CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2018-17538

    Last Modified: 21 Nov 2024

    Axon (formerly TASER International) Evidence Sync 3.15.89 is vulnerable to process injection. NOTE: the vendor's position is that this CVE is not associated with information that supports any finding of any type of vulnerability

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-18385

    Last Modified: 21 Nov 2024

    Asciidoctor in versions < 1.5.8 allows remote attackers to cause a denial of service (infinite loop). The loop was caused by the fact that Parser.next_block was not exhausting all the lines in the reader as the while loop expected it would. This was happening because the regular expression that detects any list was not agreeing with the regular expression that detects a specific list type. So the line kept getting pushed back onto the reader, hence causing the loop.

    Published: 26 Sept 2018
    6.5
    Medium

    CVE-2018-10839

    Last Modified: 21 Nov 2024

    Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer overflow, which could lead to buffer overflow issue. It could occur when receiving packets over the network. A user inside guest could use this flaw to crash the Qemu process resulting in DoS.

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-17958

    Last Modified: 28 Apr 2026

    Qemu has a Buffer Overflow in rtl8139_do_receive in hw/net/rtl8139.c because an incorrect integer data type is used.

    Published: 26 Sept 2018
    5.5
    Medium

    CVE-2018-16856

    Last Modified: 21 Nov 2024

    In a default Red Hat Openstack Platform Director installation, openstack-octavia before versions openstack-octavia 2.0.2-5 and openstack-octavia-3.0.1-0.20181009115732 creates log files that are readable by all users. Sensitive information such as private keys can appear in these log files allowing for information exposure.

    Published: 26 Sept 2018
    7.5
    High

    CVE-2018-17962

    Last Modified: 21 Nov 2024

    Qemu has a Buffer Overflow in pcnet_receive in hw/net/pcnet.c because an incorrect integer data type is used.

    Published: 26 Sept 2018
    7.8
    High

    CVE-2018-14634

    Last Modified: 27 Jan 2026

    An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on the system. Kernel versions 2.6.x, 3.10.x and 4.14.x are believed to be vulnerable.

    Published: 25 Sept 2018
    7.1
    High

    CVE-2018-1669

    Last Modified: 21 Nov 2024

    IBM DataPower Gateway 7.1.0.0 - 7.1.0.23, 7.2.0.0 - 7.2.0.21, 7.5.0.0 - 7.5.0.16, 7.5.1.0 - 7.5.1.15, 7.5.2.0 - 7.5.2.15, and 7.6.0.0 - 7.6.0.8 as well as IBM DataPower Gateway CD 7.7.0.0 - 7.7.1.2 are vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 144950.

    Published: 25 Sept 2018
    6.2
    Medium

    CVE-2018-1664

    Last Modified: 21 Nov 2024

    IBM DataPower Gateway 7.1.0.0 - 7.1.0.23, 7.2.0.0 - 7.2.0.21, 7.5.0.0 - 7.5.0.16, 7.5.1.0 - 7.5.1.15, 7.5.2.0 - 7.5.2.15, and 7.6.0.0 - 7.6.0.8 as well as IBM DataPower Gateway CD 7.7.0.0 - 7.7.1.2 echoing of AMP management interface authorization headers exposes login credentials in browser cache. IBM X-Force ID: 144890.

    Published: 25 Sept 2018
    5.4
    Medium

    CVE-2018-1659

    Last Modified: 21 Nov 2024

    IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 144885.

    Published: 25 Sept 2018
    7.1
    High

    CVE-2018-1607

    Last Modified: 21 Nov 2024

    IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 143797.

    Published: 25 Sept 2018
    7.1
    High

    CVE-2018-1588

    Last Modified: 21 Nov 2024

    IBM Jazz Foundation (IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6) is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 143501.

    Published: 25 Sept 2018
    5.4
    Medium

    CVE-2018-1560

    Last Modified: 21 Nov 2024

    IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142958.

