CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-19767

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "PresentSpace.jsp" has reflected XSS via the ConnPoolName and GroupId parameters.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19770

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "Users.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19771

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentPool.jsp" has reflected XSS via the PropName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19772

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentPresentSpace.jsp" has reflected XSS via the ConnPoolName, GroupId, and ParentId parameters.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19773

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentUser.jsp" has reflected XSS via the GroupId and ConnPoolName parameters.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19774

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "PresentSpace.jsp" has reflected XSS via the GroupId and ConnPoolName parameters.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19809

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/GroupCopy.jsp" has reflected XSS via the ConnPoolName, GroupId, or type parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19812

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SubFolderPackages.jsp" has reflected XSS via the GroupId parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19813

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Subscribers.jsp" has reflected XSS via the ConnPoolName or GroupId parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19814

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Subscriptions.jsp" has reflected XSS via the ConnPoolName or GroupId parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19815

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/UserPopupAddNewProp.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19816

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/categorytree/ChooseCategory.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19817

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/AdminAuthorisationFrame.jsp" has reflected XSS via the ConnPoolName or GroupId parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19819

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Rights.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19820

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Roles.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19821

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SecurityPolicies.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19822

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SharedCriteria.jsp" has reflected XSS via the ConnPoolName or GroupId parameter.

    Published: 17 Dec 2018
    9.8
    Critical

    CVE-2018-20027

    Last Modified: 21 Nov 2024

    The yaml_parse.load method in Pylearn2 allows code injection.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-20171

    Last Modified: 21 Nov 2024

    An issue was discovered in Nagios XI before 5.5.8. The url parameter of rss_dashlet/magpierss/scripts/magpie_simple.php is not filtered, resulting in an XSS vulnerability.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19768

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "SubPagePackages.jsp" has reflected XSS via the ConnPoolName and GroupId parameters.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19769

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "UserProperties.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19775

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "Variables.jsp" has reflected XSS via the ConnPoolName and GroupId parameters.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-18248

    Last Modified: 21 Nov 2024

    Icinga Web 2 has XSS via the /icingaweb2/monitoring/list/services dir parameter, the /icingaweb2/user/list query string, the /icingaweb2/monitoring/timeline query string, or the /icingaweb2/setup query string.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19649

    Last Modified: 21 Nov 2024

    XSS exists in InfoVista VistaPortal SE Version 5.1 (build 51029). VPortal/mgtconsole/RolePermissions.jsp has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19810

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/GroupMove.jsp" has reflected XSS via the ConnPoolName, GroupId, or type parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19811

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Import.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-19818

    Last Modified: 21 Nov 2024

    Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Contacts.jsp" has reflected XSS via the ConnPoolName parameter.

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2018-20172

    Last Modified: 21 Nov 2024

    An issue was discovered in Nagios XI before 5.5.8. The rss_url parameter of rss_dashlet/magpierss/scripts/magpie_slashbox.php is not filtered, resulting in an XSS vulnerability.

    Published: 17 Dec 2018
    9.8
    Critical

    CVE-2018-20173

    Last Modified: 21 Nov 2024

    Zoho ManageEngine OpManager 12.3 before 123238 allows SQL injection via the getGraphData API.

    Published: 17 Dec 2018
    5.3
    Medium

    CVE-2018-20170

    Last Modified: 21 Nov 2024

    OpenStack Keystone through 14.0.1 has a user enumeration vulnerability because invalid usernames have much faster responses than valid ones for a POST /v3/auth/tokens request. NOTE: the vendor's position is that this is a hardening opportunity, and not necessarily an issue that should have an OpenStack Security Advisory

    Published: 17 Dec 2018
    6.1
    Medium

    CVE-2017-18352

    Last Modified: 21 Nov 2024

    Error reporting within Rendertron 1.0.0 allows reflected Cross Site Scripting (XSS) from invalid URLs.

    Published: 17 Dec 2018
    7.5
    High

    CVE-2017-18353

    Last Modified: 21 Nov 2024

    Rendertron 1.0.0 includes an _ah/stop route to shutdown the Chrome instance responsible for serving render requests to all users. Visiting this route with a GET request allows any unauthorized remote attacker to disable the core service of the application.

    Published: 17 Dec 2018
    7.5
    High

    CVE-2017-18354

    Last Modified: 21 Nov 2024

    Rendertron 1.0.0 allows for alternative protocols such as 'file://' introducing a Local File Inclusion (LFI) bug where arbitrary files can be read by a remote attacker.

    Published: 17 Dec 2018
    7.5
    High

    CVE-2017-18355

    Last Modified: 21 Nov 2024

    Installed packages are exposed by node_modules in Rendertron 1.0.0, allowing remote attackers to read absolute paths on the server by examining the "_where" attribute of package.json files.

    Published: 17 Dec 2018
    7.8
    High

    CVE-2018-20167

    Last Modified: 21 Nov 2024

    Terminology before 1.3.1 allows Remote Code Execution because popmedia is mishandled, as demonstrated by an unsafe "cat README.md" command when \e}pn is used. A popmedia control sequence can allow the malicious execution of executable file formats registered in the X desktop share MIME types (/usr/share/applications). The control sequence defers unknown file types to the handle_unknown_media() function, which executes xdg-open against the filename specified in the sequence. The use of xdg-open for all unknown file types allows executable file formats with a registered shared MIME type to be executed. An attacker can achieve remote code execution by introducing an executable file and a plain text file containing the control sequence through a fake software project (e.g., in Git or a tarball). When the control sequence is rendered (such as with cat), the executable file will be run.

