CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2018-0381

    Last Modified: 26 Nov 2024

    A vulnerability in the Cisco Aironet Series Access Points (APs) software could allow an authenticated, adjacent attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due to a deadlock condition that may occur when an affected AP attempts to dequeue aggregated traffic that is destined to an attacker-controlled wireless client. An attacker who can successfully transition between multiple Service Set Identifiers (SSIDs) hosted on the same AP while replicating the required traffic patterns could trigger the deadlock condition. A watchdog timer that detects the condition will trigger a reload of the device, resulting in a DoS condition while the device restarts.

    Published: 17 Oct 2018
    7.8
    High

    CVE-2018-0417

    Last Modified: 26 Nov 2024

    A vulnerability in TACACS authentication with Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, local attacker to perform certain operations within the GUI that are not normally available to that user on the CLI. The vulnerability is due to incorrect parsing of a specific TACACS attribute received in the TACACS response from the remote TACACS server. An attacker could exploit this vulnerability by authenticating via TACACS to the GUI on the affected device. A successful exploit could allow an attacker to create local user accounts with administrative privileges on an affected WLC and execute other commands that are not allowed from the CLI and should be prohibited.

    Published: 17 Oct 2018
    7.4
    High

    CVE-2018-0441

    Last Modified: 26 Nov 2024

    A vulnerability in the 802.11r Fast Transition feature set of Cisco IOS Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a corruption of certain timer mechanisms triggered by specific roaming events. This corruption will eventually cause a timer crash. An attacker could exploit this vulnerability by sending malicious reassociation events multiple times to the same AP in a short period of time, causing a DoS condition on the affected AP.

    Published: 17 Oct 2018
    7.5
    High

    CVE-2018-0442

    Last Modified: 26 Nov 2024

    A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol component of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to retrieve memory contents, which could lead to the disclosure of confidential information. The vulnerability is due to insufficient condition checks in the part of the code that handles CAPWAP keepalive requests. An attacker could exploit this vulnerability by sending a crafted CAPWAP keepalive packet to a vulnerable Cisco WLC device. A successful exploit could allow the attacker to retrieve the contents of device memory, which could lead to the disclosure of confidential information.

    Published: 17 Oct 2018
    9.8
    Critical

    CVE-2018-18450

    Last Modified: 21 Nov 2024

    apps\admin\controller\content\SingleController.php in PbootCMS before V1.3.0 build 2018-11-12 has SQL Injection, as demonstrated by the POST data to the admin.php/Single/mod/mcode/1/id/3 URI.

    Published: 17 Oct 2018
    6.5
    Medium

    CVE-2018-0420

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based interface of Cisco Wireless LAN Controller Software could allow an authenticated, remote attacker to view sensitive information. The issue is due to improper sanitization of user-supplied input in HTTP request parameters that describe filenames and pathnames. An attacker could exploit this vulnerability by using directory traversal techniques to submit a path to a desired file location. A successful exploit could allow the attacker to view system files on the targeted device, which may contain sensitive information.

    Published: 17 Oct 2018
    7.5
    High

    CVE-2018-0443

    Last Modified: 26 Nov 2024

    A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol component of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper input validation on fields within CAPWAP Discovery Request packets by the affected device. An attacker could exploit this vulnerability by sending malicious CAPWAP Discovery Request packets to the Cisco WLC Software. A successful exploit could allow the attacker to cause the Cisco WLC Software to disconnect associated access points (APs). While the APs disconnect and reconnect, service will be unavailable for a brief period of time, resulting in a DoS condition.

    Published: 17 Oct 2018
    6.5
    Medium

    CVE-2018-15438

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected system. The vulnerability is due to insufficient CSRF protections for the web-based management interface of the affected software. An attacker could exploit this vulnerability by persuading a user of the interface to follow a malicious link. A successful exploit could allow the attacker to use a web browser to perform arbitrary actions with the privileges of the user on an affected system.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-15435

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco SocialMiner could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management interface. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information.

    Published: 17 Oct 2018
    5.3
    Medium

    CVE-2018-14597

    Last Modified: 21 Nov 2024

    CA Technologies Identity Governance 12.6, 14.0, 14.1, and 14.2 and CA Identity Suite Virtual Appliance 14.0, 14.1, and 14.2 provide telling error messages that may allow remote attackers to enumerate account names.

    Published: 17 Oct 2018
    8.6
    High

    CVE-2018-0378

    Last Modified: 26 Nov 2024

    A vulnerability in the Precision Time Protocol (PTP) feature of Cisco Nexus 5500, 5600, and 6000 Series Switches running Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of protection against PTP frame flood attacks. An attacker could exploit this vulnerability by sending large streams of malicious IPv4 or IPv6 PTP traffic to the affected device. A successful exploit could allow the attacker to cause a DoS condition, impacting the traffic passing through the device.

