CVE Feed

    Dashboard / CVE

    4.8
    Medium

    CVE-2018-19141

    Last Modified: 21 Nov 2024

    Open Ticket Request System (OTRS) 4.0.x before 4.0.33 and 5.0.x before 5.0.31 allows an admin to conduct an XSS attack via a modified URL because user and customer preferences are mishandled.

    Published: 11 Nov 2018
    4.8
    Medium

    CVE-2018-19142

    Last Modified: 21 Nov 2024

    Open Ticket Request System (OTRS) 6.0.x before 6.0.13 allows an admin to conduct an XSS attack via a modified URL.

    Published: 11 Nov 2018
    8.8
    High

    CVE-2018-19135

    Last Modified: 21 Nov 2024

    ClipperCMS 1.3.3 does not have CSRF protection on its kcfinder file upload (enabled by default). This can be used by an attacker to perform actions for an admin (or any user with the file upload capability). With this vulnerability, one can automatically upload files (by default, it allows html, pdf, xml, zip, and many other file types). A file can be accessed publicly under the "/assets/files" directory.

    Published: 11 Nov 2018
    7.5
    High

    CVE-2018-17953

    Last Modified: 21 Nov 2024

    A incorrect variable in a SUSE specific patch for pam_access rule matching in PAM 1.3.0 in openSUSE Leap 15.0 and SUSE Linux Enterprise 15 could lead to pam_access rules not being applied (fail open).

    Published: 11 Nov 2018
    9.8
    Critical

    CVE-2018-19168

    Last Modified: 21 Nov 2024

    Shell Metacharacter Injection in www/modules/save.php in FruityWifi (aka PatatasFritas/PatataWifi) through 2.4 allows remote attackers to execute arbitrary code with root privileges via a crafted mod_name parameter in a POST request. NOTE: unlike in CVE-2018-17317, the attacker does not need a valid session.

    Published: 11 Nov 2018
    8.8
    High

    CVE-2017-17550

    Last Modified: 21 Nov 2024

    ZyXEL ZyWALL USG 2.12 AQQ.2 and 3.30 AQQ.7 devices are affected by a CSRF vulnerability via a cgi-bin/zysh-cgi cmd action to add a user account. This account's access could, for example, subsequently be used for stored XSS.

    Published: 10 Nov 2018
    7.8
    High

    CVE-2018-19150

    Last Modified: 21 Nov 2024

    Memory corruption in PDMODELProvidePDModelHFT in pdmodel.dll in pdfforge PDF Architect 6 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact because of a "Data from Faulting Address controls Code Flow" issue.

    Published: 10 Nov 2018
    3.7
    Low

    CVE-2018-19148

    Last Modified: 21 Nov 2024

    Caddy through 0.11.0 sends incorrect certificates for certain invalid requests, making it easier for attackers to enumerate hostnames. Specifically, when unable to match a Host header with a vhost in its configuration, it serves the X.509 certificate for a randomly selected vhost in its configuration. Repeated requests (with a nonexistent hostname in the Host header) permit full enumeration of all certificates on the server. This generally permits an attacker to easily and accurately discover the existence of and relationships among hostnames that weren't meant to be public, though this information could likely have been discovered via other methods with additional effort.

    Published: 10 Nov 2018
    7.8
    High

    CVE-2018-19084

    Last Modified: 21 Nov 2024

    RegFilter.sys in IOBit Malware Fighter 6.2 is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0x8006E05C with a size larger than 8 bytes. This can lead to denial of service or code execution with root privileges.

    Published: 10 Nov 2018
    7.8
    High

    CVE-2018-19085

    Last Modified: 21 Nov 2024

    RegFilter.sys in IOBit Malware Fighter 6.2 is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0x8006E048 with a size larger than 8 bytes. This can lead to denial of service or code execution with root privileges.

    Published: 10 Nov 2018
    7.8
    High

    CVE-2018-19086

    Last Modified: 21 Nov 2024

    RegFilter.sys in IOBit Malware Fighter 6.2 is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0x8006E040 with a size larger than 8 bytes. This can lead to denial of service or code execution with root privileges.

