CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-17316

    Last Modified: 21 Nov 2024

    On the RICOH MP C6003 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-17568

    Last Modified: 21 Nov 2024

    utils/ut_rpc.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-17569

    Last Modified: 21 Nov 2024

    network/nw_buf.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.

    Published: 26 Sept 2018
    6.1
    Medium

    CVE-2018-17313

    Last Modified: 21 Nov 2024

    On the RICOH MP C307 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.

    Published: 26 Sept 2018
    7.8
    High

    CVE-2018-14327

    Last Modified: 21 Nov 2024

    The installer for the Alcatel OSPREY3_MINI Modem component on EE EE40VB 4G mobile broadband modems with firmware before EE40_00_02.00_45 sets weak permissions (Everyone:Full Control) for the "Web Connecton\EE40" and "Web Connecton\EE40\BackgroundService" directories, which allows local users to gain privileges, as demonstrated by inserting a Trojan horse ServiceManager.exe file into the "Web Connecton\EE40\BackgroundService" directory.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-17411

    Last Modified: 21 Nov 2024

    An XML External Entity (XXE) vulnerability exists in iWay Data Quality Suite Web Console 10.6.1.ga-2016-11-20.

    Published: 26 Sept 2018
    8.8
    High

    CVE-2018-16055

    Last Modified: 21 Nov 2024

    An authenticated command injection vulnerability exists in status_interfaces.php via dhcp_relinquish_lease() in pfSense before 2.4.4 due to its passing user input from the $_POST parameters "ifdescr" and "ipv" to a shell without escaping the contents of the variables. This allows an authenticated WebGUI user with privileges for the affected page to execute commands in the context of the root user when submitting a request to relinquish a DHCP lease for an interface which is configured to obtain its address via DHCP.

    Published: 26 Sept 2018
    6.5
    Medium

    CVE-2018-16712

    Last Modified: 21 Nov 2024

    IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send a specially crafted IOCTL 0x9C406104 to read physical memory.

    Published: 26 Sept 2018
    6.5
    Medium

    CVE-2018-16713

    Last Modified: 21 Nov 2024

    IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send an IOCTL (0x9C402084) with a buffer containing user defined content. The driver's subroutine will execute a rdmsr instruction with the user's buffer for input, and provide output from the instruction.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-17570

    Last Modified: 21 Nov 2024

    utils/ut_ws_svr.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.

    Published: 26 Sept 2018
    3.1
    Low

    CVE-2018-16968

    Last Modified: 21 Nov 2024

    Citrix ShareFile StorageZones Controller before 5.4.2 allows Directory Traversal.

    Published: 26 Sept 2018
    4.3
    Medium

    CVE-2018-16969

    Last Modified: 21 Nov 2024

    Citrix ShareFile StorageZones Controller before 5.4.2 has Information Exposure Through an Error Message.

    Published: 26 Sept 2018
    4.3
    Medium

    CVE-2018-17081

    Last Modified: 21 Nov 2024

    e107 2.1.9 allows CSRF via e107_admin/wmessage.php?mode=&action=inline&ajax_used=1&id= for changing the title of an arbitrary page.

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-17365

    Last Modified: 21 Nov 2024

    SeaCMS 6.64 and 7.2 allows remote attackers to delete arbitrary files via the filedir parameter.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-17410

    Last Modified: 21 Nov 2024

    Horus CMS allows SQL Injection, as demonstrated by a request to the /busca or /home URI.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-17566

    Last Modified: 21 Nov 2024

    In ThinkPHP 5.1.24, the inner function delete can be used for SQL injection when its WHERE condition's value can be controlled by a user's request.

    Published: 26 Sept 2018
    6.5
    Medium

    CVE-2017-15608

    Last Modified: 21 Nov 2024

    Inedo ProGet before 5.0 Beta5 has CSRF, allowing an attacker to change advanced settings.

    Published: 26 Sept 2018
    8.1
    High

    CVE-2018-16364

    Last Modified: 21 Nov 2024

    A serialization vulnerability in Zoho ManageEngine Applications Manager before build 13740 allows for remote code execution on Windows via a payload on an SMB share.

    Published: 26 Sept 2018
    8.1
    High

    CVE-2018-17215

    Last Modified: 21 Nov 2024

    An information-disclosure issue was discovered in Postman through 6.3.0. It validates a server's X.509 certificate and presents an error if the certificate is not valid. Unfortunately, the associated HTTPS request data is sent anyway. Only the response is not displayed. Thus, all contained information of the HTTPS request is disclosed to a man-in-the-middle attacker (for example, user credentials).

