CVE Feed

    Dashboard / CVE

    7.1
    High

    CVE-2018-19347

    Last Modified: 21 Nov 2024

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Data from Faulting Address controls Branch Selection starting at U3DBrowser!PlugInMain+0x00000000000d11bb" issue.

    Published: 17 Nov 2018
    7.1
    High

    CVE-2018-19348

    Last Modified: 21 Nov 2024

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Data from Faulting Address controls Branch Selection starting at U3DBrowser!PlugInMain+0x000000000012dff5" issue.

    Published: 17 Nov 2018
    7.1
    High

    CVE-2018-19342

    Last Modified: 21 Nov 2024

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Read Access Violation starting at U3DBrowser+0x000000000000347a" issue.

    Published: 17 Nov 2018
    7.1
    High

    CVE-2018-19343

    Last Modified: 21 Nov 2024

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read), obtain sensitive information, or possibly have unspecified other impact via a U3D sample because of a "Data from Faulting Address controls Code Flow starting at U3DBrowser!PlugInMain+0x00000000000f43ff" issue.

    Published: 17 Nov 2018
    7.1
    High

    CVE-2018-19341

    Last Modified: 21 Nov 2024

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Read Access Violation near NULL starting at FoxitReader!std::basic_ostream >::operator<<+0x0000000000087906" issue.

    Published: 17 Nov 2018
    7.1
    High

    CVE-2018-19344

    Last Modified: 21 Nov 2024

    The u3d plugin 9.3.0.10809 (aka plugins\U3DBrowser.fpi) in FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information via a U3D sample because of a "Data from Faulting Address may be used as a return value starting at U3DBrowser!PlugInMain+0x0000000000031a75" issue.

    Published: 17 Nov 2018
    6.1
    Medium

    CVE-2018-19340

    Last Modified: 21 Nov 2024

    Guriddo Form PHP 5.3 has XSS via the demos/jqform/defaultnodb/default.php OrderID, ShipName, ShipAddress, ShipCity, ShipPostalCode, ShipCountry, Freight, or details parameter.

    Published: 17 Nov 2018
    9.8
    Critical

    CVE-2018-19333

    Last Modified: 21 Nov 2024

    pkg/sentry/kernel/shm/shm.go in Google gVisor before 2018-11-01 allows attackers to overwrite memory locations in processes running as root (but not escape the sandbox) via vectors involving IPC_RMID shmctl calls, because reference counting is mishandled.

    Published: 17 Nov 2018
    8.8
    High

    CVE-2018-19327

    Last Modified: 21 Nov 2024

    An issue was discovered in JTBC(PHP) 3.0.1.7. aboutus/manage.php?type=action&action=add allows CSRF.

    Published: 17 Nov 2018
    4.9
    Medium

    CVE-2018-19329

    Last Modified: 21 Nov 2024

    GreenCMS v2.3.0603 allows remote authenticated administrators to delete arbitrary files by modifying a base64-encoded pathname in an m=admin&c=media&a=delfilehandle&id= call, related to the m=admin&c=media&a=restorefile delete button.

    Published: 17 Nov 2018
    7.5
    High

    CVE-2018-19331

    Last Modified: 21 Nov 2024

    An issue was discovered in S-CMS v1.5. There is a SQL injection vulnerability in search.php via the keyword parameter.

    Published: 17 Nov 2018
    9.8
    Critical

    CVE-2018-19328

    Last Modified: 21 Nov 2024

    LAOBANCMS 2.0 allows install/mysql_hy.php?riqi=../ Directory Traversal.

    Published: 17 Nov 2018
    8.8
    High

    CVE-2018-19332

    Last Modified: 21 Nov 2024

    An issue was discovered in S-CMS v1.5. There is a CSRF vulnerability that can add a new user via the admin/ajax.php?type=member&action=add URI.

    Published: 17 Nov 2018
    7.5
    High

    CVE-2018-19326

    Last Modified: 21 Nov 2024

    Zyxel VMG1312-B10D devices before 5.13(AAXA.8)C0 allow ../ Directory Traversal, as demonstrated by reading /etc/passwd.

    Published: 17 Nov 2018
    5.4
    Medium

    CVE-2018-19324

    Last Modified: 21 Nov 2024

    kimsQ Rb 2.3.0 allows XSS via the second input field to the /?r=home&mod=mypage&page=info URI.