    Published: 17 Oct 2018
    5.4
    Medium

    CVE-2018-15402

    Last Modified: 26 Nov 2024

    A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to conduct cross-site request forgery (CSRF) attacks. The vulnerability is due to improper validation of Origin headers on HTTP requests within the management interface. An attacker could exploit this vulnerability by convincing a targeted user to follow a URL to a malicious website. An exploit could allow the attacker to take actions within the software with the privileges of the targeted user or gain access to sensitive information.

    Published: 17 Oct 2018
    5.4
    Medium

    CVE-2018-15395

    Last Modified: 26 Nov 2024

    A vulnerability in the authentication and authorization checking mechanisms of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, adjacent attacker to gain network access to a Cisco TrustSec domain. Under normal circumstances, this access should be prohibited. The vulnerability is due to the dynamic assignment of Security Group Tags (SGTs) during a wireless roam from one Service Set Identifier (SSID) to another within the Cisco TrustSec domain. An attacker could exploit this vulnerability by attempting to acquire an SGT from other SSIDs within the domain. Successful exploitation could allow the attacker to gain privileged network access that should be prohibited under normal circumstances.

    Published: 17 Oct 2018
    7.7
    High

    CVE-2018-0456

    Last Modified: 26 Nov 2024

    A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco NX-OS Software could allow an authenticated, remote attacker to cause the SNMP application of an affected device to restart unexpectedly. The vulnerability is due to improper validation of SNMP protocol data units (PDUs) in SNMP packets. An attacker could exploit this vulnerability by sending a crafted SNMP packet to an affected device. A successful exploit could allow the attacker to cause the SNMP application to restart multiple times, leading to a system-level restart and a denial of service (DoS) condition.

    Published: 17 Oct 2018
    8.8
    High

    CVE-2018-0395

    Last Modified: 26 Nov 2024

    A vulnerability in the Link Layer Discovery Protocol (LLDP) implementation for Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition when the device unexpectedly reloads. The vulnerability is due to improper input validation of certain type, length, value (TLV) fields of the LLDP frame header. An attacker could exploit this vulnerability by sending a crafted LLDP packet to an interface on the targeted device. A successful exploit could allow the attacker to cause the switch to reload unexpectedly.

    Published: 17 Oct 2018
    4.8
    Medium

    CVE-2018-0388

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based interface of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against the user of the web-based interface of an affected system. The vulnerability is due to insufficient validation of user-supplied input by the web-based interface. An attacker could exploit this vulnerability by persuading a user to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information.

    Published: 17 Oct 2018
    5.3
    Medium

    CVE-2018-0416

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based interface of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to view system information that under normal circumstances should be prohibited. The vulnerability is due to incomplete input and validation checking mechanisms in the web-based interface URL request. An attacker could exploit this vulnerability by requesting specific URLs via the web-based interface. A successful exploit could allow the attacker to view sensitive system information.

    Published: 17 Oct 2018
    9
    Critical

    CVE-2018-15616

    Last Modified: 21 Nov 2024

    A vulnerability in the Web UI component of Avaya Aura System Platform could allow a remote, unauthenticated user to perform a targeted deserialization attack that could result in remote code execution. Affected versions of System Platform includes 6.3.0 through 6.3.9 and 6.4.0 through 6.4.2.

    Published: 17 Oct 2018
    9.8
    Critical

    CVE-2018-12813

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 17 Oct 2018
    9.8
    Critical

    CVE-2018-12814

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 17 Oct 2018
    7.5
    High

    CVE-2018-12816

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 17 Oct 2018
    7.5
    High

    CVE-2018-12820

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 17 Oct 2018
    7.5
    High

    CVE-2018-12821

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 17 Oct 2018
    9.8
    Critical

    CVE-2018-12822

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 17 Oct 2018
    9.8
    Critical

    CVE-2018-12823

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 17 Oct 2018
    Unknown

    CVE-2018-14915

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 17 Oct 2018
    Unknown

    CVE-2018-14917

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-15970

    Last Modified: 21 Nov 2024

    Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-15971

    Last Modified: 21 Nov 2024

    Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-15972

    Last Modified: 21 Nov 2024

    Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-15973

    Last Modified: 21 Nov 2024

    Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.

    Published: 17 Oct 2018
    7.8
    High

    CVE-2018-15976

    Last Modified: 21 Nov 2024

    Adobe Technical Communications Suite versions 1.0.5.1 and below have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.

    Published: 17 Oct 2018
    7.5
    High

    CVE-2018-12818

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 17 Oct 2018
    7.8
    High

    CVE-2018-15974

    Last Modified: 21 Nov 2024

    Adobe Framemaker versions 1.0.5.1 and below have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.

