CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-16665

    Last Modified: 21 Nov 2024

    An issue was discovered in Contiki-NG through 4.1. There is a buffer overflow while parsing AQL in lvm_shift_for_operator in os/storage/antelope/lvm.c.

    Published: 7 Sept 2018
    7.8
    High

    CVE-2018-16666

    Last Modified: 21 Nov 2024

    An issue was discovered in Contiki-NG through 4.1. There is a stack-based buffer overflow in next_string in os/storage/antelope/aql-lexer.c while parsing AQL (parsing next string).

    Published: 7 Sept 2018
    7
    High

    CVE-2018-16667

    Last Modified: 21 Nov 2024

    An issue was discovered in Contiki-NG through 4.1. There is a buffer over-read in lookup in os/storage/antelope/lvm.c while parsing AQL (lvm_register_variable, lvm_set_variable_value, create_intersection, create_union).

    Published: 7 Sept 2018
    4.3
    Medium

    CVE-2018-16704

    Last Modified: 21 Nov 2024

    An issue was discovered in Gleez CMS v1.2.0. Because of an Insecure Direct Object Reference vulnerability, it is possible for attackers (logged in users) to view profile page of other users, as demonstrated by navigating to user/3 on demo.gleezcms.org.

    Published: 7 Sept 2018
    7.8
    High

    CVE-2018-16663

    Last Modified: 21 Nov 2024

    An issue was discovered in Contiki-NG through 4.1. There is a stack-based buffer overflow in parse_relations in os/storage/antelope/aql-parser.c while parsing AQL (storage of relations).

    Published: 7 Sept 2018
    5.3
    Medium

    CVE-2018-16703

    Last Modified: 21 Nov 2024

    A vulnerability in the Gleez CMS 1.2.0 login page could allow an unauthenticated, remote attacker to perform multiple user enumerations, which can further help an attacker to perform login attempts in excess of the configured login attempt limit. The vulnerability is due to insufficient server-side access control and login attempt limit enforcement. An attacker could exploit this vulnerability by sending modified login attempts to the Portal login page. An exploit could allow the attacker to identify existing users and perform brute-force password attacks on the Portal, as demonstrated by navigating to the user/4 URI.

    Published: 7 Sept 2018
    8.8
    High

    CVE-2016-9044

    Last Modified: 21 Nov 2024

    An exploitable command execution vulnerability exists in Information Builders WebFOCUS Business Intelligence Portal 8.1 . A specially crafted web parameter can cause a command injection. An authenticated attacker can send a crafted web request to trigger this vulnerability.

    Published: 7 Sept 2018
    8.3
    High

    CVE-2017-2792

    Last Modified: 21 Nov 2024

    An exploitable heap corruption vulnerability exists in the iBldDirInfo functionality of Antenna House DMC HTMLFilter used by MarkLogic 8.0-6. A specially crafted xls file can cause a heap corruption resulting in arbitrary code execution. An attacker can provide a malicious xls file to trigger this vulnerability.

    Published: 7 Sept 2018
    8.3
    High

    CVE-2017-2795

    Last Modified: 21 Nov 2024

    An exploitable heap corruption vulnerability exists in the Txo functionality of Antenna House DMC HTMLFilter as used by MarkLogic 8.0-6. A specially crafted xls file can cause a heap corruption resulting in arbitrary code execution. An attacker can send/provide malicious XLS file to trigger this vulnerability.

    Published: 7 Sept 2018
    8.4
    High

    CVE-2018-1789

    Last Modified: 21 Nov 2024

    IBM API Connect v2018.1.0 through v2018.3.4 could allow an attacker to send a specially crafted request to conduct a server side request forgery attack. IBM X-Force ID: 148939.

    Published: 7 Sept 2018
    5.3
    Medium

    CVE-2018-1757

    Last Modified: 21 Nov 2024

    IBM Security Identity Governance and Intelligence 5.2.3.2 and 5.2.4 could allow an attacker to obtain sensitive information due to missing authentication in IGI for the survey application. IBM X-Force ID: 148601.

