CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2018-16376

    Last Modified: 21 Nov 2024

    An issue was discovered in OpenJPEG 2.3.0. A heap-based buffer overflow was discovered in the function t2_encode_packet in lib/openmj2/t2.c. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly unspecified other impact.

    Published: 3 Sept 2018
    4.8
    Medium

    CVE-2018-16379

    Last Modified: 21 Nov 2024

    Ogma CMS 0.4 Beta has XSS via the "Footer Text footer" field on the "Theme/Theme Options" screen.

    Published: 3 Sept 2018
    9.8
    Critical

    CVE-2018-16352

    Last Modified: 21 Nov 2024

    There is a PHP code upload vulnerability in WeaselCMS 0.3.6 via index.php because code can be embedded at the end of a .png file when the image/png content type is used.

    Published: 2 Sept 2018
    5.4
    Medium

    CVE-2018-16358

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in inc/core/class.dc.core.php in the media manager in Dotclear through 2.14.1 allows remote authenticated users to upload HTML content containing an XSS payload with the file extension .ahtml.

    Published: 2 Sept 2018
    6.8
    Medium

    CVE-2018-16359

    Last Modified: 21 Nov 2024

    Google gVisor before 2018-08-23, within the seccomp sandbox, permits access to the renameat system call, which allows attackers to rename files on the host OS.

    Published: 2 Sept 2018
    6.1
    Medium

    CVE-2018-16362

    Last Modified: 21 Nov 2024

    An issue was discovered in the Source Integration plugin before 1.5.9 and 2.x before 2.1.5 for MantisBT. A cross-site scripting (XSS) vulnerability in the Manage Repository and Changesets List pages allows execution of arbitrary code (if CSP settings permit it) via repo_manage_page.php or list.php.

    Published: 2 Sept 2018
    8.8
    High

    CVE-2018-16365

    Last Modified: 21 Nov 2024

    An issue was discovered in idreamsoft iCMS V7.0.10. admincp.php?app=group&do=save allows CSRF.

    Published: 2 Sept 2018
    9.9
    Critical

    CVE-2018-16367

    Last Modified: 21 Nov 2024

    In OnlineJudge 2.0, the sandbox has an incorrect access control vulnerability that can write a file anywhere. A user can write a directory listing to /tmp, and can leak file data with a #include.

    Published: 2 Sept 2018
    9.8
    Critical

    CVE-2018-16354

    Last Modified: 21 Nov 2024

    An issue was discovered in FHCRM through 2018-02-11. There is a SQL injection via the index.php/User/read limit parameter.

    Published: 2 Sept 2018
    9.8
    Critical

    CVE-2018-16353

    Last Modified: 21 Nov 2024

    An issue was discovered in FHCRM through 2018-02-11. There is a SQL injection via the /index.php/Customer/read limit parameter.

    Published: 2 Sept 2018
    8.8
    High

    CVE-2018-16366

    Last Modified: 21 Nov 2024

    An issue was discovered in idreamsoft iCMS V7.0.10. admincp.php?app=user&do=save allows CSRF.

    Published: 2 Sept 2018
    8.8
    High

    CVE-2018-16338

    Last Modified: 21 Nov 2024

    An issue was discovered in AuraCMS 2.3. There is a CSRF vulnerability that can change the administrator's password via admin.php?mod=users and subsequently add a page or menu, or submit a topic.

    Published: 2 Sept 2018
    8.8
    High

    CVE-2018-16339

    Last Modified: 21 Nov 2024

    An issue was discovered in EmpireCMS 7.0. There is a CSRF vulnerability that can add administrators via upload/e/admin/user/AddUser.php?enews=AddUser.

    Published: 2 Sept 2018
    5.4
    Medium

    CVE-2018-16342

    Last Modified: 21 Nov 2024

    ShowDoc v1.8.0 has XSS via a new page.

    Published: 2 Sept 2018
    7.5
    High

    CVE-2018-16344

    Last Modified: 21 Nov 2024

    An issue was discovered in zzcms 8.3. It allows remote attackers to delete arbitrary files via directory traversal sequences in the flv parameter. This can be leveraged for database access by deleting install.lock.

    Published: 2 Sept 2018
    8.8
    High

    CVE-2018-16345

    Last Modified: 21 Nov 2024

    An issue was discovered in EasyCMS 1.5. There is a CSRF vulnerability that can update the admin password via index.php?s=/admin/rbacuser/update/navTabId/listusers/callbackType/closeCurrent.

    Published: 2 Sept 2018
    6.1
    Medium

    CVE-2018-16347

    Last Modified: 21 Nov 2024

    An issue was discovered in Gleez CMS v1.2.0. There is XSS via media/imagecache/resize.