    Published: 25 Sept 2018
    5.4
    Medium

    CVE-2018-1539

    Last Modified: 21 Nov 2024

    IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 could allow remote attackers to bypass authentication via a direct request or forced browsing to a page other than URL intended. IBM X-Force ID: 142561.

    Published: 25 Sept 2018
    9.8
    Critical

    CVE-2018-15965

    Last Modified: 6 May 2025

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 25 Sept 2018
    7.5
    High

    CVE-2018-12775

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 25 Sept 2018
    7.5
    High

    CVE-2018-12778

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 25 Sept 2018
    7.5
    High

    CVE-2018-12801

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 25 Sept 2018
    7.5
    High

    CVE-2018-12840

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 25 Sept 2018
    7.5
    High

    CVE-2018-12850

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 25 Sept 2018
    9.8
    Critical

    CVE-2018-15959

    Last Modified: 6 May 2025

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 25 Sept 2018
    7.5
    High

    CVE-2018-15960

    Last Modified: 21 Nov 2024

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a use of a component with a known vulnerability vulnerability. Successful exploitation could lead to arbitrary file overwrite.

    Published: 25 Sept 2018
    5.3
    Medium

    CVE-2018-15962

    Last Modified: 6 May 2025

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a directory listing vulnerability. Successful exploitation could lead to information disclosure.

    Published: 25 Sept 2018
    7.5
    High

    CVE-2018-15964

    Last Modified: 6 May 2025

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a use of a component with a known vulnerability vulnerability. Successful exploitation could lead to information disclosure.

    Published: 25 Sept 2018
    9.8
    Critical

    CVE-2018-15961

    Last Modified: 23 Oct 2025

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have an unrestricted file upload vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 25 Sept 2018
    7.5
    High

    CVE-2018-12849

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 25 Sept 2018
    9.8
    Critical

    CVE-2018-15957

    Last Modified: 6 May 2025

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 25 Sept 2018
    9.8
    Critical

    CVE-2018-12848

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2018.011.20058 and earlier, 2017.011.30099 and earlier, and 2015.006.30448 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 25 Sept 2018
    9.8
    Critical

    CVE-2018-15958

    Last Modified: 6 May 2025

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 25 Sept 2018
    5.3
    Medium

    CVE-2018-15963

    Last Modified: 6 May 2025

    Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a security bypass vulnerability. Successful exploitation could lead to arbitrary folder creation.

    Published: 25 Sept 2018
    6.5
    Medium

    CVE-2018-1000411

    Last Modified: 21 Nov 2024

    A cross-site request forgery vulnerability exists in Jenkins JUnit Plugin 1.25 and earlier in TestObject.java that allows setting the description of a test result.

    Published: 25 Sept 2018
    8.8
    High

    CVE-2018-6055

    Last Modified: 21 Nov 2024

    Insufficient policy enforcement in Catalog Service in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially run arbitrary code outside sandbox via a crafted HTML page.

    Published: 25 Sept 2018
    6.5
    Medium

    CVE-2018-6119

    Last Modified: 21 Nov 2024

    Incorrect security UI in Omnibox in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

    Published: 25 Sept 2018
    6.5
    Medium

    CVE-2018-17581

    Last Modified: 21 Nov 2024

    CiffDirectory::readDirectory() at crwimage_int.cpp in Exiv2 0.26 has excessive stack consumption due to a recursive function, leading to Denial of service.

    Published: 25 Sept 2018
    5.5
    Medium

    CVE-2018-17828

    Last Modified: 10 Jul 2025

    Directory traversal vulnerability in ZZIPlib 0.13.69 allows attackers to overwrite arbitrary files via a .. (dot dot) in a zip file, because of the function unzzip_cat in the bins/unzzipcat-mem.c file.

    Published: 25 Sept 2018
    5.9
    Medium

    CVE-2018-11763

    Last Modified: 21 Nov 2024

    In Apache HTTP Server 2.4.17 to 2.4.34, by sending continuous, large SETTINGS frames a client can occupy a connection, server thread and CPU time without any connection timeout coming to effect. This affects only HTTP/2 connections. A possible mitigation is to not enable the h2 protocol.

