CVE Feed

    Dashboard / CVE

    8.6
    High

    CVE-2018-17924

    Last Modified: 3 Jun 2026

    Rockwell Automation MicroLogix 1400 Controllers and 1756 ControlLogix Communications Modules An unauthenticated, remote threat actor could send a CIP connection request to an affected device, and upon successful connection, send a new IP configuration to the affected device even if the controller in the system is set to Hard RUN mode. When the affected device accepts this new IP configuration, a loss of communication occurs between the device and the rest of the system as the system traffic is still attempting to communicate with the device via the overwritten IP address.

    Published: 7 Dec 2018
    4.3
    Medium

    CVE-2018-19001

    Last Modified: 21 Nov 2024

    Philips HealthSuite Health Android App, all versions. The software uses simple encryption that is not strong enough for the level of protection required.

    Published: 7 Dec 2018
    6.5
    Medium

    CVE-2017-15835

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, While processing the RIC Data Descriptor IE in an artificially crafted 802.11 frame with IE length more than 255, an infinite loop may potentially occur resulting in a denial of service.

    Published: 7 Dec 2018
    7.8
    High

    CVE-2017-14888

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Userspace can pass IEs to the host driver and if multiple append commands are received, then the integer variable that stores the length can overflow and the subsequent copy of the IE data may potentially lead to a heap buffer overflow.

    Published: 7 Dec 2018
    9.8
    Critical

    CVE-2018-11905

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Possible buffer overflow in WLAN function due to lack of input validation in values received from firmware.

    Published: 7 Dec 2018
    7.5
    High

    CVE-2018-19939

    Last Modified: 21 Nov 2024

    The Goodix GT9xx touchscreen driver for custom Linux kernels on Xiaomi daisy-o-oss and daisy-p-oss as used in Mi A2 Lite and RedMi6 pro devices through 2018-08-27 has a NULL pointer dereference in kfree after a kmalloc failure in gtp_read_Color in drivers/input/touchscreen/gt917d/gt9xx.c.

    Published: 7 Dec 2018
    5.5
    Medium

    CVE-2018-20002

    Last Modified: 21 Nov 2024

    The _bfd_generic_read_minisymbols function in syms.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31, has a memory leak via a crafted ELF file, leading to a denial of service (memory consumption), as demonstrated by nm.

    Published: 7 Dec 2018
    7.3
    High

    CVE-2018-4700

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-4300. Reason: This candidate is a duplicate of CVE-2018-4300. Notes: All CVE users should reference CVE-2018-4300 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 7 Dec 2018
    9.8
    Critical

    CVE-2018-7364

    Last Modified: 21 Nov 2024

    All versions up to ZXINOS-RESV1.01.43 of the ZTE ZXIN10 product European region are impacted by improper access control vulnerability. Due to improper access control to devcomm process, an unauthorized remote attacker can exploit this vulnerability to execute arbitrary code with root privileges.

    Published: 7 Dec 2018
    5.3
    Medium

    CVE-2018-16876

    Last Modified: 21 Nov 2024

    ansible before versions 2.5.14, 2.6.11, 2.7.5 is vulnerable to a information disclosure flaw in vvv+ mode with no_log on that can lead to leakage of sensible data.

    Published: 7 Dec 2018
    8.1
    High

    CVE-2018-16522

    Last Modified: 21 Nov 2024

    Amazon Web Services (AWS) FreeRTOS through 1.3.1 has an uninitialized pointer free in SOCKETS_SetSockOpt.

    Published: 6 Dec 2018
    7.4
    High

    CVE-2018-16523

    Last Modified: 21 Nov 2024

    Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow division by zero in prvCheckOptions.

    Published: 6 Dec 2018
    5.9
    Medium

    CVE-2018-16524

    Last Modified: 21 Nov 2024

    Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow information disclosure during parsing of TCP options in prvCheckOptions.

    Published: 6 Dec 2018
    8.1
    High

    CVE-2018-16528

    Last Modified: 21 Nov 2024

    Amazon Web Services (AWS) FreeRTOS through 1.3.1 allows remote attackers to execute arbitrary code because of mbedTLS context object corruption in prvSetupConnection and GGD_SecureConnect_Connect in AWS TLS connectivity modules.

    Published: 6 Dec 2018
    5.9
    Medium

    CVE-2018-16599

    Last Modified: 21 Nov 2024

    An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. Out of bounds memory access during parsing of NBNS packets in prvTreatNBNS can be used for information disclosure.