    Published: 7 Sept 2018
    7.5
    High

    CVE-2018-1756

    Last Modified: 21 Nov 2024

    IBM Security Identity Governance and Intelligence 5.2.3.2 and 5.2.4 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, information in the back-end database. IBM X-Force ID: 148599.

    Published: 7 Sept 2018
    9.8
    Critical

    CVE-2018-1567

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow remote attackers to execute arbitrary Java code through the SOAP connector with a serialized object from untrusted sources. IBM X-Force ID: 143024.

    Published: 7 Sept 2018
    5.4
    Medium

    CVE-2017-1115

    Last Modified: 21 Nov 2024

    IBM Campaign 9.1, 9.1.2, and 10 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 121153.

    Published: 7 Sept 2018
    5.4
    Medium

    CVE-2017-1114

    Last Modified: 21 Nov 2024

    IBM Campaign 9.1, 9.1.2, and 10 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 121152.

    Published: 7 Sept 2018
    8.8
    High

    CVE-2018-3952

    Last Modified: 21 Nov 2024

    An exploitable code execution vulnerability exists in the connect functionality of NordVPN 6.14.28.0. A specially crafted configuration file can cause a privilege escalation, resulting in the execution of arbitrary commands with system privileges.

    Published: 7 Sept 2018
    7.8
    High

    CVE-2018-4010

    Last Modified: 21 Nov 2024

    An exploitable code execution vulnerability exists in the connect functionality of ProtonVPN VPN client 1.5.1. A specially crafted configuration file can cause a privilege escalation, resulting in the ability to execute arbitrary commands with the system's privileges.

    Published: 7 Sept 2018
    8.8
    High

    CVE-2018-0647

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in WL-330NUL Firmware version prior to 3.0.0.46 allows remote attackers to hijack the authentication of administrators via unspecified vectors.

    Published: 7 Sept 2018
    6.1
    Medium

    CVE-2018-0642

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in FV Flowplayer Video Player 6.1.2 to 6.6.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Sept 2018
    6.6
    Medium

    CVE-2018-0643

    Last Modified: 21 Nov 2024

    Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 4.8.0 (panda-server) 1:1.4.9+p41-u4jma1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via unspecified vectors.

    Published: 7 Sept 2018
    7.8
    High

    CVE-2018-0648

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in installer of ChatWork Desktop App for Windows 2.3.0 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Sept 2018
    7.4
    High

    CVE-2018-0650

    Last Modified: 21 Nov 2024

    The LINE MUSIC for Android version 3.1.0 to versions prior to 3.6.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 7 Sept 2018
    4.8
    Medium

    CVE-2018-0652

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in GROWI v.3.1.11 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via the UserGroup Management section of admin page.

    Published: 7 Sept 2018
    6.1
    Medium

    CVE-2018-0654

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in GROWI v.3.1.11 and earlier allows remote attackers to inject arbitrary web script or HTML via the modal for creating Wiki page.

    Published: 7 Sept 2018
    4.8
    Medium

    CVE-2018-0655

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in GROWI v.3.1.11 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via the app settings section of admin page.

    Published: 7 Sept 2018
    7.2
    High

    CVE-2018-0658

    Last Modified: 21 Nov 2024

    Input validation issue in EC-CUBE Payment Module (2.12) version 3.5.23 and earlier, EC-CUBE Payment Module (2.11) version 2.3.17 and earlier, GMO-PG Payment Module (PG Multi-Payment Service) (2.12) version 3.5.23 and earlier, GMO-PG Payment Module (PG Multi-Payment Service) (2.11) version 2.3.17 and earlier allows an attacker with administrative rights to execute arbitrary PHP code on the server via unspecified vectors.

    Published: 7 Sept 2018
    6.8
    Medium

    CVE-2018-0662

    Last Modified: 21 Nov 2024

    Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and earlier, TS-WRLP/E firmware Ver.1.09.04 and earlier) allow an attacker on the same network segment to add malicious files on the device and execute arbitrary code.

