CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2018-16771

    Last Modified: 21 Nov 2024

    Hoosk v1.7.0 allows PHP code execution via a SiteUrl that is provided during installation and mishandled in config.php.

    Published: 10 Sept 2018
    4.8
    Medium

    CVE-2018-16772

    Last Modified: 21 Nov 2024

    Hoosk v1.7.0 allows XSS via the Navigation Title of a new page entered at admin/pages/new.

    Published: 10 Sept 2018
    4.8
    Medium

    CVE-2018-16773

    Last Modified: 21 Nov 2024

    EasyCMS 1.5 allows XSS via the index.php?s=/admin/fields/update/navTabId/listfields/callbackType/closeCurrent content field.

    Published: 10 Sept 2018
    7.5
    High

    CVE-2018-16774

    Last Modified: 21 Nov 2024

    HongCMS 3.0.0 allows arbitrary file deletion via a ../ in the file parameter to admin/index.php/language/ajax?action=delete.

    Published: 10 Sept 2018
    4.8
    Medium

    CVE-2018-16775

    Last Modified: 21 Nov 2024

    An issue was discovered in Victor CMS through 2018-05-10. There is XSS via the site name in the "Categories" menu.

    Published: 10 Sept 2018
    6.1
    Medium

    CVE-2018-16779

    Last Modified: 21 Nov 2024

    BlogCMS through 2016-10-25 has XSS via a comment.

    Published: 10 Sept 2018
    5.4
    Medium

    CVE-2018-16780

    Last Modified: 21 Nov 2024

    Complete Responsive CMS Blog through 2018-05-20 has XSS via a comment.

    Published: 10 Sept 2018
    6.5
    Medium

    CVE-2018-16781

    Last Modified: 21 Nov 2024

    ffjpeg.dll in ffjpeg before 2018-08-22 allows remote attackers to cause a denial of service (FPE signal) via a progressive JPEG file that lacks an AC Huffman table.

    Published: 10 Sept 2018
    8.8
    High

    CVE-2018-16782

    Last Modified: 21 Nov 2024

    libimageworsener.a in ImageWorsener 1.3.2 has a buffer overflow in the bmpr_read_rle_internal function in imagew-bmp.c.

    Published: 10 Sept 2018
    8.8
    High

    CVE-2018-16770

    Last Modified: 21 Nov 2024

    In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because a certain new_allocator allocate call fails.

    Published: 10 Sept 2018
    8.8
    High

    CVE-2018-16769

    Last Modified: 21 Nov 2024

    In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because libRuntime.so!llvm::InstructionCombiningPass::runOnFunction is mishandled.

    Published: 10 Sept 2018
    8.8
    High

    CVE-2018-16766

    Last Modified: 21 Nov 2024

    In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because Errors::unreachable() is reached.

    Published: 10 Sept 2018
    8.8
    High

    CVE-2018-16767

    Last Modified: 21 Nov 2024

    In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because of an unspecified "heap-buffer-overflow" condition in FunctionValidationContext::popAndValidateOperand.

    Published: 10 Sept 2018
    4.8
    Medium

    CVE-2018-16776

    Last Modified: 21 Nov 2024

    wityCMS 0.6.2 has XSS via the "Site Name" field found in the "Contact" "Configuration" page.

    Published: 10 Sept 2018
    7.4
    High

    CVE-2018-11775

    Last Modified: 21 Nov 2024

    TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vulnerable to a MITM attack between a Java application using the ActiveMQ client and the ActiveMQ server. This is now enabled by default.

    Published: 10 Sept 2018
    5.5
    Medium

    CVE-2018-12193

    Last Modified: 21 Nov 2024

    Insufficient access control in driver stack for Intel QuickAssist Technology for Linux before version 4.2 may allow an unprivileged user to potentially disclose information via local access.

    Published: 10 Sept 2018
    6.1
    Medium

    CVE-2018-16761

    Last Modified: 21 Nov 2024

    Eventum before 3.4.0 has an open redirect vulnerability.

    Published: 9 Sept 2018
    9.8
    Critical

    CVE-2018-16762

    Last Modified: 21 Nov 2024

    FUEL CMS 1.4.1 allows SQL Injection via the layout, published, or search_term parameter to pages/items.

    Published: 9 Sept 2018
    9.8
    Critical

    CVE-2018-16763

    Last Modified: 21 Nov 2024

    FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This can lead to Pre-Auth Remote Code Execution.

    Published: 9 Sept 2018
    6.1
    Medium

    CVE-2018-16759

    Last Modified: 21 Nov 2024

    The removeXSS function in App/Common/common.php (called from App/Modules/Index/Action/SearchAction.class.php) in EasyCMS v1.4 allows XSS via an onhashchange event.

    Published: 9 Sept 2018
    6.5
    Medium

    CVE-2018-16749

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.7-29 and earlier, a missing NULL check in ReadOneJNGImage in coders/png.c allows an attacker to cause a denial of service (WriteBlob assertion failure and application exit) via a crafted file.

