CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-14637

    Last Modified: 21 Nov 2024

    The SAML broker consumer endpoint in Keycloak before version 4.6.0.Final ignores expiration conditions on SAML assertions. An attacker can exploit this vulnerability to perform a replay attack.

    Published: 27 Nov 2018
    4.8
    Medium

    CVE-2018-17256

    Last Modified: 21 Nov 2024

    Persistent cross-site scripting (XSS) vulnerability in Umbraco CMS 7.12.3 allows authenticated users to inject arbitrary web script via the Header Name of a content (Blog, Content Page, etc.). The vulnerability is exploited when updating or removing public access of a content.

    Published: 27 Nov 2018
    5.5
    Medium

    CVE-2018-6266

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 on Windows where a local user may obtain third party integration parameters, which may lead to information disclosure.

    Published: 27 Nov 2018
    6.1
    Medium

    CVE-2018-12241

    Last Modified: 21 Nov 2024

    The Symantec Security Analytics (SA) 7.x prior to 7.3.4 Web UI is susceptible to a reflected cross-site scripting (XSS) vulnerability. A remote attacker with knowledge of the SA web UI hostname or IP address can craft a malicious URL for the SA web UI and target SA web UI users with phishing attacks or other social engineering techniques. A successful attack allows injecting malicious JavaScript code into the SA web UI client application.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-6263

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 on Windows in which an attacker who has access to a local user account can plant a malicious dynamic link library (DLL) during application installation, which may lead to escalation of privileges.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-6265

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 during application installation on Windows 7 in elevated privilege mode, where a local user who initiates a browser session may obtain escalation of privileges on the browser.

    Published: 27 Nov 2018
    8.8
    High

    CVE-2018-6983

    Last Modified: 21 Nov 2024

    VMware Workstation (15.x before 15.0.2 and 14.x before 14.1.5) and Fusion (11.x before 11.0.2 and 10.x before 10.1.5) contain an integer overflow vulnerability in the virtual network devices. This issue may allow a guest to execute code on the host.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-5919

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a use after free issue in WLAN host driver can lead to device reboot.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-5910

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a memory corruption can occur in kernel due to improper check in callers count parameter in display handlers.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-5909

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, buffer overflow occur may occur in display handlers due to lack of checking in buffer size before copying into it and will lead to memory corruption.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-5908

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a possible buffer overflow in display function due to lack of buffer length validation before copying.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-5906

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a possible buffer overflow in debugfs module due to lack of check in size of input before copying into buffer.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-5904

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while list traversal in LPM status driver for clean up, use after free vulnerability may occur.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-5861

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, existing checks in place on partition size are incomplete and can lead to heap overwrite vulnerabilities while loading a secure application from the boot loader.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-5856

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, due to a race condition, a Use After Free condition can occur in Audio.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11995

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a partition name-check variable is not reset for every iteration which may cause improper termination in the META image.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11956

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper mounting lead to device node and executable to be run from /dsp/ which presents a potential security issue.

    Published: 27 Nov 2018
    6.5
    Medium

    CVE-2018-11946

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, the UPnP daemon should not be running out of box because it enables port forwarding without authentication.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11943

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing fastboot flash command, memory leak or unexpected behavior may occur due to processing of unintialized data buffers.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11919

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a potential heap overflow and memory corruption due to improper error handling in SOC infrastructure.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11918

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, memory allocated is automatically released by the kernel if the 'probe' function fails with an error code.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11914

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /systemrw/ which presents a potential security.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11913

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper configuration of dev nodes may lead to potential security issue.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11912

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper configuration of daemons may lead to unprivileged access.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11911

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper configuration of script may lead to unprivileged access.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11910

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /persist/ which presents a potential issue.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11909

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /cache/ which presents a potential issue.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11908

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /data/ which presents a potential issue.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11907

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /firmware/ which presents a potential issue.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11906

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a security concern with default privileged access to ADB and debug-fs.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11823

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, freeing device memory in driver probe failure will result in double free issue in power module.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11266

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper input validation can lead to an improper access to already freed up dci client entries while closing dci client.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11261

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a possible Use-after-free issue in Media Codec process. Any application using codec service will be affected.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2018-11260

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing a fast Initial link setup (FILS) connection request, integer overflow may lead to a buffer overflow when the key length is zero.