    Published: 10 Nov 2018
    7.8
    High

    CVE-2018-19087

    Last Modified: 21 Nov 2024

    RegFilter.sys in IOBit Malware Fighter 6.2 is susceptible to a stack-based buffer overflow when an attacker uses IOCTL 0x8006E044 with a size larger than 8 bytes. This can lead to denial of service or code execution with root privileges.

    Published: 10 Nov 2018
    6.1
    Medium

    CVE-2018-19145

    Last Modified: 21 Nov 2024

    An issue was discovered in S-CMS v1.5. There is an XSS vulnerability in search.php via the keyword parameter.

    Published: 9 Nov 2018
    8.1
    High

    CVE-2018-15796

    Last Modified: 21 Nov 2024

    Cloud Foundry Bits Service Release, versions prior to 2.14.0, uses an insecure hashing algorithm to sign URLs. A remote malicious user may obtain a signed URL and extract the signing key, allowing them complete read and write access to the the Bits Service storage.

    Published: 9 Nov 2018
    8.8
    High

    CVE-2018-19138

    Last Modified: 21 Nov 2024

    WSTMart 2.0.7 has CSRF via the index.php/admin/staffs/add.html URI.

    Published: 9 Nov 2018
    7.5
    High

    CVE-2018-17612

    Last Modified: 21 Nov 2024

    Sennheiser HeadSetup 7.3.4903 places Certification Authority (CA) certificates into the Trusted Root CA store of the local system, and publishes the private key in the SennComCCKey.pem file within the public software distribution, which allows remote attackers to spoof arbitrary web sites or software publishers for several years, even if the HeadSetup product is uninstalled. NOTE: a vulnerability-assessment approach must check all Windows systems for CA certificates with a CN of 127.0.0.1 or SennComRootCA, and determine whether those certificates are unwanted.

    Published: 9 Nov 2018
    6.1
    Medium

    CVE-2018-19136

    Last Modified: 21 Nov 2024

    DomainMOD through 4.11.01 has XSS via the assets/edit/registrar-account.php raid parameter.

    Published: 9 Nov 2018
    6.1
    Medium

    CVE-2018-19137

    Last Modified: 21 Nov 2024

    DomainMOD through 4.11.01 has XSS via the assets/edit/ip-address.php ipid parameter.

    Published: 9 Nov 2018
    5.3
    Medium

    CVE-2018-14644

    Last Modified: 21 Nov 2024

    An issue has been found in PowerDNS Recursor from 4.0.0 up to and including 4.1.4. A remote attacker sending a DNS query for a meta-type like OPT can lead to a zone being wrongly cached as failing DNSSEC validation. It only arises if the parent zone is signed, and all the authoritative servers for that parent zone answer with FORMERR to a query for at least one of the meta-types. As a result, subsequent queries from clients requesting DNSSEC validation will be answered with a ServFail.

    Published: 9 Nov 2018
    5.4
    Medium

    CVE-2018-1872

    Last Modified: 21 Nov 2024

    IBM Maximo Asset Management 7.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 151330.

    Published: 9 Nov 2018
    9.8
    Critical

    CVE-2018-19127

    Last Modified: 21 Nov 2024

    A code injection vulnerability in /type.php in PHPCMS 2008 allows attackers to write arbitrary content to a website cache file with a controllable filename, leading to arbitrary code execution. The PHP code is sent via the template parameter, and is written to a data/cache_template/*.tpl.php file along with a "<?php function " substring.

    Published: 9 Nov 2018
    4.3
    Medium

    CVE-2018-19121

    Last Modified: 21 Nov 2024

    An issue has been found in libIEC61850 v1.3. It is a SEGV in Ethernet_receivePacket in ethernet_bsd.c.

    Published: 9 Nov 2018
    4.3
    Medium

    CVE-2018-19122

    Last Modified: 21 Nov 2024

    An issue has been found in libIEC61850 v1.3. It is a NULL pointer dereference in Ethernet_sendPacket in ethernet_bsd.c.