    Published: 9 Sept 2018
    6.5
    Medium

    CVE-2018-16750

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.7-29 and earlier, a memory leak in the formatIPTCfromBuffer function in coders/meta.c was found.

    Published: 9 Sept 2018
    5.4
    Medium

    CVE-2018-16736

    Last Modified: 21 Nov 2024

    In the rcfilters plugin 2.1.6 for Roundcube, XSS exists via the _whatfilter and _messages parameters (in the Filters section of the settings).

    Published: 9 Sept 2018
    6.1
    Medium

    CVE-2018-19787

    Last Modified: 18 Dec 2025

    An issue was discovered in lxml before 4.2.5. lxml/html/clean.py in the lxml.html.clean module does not remove javascript: URLs that use escaping, allowing a remote attacker to conduct XSS attacks, as demonstrated by "j a v a s c r i p t:" in Internet Explorer. This is a similar issue to CVE-2014-3146.

    Published: 9 Sept 2018
    9.8
    Critical

    CVE-2018-16724

    Last Modified: 21 Nov 2024

    An issue is discovered in baijiacms V4. Blind SQL Injection exists via the order parameter in an index.php?act=index request.

    Published: 8 Sept 2018
    6.1
    Medium

    CVE-2018-16725

    Last Modified: 21 Nov 2024

    An issue is discovered in baijiacms V4. XSS exists via the assets/weengine/components/zclip/ZeroClipboard.swf id parameter, aka "Non-standard use of the flash component."

    Published: 8 Sept 2018
    6.1
    Medium

    CVE-2018-16730

    Last Modified: 21 Nov 2024

    \upload\plugins\sys\Install.php in CScms 4.1 has XSS via the site name.

    Published: 8 Sept 2018
    8.8
    High

    CVE-2018-16732

    Last Modified: 21 Nov 2024

    \upload\plugins\sys\admin\Setting.php in CScms 4.1 allows CSRF via admin.php/setting/ftp_save.

    Published: 8 Sept 2018
    7.5
    High

    CVE-2018-16733

    Last Modified: 21 Nov 2024

    In Go Ethereum (aka geth) before 1.8.14, TraceChain in eth/api_tracer.go does not verify that the end block is after the start block.

    Published: 8 Sept 2018
    9.8
    Critical

    CVE-2018-16731

    Last Modified: 21 Nov 2024

    CScms 4.1 allows arbitrary file upload by (for example) adding the php extension to the default filetype list (gif, jpg, png), and then providing a .php pathname within fileurl JSON data.

    Published: 8 Sept 2018
    8.8
    High

    CVE-2018-16715

    Last Modified: 21 Nov 2024

    An issue was discovered in Absolute Software CTES Windows Agent through 1.0.0.1479. The security permissions on the %ProgramData%\CTES folder and sub-folders may allow write access to low-privileged user accounts. This allows unauthorized replacement of service program executable (EXE) or dynamically loadable library (DLL) files, causing elevated (SYSTEM) user access. Configuration control files or data files under this folder could also be similarly modified to affect service process behavior.

    Published: 8 Sept 2018
    7.8
    High

    CVE-2018-12897

    Last Modified: 21 Nov 2024

    SolarWinds DameWare Mini Remote Control before 12.1 has a Buffer Overflow.

    Published: 7 Sept 2018
    6.1
    Medium

    CVE-2018-14398

    Last Modified: 21 Nov 2024

    An issue was discovered in Creme CRM 1.6.12. The value of the cancel button uses the content of the HTTP Referer header, and could be used to trick a user into visiting a fake login page in order to steal credentials.

    Published: 7 Sept 2018
    9.6
    Critical

    CVE-2018-15474

    Last Modified: 21 Nov 2024

    CSV Injection (aka Excel Macro Injection or Formula Injection) in /lib/plugins/usermanager/admin.php in DokuWiki 2018-04-22a and earlier allows remote attackers to exfiltrate sensitive data and to execute arbitrary code via a value that is mishandled in a CSV export. NOTE: the vendor has stated "this is not a security problem in DokuWiki.

    Published: 7 Sept 2018
    5.3
    Medium

    CVE-2018-16059

    Last Modified: 21 Nov 2024

    Endress+Hauser WirelessHART Fieldgate SWG70 3.x devices allow Directory Traversal via the fcgi-bin/wgsetcgi filename parameter.

    Published: 7 Sept 2018
    7.5
    High

    CVE-2018-16454

    Last Modified: 21 Nov 2024

    PHP Scripts Mall Currency Converter Script 2.0.5 allows remote attackers to cause a denial of service (web-interface change) via an inverted comma.

    Published: 7 Sept 2018
    9.8
    Critical

    CVE-2018-15484

    Last Modified: 21 Nov 2024

    An issue was discovered on KONE Group Controller (KGC) devices before 4.6.5. Unauthenticated Remote Code Execution is possible through the open HTTP interface by modifying autoexec.bat, aka KONE-01.

