• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

NVD-CWE-noinfo

CVE-2019-15009

February 26, 2023 by

The /json/profile/removeStarAjax.do resource in Atlassian Fisheye and Crucible before version 4.8.0 allows remote attackers to remove another user’s favourite setting for a project via an improper authorization vulnerability.

CVE-2019-14920

February 26, 2023 by

Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an authenticated attacker to gain root execution privileges over the device via a hidden etc_ro/web/adm/system_command.asp shell feature.

CVE-2019-14936

February 26, 2023 by

Easy!Appointments 1.3.2 plugin for WordPress allows Sensitive Information Disclosure (Username and Password Hash).

CVE-2019-14939

February 26, 2023 by

An issue was discovered in the mysql (aka mysqljs) module 2.17.1 for Node.js. The LOAD DATA LOCAL INFILE option is open by default.

CVE-2019-14940

February 26, 2023 by

In Storage Performance Development Kit (SPDK) before 19.07, a user of a vhost can cause a crash if the target is sent invalid input.

CVE-2019-1488

February 26, 2023 by

A security feature bypass vulnerability exists when Microsoft Defender improperly handles specific buffers, aka ‘Microsoft Defender Security Feature Bypass Vulnerability’.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1327
  • Go to page 1328
  • Go to page 1329
  • Go to page 1330
  • Go to page 1331
  • Interim pages omitted …
  • Go to page 2387
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE