CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2018-19906

    Last Modified: 6 May 2025

    Stored XSS exists in razorCMS 3.4.8 via the /#/page description parameter.

    Published: 31 Dec 2018
    6.5
    Medium

    CVE-2018-18593

    Last Modified: 21 Nov 2024

    Remote Directory Traversal and Remote Disclosure of Privileged Information in UCMDB Configuration Management Service, version 10.22, 10.22 CUP1, 10.22 CUP2, 10.22 CUP3, 10.22 CUP4, 10.22 CUP5, 10.22 CUP6, 10.22 CUP7, 10.33, 10.33 CUP1, 10.33 CUP2, 10.33 CUP3, 2018.02, 2018.05, 2018.08, 2018.11. The vulnerabilities could allow Remote Directory Traversal and Remote Disclosure of Privileged Information

    Published: 31 Dec 2018
    8.8
    High

    CVE-2018-20617

    Last Modified: 21 Nov 2024

    ok-file-formats through 2018-10-16 has a heap-based buffer overflow in the ok_csv_decode2 function in ok_csv.c.

    Published: 31 Dec 2018
    9.8
    Critical

    CVE-2018-17191

    Last Modified: 21 Nov 2024

    Apache NetBeans (incubating) 9.0 NetBeans Proxy Auto-Configuration (PAC) interpretation is vulnerable for remote command execution (RCE). Using the nashorn script engine the environment of the javascript execution for the Proxy Auto-Configuration leaks privileged objects, that can be used to circumvent the execution limits. If a different script engine was used, no execution limits were in place. Both vectors allow remote code execution.

    Published: 31 Dec 2018
    8.8
    High

    CVE-2018-20616

    Last Modified: 21 Nov 2024

    ok-file-formats through 2018-10-16 has a heap-based buffer overflow in the ok_wav_decode_ms_adpcm_data function in ok_wav.c.

    Published: 31 Dec 2018
    6.5
    Medium

    CVE-2018-20622

    Last Modified: 6 May 2025

    JasPer 2.0.14 has a memory leak in base/jas_malloc.c in libjasper.a when "--output-format jp2" is used.

    Published: 31 Dec 2018
    5.5
    Medium

    CVE-2018-20623

    Last Modified: 6 May 2025

    In GNU Binutils 2.31.1, there is a use-after-free in the error function in elfcomm.c when called from the process_archive function in readelf.c via a crafted ELF file.

    Published: 31 Dec 2018
    4.8
    Medium

    CVE-2018-20597

    Last Modified: 21 Nov 2024

    UCMS 1.4.7 has XSS via the dir parameter in an index.php sadmin_fileedit action.

    Published: 30 Dec 2018
    8.8
    High

    CVE-2018-20598

    Last Modified: 21 Nov 2024

    UCMS 1.4.7 has ?do=user_addpost CSRF.

    Published: 30 Dec 2018
    8.8
    High

    CVE-2018-20599

    Last Modified: 21 Nov 2024

    UCMS 1.4.7 allows remote attackers to execute arbitrary PHP code by entering this code during an index.php sadmin_fileedit action.

    Published: 30 Dec 2018
    6.1
    Medium

    CVE-2018-20600

    Last Modified: 21 Nov 2024

    sadmin\cedit.php in UCMS 1.4.7 has XSS via an index.php sadmin_cedit action.

    Published: 30 Dec 2018
    4.8
    Medium

    CVE-2018-20601

    Last Modified: 21 Nov 2024

    UCMS 1.4.7 has XSS via the description parameter in an index.php list_editpost action.

    Published: 30 Dec 2018
    7.5
    High

    CVE-2018-20602

    Last Modified: 21 Nov 2024

    Lei Feng TV CMS (aka LFCMS) 3.8.6 allows full path disclosure via the /install.php?s=/1 URI.

    Published: 30 Dec 2018
    8.8
    High

    CVE-2018-20603

    Last Modified: 21 Nov 2024

    Lei Feng TV CMS (aka LFCMS) 3.8.6 allows admin.php?s=/Member/add.html CSRF.

    Published: 30 Dec 2018
    9.8
    Critical

    CVE-2018-20605

    Last Modified: 21 Nov 2024

    imcat 4.4 allows remote attackers to execute arbitrary PHP code by using root/run/adm.php to modify the boot/bootskip.php file.

    Published: 30 Dec 2018
    7.5
    High

    CVE-2018-20606

    Last Modified: 21 Nov 2024

    imcat 4.4 allows full path disclosure via a dev.php?tools-ipaddr&api=Pcoln&uip= URI.

    Published: 30 Dec 2018
    4.9
    Medium

    CVE-2018-20610

    Last Modified: 21 Nov 2024

    imcat 4.4 allows directory traversal via the root/run/adm.php efile parameter.

    Published: 30 Dec 2018
    6.1
    Medium

    CVE-2018-20611

    Last Modified: 21 Nov 2024

    imcat 4.4 allow XSS via a crafted cookie to the root/tools/adbug/binfo.php?cookie URI.

    Published: 30 Dec 2018
    8.8
    High

    CVE-2018-20612

    Last Modified: 21 Nov 2024

    UWA 2.3.11 allows index.php?g=admin&c=admin&a=add_admin_do CSRF.

    Published: 30 Dec 2018
    8.8
    High

    CVE-2018-20613

    Last Modified: 21 Nov 2024

    TEMMOKU T1.09 Beta allows admin/user/add CSRF.

    Published: 30 Dec 2018
    7.5
    High

    CVE-2018-20614

    Last Modified: 21 Nov 2024

    public\install\install.php in CIM 0.9.3 allows remote attackers to reload the product via the public/install/#/step3 URI.