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-14811

    Last Modified: 21 Nov 2024

    Fuji Electric V-Server 4.0.3.0 and prior, Multiple untrusted pointer dereference vulnerabilities have been identified, which may allow remote code execution.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-14809

    Last Modified: 21 Nov 2024

    Fuji Electric V-Server 4.0.3.0 and prior, A use after free vulnerability has been identified, which may allow remote code execution.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-14813

    Last Modified: 21 Nov 2024

    Fuji Electric V-Server 4.0.3.0 and prior, A heap-based buffer overflow vulnerability has been identified, which may allow remote code execution.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-14815

    Last Modified: 21 Nov 2024

    Fuji Electric V-Server 4.0.3.0 and prior, Several out-of-bounds write vulnerabilities have been identified, which may allow remote code execution.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-14817

    Last Modified: 21 Nov 2024

    Fuji Electric V-Server 4.0.3.0 and prior, An integer underflow vulnerability has been identified, which may allow remote code execution.

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-17555

    Last Modified: 21 Nov 2024

    The web component on ARRIS TG2492LG-NA 061213 devices allows remote attackers to obtain sensitive information via the /snmpGet oids parameter.

    Published: 26 Sept 2018
    5.4
    Medium

    CVE-2018-17556

    Last Modified: 21 Nov 2024

    MODX Revolution v2.6.5-pl allows stored XSS via a Create New Media Source action.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-14823

    Last Modified: 21 Nov 2024

    Fuji Electric V-Server 4.0.3.0 and prior, A stack-based buffer overflow vulnerability has been identified, which may allow remote code execution.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-14819

    Last Modified: 21 Nov 2024

    Fuji Electric V-Server 4.0.3.0 and prior, An out-of-bounds read vulnerability has been identified, which may allow remote code execution.

    Published: 26 Sept 2018
    8.8
    High

    CVE-2018-8842

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. The Philips e-Alert communication channel is not encrypted which could therefore lead to disclosure of personal contact information and application login credentials from within the same subnet.

    Published: 26 Sept 2018
    8.8
    High

    CVE-2018-8844

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The web application does not, or cannot, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request.

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-8848

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software, upon installation, sets incorrect permissions for an object that exposes it to an unintended actor.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-8850

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software does not validate input properly, allowing an attacker to craft the input in a form that is not expected by the rest of the application. This would lead to parts of the unit receiving unintended input, which may result in altered control flow, arbitrary control of a resource, or arbitrary code execution.

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-8854

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software does not properly restrict the size or amount of resources requested or influenced by an actor, which can be used to consume more resources than intended.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-8856

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software contains hard-coded cryptographic key, which it uses for encryption of internal data.

    Published: 26 Sept 2018
    8.8
    High

    CVE-2018-8852

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. When authenticating a user or otherwise establishing a new user session, the software gives an attacker the opportunity to steal authenticated sessions without invalidating any existing session identifier.

    Published: 26 Sept 2018
    5.3
    Medium

    CVE-2018-14803

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The Philips e-Alert contains a banner disclosure vulnerability that could allow attackers to obtain extraneous product information, such as OS and software components, via the HTTP response header that is normally not available to the attacker, but might be useful information in an attack.

    Published: 26 Sept 2018
    6.1
    Medium

    CVE-2018-8846

    Last Modified: 21 Nov 2024

    Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is then served to other users.

    Published: 26 Sept 2018
    8.8
    High

    CVE-2018-10602

    Last Modified: 21 Nov 2024

    WECON LeviStudio Versions 1.8.29 and 1.8.44 have multiple stack-based buffer overflow vulnerabilities that can be exploited when the application processes specially crafted project files.

    Published: 26 Sept 2018
    8.8
    High

    CVE-2018-10606

    Last Modified: 21 Nov 2024

    WECON LeviStudio Versions 1.8.29 and 1.8.44 have multiple heap-based buffer overflow vulnerabilities that can be exploited when the application processes specially crafted project files.

    Published: 26 Sept 2018
    6.1
    Medium

    CVE-2018-15606

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in SalesAgility SuiteCRM 7.x before 7.8.21 and 7.10.x before 7.10.8, related to phishing an error message.