    Published: 2 Sept 2018
    4.8
    Medium

    CVE-2018-16348

    Last Modified: 21 Nov 2024

    SeaCMS V6.61 has XSS via the admin_video.php v_content parameter, related to the site name.

    Published: 2 Sept 2018
    6.1
    Medium

    CVE-2018-16349

    Last Modified: 21 Nov 2024

    WUZHI CMS 4.1.0 has XSS via the index.php?m=link&f=index&v=add form[remark] parameter.

    Published: 2 Sept 2018
    7.2
    High

    CVE-2018-16343

    Last Modified: 21 Nov 2024

    SeaCMS 6.61 allows remote attackers to execute arbitrary code because parseIf() in include/main.class.php does not block use of $GLOBALS.

    Published: 2 Sept 2018
    4.8
    Medium

    CVE-2018-16346

    Last Modified: 21 Nov 2024

    ChemCMS 1.0.6 has XSS via the "setting -> website information" field.

    Published: 2 Sept 2018
    6.1
    Medium

    CVE-2018-16350

    Last Modified: 21 Nov 2024

    WUZHI CMS 4.1.0 has XSS via the index.php?m=core&f=set&v=basic form[statcode] parameter.

    Published: 2 Sept 2018
    6.5
    Medium

    CVE-2018-16337

    Last Modified: 21 Nov 2024

    An issue was discovered in Cscms V4.1.8. There is a CSRF vulnerability that can modify a website's basic configuration via upload/admin.php/setting/save.

    Published: 2 Sept 2018
    8.8
    High

    CVE-2018-16331

    Last Modified: 21 Nov 2024

    admin.php?s=/Admin/doedit in DamiCMS v6.0.0 allows CSRF to change the administrator account's password.

    Published: 2 Sept 2018
    8.8
    High

    CVE-2018-16332

    Last Modified: 21 Nov 2024

    An issue was discovered in iCMS 7.0.9. There is an admincp.php?app=article&do=update CSRF vulnerability.

    Published: 2 Sept 2018
    8.8
    High

    CVE-2018-16334

    Last Modified: 21 Nov 2024

    An issue was discovered on Tenda AC9 V15.03.05.19(6318)_CN and AC10 V15.03.06.23_CN devices. The mac parameter in a POST request is used directly in a doSystemCmd call, causing OS command injection.

    Published: 2 Sept 2018
    6.1
    Medium

    CVE-2018-16330

    Last Modified: 21 Nov 2024

    Pandao Editor.md 1.5.0 allows XSS via crafted attributes of an invalid IMG element.

    Published: 2 Sept 2018
    7.5
    High

    CVE-2018-16333

    Last Modified: 21 Nov 2024

    An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server. While processing the ssid parameter for a POST request, the value is directly used in a sprintf call to a local variable placed on the stack, which overrides the return address of the function, causing a buffer overflow.

    Published: 2 Sept 2018
    6.1
    Medium

    CVE-2018-16325

    Last Modified: 21 Nov 2024

    There is XSS in GetSimple CMS 3.4.0.9 via the admin/edit.php title field.

    Published: 1 Sept 2018
    4.8
    Medium

    CVE-2018-16327

    Last Modified: 21 Nov 2024

    There is Stored XSS in Subrion 4.2.1 via the admin panel URL configuration.

    Published: 1 Sept 2018
    8.6
    High

    CVE-2018-16308

    Last Modified: 21 Nov 2024

    The Ninja Forms plugin before 3.3.14.1 for WordPress allows CSV injection.

    Published: 1 Sept 2018
    8.8
    High

    CVE-2018-16314

    Last Modified: 21 Nov 2024

    An issue was discovered in admincp.php in idreamsoft iCMS 7.0.11. When verifying CSRF_TOKEN, if CSRF_TOKEN does not exist, only the Referer header is validated, which can be bypassed via an admincp.php substring in this header.

    Published: 1 Sept 2018
    6.5
    Medium

    CVE-2018-16315

    Last Modified: 21 Nov 2024

    In waimai Super Cms 20150505, there is a CSRF vulnerability that can change the configuration via admin.php?m=Config&a=add.

    Published: 1 Sept 2018
    5.4
    Medium

    CVE-2018-16316

    Last Modified: 21 Nov 2024

    A stored Cross-site scripting (XSS) vulnerability in Portainer through 1.19.1 allows remote authenticated users to inject arbitrary JavaScript and/or HTML via the Team Name field.

    Published: 1 Sept 2018
    7.2
    High

    CVE-2018-16320

    Last Modified: 21 Nov 2024

    idreamsoft iCMS 7.0.11 allows admincp.php?app=config Directory Traversal, resulting in execution of arbitrary PHP code from a ZIP file.

    Published: 1 Sept 2018
    6.1
    Medium

    CVE-2018-16324

    Last Modified: 21 Nov 2024

    In IceWarp Server 12.0.3.1 and before, there is XSS in the /webmail/ username field.