    Published: 17 Nov 2018
    7.2
    High

    CVE-2018-19274

    Last Modified: 21 Nov 2024

    Passing an absolute path to a file_exists check in phpBB before 3.2.4 allows Remote Code Execution through Object Injection by employing Phar deserialization when an attacker has access to the Admin Control Panel with founder permissions.

    Published: 17 Nov 2018
    7.5
    High

    CVE-2018-15769

    Last Modified: 21 Nov 2024

    RSA BSAFE Micro Edition Suite versions prior to 4.0.11 (in 4.0.x series) and versions prior to 4.1.6.2 (in 4.1.x series) contain a key management error issue. A malicious TLS server could potentially cause a Denial Of Service (DoS) on TLS clients during the handshake when a very large prime value is sent to the TLS client, and an Ephemeral or Anonymous Diffie-Hellman cipher suite (DHE or ADH) is used.

    Published: 16 Nov 2018
    8.8
    High

    CVE-2018-19318

    Last Modified: 21 Nov 2024

    SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=manager&a=update to change the username and password of the super administrator account.

    Published: 16 Nov 2018
    6.5
    Medium

    CVE-2018-19319

    Last Modified: 21 Nov 2024

    SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=gifts&a=update to change goods prices with the super administrator's privileges.

    Published: 16 Nov 2018
    5.4
    Medium

    CVE-2018-19311

    Last Modified: 21 Nov 2024

    Centreon 3.4.x (fixed in Centreon 18.10.0) allows XSS via the Service field to the main.php?p=20201 URI, as demonstrated by the "Monitoring > Status Details > Services" screen.

    Published: 16 Nov 2018
    8.8
    High

    CVE-2018-19312

    Last Modified: 21 Nov 2024

    Centreon 3.4.x (fixed in Centreon 18.10.0 and Centreon web 2.8.24) allows SQL Injection via the searchVM parameter to the main.php?p=20408 URI.

    Published: 16 Nov 2018
    6.4
    Medium

    CVE-2018-15692

    Last Modified: 21 Nov 2024

    Inova Partner 5.0.5-RELEASE, Build 0510-0906 and earlier allows authenticated users authorization bypass and data manipulation in certain functions.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18755

    Last Modified: 21 Nov 2024

    K-iwi Framework 1775 has SQL Injection via the admin/user/group/update user_group_id parameter or the admin/user/user/update user_id parameter.

    Published: 16 Nov 2018
    7.5
    High

    CVE-2018-18756

    Last Modified: 21 Nov 2024

    Local Server 1.0.9 has a Buffer Overflow via crafted data on Port 4008.

    Published: 16 Nov 2018
    6.5
    Medium

    CVE-2018-18760

    Last Modified: 5 Jun 2025

    RhinOS 3.0 build 1190 allows CSRF.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18763

    Last Modified: 21 Nov 2024

    SaltOS 3.1 r8126 allows action=ajax&query=numbers&page=usuarios&action2=[SQL] SQL Injection.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18793

    Last Modified: 21 Nov 2024

    School Event Management System 1.0 allows Arbitrary File Upload via event/controller.php?action=photos.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18795

    Last Modified: 21 Nov 2024

    School Event Management System 1.0 has SQL Injection via the student/index.php or event/index.php id parameter.

    Published: 16 Nov 2018
    8.8
    High

    CVE-2018-18799

    Last Modified: 21 Nov 2024

    School Attendance Monitoring System 1.0 has CSRF via event/controller.php?action=photos.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18801

    Last Modified: 21 Nov 2024

    The BSEN Ordering software 1.0 has SQL Injection via student/index.php?view=view&id=[SQL] or index.php?q=single-item&id=[SQL].

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18803

    Last Modified: 21 Nov 2024

    Curriculum Evaluation System 1.0 allows SQL Injection via the login screen, related to frmCourse.vb and includes/user.vb.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18805

    Last Modified: 21 Nov 2024

    Point Of Sales 1.0 allows SQL injection via the login screen, related to LoginForm1.vb.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18806

    Last Modified: 21 Nov 2024

    School Equipment Monitoring System 1.0 allows SQL injection via the login screen, related to include/user.vb.

    Published: 16 Nov 2018
    8.8
    High

    CVE-2018-18794

    Last Modified: 21 Nov 2024

    School Event Management System 1.0 allows CSRF via user/controller.php?action=edit.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18796

    Last Modified: 21 Nov 2024

    Library Management System 1.0 has SQL Injection via the "Search for Books" screen.