    Published: 7 Sept 2018
    8.8
    High

    CVE-2018-0663

    Last Modified: 21 Nov 2024

    Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and earlier, TS-WRLP/E firmware Ver.1.09.04 and earlier) use hardcoded credentials which may allow an remote authenticated attacker to execute arbitrary OS commands on the device via unspecified vector.

    Published: 7 Sept 2018
    9.8
    Critical

    CVE-2018-16657

    Last Modified: 21 Nov 2024

    In Kamailio before 5.0.7 and 5.1.x before 5.1.4, a crafted SIP message with an invalid Via header causes a segmentation fault and crashes Kamailio. The reason is missing input validation in the crcitt_string_array core function for calculating a CRC hash for To tags. (An additional error is present in the check_via_address core function: this function also misses input validation.) This could result in denial of service and potentially the execution of arbitrary code.

    Published: 7 Sept 2018
    6.5
    Medium

    CVE-2018-0644

    Last Modified: 21 Nov 2024

    Buffer overflow in Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 4.8.0 (panda-client2) 1:1.4.9+p41-u4jma1 and earlier, Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 5.0.0 (panda-client2) 1:2.0.0+p48-u4jma1 and earlier, and Ubuntu16.04 ORCA (Online Receipt Computer Advantage) 5.0.0 (panda-client2) 1:2.0.0+p48-u5jma1 and earlier allows authenticated attackers to cause denial-of-service (DoS) condition via unspecified vectors.

    Published: 7 Sept 2018
    9.8
    Critical

    CVE-2018-0645

    Last Modified: 21 Nov 2024

    MTAppjQuery 1.8.1 and earlier allows remote PHP code execution via unspecified vectors.

    Published: 7 Sept 2018
    7.8
    High

    CVE-2018-0649

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in the installers of multiple Canon IT Solutions Inc. software programs (ESET Smart Security Premium, ESET Internet Security, ESET Smart Security, ESET NOD32 Antivirus, DESlock+ Pro, and CompuSec (all programs except packaged ones)) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Sept 2018
    6.1
    Medium

    CVE-2018-0653

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in GROWI v.3.1.11 and earlier allows remote attackers to inject arbitrary web script or HTML via Wiki page view.

    Published: 7 Sept 2018
    5.5
    Medium

    CVE-2018-0659

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in ver.2.8.4.0 and earlier and ver.3.3.0.0 and earlier allows an attacker to create or overwrite existing files via specially crafted ATC file.

    Published: 7 Sept 2018
    8.8
    High

    CVE-2018-0661

    Last Modified: 21 Nov 2024

    Multiple I-O DATA network camera products (TS-WRLP firmware Ver.1.09.04 and earlier, TS-WRLA firmware Ver.1.09.04 and earlier, TS-WRLP/E firmware Ver.1.09.04 and earlier) allow an attacker on the same network segment to bypass access restriction to add files on a specific directory that may result in executing arbitrary OS commands/code or information including credentials leakage or alteration.

    Published: 7 Sept 2018
    7.8
    High

    CVE-2018-0623

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in Multiple Yayoi 17 Series products (Yayoi Kaikei 17 Series Ver.23.1.1 and earlier, Yayoi Aoiro Shinkoku 17 Ver.23.1.1 and earlier, Yayoi Kyuuyo 17 Ver.20.1.4 and earlier, Yayoi Kyuuyo Keisan 17 Ver.20.1.4 and earlier, Yayoi Hanbai 17 Series Ver. 20.0.2 and earlier, and Yayoi Kokyaku Kanri 17 Ver.11.0.2 and earlier) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. This flaw exists within the handling of msjet49.dll loaded by the vulnerable products.