    Published: 26 Sept 2018
    6.5
    Medium

    CVE-2018-16672

    Last Modified: 21 Nov 2024

    An issue was discovered in CIRCONTROL CirCarLife before 4.3. Due to the storage of multiple sensitive information elements in a JSON format at /services/system/setup.json, an authenticated but unprivileged user can exfiltrate critical setup information.

    Published: 26 Sept 2018
    6.1
    Medium

    CVE-2018-7355

    Last Modified: 21 Nov 2024

    All versions up to V1.0.0B05 of ZTE MF65 and all versions up to V1.0.0B02 of ZTE MF65M1 are impacted by cross-site scripting vulnerability. Due to improper neutralization of input during web page generation, an attacker could exploit this vulnerability to conduct reflected XSS or HTML injection attacks on the devices.

    Published: 26 Sept 2018
    5.4
    Medium

    CVE-2018-1610

    Last Modified: 21 Nov 2024

    IBM Rational DOORS Next Generation 5.0 through 5.0.2 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 143931.

    Published: 26 Sept 2018
    5.6
    Medium

    CVE-2018-1768

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect Plus 10.1.0 and 10.1.1 could disclose sensitive information when an authorized user executes a test operation, the user id an password may be displayed in plain text within an instrumentation log file. IBM X-Force ID: 148622.

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-1785

    Last Modified: 21 Nov 2024

    IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt sensitive information. IBM X-Force ID: 148870.

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-1545

    Last Modified: 21 Nov 2024

    IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 142649.

    Published: 26 Sept 2018
    6.2
    Medium

    CVE-2018-1550

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect 7.1 and 8.1 could allow a local user to corrupt or delete highly sensitive information that would cause a denial of service to other users. IBM X-Force ID: 142696.

    Published: 26 Sept 2018
    5.9
    Medium

    CVE-2018-1683

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server Liberty could allow a remote attacker to obtain sensitive information, caused by the failure to encrypt ORB communication. IBM X-Force ID: 145455.

    Published: 26 Sept 2018
    5.5
    Medium

    CVE-2018-7907

    Last Modified: 21 Nov 2024

    Some Huawei products Agassi-L09 AGS-L09C100B257CUSTC100D001, AGS-L09C170B253CUSTC170D001, AGS-L09C199B251CUSTC199D001, AGS-L09C229B003CUSTC229D001, Agassi-W09 AGS-W09C100B257CUSTC100D001, AGS-W09C128B252CUSTC128D001, AGS-W09C170B252CUSTC170D001, AGS-W09C229B251CUSTC229D001, AGS-W09C331B003CUSTC331D001, AGS-W09C794B001CUSTC794D001, Baggio2-U01A BG2-U01C100B160CUSTC100D001, BG2-U01C170B160CUSTC170D001, BG2-U01C199B162CUSTC199D001, BG2-U01C209B160CUSTC209D001, BG2-U01C333B160CUSTC333D001, Bond-AL00C Bond-AL00CC00B201, Bond-AL10B Bond-AL10BC00B201, Bond-TL10B Bond-TL10BC01B201, Bond-TL10C Bond-TL10CC01B131, Haydn-L1JB HDN-L1JC137B068, Kobe-L09A KOB-L09C100B252CUSTC100D001, KOB-L09C209B002CUSTC209D001, KOB-L09C362B001CUSTC362D001, Kobe-L09AHN KOB-L09C233B226, Kobe-W09C KOB-W09C128B251CUSTC128D001, LelandP-L22C 8.0.0.101(C675CUSTC675D2), LelandP-L22D 8.0.0.101(C675CUSTC675D2), Rhone-AL00 Rhone-AL00C00B186, Selina-L02 Selina-L02C432B153, Stanford-L09S Stanford-L09SC432B183, Toronto-AL00 Toronto-AL00C00B223, Toronto-AL00A Toronto-AL00AC00B223, Toronto-TL10 Toronto-TL10C01B223 have a sensitive information leak vulnerability. An attacker can trick a user to install a malicious application to exploit this vulnerability. Due to insufficient verification of the input, successful exploitation can cause sensitive information leak.

    Published: 26 Sept 2018
    9.8
    Critical

    CVE-2018-3972

    Last Modified: 21 Nov 2024

    An exploitable code execution vulnerability exists in the Levin deserialization functionality of the Epee library, as used in Monero 'Lithium Luna' (v0.12.2.0-master-ffab6700) and other cryptocurrencies. A specially crafted network packet can cause a logic flaw, resulting in code execution. An attacker can send a packet to trigger this vulnerability.

    Published: 26 Sept 2018