    Published: 16 Nov 2018
    8.8
    High

    CVE-2018-18797

    Last Modified: 21 Nov 2024

    School Attendance Monitoring System 1.0 has CSRF via /user/user/edit.php.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18804

    Last Modified: 21 Nov 2024

    Bakeshop Inventory System 1.0 has SQL injection via the login screen, related to include/publicfunction.vb.

    Published: 16 Nov 2018
    7.5
    High

    CVE-2018-18759

    Last Modified: 21 Nov 2024

    Modbus Slave 7.0.0 in modbus tools has a Buffer Overflow.

    Published: 16 Nov 2018
    6.4
    Medium

    CVE-2018-15693

    Last Modified: 21 Nov 2024

    Inova Partner 5.0.5-RELEASE, Build 0510-0906 and earlier allows authenticated users authorization bypass via insecure direct object reference.

    Published: 16 Nov 2018
    9.8
    Critical

    CVE-2018-18761

    Last Modified: 21 Nov 2024

    SaltOS 3.1 r8126 allows action=login&querystring=&user=[SQL] SQL Injection.

    Published: 16 Nov 2018
    6.3
    Medium

    CVE-2018-1797

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 using Enterprise bundle Archives (EBA) could allow a local attacker to traverse directories on the system. By persuading a victim to extract a specially-crafted ZIP archive containing "dot dot slash" sequences (../), an attacker could exploit this vulnerability to write to arbitrary files on the system. Note: This vulnerability is known as "Zip-Slip". IBM X-Force ID: 149427.

    Published: 16 Nov 2018
    4.3
    Medium

    CVE-2018-1639

    Last Modified: 21 Nov 2024

    The Report Builder of Jazz Reporting Service 5.0 through 5.0.2 and 6.0 through 6.0.6 could allow an authenticated user to obtain sensitive information beyond its assigned privileges. IBM X-Force ID: 144579.

    Published: 16 Nov 2018
    9
    Critical

    CVE-2018-7359

    Last Modified: 21 Nov 2024

    All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by heap-based buffer overflow vulnerability, which may allow an attacker to execute arbitrary code.

    Published: 16 Nov 2018
    9.6
    Critical

    CVE-2018-7360

    Last Modified: 21 Nov 2024

    All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by information exposure vulnerability, which may allow an unauthenticated attacker to get the GPON SN information via appviahttp service.

    Published: 16 Nov 2018
    6.5
    Medium

    CVE-2018-7361

    Last Modified: 21 Nov 2024

    All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by null pointer dereference vulnerability, which may allows an attacker to cause a denial of service via appviahttp service.

    Published: 16 Nov 2018
    7.5
    High

    CVE-2018-7362

    Last Modified: 21 Nov 2024

    All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by improper access control vulnerability, which may allows an unauthorized user to perform unauthorized operations on the router.

    Published: 16 Nov 2018
    4.3
    Medium

    CVE-2018-7363

    Last Modified: 21 Nov 2024

    All versions up to V1.1.10P3T18 of ZTE ZXHN F670 product are impacted by improper authorization vulnerability. Since appviahttp service has no authorization delay, an attacker can be allowed to brute force account credentials.

    Published: 16 Nov 2018
    5.3
    Medium

    CVE-2018-9071

    Last Modified: 21 Nov 2024

    Lenovo Chassis Management Module (CMM) prior to version 2.0.0 allows unauthenticated users to retrieve information related to the current authentication configuration settings. Exposed settings relate to password lengths, expiration, and lockout configuration.

    Published: 16 Nov 2018
    7.2
    High

    CVE-2018-9086

    Last Modified: 21 Nov 2024

    In some Lenovo ThinkServer-branded servers, a command injection vulnerability exists in the BMC firmware download command. This allows a privileged user to download and execute arbitrary code inside the BMC. This can only be exploited by authorized privileged users.

    Published: 16 Nov 2018
    4.9
    Medium

    CVE-2018-9085

    Last Modified: 21 Nov 2024

    A write protection lock bit was left unset after boot on an older generation of Lenovo and IBM System x servers, potentially allowing an attacker with administrator access to modify the subset of flash memory containing Intel Server Platform Services (SPS) and the system Flash Descriptors.

    Published: 16 Nov 2018