    Published: 7 Sept 2018
    9.1
    Critical

    CVE-2018-15485

    Last Modified: 21 Nov 2024

    An issue was discovered on KONE Group Controller (KGC) devices before 4.6.5. FTP does not require authentication or authorization, aka KONE-03.

    Published: 7 Sept 2018
    7.5
    High

    CVE-2018-15552

    Last Modified: 21 Nov 2024

    The "PayWinner" function of a simplelottery smart contract implementation for The Ethereum Lottery, an Ethereum gambling game, generates a random value with publicly readable variable "maxTickets" (which is private, yet predictable and readable by the eth.getStorageAt function). Therefore, it allows attackers to always win and get rewards.

    Published: 7 Sept 2018
    5.4
    Medium

    CVE-2018-16363

    Last Modified: 21 Nov 2024

    The mndpsingh287 File Manager plugin V2.9 for WordPress has XSS via the lang parameter in a wp-admin/admin.php?page=wp_file_manager request because set_transient is used in file_folder_manager.php and there is an echo of lang in lib\wpfilemanager.php.

    Published: 7 Sept 2018
    5.4
    Medium

    CVE-2018-9283

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in CremeCRM 1.6.12. It is affected by 10 stored Cross-Site Scripting (XSS) vulnerabilities in the firstname, lastname, billing_address-address, billing_address-zipcode, billing_address-city, billing_address-department, shipping_address-address, shipping_address-zipcode, shipping_address-city, and shipping_address-department parameters in the contact creation and modification page. The payload is stored within the application database and allows the execution of JavaScript code each time a client visit an infected page.

    Published: 7 Sept 2018
    8.1
    High

    CVE-2017-17691

    Last Modified: 21 Nov 2024

    Homeputer CL Studio fur HomeMatic 4.0 Rel 160808 and earlier uses cleartext to exchange the username and password between server and client instances, which allows remote attackers to obtain sensitive information via a man in the middle attack.

    Published: 7 Sept 2018
    5.4
    Medium

    CVE-2018-14396

    Last Modified: 21 Nov 2024

    An issue was discovered in Creme CRM 1.6.12. The salesman creation page is affected by 10 stored cross-site scripting vulnerabilities involving the firstname, lastname, billing_address-address, billing_address-zipcode, billing_address-city, billing_address-department, shipping_address-address, shipping_address-zipcode, shipping_address-city, and shipping_address-department parameters.

    Published: 7 Sept 2018
    5.4
    Medium

    CVE-2018-14397

    Last Modified: 21 Nov 2024

    An issue was discovered in Creme CRM 1.6.12. The organization creation page is affected by 9 stored cross-site scripting vulnerabilities involving the name, billing_address-address, billing_address-zipcode, billing_address-city, billing_address-department, shipping_address-address, shipping_address-zipcode, shipping_address-city, and shipping_address-department parameters.

    Published: 7 Sept 2018
    7.5
    High

    CVE-2018-15483

    Last Modified: 21 Nov 2024

    An issue was discovered on KONE Group Controller (KGC) devices before 4.6.5. Denial of Service can occur through the open HTTP interface, aka KONE-04.

    Published: 7 Sept 2018
    9.1
    Critical

    CVE-2018-15486

    Last Modified: 21 Nov 2024

    An issue was discovered on KONE Group Controller (KGC) devices before 4.6.5. Unauthenticated Local File Inclusion and File modification is possible through the open HTTP interface by modifying the name parameter of the file endpoint, aka KONE-02.

    Published: 7 Sept 2018
    9.8
    Critical

    CVE-2018-16709

    Last Modified: 21 Nov 2024

    Fuji Xerox DocuCentre-V 3065, ApeosPort-VI C3371, ApeosPort-V C4475, ApeosPort-V C3375, DocuCentre-VI C2271, ApeosPort-V C5576, DocuCentre-IV C2263, DocuCentre-V C2263, and ApeosPort-V 5070 devices allow remote attackers to read or write to files via crafted PJL commands.

    Published: 7 Sept 2018
    9.1
    Critical

    CVE-2018-16710

    Last Modified: 21 Nov 2024

    OctoPrint through 1.3.9 allows remote attackers to obtain sensitive information or cause a denial of service via HTTP requests on port 8081. NOTE: the vendor disputes the significance of this report because their documentation states that with "blind port forwarding ... Putting OctoPrint onto the public internet is a terrible idea, and I really can't emphasize that enough.

    Published: 7 Sept 2018
    9.8
    Critical

    CVE-2018-16460

    Last Modified: 21 Nov 2024

    A command Injection in ps package versions <1.0.0 for Node.js allowed arbitrary commands to be executed when attacker controls the PID.

    Published: 7 Sept 2018
    7
    High

    CVE-2018-16664

    Last Modified: 21 Nov 2024

    An issue was discovered in Contiki-NG through 4.1. There is a buffer overflow in lvm_set_type in os/storage/antelope/lvm.c while parsing AQL (lvm_set_op, lvm_set_relation, lvm_set_operand).

    Published: 7 Sept 2018