CVE Feed

    Dashboard / CVE

    3.7
    Low

    CVE-2018-17891

    Last Modified: 21 Nov 2024

    Carestream Vue RIS, RIS Client Builds: Version 11.2 and prior running on a Windows 8.1 machine with IIS/7.5. When contacting a Carestream server where there is no Oracle TNS listener available, users will trigger an HTTP 500 error, leaking technical information an attacker could use to initiate a more elaborate attack.

    Published: 4 Oct 2018
    5.3
    Medium

    CVE-2018-13258

    Last Modified: 21 Nov 2024

    Mediawiki 1.31 before 1.31.1 misses .htaccess files in the provided tarball used to protect some directories that shouldn't be web accessible.

    Published: 4 Oct 2018
    5.4
    Medium

    CVE-2018-17849

    Last Modified: 21 Nov 2024

    Navigate CMS 2.8 has Stored XSS via a navigate_upload.php (aka File Upload) request with a multipart/form-data JavaScript payload.

    Published: 4 Oct 2018
    6.5
    Medium

    CVE-2018-17871

    Last Modified: 21 Nov 2024

    Verba Collaboration Compliance and Quality Management Platform before 9.2.1.5545 has Incorrect Access Control.

    Published: 4 Oct 2018
    8.8
    High

    CVE-2018-17872

    Last Modified: 21 Nov 2024

    Verba Collaboration Compliance and Quality Management Platform before 9.2.1.5545 has Insecure Permissions.

    Published: 4 Oct 2018
    6.1
    Medium

    CVE-2018-17876

    Last Modified: 21 Nov 2024

    A Stored XSS vulnerability has been discovered in the v5.5.0 version of the Coaster CMS product.

    Published: 4 Oct 2018
    6.3
    Medium

    CVE-2018-1819

    Last Modified: 21 Nov 2024

    IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.0.2, 3.0.4, 3.0.6, and 3.2.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-force ID: 150023.

    Published: 4 Oct 2018
    3.1
    Low

    CVE-2018-1670

    Last Modified: 21 Nov 2024

    IBM Financial Transaction Manager for ACH Services for Multi-Platform 3.0.2 could allow an authenticated user to obtain sensitive product configuration information from log files. IBM X-Force ID: 144946.

    Published: 4 Oct 2018
    5.4
    Medium

    CVE-2018-1604

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 143794.

    Published: 4 Oct 2018
    5.4
    Medium

    CVE-2018-1603

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 143793.

    Published: 4 Oct 2018
    5.4
    Medium

    CVE-2018-1602

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 143792.

    Published: 4 Oct 2018
    6.5
    Medium

    CVE-2018-12471

    Last Modified: 21 Nov 2024

    A External Entity Reference ('XXE') vulnerability in SUSE Linux SMT allows remote attackers to read data from the server or cause DoS by referencing blocking elements. Affected releases are SUSE Linux SMT: versions prior to 3.0.37.

    Published: 4 Oct 2018
    5.3
    Medium

    CVE-2017-5658

    Last Modified: 21 Nov 2024

    The statistics generator in Apache Pony Mail 0.7 to 0.9 was found to be returning timestamp data without proper authorization checks. This could lead to derived information disclosure on private lists about the timing of specific email subjects or text bodies, though without disclosing the content itself. As this was primarily used as a caching feature for faster loading times, the caching was disabled by default to prevent this. Users using 0.9 should upgrade to 0.10 to address this issue.

    Published: 4 Oct 2018
    9.8
    Critical

    CVE-2018-12470

    Last Modified: 21 Nov 2024

    A SQL Injection in the RegistrationSharing module of SUSE Linux SMT allows remote attackers to cause execute arbitrary SQL statements. Affected releases are SUSE Linux SMT: versions prior to 3.0.37.

    Published: 4 Oct 2018
    7.3
    High

    CVE-2018-12472

    Last Modified: 21 Nov 2024

    A improper authentication using the HOST header in SUSE Linux SMT allows remote attackers to spoof a sibling server. Affected releases are SUSE Linux SMT: versions prior to 3.0.37.

    Published: 4 Oct 2018
    9.8
    Critical

    CVE-2018-5492

    Last Modified: 21 Nov 2024

    NetApp E-Series SANtricity OS Controller Software 11.30 and later version 11.30.5 is susceptible to unauthenticated remote code execution.