    Published: 9 Nov 2018
    7.5
    High

    CVE-2018-19124

    Last Modified: 21 Nov 2024

    PrestaShop 1.6.x before 1.6.1.23 and 1.7.x before 1.7.4.4 on Windows allows remote attackers to write to arbitrary image files.

    Published: 9 Nov 2018
    7.5
    High

    CVE-2018-19125

    Last Modified: 21 Nov 2024

    PrestaShop 1.6.x before 1.6.1.23 and 1.7.x before 1.7.4.4 allows remote attackers to delete an image directory.

    Published: 9 Nov 2018
    9.8
    Critical

    CVE-2018-19126

    Last Modified: 21 Nov 2024

    PrestaShop 1.6.x before 1.6.1.23 and 1.7.x before 1.7.4.4 allows remote attackers to execute arbitrary code via a file upload.

    Published: 9 Nov 2018
    6.5
    Medium

    CVE-2018-19129

    Last Modified: 21 Nov 2024

    In Libav 12.3, a NULL pointer dereference (RIP points to zero) issue in ff_mpa_synth_filter_float in libavcodec/mpegaudiodsp_template.c can cause a segmentation fault (application crash) via a crafted mov file.

    Published: 9 Nov 2018
    6.5
    Medium

    CVE-2018-19130

    Last Modified: 21 Nov 2024

    In Libav 12.3, there is an invalid memory access in vc1_decode_frame in libavcodec/vc1dec.c that allows attackers to cause a denial-of-service via a crafted aac file. NOTE: This may be a duplicate of CVE-2017-17127

    Published: 9 Nov 2018
    5.3
    Medium

    CVE-2018-19133

    Last Modified: 21 Nov 2024

    In Flarum Core 0.1.0-beta.7.1, a serious leak can get everyone's email address.

    Published: 9 Nov 2018
    6.5
    Medium

    CVE-2018-19128

    Last Modified: 21 Nov 2024

    In Libav 12.3, there is a heap-based buffer over-read in decode_frame in libavcodec/lcldec.c that allows an attacker to cause denial-of-service via a crafted avi file.

    Published: 9 Nov 2018
    5.3
    Medium

    CVE-2018-1684

    Last Modified: 21 Nov 2024

    IBM WebSphere MQ 8.0 through 9.1 is vulnerable to a error with MQTT topic string publishing that can cause a denial of service attack. IBM X-Force ID: 145456.

    Published: 9 Nov 2018
    8.4
    High

    CVE-2018-1781

    Last Modified: 21 Nov 2024

    IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local user to obtain root access by exploiting a symbolic link attack to read/write/corrupt a file that they originally did not have permission to access. IBM X-Force ID: 148804.

    Published: 9 Nov 2018
    6.2
    Medium

    CVE-2018-1799

    Last Modified: 21 Nov 2024

    IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local unprivileged user to overwrite files on the system which could cause damage to the database. IBM X-Force ID: 149429.

    Published: 9 Nov 2018
    7.4
    High

    CVE-2018-1834

    Last Modified: 21 Nov 2024

    IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 contains a vulnerability that could allow a local user to escalate their privileges to root through a symbolic link attack. IBM X-Force ID: 150511.

    Published: 9 Nov 2018
    3.6
    Low

    CVE-2018-1842

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11 Configuration tool, under certain circumstances, will bypass OIDC namespace signature verification on its id_token. IBM X-Force ID: 150902.

    Published: 9 Nov 2018
    5.5
    Medium

    CVE-2018-19139

    Last Modified: 21 Nov 2024

    An issue has been found in JasPer 2.0.14. There is a memory leak in jas_malloc.c when called from jpc_unk_getparms in jpc_cs.c.

    Published: 9 Nov 2018
    4.3
    Medium

    CVE-2017-1119

    Last Modified: 21 Nov 2024

    IBM Marketing Operations 9.1.0, 9.1.2, and 10.1 could allow a remote attacker to obtain sensitive information. An attacker could send a specially-crafted request to cause an error message to be returned containing the full root path. An attacker could use this information to launch further attacks against the affected system. IBM X-Force ID: 121171.