    Published: 30 Dec 2018
    5.3
    Medium

    CVE-2018-20609

    Last Modified: 21 Nov 2024

    imcat 4.4 allows remote attackers to obtain potentially sensitive configuration information via the root/tools/adbug/check.php URI.

    Published: 30 Dec 2018
    5.3
    Medium

    CVE-2018-20607

    Last Modified: 21 Nov 2024

    imcat 4.4 allows remote attackers to obtain potentially sensitive debugging information via the root/tools/adbug/binfo.php URI.

    Published: 30 Dec 2018
    7.5
    High

    CVE-2018-20608

    Last Modified: 21 Nov 2024

    imcat 4.4 allows remote attackers to read phpinfo output via the root/tools/adbug/binfo.php?phpinfo1 URI.

    Published: 30 Dec 2018
    4.9
    Medium

    CVE-2018-20604

    Last Modified: 21 Nov 2024

    Lei Feng TV CMS (aka LFCMS) 3.8.6 allows Directory Traversal via crafted use of ..* in Template/edit/path URIs, as demonstrated by the admin.php?s=/Template/edit/path/*web*..*..*..*..*1.txt.html URI to read the 1.txt file.

    Published: 30 Dec 2018
    4.8
    Medium

    CVE-2018-20589

    Last Modified: 21 Nov 2024

    Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 has XSS via the Administrator/add_pictures.php article ID.

    Published: 30 Dec 2018
    5.5
    Medium

    CVE-2018-20592

    Last Modified: 21 Nov 2024

    In Mini-XML (aka mxml) v2.12, there is a use-after-free in the mxmlAdd function of the mxml-node.c file. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted xml file, as demonstrated by mxmldoc.

    Published: 30 Dec 2018
    5.5
    Medium

    CVE-2018-20593

    Last Modified: 21 Nov 2024

    In Mini-XML (aka mxml) v2.12, there is stack-based buffer overflow in the scan_file function in mxmldoc.c.

    Published: 30 Dec 2018
    6.1
    Medium

    CVE-2018-20594

    Last Modified: 21 Nov 2024

    An issue was discovered in hsweb 3.0.4. It is a reflected XSS vulnerability due to the absence of type parameter checking in FlowableModelManagerController.java.

    Published: 30 Dec 2018
    8.8
    High

    CVE-2018-20595

    Last Modified: 21 Nov 2024

    A CSRF issue was discovered in web/authorization/oauth2/controller/OAuth2ClientController.java in hsweb 3.0.4 because the state parameter in the request is not compared with the state parameter in the session after user authentication is successful.

    Published: 30 Dec 2018
    9.8
    Critical

    CVE-2018-20596

    Last Modified: 21 Nov 2024

    Jspxcms v9.0.0 allows SSRF.

    Published: 30 Dec 2018
    6.5
    Medium

    CVE-2018-20591

    Last Modified: 21 Nov 2024

    A heap-based buffer over-read was discovered in decompileJUMP function in util/decompile.c of libming v0.4.8. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by swftocxx.

    Published: 30 Dec 2018
    4.8
    Medium

    CVE-2018-20590

    Last Modified: 21 Nov 2024

    Ivan Cordoba Generic Content Management System (CMS) through 2018-04-28 has XSS via the Administrator/users.php user ID.

    Published: 30 Dec 2018
    6.5
    Medium

    CVE-2018-20588

    Last Modified: 21 Nov 2024

    lib/support/unicodeconv/unicodeconv.c in libotfcc.a in otfcc v0.10.3-alpha has a buffer over-read.

    Published: 30 Dec 2018
    6.1
    Medium

    CVE-2018-20583

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in the PHP League CommonMark library versions 0.15.6 through 0.18.x before 0.18.1 allows remote attackers to insert unsafe URLs into HTML (even if allow_unsafe_links is false) via a newline character (e.g., writing javascript as javascri%0apt).

    Published: 30 Dec 2018
    6.5
    Medium

    CVE-2018-20662

    Last Modified: 21 Nov 2024

    In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.

    Published: 30 Dec 2018
    7.5
    High

    CVE-2019-9022

    Last Modified: 21 Nov 2024

    An issue was discovered in PHP 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.2. dns_get_record misparses a DNS response, which can allow a hostile DNS server to cause PHP to misuse memcpy, leading to read operations going past the buffer allocated for DNS data. This affects php_parserr in ext/standard/dns.c for DNS_CAA and DNS_ANY queries.

    Published: 29 Dec 2018
    6.5
    Medium

    CVE-2018-20584

    Last Modified: 21 Nov 2024

    JasPer 2.0.14 allows remote attackers to cause a denial of service (application hang) via an attempted conversion to the jp2 format.

    Published: 29 Dec 2018
    9.8
    Critical

    CVE-2019-9023

    Last Modified: 21 Nov 2024

    An issue was discovered in PHP before 5.6.40, 7.x before 7.1.26, 7.2.x before 7.2.14, and 7.3.x before 7.3.1. A number of heap-based buffer over-read instances are present in mbstring regular expression functions when supplied with invalid multibyte data. These occur in ext/mbstring/oniguruma/regcomp.c, ext/mbstring/oniguruma/regexec.c, ext/mbstring/oniguruma/regparse.c, ext/mbstring/oniguruma/enc/unicode.c, and ext/mbstring/oniguruma/src/utf32_be.c when a multibyte regular expression pattern contains invalid multibyte sequences.

    Published: 29 Dec 2018
    —
    Unknown

    CVE-2018-1181

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15783

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15787

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15788

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15785

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15789

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15790

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15792

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15794

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15793

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018
    —
    Unknown

    CVE-2018-15786

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 28 Dec 2018