    Published: 7 Sept 2018
    7.8
    High

    CVE-2018-0624

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in Multiple Yayoi 17 Series products (Yayoi Kaikei 17 Series Ver.23.1.1 and earlier, Yayoi Aoiro Shinkoku 17 Ver.23.1.1 and earlier, Yayoi Kyuuyo 17 Ver.20.1.4 and earlier, Yayoi Kyuuyo Keisan 17 Ver.20.1.4 and earlier, Yayoi Hanbai 17 Series Ver.20.0.2 and earlier, and Yayoi Kokyaku Kanri 17 Ver.11.0.2 and earlier) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. This flaw exists within the handling of ykkapi.dll loaded by the vulnerable products.

    Published: 7 Sept 2018
    4.8
    Medium

    CVE-2018-0657

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in EC-CUBE Payment Module and GMO-PG Payment Module (PG Multi-Payment Service) for EC-CUBE (EC-CUBE Payment Module (2.12) version 3.5.23 and earlier, EC-CUBE Payment Module (2.11) version 2.3.17 and earlier, GMO-PG Payment Module (PG Multi-Payment Service) (2.12) version 3.5.23 and earlier, and GMO-PG Payment Module (PG Multi-Payment Service) (2.11) version 2.3.17 and earlier) allow an attacker with administrator rights to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Sept 2018
    3.3
    Low

    CVE-2018-0660

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in ver.2.8.4.0 and earlier and ver.3.3.0.0 and earlier allows an attacker to create arbitrary files via specially crafted ATC file.

    Published: 7 Sept 2018
    5.5
    Medium

    CVE-2016-9040

    Last Modified: 21 Nov 2024

    An exploitable denial of service exists in the the Joyent SmartOS OS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFSADDENTRIES when used with a 32 bit model. An attacker can cause a buffer to be allocated and never freed. When repeatedly exploit this will result in memory exhaustion, resulting in a full system denial of service.

    Published: 7 Sept 2018
    8.8
    High

    CVE-2018-16650

    Last Modified: 21 Nov 2024

    phpMyFAQ before 2.9.11 allows CSRF.

    Published: 7 Sept 2018
    7.2
    High

    CVE-2018-16651

    Last Modified: 21 Nov 2024

    The admin backend in phpMyFAQ before 2.9.11 allows CSV injection in reports.

    Published: 7 Sept 2018
    6.1
    Medium

    CVE-2018-16653

    Last Modified: 21 Nov 2024

    rejucms 2.1 has XSS via the ucenter/cms_user_add.php u_name parameter.

    Published: 7 Sept 2018
    6.1
    Medium

    CVE-2018-16654

    Last Modified: 21 Nov 2024

    Zurmo 3.2.4 Stable allows XSS via app/index.php/accounts/default/details?id=2&kanbanBoard=1&openToTaskId=1.

    Published: 7 Sept 2018
    6.1
    Medium

    CVE-2018-16655

    Last Modified: 21 Nov 2024

    Gxlcms 1.0 has XSS via the PATH_INFO to gx/lib/ThinkPHP/Tpl/ThinkException.tpl.php.

    Published: 7 Sept 2018
    8.8
    High

    CVE-2018-1000805

    Last Modified: 21 Nov 2024

    Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.

    Published: 7 Sept 2018
    5.5
    Medium

    CVE-2018-15749

    Last Modified: 21 Nov 2024

    The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Format String Vulnerability.

    Published: 6 Sept 2018
    6.1
    Medium

    CVE-2018-14366

    Last Modified: 21 Nov 2024

    download.cgi in Pulse Secure Pulse Connect Secure 8.1RX before 8.1R13 and 8.3RX before 8.3R4 and Pulse Policy Secure through 5.2RX before 5.2R10 and 5.4RX before 5.4R4 have an Open Redirect Vulnerability.

    Published: 6 Sept 2018
    5.3
    Medium

    CVE-2018-15726

    Last Modified: 21 Nov 2024

    The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Privilege Escalation Vulnerability.

    Published: 6 Sept 2018
    7.8
    High

    CVE-2018-15865

    Last Modified: 21 Nov 2024

    The Pulse Secure Desktop (macOS) has a Privilege Escalation Vulnerability.

    Published: 6 Sept 2018