Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2019-18641
Rock RMS before 1.8.6 mishandles vCard access control within the People/GetVCard/REST controller.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.037
EPSS Ranking
87.5%
CVSS Severity
CVSS v3 Score
9.8
CVSS v2 Score
7.5
References
http://packetstormsecurity.com/files/160766/Rock-RMS-File-Upload-Account-Takeover-Information-Disclosure.html
http://seclists.org/fulldisclosure/2021/Jan/1
https://github.com/SparkDevNetwork/Rock/commit/576f5ec22b1c43f123a377612981c68538167c61
https://github.com/SparkDevNetwork/Rock/compare/1.7.6...1.8.6
http://packetstormsecurity.com/files/160766/Rock-RMS-File-Upload-Account-Takeover-Information-Disclosure.html
http://seclists.org/fulldisclosure/2021/Jan/1
https://github.com/SparkDevNetwork/Rock/commit/576f5ec22b1c43f123a377612981c68538167c61
https://github.com/SparkDevNetwork/Rock/compare/1.7.6...1.8.6
Products affected by CVE-2019-18641
Sparkdevnetwork
»
Rock Rms
»
Version:
0.0.2
cpe:2.3:a:sparkdevnetwork:rock_rms:0.0.2
Sparkdevnetwork
»
Rock Rms
»
Version:
0.0.3
cpe:2.3:a:sparkdevnetwork:rock_rms:0.0.3
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.0
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.0
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.1
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.1
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.10
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.10
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.2
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.2
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.3
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.3
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.4
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.4
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.5
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.5
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.6
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.6
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.7
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.7
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.8
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.8
Sparkdevnetwork
»
Rock Rms
»
Version:
0.1.9
cpe:2.3:a:sparkdevnetwork:rock_rms:0.1.9
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.1
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.1
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.10
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.10
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.11
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.11
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.12
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.12
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.13
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.13
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.14
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.14
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.2
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.2
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.3
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.3
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.4
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.4
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.5
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.5
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.6
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.6
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.7
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.7
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.8
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.8
Sparkdevnetwork
»
Rock Rms
»
Version:
1.0.9
cpe:2.3:a:sparkdevnetwork:rock_rms:1.0.9
Sparkdevnetwork
»
Rock Rms
»
Version:
1.1.0
cpe:2.3:a:sparkdevnetwork:rock_rms:1.1.0
Sparkdevnetwork
»
Rock Rms
»
Version:
1.1.1
cpe:2.3:a:sparkdevnetwork:rock_rms:1.1.1
Sparkdevnetwork
»
Rock Rms
»
Version:
1.1.2