    Published: 9 Nov 2018
    4
    Medium

    CVE-2016-9749

    Last Modified: 21 Nov 2024

    IBM Campaign 9.1.0, 9.1.2, 10.0, and 10.1 could allow an authenticated user with access to the local network to bypass security due to lack of input validation. IBM X-Force ID: 120206.

    Published: 9 Nov 2018
    8.8
    High

    CVE-2018-17478

    Last Modified: 21 Nov 2024

    Incorrect array position calculations in V8 in Google Chrome prior to 70.0.3538.102 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page.

    Published: 9 Nov 2018
    8.9
    High

    CVE-2018-1774

    Last Modified: 21 Nov 2024

    IBM API Connect 5.0.0.0, 5.0.8.4, 2018.1 and 2018.3.6 is vulnerable to CSV injection via the developer portal and analytics that could contain malicious commands that would be executed once opened by an administrator. IBM X-Force ID: 148692.

    Published: 9 Nov 2018
    7.8
    High

    CVE-2018-1780

    Last Modified: 21 Nov 2024

    IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local db2 instance owner to obtain root access by exploiting a symbolic link attack to read/write/corrupt a file that they originally did not have permission to access. IBM X-Force ID: 148803.

    Published: 9 Nov 2018
    8.4
    High

    CVE-2018-1802

    Last Modified: 21 Nov 2024

    IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 binaries load shared libraries from an untrusted path potentially giving low privilege user full access to the DB2 instance account by loading a malicious shared library. IBM X-Force ID: 149640.

    Published: 9 Nov 2018
    4.8
    Medium

    CVE-2018-1857

    Last Modified: 21 Nov 2024

    IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1 could allow a user to bypass FGAC control and gain access to data they shouldn't be able to see. IBM X-Force ID: 151155.

    Published: 9 Nov 2018
    6.5
    Medium

    CVE-2018-7718

    Last Modified: 21 Nov 2024

    An issue was discovered in Telexy QPath 5.4.462. A low privileged authenticated user supplying a specially crafted serialized request to AdanitDataService.svc may modify user information, including but not limited to email address, username, and password, of other user accounts. The simplest attack approach is for the attacker to intercept their own password-change request and modify the username before the request reaches the server. Also, changing a victim's email address can have a similar account-takeover consequence.

    Published: 8 Nov 2018
    6.5
    Medium

    CVE-2018-15450

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based UI of Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker to overwrite files on the file system. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by using a specific UI input field to provide a custom path location. A successful exploit could allow the attacker to overwrite files on the file system.

    Published: 8 Nov 2018
    5.4
    Medium

    CVE-2018-15451

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. The vulnerability is due to insufficient validation of user-supplied input that is processed by the web-based management interface. An attacker could exploit this vulnerability by persuading a user of the interface to click a maliciously crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or access sensitive browser-based information.

    Published: 8 Nov 2018
    4.3
    Medium

    CVE-2018-15449

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Video Surveillance Media Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) of the web-based management interface of an affected system. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of the affected service. An attacker could exploit this vulnerability by persuading a user of the interface to click a malicious link. A successful exploit could allow the attacker to cause the web-based management interface to become unreachable, resulting in a DoS condition.

    Published: 8 Nov 2018
    7.8
    High

    CVE-2018-6436

    Last Modified: 21 Nov 2024

    A Vulnerability in the firmwaredownload command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow a local attacker to escape the restricted shell and, gain root access.

    Published: 8 Nov 2018
    7.8
    High

    CVE-2018-6437

    Last Modified: 21 Nov 2024

    A Vulnerability in the help command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow a local attacker to escape the restricted shell and, gain root access.

    Published: 8 Nov 2018
    7.8
    High

    CVE-2018-6438

    Last Modified: 21 Nov 2024

    A Vulnerability in the supportsave command of Brocade Fabric OS command line interface (CLI) versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow a local attacker to escape the restricted shell and, gain root access.

    Published: 8 Nov 2018