate to a remote code execution exploit.

Mar 27, 2019 5 affected product(s) NVD
9.8
CVSS
92.1%
EPSS
⚡ 76.8
CVE-2019-0698 CRITICAL

A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows DHCP Client Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0697, CVE-2019-0726.

Apr 9, 2019 4 affected product(s) NVD
9.8
CVSS
62.8%
EPSS
⚡ 58.1
CVE-2019-0726 CRITICAL

A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows DHCP Client Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0697, CVE-2019-0698.

Apr 9, 2019 4 affected product(s) NVD
9.8
CVSS
54.0%
EPSS
⚡ 55.4
CVE-2019-6553 CRITICAL

A vulnerability was found in Rockwell Automation RSLinx Classic versions 4.10.00 and prior. An input validation issue in a .dll file of RSLinx Classic where the data in a Forward Open service request is passed to a fixed size buffer, allowing an attacker to exploit a stack-based buffer overflow condition.

Apr 4, 2019 1 affected product(s) NVD
9.8
CVSS
50.0%
EPSS
⚡ 54.2
CVE-2019-0697 CRITICAL

A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows DHCP Client Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0698, CVE-2019-0726.

Apr 9, 2019 4 affected product(s) NVD
9.8
CVSS
29.6%
EPSS
⚡ 48.1
CVE-2019-9204 CRITICAL

SQL injection vulnerability in Nagios IM (component of Nagios XI) before 2.2.7 allows attackers to execute arbitrary SQL commands.

Mar 28, 2019 1 affected product(s) NVD
9.8
CVSS
19.7%
EPSS
⚡ 45.1
CVE-2019-0786 CRITICAL

An elevation of privilege vulnerability exists in the Microsoft Server Message Block (SMB) Server when an attacker with valid credentials attempts to open a specially crafted file over the SMB protocol on the same machine, aka 'SMB Server Elevation of Privilege Vulnerability'.

Apr 9, 2019 6 affected product(s) NVD
9.8
CVSS
7.0%
EPSS
⚡ 41.3
CVE-2018-19586 CRITICAL

Silverpeas 5.15 through 6.0.2 is affected by an authenticated Directory Traversal vulnerability that can be triggered during file uploads because core/webapi/upload/FileUploadData.java mishandles a StringUtil.java call. This vulnerability enables regular users to write arbitrary files on the underlying system with privileges of the user running the application. Especially, an attacker may leverage the vulnerability to write an executable JSP file in an exposed web directory to execute commands on the underlying system.

Apr 9, 2019 1 affected product(s) NVD
9.9
CVSS
5.0%
EPSS
⚡ 41.1
CVE-2019-9945 CRITICAL

SoftNAS Cloud 4.2.0 and 4.2.1 allows remote command execution. The NGINX default configuration file has a check to verify the status of a user cookie. If not set, a user is redirected to the login page. An arbitrary value can be provided for this cookie to access the web interface without valid user credentials. If customers have not followed SoftNAS deployment best practices and expose SoftNAS StorageCenter ports directly to the internet, this vulnerability allows an attacker to gain access to the Webadmin interface to create new users or execute arbitrary commands with administrative privileges, compromising both the platform and the data.

Mar 23, 2019 2 affected product(s) NVD
9.8
CVSS
5.8%
EPSS
⚡ 41
CVE-2017-8023 CRITICAL

EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the Networker Client execution service (nsrexecd) when oldauth authentication method is used. An unauthenticated remote attacker could send arbitrary commands via RPC service to be executed on the host system with the privileges of the nsrexecd service, which runs with administrative privileges.

Apr 1, 2019 4 affected product(s) NVD
9.8
CVSS
5.9%
EPSS
⚡ 41
CVE-2018-19282 CRITICAL

Rockwell Automation PowerFlex 525 AC Drives 5.001 and earlier allow remote attackers to cause a denial of service by crashing the Common Industrial Protocol (CIP) network stack. The vulnerability allows the attacker to crash the CIP in a way that it does not accept new connections, but keeps the current connections active, which can prevent legitimate users from recovering control.

Apr 4, 2019 1 affected product(s) NVD
9.8
CVSS
5.6%
EPSS
⚡ 40.9
CVE-2019-9165 CRITICAL

SQL injection vulnerability in Nagios XI before 5.5.11 allows attackers to execute arbitrary SQL commands via the API when using fusekeys and malicious user id.

Mar 28, 2019 1 affected product(s) NVD
9.8
CVSS
5.3%
EPSS
⚡ 40.8
CVE-2019-10686 CRITICAL

An SSRF vulnerability was found in an API from Ctrip Apollo through 1.4.0-SNAPSHOT. An attacker may use it to do an intranet port scan or raise a GET request via /system-info/health because the %23 substring is mishandled.

Apr 1, 2019 1 affected product(s) NVD
10.0
CVSS
1.6%
EPSS
⚡ 40.5
CVE-2019-3940 CRITICAL

Advantech WebAccess 8.3.4 is vulnerable to file upload attacks via unauthenticated RPC call. An unauthenticated, remote attacker can use this vulnerability to execute arbitrary code.

Apr 9, 2019 1 affected product(s) NVD
9.8
CVSS
4.1%
EPSS
⚡ 40.4
CVE-2018-19466 CRITICAL

A vulnerability was found in Portainer before 1.20.0. Portainer stores LDAP credentials, corresponding to a master password, in cleartext and allows their retrieval via API calls.

Mar 27, 2019 1 affected product(s) NVD
9.8
CVSS
3.7%
EPSS
⚡ 40.3
CVE-2014-9186 CRITICAL

A file inclusion vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.2, which could lead to accepting an arbitrary file into the function, and potential information disclosure or remote code execution. Honeywell strongly encourages and recommends all customers running unsupported versions of EKPS prior to R400 to upgrade to a supported version.

Apr 8, 2019 3 affected product(s) NVD
9.8
CVSS
3.7%
EPSS
⚡ 40.3
CVE-2019-0813 CRITICAL

An elevation of privilege vulnerability exists when Windows Admin Center improperly impersonates operations in certain situations, aka 'Windows Admin Center Elevation of Privilege Vulnerability'.

Apr 9, 2019 1 affected product(s) NVD
9.8
CVSS
3.5%
EPSS
⚡ 40.3
CVE-2019-7537 CRITICAL

An issue was discovered in Donfig 0.3.0. There is a vulnerability in the collect_yaml method in config_obj.py. It can execute arbitrary Python commands, resulting in command execution.

Mar 21, 2019 1 affected product(s) NVD
9.8
CVSS
3.4%
EPSS
⚡ 40.2
CVE-2019-1003040 CRITICAL

A sandbox bypass vulnerability in Jenkins Script Security Plugin 1.55 and earlier allows attackers to invoke arbitrary constructors in sandboxed scripts.

Mar 28, 2019 2 affected product(s) NVD
9.8
CVSS
3.4%
EPSS
⚡ 40.2
CVE-2019-1003041 CRITICAL

A sandbox bypass vulnerability in Jenkins Pipeline: Groovy Plugin 2.64 and earlier allows attackers to invoke arbitrary constructors in sandboxed scripts.

Mar 28, 2019 2 affected product(s) NVD
9.8
CVSS
3.4%
EPSS
⚡ 40.2