    Published: 25 Sept 2018
    8.1
    High

    CVE-2018-20836

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 4.20. There is a race condition in smp_task_timedout() and smp_task_done() in drivers/scsi/libsas/sas_expander.c, leading to a use-after-free.

    Published: 25 Sept 2018
    8.8
    High

    CVE-2018-14318

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Samsung Galaxy S8 G950FXXU1AQL5. User interaction is required to exploit this vulnerability in that the target must have their cellular radios enabled. The specific flaw exists within the handling of IPCP headers. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length, stack-based buffer. An attacker can leverage this vulnerability to execute code under the context of the baseband processor. Was ZDI-CAN-5368.

    Published: 24 Sept 2018
    8.8
    High

    CVE-2018-10496

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Samsung Internet Browser Fixed in version 6.4.0.15. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of TypedArray objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code under the context of the current process. Was ZDI-CAN-5326.

    Published: 24 Sept 2018
    7.8
    High

    CVE-2018-10497

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Email Fixed in version 5.0.02.16. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of EML files. The issue results from the lack of proper validation of user-supplied data, which can allow arbitrary JavaScript to execute. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5328.

    Published: 24 Sept 2018
    7
    High

    CVE-2018-10501

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Notes Fixed in version 2.0.02.31. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of ZIP files. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5358.

    Published: 24 Sept 2018
    7.8
    High

    CVE-2018-10502

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Galaxy Apps Fixed in version 4.2.18.2. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of a staging mode. The issue lies in the ability to change the configuration based on the presence of a file in an user-controlled location. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5359.

    Published: 24 Sept 2018
    5.5
    Medium

    CVE-2018-10498

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to disclose sensitive information on vulnerable installations of Samsung Email Fixed in version 5.0.02.16. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of file:/// URIs. The issue lies in the lack of proper validation of user-supplied data, which can allow for reading arbitrary files. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges. Was ZDI-CAN-5329.

    Published: 24 Sept 2018
    8.8
    High

    CVE-2018-11614

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to escalate privileges on vulnerable installations of Samsung Members Fixed in version 2.4.25. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of Intents. The issue lies in the ability to send an Intent that would not otherwise be reachable. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5361.

    Published: 24 Sept 2018
    7
    High

    CVE-2018-10499

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of Samsung Galaxy Apps Fixed in version 6.4.0.15. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of URLs. The issue lies in the lack of proper validation of user-supplied data, which can allow arbitrary JavaScript to execute. An attacker can leverage this vulnerability to install applications under the context of the current user. Was ZDI-CAN-5330.

    Published: 24 Sept 2018
    7
    High

    CVE-2018-10500

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to escalate privileges on vulnerable installations of Samsung Galaxy Apps Fixed in version 6.4.0.15. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of push messages. The issue lies in the ability to start an activity with controlled arguments. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the application. Was ZDI-CAN-5331.

    Published: 24 Sept 2018
    8.1
    High

    CVE-2018-13140

    Last Modified: 21 Nov 2024

    Druide Antidote through 9.5.1 on Windows and Linux allows remote code execution through the update mechanism by leveraging use of HTTP to download installation packages.

    Published: 24 Sept 2018
    9.8
    Critical

    CVE-2018-16283

    Last Modified: 21 Nov 2024

    The Wechat Broadcast plugin 1.2.0 and earlier for WordPress allows Directory Traversal via the Image.php url parameter.

    Published: 24 Sept 2018
    7.5
    High

    CVE-2018-16299

    Last Modified: 21 Nov 2024

    The Localize My Post plugin 1.0 for WordPress allows Directory Traversal via the ajax/include.php file parameter.

    Published: 24 Sept 2018
    9.8
    Critical

    CVE-2018-17107

    Last Modified: 21 Nov 2024

    In Tgstation tgstation-server 3.2.4.0 through 3.2.1.0 (fixed in 3.2.5.0), active logins would be cached, allowing subsequent logins to succeed with any username or password.

    Published: 24 Sept 2018