CVE-2014-10381
The user-domain-whitelist plugin before 1.5 for WordPress has CSRF.
Source: CVE-2014-10381
CVE-2014-10381
The user-domain-whitelist plugin before 1.5 for WordPress has CSRF.
Source: CVE-2014-10381
CVE-2019-15082
The 360-product-rotation plugin before 1.4.8 for WordPress has reflected XSS.
Source: CVE-2019-15082
CVE-2019-15290
An issue was discovered in the Linux kernel through 5.2.9. There is a NULL pointer dereference caused by a malicious USB device in the ath6kl_usb_alloc_urb_from_pipe function in the drivers/net/wireless/ath/ath6kl/usb.c driver.
Source: CVE-2019-15290
CVE-2019-14684
A DLL hijacking vulnerability exists in Trend Micro Password Manager 5.0 in which, if exploited, would allow an attacker to load an arbitrary unsigned DLL into the signed service’s process. This process is very similar, yet not identical to CVE-2019-14687.
Source: CVE-2019-14684
CVE-2019-15291
An issue was discovered in the Linux kernel through 5.2.9. There is a NULL pointer dereference caused by a malicious USB device in the flexcop_usb_probe function in the drivers/media/usb/b2c2/flexcop-usb.c driver.
Source: CVE-2019-15291
CVE-2019-14687
A DLL hijacking vulnerability exists in Trend Micro Password Manager 5.0 in which, if exploited, would allow an attacker to load an arbitrary unsigned DLL into the signed service’s process. This process is very similar, yet not identical to CVE-2019-14684.
Source: CVE-2019-14687
CVE-2019-15233
The Live:Text Box macro in the Old Street Live Input Macros app before 2.11 for Confluence has XSS, leading to theft of the Administrator Session Cookie.
Source: CVE-2019-15233
CVE-2019-14430
plugin/Audit/Objects/AuditTable.php in YouPHPTube through 7.2 allows SQL Injection.
Source: CVE-2019-14430
CVE-2018-20975
Fat Free CRM before 0.18.1 has XSS in the tags_helper in app/helpers/tags_helper.rb.
Source: CVE-2018-20975