    Published: 6 Dec 2018
    5.9
    Medium

    CVE-2018-16600

    Last Modified: 21 Nov 2024

    An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. Out of bounds memory access during parsing of ARP packets in eARPProcessPacket can be used for information disclosure.

    Published: 6 Dec 2018
    8.1
    High

    CVE-2018-16601

    Last Modified: 21 Nov 2024

    An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. A crafted IP header triggers a full memory space copy in prvProcessIPPacket, leading to denial of service and possibly remote code execution.

    Published: 6 Dec 2018
    5.9
    Medium

    CVE-2018-16602

    Last Modified: 21 Nov 2024

    An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. Out of bounds memory access during parsing of DHCP responses in prvProcessDHCPReplies can be used for information disclosure.

    Published: 6 Dec 2018
    8.8
    High

    CVE-2018-19923

    Last Modified: 21 Nov 2024

    An issue was discovered in Sales & Company Management System (SCMS) through 2018-06-06. There is member/member_email.php?action=edit CSRF.

    Published: 6 Dec 2018
    9.8
    Critical

    CVE-2018-19925

    Last Modified: 21 Nov 2024

    An issue was discovered in Sales & Company Management System (SCMS) through 2018-06-06. It has SQL injection via the member/member_order.php type parameter, related to the O_state parameter.

    Published: 6 Dec 2018
    4.8
    Medium

    CVE-2018-19927

    Last Modified: 21 Nov 2024

    Zenitel Norway IP-StationWeb before 4.2.3.9 allows stored XSS via the Display Name for Station Status or Account Settings, related to the goform/zForm_save_changes sip_nick parameter. The password of alphaadmin for the admin account may be used for authentication in some cases.

    Published: 6 Dec 2018
    7.2
    High

    CVE-2018-6755

    Last Modified: 21 Nov 2024

    Weak Directory Permission Vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows local users to execute arbitrary code via specially crafted malware.

    Published: 6 Dec 2018
    7.8
    High

    CVE-2018-6756

    Last Modified: 21 Nov 2024

    Authentication Abuse vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows local users to execute unauthorized commands via specially crafted malware.

    Published: 6 Dec 2018
    8.1
    High

    CVE-2018-16525

    Last Modified: 21 Nov 2024

    Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow remote attackers to execute arbitrary code or leak information because of a Buffer Overflow during parsing of DNS\LLMNR packets in prvParseDNSReply.

    Published: 6 Dec 2018
    5.9
    Medium

    CVE-2018-16603

    Last Modified: 21 Nov 2024

    An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. Out of bounds access to TCP source and destination port fields in xProcessReceivedTCPPacket can leak data back to an attacker.

    Published: 6 Dec 2018
    6.1
    Medium

    CVE-2018-19924

    Last Modified: 21 Nov 2024

    An issue was discovered in Sales & Company Management System (SCMS) through 2018-06-06. An email address can be modified in between the request for a validation code and the entry of the validation code, leading to storage of an XSS payload contained in the modified address.

    Published: 6 Dec 2018
    7.5
    High

    CVE-2018-6757

    Last Modified: 21 Nov 2024

    Privilege Escalation vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows local users to execute arbitrary code via specially crafted malware.

    Published: 6 Dec 2018
    8.1
    High

    CVE-2018-16526

    Last Modified: 21 Nov 2024

    Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow remote attackers to leak information or execute arbitrary code because of a Buffer Overflow during generation of a protocol checksum in usGenerateProtocolChecksum and prvProcessIPPacket.

    Published: 6 Dec 2018
    5.9
    Medium

    CVE-2018-16527

    Last Modified: 21 Nov 2024

    Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow information disclosure during parsing of ICMP packets in prvProcessICMPPacket.

    Published: 6 Dec 2018
    5.9
    Medium

    CVE-2018-16598

    Last Modified: 21 Nov 2024

    An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. In xProcessReceivedUDPPacket and prvParseDNSReply, any received DNS response is accepted, without confirming it matches a sent DNS request.

    Published: 6 Dec 2018
    8.8
    High

    CVE-2018-19659

    Last Modified: 21 Nov 2024

    An exploitable authenticated command-injection vulnerability exists in the web server functionality of Moxa NPort W2x50A products with firmware before 2.2 Build_18082311. A specially crafted HTTP POST request to /goform/net_WebPingGetValue can result in running OS commands as the root user. This is similar to CVE-2017-12120.

