• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2019-7568
2019-02-07
N/A
9.8 CRITICAL
An issue was discovered in baijiacms V4 that can result in time-based blind SQL injection to get data via the cate parameter in an index.php?act=index request.
CVE-2019-7567
2019-02-07
N/A
6.1 MEDIUM
An issue was discovered in Waimai Super Cms 20150505. admin.php?m=Member&a=adminaddsave has XSS via the username or password parameter.
CVE-2019-7566
2019-02-07
N/A
8.8 HIGH
CSZ CMS 1.1.8 has CSRF via admin/users/new/add.
CVE-2019-7564
Coship, Rt7620, Rt7620 Firmware
Emta_ap_firmwre, Emta_ap, Rt3050_firmware, Rt3050, Rt3052_firmware, Rt3052, Rt7620_firmware, Rt7620, Wm3300_firmware, Wm3300
2020-08-24
N/A
9.8 CRITICAL
An issue was discovered on Shenzhen Coship WM3300 WiFi Router 5.0.0.55 devices. The password reset functionality of the Wireless SSID doesn't require any type of authentication. By making a POST request to the regx/wireless/wl_security_2G.asp URI, the attacker can change the password of the Wi-FI network.
CVE-2019-7560
2019-02-07
N/A
5.5 MEDIUM
In parser/btorsmt2.c in Boolector 3.0.0, opening a specially crafted input file leads to a use after free in get_failed_assumptions or btor_delete.
CVE-2019-7559
2019-02-08
N/A
5.5 MEDIUM
In btor2parser/btor2parser.c in Boolector Btor2Tools before 2019-01-15, opening a specially crafted input file leads to an out of bounds write in pusht_bfr.
CVE-2019-7554
2019-06-10
N/A
6.1 MEDIUM
An issue was discovered in PHP Scripts Mall API Based Travel Booking 3.4.7. There is Reflected XSS via the flight-results.php d2 parameter.
CVE-2019-7553
2022-12-30
N/A
5.4 MEDIUM
PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has Stored XSS in the Profile Update page via the My Name field.
CVE-2019-7552
2020-04-21
N/A
5.4 MEDIUM
An issue was discovered in PHP Scripts Mall Investment MLM Software 2.0.2. Stored XSS was found in the the My Profile Section. This is due to lack of sanitization in the Edit Name section.
CVE-2019-7551
2019-09-27
N/A
9 CRITICAL
Cantemo Portal before 3.2.13, 3.3.x before 3.3.8, and 3.4.x before 3.4.9 has XSS. Leveraging this vulnerability would enable performing actions as users, including administrative users. This could enable account creation and deletion as well as deletion of information contained within the app.
« Previous 1 … 5,244 5,245 5,246 5,247 5,248 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE