CVE Feed

    Dashboard / CVE

    5.9
    Medium

    CVE-2018-19132

    Last Modified: 21 Nov 2024

    Squid before 4.4, when SNMP is enabled, allows a denial of service (Memory Leak) via an SNMP packet.

    Published: 31 Oct 2018
    4.3
    Medium

    CVE-2018-16839

    Last Modified: 15 Apr 2026

    Curl versions 7.33.0 through 7.61.1 are vulnerable to a buffer overrun in the SASL authentication code that may lead to denial of service.

    Published: 31 Oct 2018
    4.4
    Medium

    CVE-2018-16842

    Last Modified: 15 Apr 2026

    Curl versions 7.14.1 through 7.61.1 are vulnerable to a heap-based buffer over-read in the tool_msgs.c:voutf() function that may result in information exposure and denial of service.

    Published: 31 Oct 2018
    7.5
    High

    CVE-2018-11759

    Last Modified: 21 Nov 2024

    The Apache Web Server (httpd) specific code that normalised the requested path before matching it to the URI-worker map in Apache Tomcat JK (mod_jk) Connector 1.2.0 to 1.2.44 did not handle some edge cases correctly. If only a sub-set of the URLs supported by Tomcat were exposed via httpd, then it was possible for a specially constructed request to expose application functionality through the reverse proxy that was not intended for clients accessing the application via the reverse proxy. It was also possible in some configurations for a specially constructed request to bypass the access controls configured in httpd. While there is some overlap between this issue and CVE-2018-1323, they are not identical.

    Published: 31 Oct 2018
    9.8
    Critical

    CVE-2018-16461

    Last Modified: 21 Nov 2024

    A command injection vulnerability in libnmapp package for versions <0.4.16 allows arbitrary commands to be executed via arguments to the range options.

    Published: 30 Oct 2018
    10
    Critical

    CVE-2018-16462

    Last Modified: 21 Nov 2024

    A command injection vulnerability in the apex-publish-static-files npm module version <2.0.1 which allows arbitrary shell command execution through a maliciously crafted argument.

    Published: 30 Oct 2018
    3.1
    Low

    CVE-2018-16463

    Last Modified: 21 Nov 2024

    A bug causing session fixation in Nextcloud Server prior to 14.0.0, 13.0.3 and 12.0.8 could potentially allow an attacker to obtain access to password protected shares.

    Published: 30 Oct 2018
    5.7
    Medium

    CVE-2018-16464

    Last Modified: 21 Nov 2024

    A missing access check in Nextcloud Server prior to 14.0.0 could lead to continued access to password protected link shares when the owner had changed the password.

    Published: 30 Oct 2018
    8.1
    High

    CVE-2018-16466

    Last Modified: 21 Nov 2024

    Improper revalidation of permissions in Nextcloud Server prior to 14.0.0, 13.0.6 and 12.0.11 lead to not accepting access restrictions by acess tokens.

    Published: 30 Oct 2018
    5.3
    Medium

    CVE-2018-16467

    Last Modified: 21 Nov 2024

    A missing check in Nextcloud Server prior to 14.0.0 could give unauthorized access to the previews of single file password protected shares.

    Published: 30 Oct 2018
    7.5
    High

    CVE-2018-16469

    Last Modified: 21 Nov 2024

    The merge.recursive function in the merge package <1.2.1 can be tricked into adding or modifying properties of the Object prototype. These properties will be present on all objects allowing for a denial of service attack.

    Published: 30 Oct 2018
    5.3
    Medium

    CVE-2018-16465

    Last Modified: 21 Nov 2024

    Missing state in Nextcloud Server prior to 14.0.0 would not enforce the use of a second factor at login if the the provider of the second factor failed to load.

    Published: 30 Oct 2018
    6.8
    Medium

    CVE-2018-17931

    Last Modified: 21 Nov 2024

    If an attacker has physical access to the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662. Prior versions may also be affected) they may be able to alter scripts, which may allow code execution with root privileges.

    Published: 30 Oct 2018
    8.8
    High

    CVE-2018-17933

    Last Modified: 21 Nov 2024

    VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662. Prior versions may also be affected) connected to the VGo XAMPP. User accounts may be able to execute commands that are outside the scope of their privileges and within the scope of an admin account. If an attacker has access to VGo XAMPP Client credentials, they may be able to execute admin commands on the connected robot.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2018-8858

    Last Modified: 21 Nov 2024

    If an attacker has access to the firmware from the VGo Robot (Versions 3.0.3.52164 and 3.0.3.53662. Prior versions may also be affected) they may be able to extract credentials.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2017-8931

    Last Modified: 21 Nov 2024

    Bitdefender GravityZone VMware appliance before 6.2.1-35 might allow attackers to gain access with root privileges via unspecified vectors.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2018-14558

    Last Modified: 7 Nov 2025

    An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A command Injection vulnerability allows attackers to execute arbitrary OS commands via a crafted goform/setUsbUnload request. This occurs because the "formsetUsbUnload" function executes a dosystemCmd function with untrusted input.

    Published: 30 Oct 2018
    5.4
    Medium

    CVE-2018-17783

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in the Edit Filter page (manage_filter_edit page.php) in MantisBT 2.1.0 through 2.17.1 allows remote attackers (if access rights permit it) to inject arbitrary code (if CSP settings permit it) through a crafted project name.

    Published: 30 Oct 2018
    8.8
    High

    CVE-2018-10532

    Last Modified: 21 Nov 2024

    An issue was discovered on EE 4GEE HH70VB-2BE8GB3 HH70_E1_02.00_19 devices. Hardcoded root SSH credentials were discovered to be stored within the "core_app" binary utilised by the EE router for networking services. An attacker with knowledge of the default password (oelinux123) could login to the router via SSH as the root user, which could allow for the loss of confidentiality, integrity, and availability of the system. This would also allow for the bypass of the "AP Isolation" mode that is supported by the router, as well as the settings for multiple Wireless networks, which a user may use for guest clients.

    Published: 30 Oct 2018
    7.8
    High

    CVE-2018-10709

    Last Modified: 21 Nov 2024

    The AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before v3.0.210, and RestartToUEFI before v1.0.6.2 expose functionality to read and write CR register values. This could be leveraged in a number of ways to ultimately run code with elevated privileges.

    Published: 30 Oct 2018
    7.1
    High

    CVE-2018-10710

    Last Modified: 21 Nov 2024

    The AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before v3.0.210, and RestartToUEFI before v1.0.6.2 expose functionality to read and write arbitrary physical memory. This could be leveraged by a local attacker to elevate privileges.

    Published: 30 Oct 2018
    7.8
    High

    CVE-2018-10711

    Last Modified: 21 Nov 2024

    The AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before v3.0.210, and RestartToUEFI before v1.0.6.2 expose functionality to read and write Machine Specific Registers (MSRs). This could be leveraged to execute arbitrary ring-0 code.

    Published: 30 Oct 2018
    5.4
    Medium

    CVE-2018-17782

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in the Manage Filters page (manage_filter_page.php) in MantisBT 2.1.0 through 2.17.1 allows remote attackers (if access rights permit it) to inject arbitrary code (if CSP settings permit it) through a crafted project name.

    Published: 30 Oct 2018
    7.8
    High

    CVE-2018-10712

    Last Modified: 21 Nov 2024

    The AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before v3.0.210, and RestartToUEFI before v1.0.6.2 expose functionality to read/write data from/to IO ports. This could be leveraged in a number of ways to ultimately run code with elevated privileges.

    Published: 30 Oct 2018
    7.5
    High

    CVE-2015-7266

    Last Modified: 21 Nov 2024

    The Interactive Advertising Bureau (IAB) OpenRTB 2.3 protocol implementation might allow remote attackers to conceal the status of ad transactions and potentially compromise bid integrity by leveraging failure to limit the time between bid responses and impression notifications, aka the Amnesia Bug.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2018-18822

    Last Modified: 21 Nov 2024

    Grapixel New Media v2.0 allows SQL Injection via the pages.aspx pageref parameter.

    Published: 30 Oct 2018
    6.5
    Medium

    CVE-2018-18826

    Last Modified: 21 Nov 2024

    There exists a heap-based buffer overflow in vc1_decode_p_mb_intfi in vc1_block.c in Libav 12.3, which allows attackers to cause a denial-of-service via a crafted aac file.

    Published: 30 Oct 2018
    6.5
    Medium

    CVE-2018-18827

    Last Modified: 21 Nov 2024

    There exists a heap-based buffer over-read in ff_vc1_pred_dc in vc1_block.c in Libav 12.3, which allows attackers to cause a denial-of-service via a crafted aac file.

    Published: 30 Oct 2018
    6.5
    Medium

    CVE-2018-18828

    Last Modified: 21 Nov 2024

    There exists a heap-based buffer overflow in vc1_decode_i_block_adv in vc1_block.c in Libav 12.3, which allows attackers to cause a denial-of-service via a crafted aac file.