    Published: 17 Dec 2018
    5.5
    Medium

    CVE-2018-20168

    Last Modified: 21 Nov 2024

    Google gVisor before 2018-08-22 reuses a pagetable in a different level with the paging-structure cache intact, which allows attackers to cause a denial of service ("physical address not valid" panic) via a crafted application.

    Published: 17 Dec 2018
    7.8
    High

    CVE-2018-1000876

    Last Modified: 21 Nov 2024

    binutils version 2.32 and earlier contains a Integer Overflow vulnerability in objdump, bfd_get_dynamic_reloc_upper_bound,bfd_canonicalize_dynamic_reloc that can result in Integer overflow trigger heap overflow. Successful exploitation allows execution of arbitrary code.. This attack appear to be exploitable via Local. This vulnerability appears to have been fixed in after commit 3a551c7a1b80fca579461774860574eabfd7f18f.

    Published: 16 Dec 2018
    6.5
    Medium

    CVE-2018-20161

    Last Modified: 21 Nov 2024

    A design flaw in the BlinkForHome (aka Blink For Home) Sync Module 2.10.4 and earlier allows attackers to disable cameras via Wi-Fi, because incident clips (triggered by the motion sensor) are not saved if the attacker's traffic (such as Dot11Deauth) successfully disconnects the Sync Module from the Wi-Fi network. (Access to live video from the app also becomes unavailable.)

    Published: 15 Dec 2018
    7.2
    High

    CVE-2018-20159

    Last Modified: 21 Nov 2024

    i-doit open 1.11.2 allows Remote Code Execution because ZIP archives are mishandled. It has an upload feature that allows an authenticated user with the administrator role to upload arbitrary files to the main website directory. Exploitation involves uploading a ".php" file within a ".zip" file because a ZIP archive is accepted by /admin/?req=modules&action=add as a plugin, and extracted to the main directory. In order for the ".zip" file to be accepted, it must also contain a package.json file.

    Published: 15 Dec 2018
    7.5
    High

    CVE-2018-20157

    Last Modified: 21 Nov 2024

    The data import functionality in OpenRefine through 3.1 allows an XML External Entity (XXE) attack through a crafted (zip) file, allowing attackers to read arbitrary files.

    Published: 14 Dec 2018
    4.3
    Medium

    CVE-2018-20154

    Last Modified: 21 Nov 2024

    The WP Maintenance Mode plugin before 2.0.7 for WordPress allows remote authenticated users to discover all subscriber e-mail addresses.

    Published: 14 Dec 2018
    4.3
    Medium

    CVE-2018-20155

    Last Modified: 21 Nov 2024

    The WP Maintenance Mode plugin before 2.0.7 for WordPress allows remote authenticated subscriber users to bypass intended access restrictions on changes to plugin settings.

    Published: 14 Dec 2018
    7.2
    High

    CVE-2018-20156

    Last Modified: 21 Nov 2024

    The WP Maintenance Mode plugin before 2.0.7 for WordPress allows remote authenticated "site administrator" users to execute arbitrary PHP code throughout a multisite network.

    Published: 14 Dec 2018
    5.4
    Medium

    CVE-2018-20149

    Last Modified: 21 Nov 2024

    In WordPress before 4.9.9 and 5.x before 5.0.1, when the Apache HTTP Server is used, authors could upload crafted files that bypass intended MIME type restrictions, leading to XSS, as demonstrated by a .jpg file without JPEG data.

    Published: 14 Dec 2018
    6.1
    Medium

    CVE-2018-20150

    Last Modified: 21 Nov 2024

    In WordPress before 4.9.9 and 5.x before 5.0.1, crafted URLs could trigger XSS for certain use cases involving plugins.

    Published: 14 Dec 2018
    7.5
    High

    CVE-2018-20151

    Last Modified: 21 Nov 2024

    In WordPress before 4.9.9 and 5.x before 5.0.1, the user-activation page could be read by a search engine's web crawler if an unusual configuration were chosen. The search engine could then index and display a user's e-mail address and (rarely) the password that was generated by default.

    Published: 14 Dec 2018
    6.5
    Medium

    CVE-2018-20147

    Last Modified: 21 Nov 2024

    In WordPress before 4.9.9 and 5.x before 5.0.1, authors could modify metadata to bypass intended restrictions on deleting files.

    Published: 14 Dec 2018
    9.8
    Critical

    CVE-2018-19007

    Last Modified: 21 Nov 2024

    In Geutebrueck GmbH E2 Camera Series versions prior to 1.12.0.25 the DDNS configuration (in the Network Configuration panel) is vulnerable to an OS system command injection as root.

    Published: 14 Dec 2018
    9.8
    Critical

    CVE-2018-20148

    Last Modified: 21 Nov 2024

    In WordPress before 4.9.9 and 5.x before 5.0.1, contributors could conduct PHP object injection attacks via crafted metadata in a wp.getMediaItem XMLRPC call. This is caused by mishandling of serialized data at phar:// URLs in the wp_get_attachment_thumb_file function in wp-includes/post.php.

    Published: 14 Dec 2018
    6.5
    Medium

    CVE-2018-20152

    Last Modified: 21 Nov 2024

    In WordPress before 4.9.9 and 5.x before 5.0.1, authors could bypass intended restrictions on post types via crafted input.

    Published: 14 Dec 2018