    Published: 6 Dec 2018
    8.8
    High

    CVE-2018-19660

    Last Modified: 21 Nov 2024

    An exploitable authenticated command-injection vulnerability exists in the web server functionality of Moxa NPort W2x50A products with firmware before 2.2 Build_18082311. A specially crafted HTTP POST request to /goform/webSettingProfileSecurity can result in running OS commands as the root user.

    Published: 6 Dec 2018
    6.1
    Medium

    CVE-2018-19926

    Last Modified: 21 Nov 2024

    Zenitel Norway IP-StationWeb before 4.2.3.9 allows reflected XSS via the goform/ PATH_INFO.

    Published: 6 Dec 2018
    6.1
    Medium

    CVE-2018-19921

    Last Modified: 21 Nov 2024

    Zoho ManageEngine OpManager 12.3 before 123237 has XSS in the domain controller.

    Published: 6 Dec 2018
    6.1
    Medium

    CVE-2018-19922

    Last Modified: 21 Nov 2024

    Persistent Cross-Site Scripting (XSS) in the advancedsetup_websiteblocking.html Website Blocking page of the Actiontec C1000A router with firmware through CAC004-31.30L.95 allows a remote attacker to inject arbitrary HTML into the Website Blocking page by inserting arbitrary HTML into the 'TodUrlAdd' URL parameter in a /urlfilter.cmd POST request.

    Published: 6 Dec 2018
    4.8
    Medium

    CVE-2018-19919

    Last Modified: 21 Nov 2024

    Pixelimity 1.0 has Persistent XSS via the admin/portfolio.php data[title] parameter, as demonstrated by a crafted onload attribute of an SVG element.

    Published: 6 Dec 2018
    4.8
    Medium

    CVE-2018-19913

    Last Modified: 21 Nov 2024

    DomainMOD through 4.11.01 has XSS via the assets/add/registrar-accounts.php UserName, Reseller ID, or notes field.

    Published: 6 Dec 2018
    4.8
    Medium

    CVE-2018-19914

    Last Modified: 21 Nov 2024

    DomainMOD through 4.11.01 has XSS via the assets/add/dns.php Profile Name or notes field.

    Published: 6 Dec 2018
    4.8
    Medium

    CVE-2018-19915

    Last Modified: 21 Nov 2024

    DomainMOD through 4.11.01 has XSS via the assets/edit/host.php Web Host Name or Web Host URL field.

    Published: 6 Dec 2018
    6.1
    Medium

    CVE-2018-18362

    Last Modified: 21 Nov 2024

    Norton Password Manager for Android (formerly Norton Identity Safe) may be susceptible to a cross site scripting (XSS) exploit, which is a type of issue that can enable attackers to inject client-side scripts into web pages viewed by other users. A cross-site scripting vulnerability may be used by attackers to potentially bypass access controls such as the same-origin policy.

    Published: 6 Dec 2018
    7.5
    High

    CVE-2018-19911

    Last Modified: 21 Nov 2024

    FreeSWITCH through 1.8.2, when mod_xml_rpc is enabled, allows remote attackers to execute arbitrary commands via the api/system or txtapi/system (or api/bg_system or txtapi/bg_system) query string on TCP port 8080, as demonstrated by an api/system?calc URI. This can also be exploited via CSRF. Alternatively, the default password of works for the freeswitch account can sometimes be used.

    Published: 6 Dec 2018
    —
    Unknown

    CVE-2018-1000853

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-18925. Reason: This candidate is a reservation duplicate of CVE-2018-18925. Notes: All CVE users should reference CVE-2018-18925 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 6 Dec 2018
    —
    Unknown

    CVE-2018-1000859

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-19518. Reason: This candidate is a reservation duplicate of CVE-2018-19518. Notes: All CVE users should reference CVE-2018-19518 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 6 Dec 2018
    8.8
    High

    CVE-2018-19908

    Last Modified: 21 Nov 2024

    An issue was discovered in MISP 2.4.9x before 2.4.99. In app/Model/Event.php (the STIX 1 import code), an unescaped filename string is used to construct a shell command. This vulnerability can be abused by a malicious authenticated user to execute arbitrary commands by tweaking the original filename of the STIX import.

    Published: 6 Dec 2018
    —
    Unknown

    CVE-2018-10145

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 6 Dec 2018
    —
    Unknown

    CVE-2018-10146

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 6 Dec 2018
    —
    Unknown

    CVE-2018-10147

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 6 Dec 2018
    —
    Unknown

    CVE-2018-10148

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 6 Dec 2018
    —
    Unknown

    CVE-2018-10149

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 6 Dec 2018
    —
    Unknown

    CVE-2018-10151

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

    Published: 6 Dec 2018