    Published: 4 Oct 2018
    4.9
    Medium

    CVE-2018-20699

    Last Modified: 21 Nov 2024

    Docker Engine before 18.09 allows attackers to cause a denial of service (dockerd memory consumption) via a large integer in a --cpuset-mems or --cpuset-cpus value, related to daemon/daemon_unix.go, pkg/parsers/parsers.go, and pkg/sysinfo/sysinfo.go.

    Published: 4 Oct 2018
    5.5
    Medium

    CVE-2018-17974

    Last Modified: 21 Nov 2024

    An issue was discovered in Tcpreplay 4.3.0 beta1. A heap-based buffer over-read was triggered in the function dlt_en10mb_encode() of the file plugins/dlt_en10mb/en10mb.c, due to inappropriate values in the function memmove(). The length (pktlen + ctx -> l2len) can be larger than source value (packet + ctx->l2len) because the function fails to ensure the length of a packet is valid. This leads to Denial of Service.

    Published: 3 Oct 2018
    5.9
    Medium

    CVE-2018-6695

    Last Modified: 21 Nov 2024

    SSH host keys generation vulnerability in the server in McAfee Threat Intelligence Exchange Server (TIE Server) 1.3.0, 2.0.x, 2.1.x, 2.2.0 allows man-in-the-middle attackers to spoof servers via acquiring keys from another environment.

    Published: 3 Oct 2018
    9.8
    Critical

    CVE-2018-17428

    Last Modified: 21 Nov 2024

    An issue was discovered in OPAC EasyWeb Five 5.7. There is SQL injection via the w2001/index.php?scelta=campi biblio parameter.

    Published: 3 Oct 2018
    9.8
    Critical

    CVE-2018-17552

    Last Modified: 21 Nov 2024

    SQL Injection in login.php in Naviwebs Navigate CMS 2.8 allows remote attackers to bypass authentication via the navigate-user cookie.

    Published: 3 Oct 2018
    8.8
    High

    CVE-2018-17553

    Last Modified: 21 Nov 2024

    An "Unrestricted Upload of File with Dangerous Type" issue with directory traversal in navigate_upload.php in Naviwebs Navigate CMS 2.8 allows authenticated attackers to achieve remote code execution via a POST request with engine=picnik and id=../../../navigate_info.php.

    Published: 3 Oct 2018
    7.5
    High

    CVE-2018-17562

    Last Modified: 21 Nov 2024

    Multi-Tech FaxFinder before 5.1.6 has SQL Injection via a status/call_details?oid= URI, allowing an attacker to extract the underlying database schema to further disclose other fax server information through different injection points.

    Published: 3 Oct 2018
    7.5
    High

    CVE-2018-17880

    Last Modified: 21 Nov 2024

    On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration allows /HNAP1 RunReboot commands without authentication to trigger a reboot.

    Published: 3 Oct 2018
    9.8
    Critical

    CVE-2018-17881

    Last Modified: 21 Nov 2024

    On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration allows /HNAP1 SetPasswdSettings commands without authentication to trigger an admin password change.

    Published: 3 Oct 2018
    8.8
    High

    CVE-2018-5921

    Last Modified: 21 Nov 2024

    A potential security vulnerability has been identified with certain HP printers and MFPs in 2405129_000052 and other firmware versions. This vulnerability is known as Cross Site Request Forgery, and could potentially be exploited remotely to allow elevation of privilege.

    Published: 3 Oct 2018
    4.6
    Medium

    CVE-2017-2751

    Last Modified: 21 Nov 2024

    A BIOS password extraction vulnerability has been reported on certain consumer notebooks with firmware F.22 and others. The BIOS password was stored in CMOS in a way that allowed it to be extracted. This applies to consumer notebooks launched in early 2014.

    Published: 3 Oct 2018
    7.8
    High

    CVE-2018-17408

    Last Modified: 21 Nov 2024

    Stack-based buffer overflows in Zahir Accounting Enterprise Plus 6 through build 10b allow remote attackers to execute arbitrary code via a crafted CSV file that is accessed through the Import CSV File menu.

    Published: 3 Oct 2018
    9.8
    Critical

    CVE-2018-17969

    Last Modified: 21 Nov 2024

    Samsung SCX-6545X V2.00.03.01 03-23-2012 devices allows remote attackers to discover cleartext credentials via iso.3.6.1.4.1.236.11.5.11.81.10.1.5.0 and iso.3.6.1.4.1.236.11.5.11.81.10.1.6.0 SNMP requests.

    Published: 3 Oct 2018
    5.3
    Medium

    CVE-2018-12087

    Last Modified: 21 Nov 2024

    Failure to validate certificates in OPC Foundation UA Client Applications communicating without security allows attackers with control over a piece of network infrastructure to decrypt passwords.

    Published: 3 Oct 2018
    6.1
    Medium

    CVE-2018-17053

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in Identity Server in Progress Sitefinity CMS versions 10.0 through 11.0 allows remote attackers to inject arbitrary web script or HTML via vectors related to login request parameters, a different vulnerability than CVE-2018-17054.

    Published: 3 Oct 2018
    6.1
    Medium

    CVE-2018-17054

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in Identity Server in Progress Sitefinity CMS versions 10.0 through 11.0 allows remote attackers to inject arbitrary web script or HTML via vectors related to login request parameters, a different vulnerability than CVE-2018-17053.

    Published: 3 Oct 2018
    9.8
    Critical

    CVE-2018-16049

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition before 11.0.6, 11.1.x before 11.1.5, and 11.2.x before 11.2.2. There is Sensitive Data Disclosure in Sidekiq Logs through an Error Message.

    Published: 3 Oct 2018
    6.1
    Medium

    CVE-2018-16050

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition 11.1.x before 11.1.5 and 11.2.x before 11.2.2. There is Persistent XSS in the Merge Request Changes View.

    Published: 3 Oct 2018
    6.5
    Medium

    CVE-2018-16051

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition before 11.0.6, 11.1.x before 11.1.5, and 11.2.x before 11.2.2. There is Orphaned Upload Files Exposure.

    Published: 3 Oct 2018
    6.5
    Medium

    CVE-2018-16048

    Last Modified: 21 Nov 2024

    An issue was discovered in GitLab Community and Enterprise Edition before 11.0.6, 11.1.x before 11.1.5, and 11.2.x before 11.2.2. There is Missing Authorization Control for API Repository Storage.

    Published: 3 Oct 2018
    8.8
    High

    CVE-2018-3946

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader version 9.1.0.5096. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 3 Oct 2018
    7.8
    High

    CVE-2018-3964

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 3 Oct 2018
    7.8
    High

    CVE-2018-3965

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 3 Oct 2018
    7.8
    High

    CVE-2018-3966

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 3 Oct 2018
    8.8
    High

    CVE-2018-3993

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.2.0.9297. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 3 Oct 2018
    8.8
    High

    CVE-2018-3994

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.2.0.9297. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 3 Oct 2018
    7.8
    High

    CVE-2018-3967

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 3 Oct 2018
    8.8
    High

    CVE-2018-3995

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.2.0.9297. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 3 Oct 2018
    6.1
    Medium

    CVE-2018-1793

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 using SAML ear is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148948.

    Published: 3 Oct 2018
    6.1
    Medium

    CVE-2018-1794

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 using OAuth ear is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 148949.

    Published: 3 Oct 2018
    7.8
    High

    CVE-2018-14800

    Last Modified: 21 Nov 2024

    Delta Electronics ISPSoft version 3.0.5 and prior allow an attacker, by opening a crafted file, to cause the application to read past the boundary allocated to a stack object, which could allow execution of code under the context of the application.

    Published: 3 Oct 2018
    7.8
    High

    CVE-2018-6689

    Last Modified: 21 Nov 2024

    Authentication Bypass vulnerability in McAfee Data Loss Prevention Endpoint (DLPe) 10.0.x earlier than 10.0.510, and 11.0.x earlier than 11.0.600 allows attackers to bypass local security protection via specific conditions.

    Published: 3 Oct 2018
    6.1
    Medium

    CVE-2018-17947

    Last Modified: 21 Nov 2024

    The Snazzy Maps plugin before 1.1.5 for WordPress has XSS via the text or tab parameter.

    Published: 3 Oct 2018
    5.3
    Medium

    CVE-2018-17938

    Last Modified: 21 Nov 2024

    Zimbra Collaboration before 8.8.10 GA allows text content spoofing via a loginErrorCode value.

    Published: 3 Oct 2018