    Published: 17 Oct 2018
    7.5
    High

    CVE-2018-12819

    Last Modified: 21 Nov 2024

    Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-15969

    Last Modified: 21 Nov 2024

    Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.

    Published: 17 Oct 2018
    4.6
    Medium

    CVE-2018-7989

    Last Modified: 21 Nov 2024

    Huawei Mate 10 pro smartphones with the versions before BLA-AL00B 8.1.0.326(C00) have an improper authentication vulnerability. App Lock is a function to prevent unauthorized use of apps on smartphones, an attacker could directly change the lock password after a series of operations. Successful exploit could allow the attacker to use the application which is locked.

    Published: 17 Oct 2018
    6.7
    Medium

    CVE-2017-17176

    Last Modified: 21 Nov 2024

    The hardware security module of Mate 9 and Mate 9 Pro Huawei smart phones with the versions earlier before MHA-AL00BC00B156, versions earlier before MHA-CL00BC00B156, versions earlier before MHA-DL00BC00B156, versions earlier before MHA-TL00BC00B156, versions earlier before LON-AL00BC00B156, versions earlier before LON-CL00BC00B156, versions earlier before LON-DL00BC00B156, versions earlier before LON-TL00BC00B156 has a arbitrary memory read/write vulnerability due to the input parameters validation. An attacker with the root privilege of the Android system could exploit this vulnerability to read and write memory data anywhere or execute arbitrary code in the TrustZone.

    Published: 17 Oct 2018
    2.4
    Low

    CVE-2018-7924

    Last Modified: 21 Nov 2024

    Anne-AL00 Huawei phones with versions earlier than 8.0.0.151(C00) have an information leak vulnerability. Due to improper permission settings for specific commands, attackers who can connect to a mobile phone via the USB interface may exploit this vulnerability to obtain specific device information of the mobile phone.

    Published: 17 Oct 2018
    8.8
    High

    CVE-2018-10823

    Last Modified: 21 Nov 2024

    An issue was discovered on D-Link DWR-116 through 1.06, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices. An authenticated attacker may execute arbitrary code by injecting the shell command into the chkisg.htm page Sip parameter. This allows for full control over the device internals.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-17964

    Last Modified: 21 Nov 2024

    Aryanic HighPortal 12.5 has XSS via an Add Tags action.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-18262

    Last Modified: 21 Nov 2024

    Zoho ManageEngine OpManager 12.3 before build 123214 has XSS.

    Published: 17 Oct 2018
    5.4
    Medium

    CVE-2018-18373

    Last Modified: 21 Nov 2024

    In the Schiocco "Support Board - Chat And Help Desk" plugin 1.2.3 for WordPress, a Stored XSS vulnerability has been discovered in file upload areas in the Chat and Help Desk sections via the msg parameter in a /wp-admin/admin-ajax.php sb_ajax_add_message action.

    Published: 17 Oct 2018
    8.8
    High

    CVE-2018-16232

    Last Modified: 21 Nov 2024

    An authenticated command injection vulnerability exists in IPFire Firewall before 2.21 Core Update 124 in backup.cgi. This allows an authenticated user with privileges for the affected page to execute arbitrary commands.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-15493

    Last Modified: 21 Nov 2024

    vBulletin 5.4.3 has an Open Redirect.

    Published: 17 Oct 2018
    6.1
    Medium

    CVE-2018-18372

    Last Modified: 21 Nov 2024

    A Stored XSS vulnerability has been discovered in KAASoft Library CMS - Powerful Book Management System 2.1.1 via the /admin/book/create/ title parameter.

    Published: 17 Oct 2018
    7.5
    High

    CVE-2018-10822

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in the web interface on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices allows remote attackers to read arbitrary files via a /.. or // after "GET /uir" in an HTTP request. NOTE: this vulnerability exists because of an incorrect fix for CVE-2017-6190.

    Published: 17 Oct 2018
    9.8
    Critical

    CVE-2018-10824

    Last Modified: 21 Nov 2024

    An issue was discovered on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices. The administrative password is stored in plaintext in the /tmp/csman/0 file. An attacker having a directory traversal (or LFI) can easily get full router access.

    Published: 17 Oct 2018
    5.9
    Medium

    CVE-2018-7110

    Last Modified: 21 Nov 2024

    A remote unauthorized disclosure of information vulnerability was identified in HPE Service Governance Framework (SGF) version 4.2, 4.3. A race condition under high load in SGF exists where SGF transferred different parameter to the enabler.

    Published: 17 Oct 2018
    9.8
    Critical

    CVE-2018-7076

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability was identified in HPE Intelligent Management Center (iMC) prior to iMC PLAT 7.3 E0605P04.

    Published: 17 Oct 2018