    Published: 27 Nov 2018
    7.8
    High

    CVE-2017-11078

    Last Modified: 21 Nov 2024

    In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing the boot image header, an out of bounds read can occur in boot.

    Published: 27 Nov 2018
    6.5
    Medium

    CVE-2018-19609

    Last Modified: 21 Nov 2024

    ShowDoc 2.4.1 allows remote attackers to obtain sensitive information by navigating with a modified page_id, as demonstrated by reading note content, or discovering a username in the JSON data at a diff URL.

    Published: 27 Nov 2018
    7.5
    High

    CVE-2018-13376

    Last Modified: 21 Nov 2024

    An uninitialized memory buffer leak exists in Fortinet FortiOS 5.6.1 to 5.6.3, 5.4.6 to 5.4.7, 5.2 all versions under web proxy's disclaimer response web pages, potentially causing sensitive data to be displayed in the HTTP response.

    Published: 27 Nov 2018
    7.5
    High

    CVE-2018-16089

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, a field in the header of SMM firmware update images is insufficiently sanitized, allowing post-authentication command injection on the SMM as the root user.

    Published: 27 Nov 2018
    7.5
    High

    CVE-2018-16090

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, the SMM certificate creation and parsing logic is vulnerable to post-authentication command injection.

    Published: 27 Nov 2018
    8.1
    High

    CVE-2018-16091

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, the SMM certificate creation and parsing logic is vulnerable to several buffer overflows.

    Published: 27 Nov 2018
    8.1
    High

    CVE-2018-16094

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, an internal SMM function that retrieves configuration settings is prone to a buffer overflow.

    Published: 27 Nov 2018
    5.9
    Medium

    CVE-2018-16095

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, the SMM records hashed passwords to a debug log when user authentication fails.

    Published: 27 Nov 2018
    6.1
    Medium

    CVE-2018-16096

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, the SMM web interface for changing Enclosure VPD fails to sufficiently sanitize all input for HTML tags, possibly opening a path for cross-site scripting.

    Published: 27 Nov 2018
    6.5
    Medium

    CVE-2018-9084

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, if an attacker manages to log in to the device OS, the validation of software updates can be circumvented.

    Published: 27 Nov 2018
    8.1
    High

    CVE-2018-16092

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, the FFDC feature includes the collection of SMM system files containing sensitive information; notably, the SMM user account credentials and the system shadow file.

    Published: 27 Nov 2018
    8.1
    High

    CVE-2018-9083

    Last Modified: 21 Nov 2024

    In System Management Module (SMM) versions prior to 1.06, the SMM contains weak default root credentials which could be used to log in to the device OS -- if the attacker manages to enable SSH or Telnet connections via some other vulnerability.

    Published: 27 Nov 2018
    9.8
    Critical

    CVE-2018-19595

    Last Modified: 21 Nov 2024

    PbootCMS V1.3.1 build 2018-11-14 allows remote attackers to execute arbitrary code via use of "eval" with mixed case, as demonstrated by an index.php/list/5/?current={pboot:if(evAl($_GET[a]))}1{/pboot:if}&a=phpinfo(); URI, because of an incorrect apps\home\controller\ParserController.php parserIfLabel protection mechanism.

    Published: 27 Nov 2018
    5.5
    Medium

    CVE-2018-19625

    Last Modified: 21 Nov 2024

    In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the dissection engine could crash. This was addressed in epan/tvbuff_composite.c by preventing a heap-based buffer over-read.

    Published: 27 Nov 2018
    8.8
    High

    CVE-2018-11766

    Last Modified: 21 Nov 2024

    In Apache Hadoop 2.7.4 to 2.7.6, the security fix for CVE-2016-6811 is incomplete. A user who can escalate to yarn user can possibly run arbitrary commands as root user.

    Published: 27 Nov 2018
    7.5
    High

    CVE-2018-12116

    Last Modified: 21 Nov 2024

    Node.js: All versions prior to Node.js 6.15.0 and 8.14.0: HTTP request splitting: If Node.js can be convinced to use unsanitized user-provided Unicode data for the `path` option of an HTTP request, then data can be provided which will trigger a second, unexpected, and user-defined HTTP request to made to the same server.

    Published: 27 Nov 2018