Show filters
304 Total Results
Displaying 241-250 of 304
Sort by:
Attacker Value
Unknown

CVE-2020-6168

Disclosure Date: January 09, 2020 (last updated February 21, 2025)
A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.10, allows authenticated users with basic access to enable and disable maintenance-mode settings (impacting the availability and confidentiality of a vulnerable site, along with the integrity of the setting).
Attacker Value
Unknown

CVE-2020-6167

Disclosure Date: January 09, 2020 (last updated February 21, 2025)
A flaw in the WordPress plugin, Minimal Coming Soon & Maintenance Mode through 2.10, allows a CSRF attack to enable maintenance mode, inject XSS, modify several important settings, or include remote files as a logo.
Attacker Value
Unknown

CVE-2019-7960

Disclosure Date: November 14, 2019 (last updated November 27, 2024)
Adobe Animate CC versions 19.2.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.
Attacker Value
Unknown

CVE-2019-11996

Disclosure Date: November 07, 2019 (last updated November 27, 2024)
Potential security vulnerabilities have been identified with HPE Nimble Storage systems in multi array group configurations. The vulnerabilities could be exploited by an attacker to gain elevated privileges on the array. The following NimbleOS versions, and all subsequent releases, contain a software fix for this vulnerability: 3.9.2.0, 4.5.5.0, 5.0.8.0 and 5.1.3.0.
Attacker Value
Unknown

CVE-2019-17195

Disclosure Date: October 15, 2019 (last updated November 08, 2023)
Connect2id Nimbus JOSE+JWT before v7.9 can throw various uncaught exceptions while parsing a JWT, which could result in an application crash (potential information disclosure) or a potential authentication bypass.
Attacker Value
Unknown

CVE-2019-17386

Disclosure Date: October 10, 2019 (last updated November 27, 2024)
The animate-it plugin before 2.3.6 for WordPress has CSRF in edsanimate.php.
Attacker Value
Unknown

CVE-2019-17384

Disclosure Date: October 09, 2019 (last updated November 27, 2024)
The animate-it plugin before 2.3.4 for WordPress has XSS.
Attacker Value
Unknown

CVE-2019-17385

Disclosure Date: October 09, 2019 (last updated November 27, 2024)
The animate-it plugin before 2.3.5 for WordPress has XSS.
Attacker Value
Unknown

CVE-2019-11013

Disclosure Date: August 22, 2019 (last updated November 27, 2024)
Nimble Streamer 3.0.2-2 through 3.5.4-9 has a ../ directory traversal vulnerability. Successful exploitation could allow an attacker to traverse the file system to access files or directories that are outside of the restricted directory on the remote server.
0
Attacker Value
Unknown

CVE-2019-7870

Disclosure Date: August 14, 2019 (last updated November 27, 2024)
Adobe Character Animator versions 2.1 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to arbitrary code execution.
0