    Published: 30 Oct 2018
    6.5
    Medium

    CVE-2018-18829

    Last Modified: 21 Nov 2024

    There exists a NULL pointer dereference in ff_vc1_parse_frame_header_adv in vc1.c in Libav 12.3, which allows attackers to cause a denial-of-service through a crafted aac file.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2018-18830

    Last Modified: 21 Nov 2024

    An issue was discovered in com\mingsoft\basic\action\web\FileAction.java in MCMS 4.6.5. Since the upload interface does not verify the user login status, you can use this interface to upload files without setting a cookie. First, start an upload of JSP code with a .png filename, and then intercept the data packet. In the name parameter, change the suffix to jsp. In the response, the server returns the storage path of the file, which can be accessed to execute arbitrary JSP code.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2018-18832

    Last Modified: 21 Nov 2024

    admin/check.asp in DKCMS 9.4 allows SQL Injection via an ASPSESSIONID cookie to admin/admin.asp.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2018-18835

    Last Modified: 21 Nov 2024

    upload_template() in system/changeskin.php in DocCms 2016.5.12 allows remote attackers to execute arbitrary PHP code via a template file.

    Published: 30 Oct 2018
    4.8
    Medium

    CVE-2018-18841

    Last Modified: 21 Nov 2024

    XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexkey parameter.

    Published: 30 Oct 2018
    8.8
    High

    CVE-2018-18842

    Last Modified: 21 Nov 2024

    CSRF exists in zb_users/plugin/AppCentre/theme.js.php in Z-BlogPHP 1.5.2.1935 (Zero), which allows remote attackers to execute arbitrary PHP code.

    Published: 30 Oct 2018
    7.5
    High

    CVE-2018-18831

    Last Modified: 21 Nov 2024

    An issue was discovered in com\mingsoft\cms\action\GeneraterAction.java in MCMS 4.6.5. An attacker can write a .jsp file (in the position parameter) to an arbitrary directory via a ../ Directory Traversal in the url parameter.

    Published: 30 Oct 2018
    5.4
    Medium

    CVE-2018-18840

    Last Modified: 21 Nov 2024

    XSS was discovered in SEMCMS PHP V3.4 via the SEMCMS_SeoAndTag.php?Class=edit&CF=SeoAndTag tag_indexmetatit parameter.

    Published: 30 Oct 2018
    6.1
    Medium

    CVE-2018-18825

    Last Modified: 21 Nov 2024

    Pagoda Linux panel V6.0 has XSS via the verification code associated with an invalid account login. A crafted code is mishandled during rendering of the login log.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2018-18834

    Last Modified: 21 Nov 2024

    An issue has been found in libIEC61850 v1.3. It is a heap-based buffer overflow in BerEncoder_encodeOctetString in mms/asn1/ber_encoder.c.

    Published: 30 Oct 2018
    7.5
    High

    CVE-2018-18817

    Last Modified: 21 Nov 2024

    The Leostream Agent before Build 7.0.1.0 when used with Leostream Connection Broker 8.2.72 or earlier allows remote attackers to modify registry keys via the Leostream Agent API.

    Published: 30 Oct 2018
    5.6
    Medium

    CVE-2018-16487

    Last Modified: 21 Nov 2024

    A prototype pollution vulnerability was found in lodash <4.17.11 where the functions merge, mergeWith, and defaultsDeep can be tricked into adding or modifying properties of Object.prototype.

    Published: 30 Oct 2018
    9.8
    Critical

    CVE-2018-18928

    Last Modified: 21 Nov 2024

    International Components for Unicode (ICU) for C/C++ 63.1 has an integer overflow in number::impl::DecimalQuantity::toScientificString() in i18n/number_decimalquantity.cpp.

    Published: 30 Oct 2018
    4.7
    Medium

    CVE-2018-5407

    Last Modified: 21 Nov 2024

    Simultaneous Multi-threading (SMT) in processors can enable local users to exploit software vulnerable to timing attacks via a side-channel timing attack on 'port contention'.

    Published: 30 Oct 2018
    8.8
    High

    CVE-2018-17706

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit PhantomPDF Phantom PDF 9.1.5096. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within fxhtml2pdf. The issue results from the lack of proper validation of user-supplied data, which can result in a memory access past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code under the context of the current process. Was ZDI-CAN-6230.

    Published: 29 Oct 2018
    8.8
    High

    CVE-2018-17624

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.1.0.5096. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of OCG objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-6435.

    Published: 29 Oct 2018
    8.8
    High

    CVE-2018-17623

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.5096. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Link objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-6434.

    Published: 29 Oct 2018
    6.5
    Medium

    CVE-2018-17622

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.1.0.5096. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Calculate events. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-6354.

    Published: 29 Oct 2018
    8.8
    High

    CVE-2018-17621

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.5096. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Format events. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-6355.

    Published: 29 Oct 2018
    8.8
    High

    CVE-2018-17620

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.5096. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Calculate events. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-6353.

    Published: 29 Oct 2018
    8.8
    High

    CVE-2018-17619

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.5096. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Validate events. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-6352.

    Published: 29 Oct 2018