    Published: 1 Sept 2018
    6.1
    Medium

    CVE-2018-16313

    Last Modified: 21 Nov 2024

    Bludit 2.3.4 allows XSS via a user name.

    Published: 1 Sept 2018
    7.5
    High

    CVE-2018-16303

    Last Modified: 27 Nov 2024

    PDF-XChange Editor through 7.0.326.1 allows remote attackers to cause a denial of service (resource consumption) via a crafted x:xmpmeta structure, a related issue to CVE-2003-1564.

    Published: 1 Sept 2018
    7.8
    High

    CVE-2018-16302

    Last Modified: 21 Nov 2024

    MediaComm Zip-n-Go before 4.95 has a Buffer Overflow via a crafted file.

    Published: 1 Sept 2018
    6.5
    Medium

    CVE-2018-15157

    Last Modified: 21 Nov 2024

    The libfsclfs_block_read function in libfsclfs_block.c in libfsclfs before 2018-07-25 allows remote attackers to cause a heap-based buffer over-read via a crafted clfs file. NOTE: the vendor has disputed this as described in the GitHub issue comments

    Published: 1 Sept 2018
    6.5
    Medium

    CVE-2018-15158

    Last Modified: 21 Nov 2024

    The libesedb_page_read_values function in libesedb_page.c in libesedb through 2018-04-01 allows remote attackers to cause a heap-based buffer over-read via a crafted esedb file. NOTE: the vendor has disputed this as described in the GitHub issue comments

    Published: 1 Sept 2018
    6.5
    Medium

    CVE-2018-15159

    Last Modified: 21 Nov 2024

    The libesedb_page_read_tags function in libesedb_page.c in libesedb through 2018-04-01 allows remote attackers to cause a heap-based buffer over-read via a crafted esedb file. NOTE: the vendor has disputed this as described in the GitHub issue comments

    Published: 1 Sept 2018
    6.5
    Medium

    CVE-2018-15160

    Last Modified: 21 Nov 2024

    The libesedb_catalog_definition_read function in libesedb_catalog_definition.c in libesedb through 2018-04-01 allows remote attackers to cause a heap-based buffer over-read via a crafted esedb file. NOTE: the vendor has disputed this as described in the GitHub issue comments

    Published: 1 Sept 2018
    6.5
    Medium

    CVE-2018-15161

    Last Modified: 21 Nov 2024

    The libesedb_key_append_data function in libesedb_key.c in libesedb through 2018-04-01 allows remote attackers to cause a heap-based buffer over-read via a crafted esedb file. NOTE: the vendor has disputed this as described in the GitHub issue comments

    Published: 1 Sept 2018
    8.8
    High

    CVE-2018-15514

    Last Modified: 21 Nov 2024

    HandleRequestAsync in Docker for Windows before 18.06.0-ce-rc3-win68 (edge) and before 18.06.0-ce-win72 (stable) deserialized requests over the \\.\pipe\dockerBackend named pipe without verifying the validity of the deserialized .NET objects. This would allow a malicious user in the "docker-users" group (who may not otherwise have administrator access) to escalate to administrator privileges.

    Published: 1 Sept 2018
    6.5
    Medium

    CVE-2018-19107

    Last Modified: 21 Nov 2024

    In Exiv2 0.26, Exiv2::IptcParser::decode in iptc.cpp (called from psdimage.cpp in the PSD image reader) may suffer from a denial of service (heap-based buffer over-read) caused by an integer overflow via a crafted PSD image file.

    Published: 1 Sept 2018
    6.5
    Medium

    CVE-2018-19535

    Last Modified: 21 Nov 2024

    In Exiv2 0.26 and previous versions, PngChunk::readRawProfile in pngchunk_int.cpp may cause a denial of service (application crash due to a heap-based buffer over-read) via a crafted PNG file.

    Published: 1 Sept 2018
    6.1
    Medium

    CVE-2018-16298

    Last Modified: 21 Nov 2024

    An issue was discovered in MiniCMS 1.10. There is an mc-admin/post.php?tag= XSS vulnerability for a state=delete, state=draft, or state=publish request.

    Published: 31 Aug 2018
    2.5
    Low

    CVE-2018-6259

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience all versions prior to 3.14.1 contains a potential vulnerability when GameStream is enabled, an attacker has system access, and certain system features are enabled, where limited information disclosure may be possible.

    Published: 31 Aug 2018
    4.7
    Medium

    CVE-2018-6258

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience all versions prior to 3.14.1 contains a potential vulnerability during GameStream installation where an attacker who has system access can potentially conduct a Man-in-the-Middle (MitM) attack to obtain sensitive information.

    Published: 31 Aug 2018