cpe:2.3:a:sparkdevnetwork:rock_rms:1.1.2
Sparkdevnetwork
»
Rock Rms
»
Version:
1.2.0
cpe:2.3:a:sparkdevnetwork:rock_rms:1.2.0
Sparkdevnetwork
»
Rock Rms
»
Version:
1.3.0
cpe:2.3:a:sparkdevnetwork:rock_rms:1.3.0
Sparkdevnetwork
»
Rock Rms
»
Version:
1.3.1
cpe:2.3:a:sparkdevnetwork:rock_rms:1.3.1
Sparkdevnetwork
»
Rock Rms
»
Version:
1.3.2
cpe:2.3:a:sparkdevnetwork:rock_rms:1.3.2
Sparkdevnetwork
»
Rock Rms
»
Version:
1.3.3
cpe:2.3:a:sparkdevnetwork:rock_rms:1.3.3
Sparkdevnetwork
»
Rock Rms
»
Version:
1.3.4
cpe:2.3:a:sparkdevnetwork:rock_rms:1.3.4
Sparkdevnetwork
»
Rock Rms
»
Version:
1.3.5
cpe:2.3:a:sparkdevnetwork:rock_rms:1.3.5
Sparkdevnetwork
»
Rock Rms
»
Version:
1.4.0
cpe:2.3:a:sparkdevnetwork:rock_rms:1.4.0
Sparkdevnetwork
»
Rock Rms
»
Version:
1.4.1
cpe:2.3:a:sparkdevnetwork:rock_rms:1.4.1
Sparkdevnetwork
»
Rock Rms
»
Version:
1.4.2
cpe:2.3:a:sparkdevnetwork:rock_rms:1.4.2
Sparkdevnetwork
»
Rock Rms
»
Version:
1.4.3
cpe:2.3:a:sparkdevnetwork:rock_rms:1.4.3
Sparkdevnetwork
»
Rock Rms
»
Version:
1.4.4
cpe:2.3:a:sparkdevnetwork:rock_rms:1.4.4
Sparkdevnetwork
»
Rock Rms
»
Version:
1.4.5
cpe:2.3:a:sparkdevnetwork:rock_rms:1.4.5
Sparkdevnetwork
»
Rock Rms
»
Version:
1.4.6
cpe:2.3:a:sparkdevnetwork:rock_rms:1.4.6
Sparkdevnetwork
»
Rock Rms
»
Version:
1.5.0
cpe:2.3:a:sparkdevnetwork:rock_rms:1.5.0
Sparkdevnetwork
»
Rock Rms
»
Version:
1.5.1
cpe:2.3:a:sparkdevnetwork:rock_rms:1.5.1
Sparkdevnetwork
»
Rock Rms
»
Version:
1.5.2
cpe:2.3:a:sparkdevnetwork:rock_rms:1.5.2
Sparkdevnetwork
»
Rock Rms
»
Version:
1.5.3
cpe:2.3:a:sparkdevnetwork:rock_rms:1.5.3
Sparkdevnetwork
»
Rock Rms
»
Version:
1.5.4
cpe:2.3:a:sparkdevnetwork:rock_rms:1.5.4
Sparkdevnetwork
»
Rock Rms
»
Version:
1.5.5
cpe:2.3:a:sparkdevnetwork:rock_rms:1.5.5
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.0
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.0
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.1
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.1
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.10
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.10
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.2
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.2
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.3
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.3
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.4
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.4
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.5
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.5
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.6
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.6
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.7
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.7
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.8
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.8
Sparkdevnetwork
»
Rock Rms
»
Version:
1.6.9
cpe:2.3:a:sparkdevnetwork:rock_rms:1.6.9
Sparkdevnetwork
»
Rock Rms
»
Version:
1.7.0
cpe:2.3:a:sparkdevnetwork:rock_rms:1.7.0
Sparkdevnetwork
»
Rock Rms
»
Version:
1.7.1
cpe:2.3:a:sparkdevnetwork:rock_rms:1.7.1
Sparkdevnetwork
»
Rock Rms
»
Version:
1.7.2
cpe:2.3:a:sparkdevnetwork:rock_rms:1.7.2
Sparkdevnetwork
»
Rock Rms
»
Version:
1.7.3
cpe:2.3:a:sparkdevnetwork:rock_rms:1.7.3
Sparkdevnetwork
»
Rock Rms
»
Version:
1.7.4
cpe:2.3:a:sparkdevnetwork:rock_rms:1.7.4
Sparkdevnetwork
»
Rock Rms
»
Version:
1.7.5
cpe:2.3:a:sparkdevnetwork:rock_rms:1.7.5
Sparkdevnetwork
»
Rock Rms
»
Version:
1.7.6
cpe:2.3:a:sparkdevnetwork:rock_rms:1.7.6
Sparkdevnetwork
»
Rock Rms
»
Version:
1.8.0
cpe:2.3:a:sparkdevnetwork:rock_rms:1.8.0
Sparkdevnetwork
»
Rock Rms
»
Version:
1.8.1
cpe:2.3:a:sparkdevnetwork:rock_rms:1.8.1
Sparkdevnetwork
»
Rock Rms
»
Version:
1.8.2
cpe:2.3:a:sparkdevnetwork:rock_rms:1.8.2
Sparkdevnetwork
»
Rock Rms
»
Version:
1.8.3
cpe:2.3:a:sparkdevnetwork:rock_rms:1.8.3
Sparkdevnetwork
»
Rock Rms
»
Version:
1.8.4
cpe:2.3:a:sparkdevnetwork:rock_rms:1.8.4
Sparkdevnetwork
»
Rock Rms
»
Version:
1.8.5
cpe:2.3:a:sparkdevnetwork:rock_rms:1.8.5
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved