CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-17595

    Last Modified: 21 Nov 2024

    In the 5.4.0 version of the Fork CMS software, HTML Injection and Stored XSS vulnerabilities were discovered via the /backend/ajax URI.

    Published: 2 Oct 2018
    9.8
    Critical

    CVE-2018-17786

    Last Modified: 21 Nov 2024

    On D-Link DIR-823G devices, ExportSettings.sh, upload_settings.cgi, GetDownLoadSyslog.sh, and upload_firmware.cgi do not require authentication, which allows remote attackers to execute arbitrary code.

    Published: 2 Oct 2018
    9.8
    Critical

    CVE-2018-17787

    Last Modified: 21 Nov 2024

    On D-Link DIR-823G devices, the GoAhead configuration allows /HNAP1 Command Injection via shell metacharacters in the POST data, because this data is sent directly to the "system" library function.

    Published: 2 Oct 2018
    6.1
    Medium

    CVE-2018-17884

    Last Modified: 21 Nov 2024

    XSS exists in admin/gb-dashboard-widget.php in the Gwolle Guestbook (gwolle-gb) plugin before 2.5.4 for WordPress via the PATH_INFO to wp-admin/index.php

    Published: 2 Oct 2018
    7.5
    High

    CVE-2018-15753

    Last Modified: 21 Nov 2024

    An issue was discovered in the MensaMax (aka com.breustedt.mensamax) application 4.3 for Android. The use of a Hard-coded DES Cryptographic Key allows an attacker who decodes the application to decrypt transmitted data such as the login username and password.

    Published: 2 Oct 2018
    6.1
    Medium

    CVE-2018-17588

    Last Modified: 21 Nov 2024

    AirTies Air 5021 devices with software 1.0.0.18 have XSS via the top.html productboardtype parameter.

    Published: 2 Oct 2018
    6.1
    Medium

    CVE-2018-17596

    Last Modified: 21 Nov 2024

    In Zoho ManageEngine AssetExplorer, a Stored XSS vulnerability was discovered in the 6.2.0 version via the /AssetDef.do ciName or assetName parameter.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-17886

    Last Modified: 21 Nov 2024

    An issue was discovered in JEESNS 1.3. The XSS filter in com.lxinet.jeesns.core.utils.XssHttpServletRequestWrapper.java could be bypassed, as demonstrated by a <svg/onLoad=confirm substring. NOTE: this vulnerability exists because of an incomplete fix for CVE-2018-12429.

    Published: 2 Oct 2018
    6.1
    Medium

    CVE-2018-17589

    Last Modified: 21 Nov 2024

    AirTies Air 5650 devices with software 1.0.0.18 have XSS via the top.html productboardtype parameter.

    Published: 2 Oct 2018
    2.5
    Low

    CVE-2018-6262

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience prior to 3.15 contains a vulnerability when GameStream is enabled where limited sensitive user information may be available to users with system access, which may lead to information disclosure.

    Published: 2 Oct 2018
    7
    High

    CVE-2018-6261

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience prior to 3.15 contains a vulnerability when GameStream is enabled which sets incorrect permissions on a file, which may to code execution, denial of service, or escalation of privileges by users with system access.

    Published: 2 Oct 2018
    3.1
    Low

    CVE-2018-12473

    Last Modified: 21 Nov 2024

    A path traversal traversal vulnerability in obs-service-tar_scm of Open Build Service allows remote attackers to cause access files not in the current build. On the server itself this is prevented by confining the worker via KVM. Affected releases are openSUSE Open Build Service: versions prior to 70d1aa4cc4d7b940180553a63805c22fc62e2cf0.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1403

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138439.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1405

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138441.

    Published: 2 Oct 2018
    3.7
    Low

    CVE-2018-1509

    Last Modified: 21 Nov 2024

    IBM Security Guardium EcoSystem 10.5 does not validate, or incorrectly validates, a certificate.This weakness might allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack. The software might connect to a malicious host while believing it is a trusted host, or the software might be deceived into accepting spoofed data that appears to originate from a trusted host. IBM X-Force ID: 141417.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1522

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 141803.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1557

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142955.

    Published: 2 Oct 2018
    3.7
    Low

    CVE-2018-1593

    Last Modified: 21 Nov 2024

    IBM Multi-Cloud Data Encryption (MDE) 2.1 could allow an unauthorized user to manipulate data due to missing file checksums. IBM X-Force ID: 143568.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2017-1649

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 133259.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1440

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 139595.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1605

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 143795.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1395

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138427.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1404

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138440.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1439

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 139589.

    Published: 2 Oct 2018
    6.2
    Medium

    CVE-2018-1498

    Last Modified: 21 Nov 2024

    IBM Security Guardium EcoSystem 10.5 stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 141223.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1558

    Last Modified: 21 Nov 2024

    IBM Rational Collaborative Lifecycle Management 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142956.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1601

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 143791.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1692

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 145583.

    Published: 2 Oct 2018
    5.4
    Medium

    CVE-2018-1691

    Last Modified: 21 Nov 2024

    IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 145582.

    Published: 2 Oct 2018
    Unknown

    CVE-2018-11043

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 2 Oct 2018
    5.9
    Medium

    CVE-2018-9069

    Last Modified: 21 Nov 2024

    In some Lenovo IdeaPad consumer notebook models, a race condition in the BIOS flash device locking mechanism is not adequately protected against, potentially allowing an attacker with administrator access to alter the contents of BIOS.

    Published: 2 Oct 2018
    7.8
    High

    CVE-2018-11072

    Last Modified: 21 Nov 2024

    Dell Digital Delivery versions prior to 3.5.1 contain a DLL Injection Vulnerability. A local authenticated malicious user with advance knowledge of the application workflow could potentially load and execute a malicious DLL with administrator privileges.

    Published: 2 Oct 2018
    7.5
    High

    CVE-2018-17540

    Last Modified: 21 Nov 2024

    The gmp plugin in strongSwan before 5.7.1 has a Buffer Overflow via a crafted certificate.

    Published: 2 Oct 2018
    8.1
    High

    CVE-2018-12386

    Last Modified: 25 Nov 2025

    A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

    Published: 2 Oct 2018
    9.1
    Critical

    CVE-2018-12387

    Last Modified: 25 Nov 2025

    A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

    Published: 2 Oct 2018
    4.8
    Medium

    CVE-2018-17868

    Last Modified: 21 Nov 2024

    DASAN H660GW devices have Stored XSS in the Port Forwarding functionality.

    Published: 1 Oct 2018
    8.8
    High

    CVE-2018-17869

    Last Modified: 21 Nov 2024

    DASAN H660GW devices do not implement any CSRF protection mechanism.

    Published: 1 Oct 2018
    6.1
    Medium

    CVE-2018-17870

    Last Modified: 21 Nov 2024

    An issue was discovered in BTITeam XBTIT 2.5.4. The "returnto" parameter of account_change.php is vulnerable to an open redirect, a different vulnerability than CVE-2018-15683.

    Published: 1 Oct 2018
    7.5
    High

    CVE-2015-9269

    Last Modified: 21 Nov 2024

    The export/content.php exportarticle feature in the wordpress-mobile-pack plugin before 2.1.3 2015-06-03 for WordPress allows remote attackers to obtain sensitive information because the content of a privately published post is sent in JSON format.

    Published: 1 Oct 2018
    6.1
    Medium

    CVE-2015-9270

    Last Modified: 21 Nov 2024

    XSS exists in the the-holiday-calendar plugin before 1.11.3 for WordPress via the thc-month parameter.

    Published: 1 Oct 2018
    6.1
    Medium

    CVE-2018-17874

    Last Modified: 21 Nov 2024

    ExpressionEngine before 4.3.5 has reflected XSS.

    Published: 1 Oct 2018
    7.2
    High

    CVE-2018-17867

    Last Modified: 21 Nov 2024

    The Port Forwarding functionality on DASAN H660GW devices allows remote attackers to execute arbitrary code via shell metacharacters in the cgi-bin/adv_nat_virsvr.asp Addr parameter (aka the Local IP Address field).

    Published: 1 Oct 2018
    6.5
    Medium

    CVE-2018-15700

    Last Modified: 21 Nov 2024

    The web interface in TP-Link TL-WRN841N 0.9.1 4.16 v0348.0 is vulnerable to a denial of service when an unauthenticated LAN user sends a crafted HTTP header containing an unexpected Referer field.

    Published: 1 Oct 2018
    7.5
    High

    CVE-2018-3975

    Last Modified: 21 Nov 2024

    An exploitable uninitialized variable vulnerability exists in the RTF-parsing functionality of Atlantis Word Processor 3.2.6 version. A specially crafted RTF file can leverage an uninitialized stack address, resulting in an out-of-bounds write, which in turn could lead to code execution.

    Published: 1 Oct 2018
    8.8
    High

    CVE-2018-3978

    Last Modified: 21 Nov 2024

    An exploitable out-of-bounds write vulnerability exists in the Word Document parser of the Atlantis Word Processor 3.0.2.3, 3.0.2.5. A specially crafted document can cause Atlantis to write a value outside the bounds of a heap allocation, resulting in a buffer overflow. An attacker must convince a victim to open a document in order to trigger this vulnerability.

    Published: 1 Oct 2018
    7.8
    High

    CVE-2018-3981

    Last Modified: 21 Nov 2024

    An exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. An attacker can deliver a TIFF image to trigger this vulnerability and gain code execution.

    Published: 1 Oct 2018
    7.8
    High

    CVE-2018-3998

    Last Modified: 21 Nov 2024

    An exploitable heap-based buffer overflow vulnerability exists in the Windows enhanced metafile parser of Atlantis Word Processor, version 3.2.5.0. A specially crafted image embedded within a document can cause an undersized allocation, resulting in an overflow when the application tries to copy data into it. An attacker must convince a victim to open a document in order to trigger this vulnerability.

    Published: 1 Oct 2018
    7.8
    High

    CVE-2018-3984

    Last Modified: 21 Nov 2024

    An exploitable uninitialized length vulnerability exists within the Word document-parser of the Atlantis Word Processor 3.0.2.3 and 3.0.2.5. A specially crafted document can cause Atlantis to skip initializing a value representing the number of columns of a table. Later, the application will use this as a length within a loop that will write to a pointer on the heap. Due to this value being controlled, a buffer overflow will occur, which can lead to code execution under the context of the application. An attacker must convince a victim to open a document in order to trigger this vulnerability.

    Published: 1 Oct 2018
    7.8
    High

    CVE-2018-4000

    Last Modified: 21 Nov 2024

    An exploitable double-free vulnerability exists in the Office Open XML parser of Atlantis Word Processor, version 3.2.5.0. A specially crafted document can cause a TTableRow instance to be referenced twice, resulting in a double-free vulnerability when both the references go out of scope. An attacker must convince a victim to open a document in order to trigger this vulnerability.

    Published: 1 Oct 2018
    6.5
    Medium

    CVE-2018-15701

    Last Modified: 21 Nov 2024

    The web interface in TP-Link TL-WRN841N 0.9.1 4.16 v0348.0 is vulnerable to a denial of service when an unauthenticated LAN user sends a crafted HTTP header containing an unexpected Cookie field.

    Published: 1 Oct 2018