CVE Feed

    Dashboard / CVE

    9.1
    Critical

    CVE-2018-12468

    Last Modified: 21 Nov 2024

    A vulnerability in the administration console of Micro Focus GroupWise prior to version 18.0.2 may allow a remote attacker authenticated as an administrator to upload files to an arbitrary path on the server. In certain circumstances this could result in remote code execution.

    Published: 1 Aug 2018
    9.4
    Critical

    CVE-2018-3881

    Last Modified: 21 Nov 2024

    An exploitable unauthenticated XML external injection vulnerability was identified in FocalScope v2416. A unauthenticated attacker could submit a specially crafted web request to FocalScope's server that could cause an XXE, and potentially result in data compromise.

    Published: 1 Aug 2018
    5.9
    Medium

    CVE-2018-0397

    Last Modified: 26 Nov 2024

    A vulnerability in Cisco AMP for Endpoints Mac Connector Software installed on Apple macOS 10.12 could allow an unauthenticated, remote attacker to cause a kernel panic on an affected system, resulting in a denial of service (DoS) condition. The vulnerability exists if the affected software is running in Block network conviction mode. Exploitation could occur if the system that is running the affected software starts a server process and an address in the IP blacklist cache of the affected software attempts to connect to the affected system. A successful exploit could allow the attacker to cause a kernel panic on the system that is running the affected software, resulting in a DoS condition. Cisco Bug IDs: CSCvk08192.

    Published: 1 Aug 2018
    6.5
    Medium

    CVE-2018-0391

    Last Modified: 26 Nov 2024

    A vulnerability in the password change function of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to cause the system to become inoperable. The vulnerability is due to insufficient validation of a password change request. An attacker could exploit this vulnerability by changing a specific administrator account password. A successful exploit could allow the attacker to cause the affected device to become inoperable, resulting in a denial of service (DoS) condition. This vulnerability affects Cisco Prime Collaboration Provisioning (PCP) Releases 12.2 and prior. Cisco Bug IDs: CSCvd86586.

    Published: 1 Aug 2018
    6.1
    Medium

    CVE-2018-0406

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to conduct a reflected or Document Object Model based (DOM-based) cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. Cisco Bug IDs: CSCve84006.

    Published: 1 Aug 2018
    5.4
    Medium

    CVE-2018-0407

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could allow an authenticated, remote attacker to conduct a persistent cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. Cisco Bug IDs: CSCvi87326.

    Published: 1 Aug 2018
    5.4
    Medium

    CVE-2018-0408

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could allow an authenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. Cisco Bug IDs: CSCvi87330.

    Published: 1 Aug 2018
    6.1
    Medium

    CVE-2018-0411

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of the affected software. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. Cisco Bug IDs: CSCvk15343.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-0413

    Last Modified: 26 Nov 2024

    A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on a targeted device via a web browser and with the privileges of the user. Cisco Bug IDs: CSCvi85159.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-3924

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.5096. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-3939

    Last Modified: 21 Nov 2024

    An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.1.0.5096. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. If the browser plugin extension is enabled, visiting a malicious site can also trigger the vulnerability.

    Published: 1 Aug 2018
    5.4
    Medium

    CVE-2018-14777

    Last Modified: 21 Nov 2024

    An issue was discovered in DataLife Engine (DLE) through 13.0. An attacker can use XSS (related to the /addnews.html and /index.php?do=addnews URIs) to send a malicious script to unsuspecting Admins or users.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-3847

    Last Modified: 21 Nov 2024

    Multiple exploitable buffer overflow vulnerabilities exist in image parsing functionality of the CFITSIO library version 3.42. Specially crafted images parsed via the library, can cause a stack-based buffer overflow overwriting arbitrary data. An attacker can deliver an FIT image to trigger this vulnerability and potentially gain code execution.

    Published: 1 Aug 2018
    9.8
    Critical

    CVE-2018-10618

    Last Modified: 21 Nov 2024

    Davolink DVW-3200N all version prior to Version 1.00.06. The device generates a weak password hash that is easily cracked, allowing a remote attacker to obtain the password for the device.

    Published: 1 Aug 2018
    9.1
    Critical

    CVE-2016-8640

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability in pycsw all versions before 2.0.2, 1.10.5 and 1.8.6 that leads to read and extract of any data from any table in the pycsw database that the database user has access to. Also on PostgreSQL (at least) it is possible to perform updates/inserts/deletes and database modifications to any table the database user has access to.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-1595

    Last Modified: 21 Nov 2024

    IBM Spectrum Symphony and Platform Symphony 7.1.2 and 7.2.0.2 could allow an authenticated user to execute arbitrary commands due to improper handling of user supplied input. IBM X-Force ID: 143622.

    Published: 1 Aug 2018
    4.4
    Medium

    CVE-2018-12466

    Last Modified: 21 Nov 2024

    openSUSE openbuildservice before 9.2.4 allowed authenticated users to delete packages on specific projects with project links.

    Published: 1 Aug 2018
    8
    High

    CVE-2018-3662

    Last Modified: 21 Nov 2024

    Escalation of privilege in Intel Saffron MemoryBase before version 11.4 potentially allows an authorized user of the Saffron application to execute arbitrary code as root.

    Published: 1 Aug 2018
    5.7
    Medium

    CVE-2018-3663

    Last Modified: 21 Nov 2024

    Escalation of privilege in Intel Saffron MemoryBase before 11.4 allows an authenticated user access to privileged information.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-3670

    Last Modified: 21 Nov 2024

    Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute arbitrary code as administrator via a buffer overflow.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-3672

    Last Modified: 21 Nov 2024

    Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute arbitrary code as administrator via a system calls.

    Published: 1 Aug 2018
    7.8
    High

    CVE-2018-3921

    Last Modified: 21 Nov 2024

    A memory corruption vulnerability exists in the PSD-parsing functionality of Computerinsel Photoline 20.54. A specially crafted PSD image processed via the application can lead to a stack overflow, overwriting arbitrary data. An attacker can deliver a PSD image to trigger this vulnerability and gain code execution.

    Published: 1 Aug 2018
    7.8
    High

    CVE-2018-3922

    Last Modified: 21 Nov 2024

    A memory corruption vulnerability exists in the ANI-parsing functionality of Computerinsel Photoline 20.54. A specially crafted ANI image processed via the application can lead to a stack overflow, overwriting arbitrary data. An attacker can deliver an ANI image to trigger this vulnerability and gain code execution.

    Published: 1 Aug 2018
    7.8
    High

    CVE-2018-3650

    Last Modified: 21 Nov 2024

    Insufficient Input Validation in Bleach module in INTEL Distribution for Python versions prior to IDP 2018 Update 2 allows unprivileged user to bypass URI sanitization via local vector.

    Published: 1 Aug 2018
    7.8
    High

    CVE-2018-3923

    Last Modified: 21 Nov 2024

    A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.54. A specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker can deliver a PCX image to trigger this vulnerability and gain code execution.

    Published: 1 Aug 2018
    5.5
    Medium

    CVE-2017-5692

    Last Modified: 21 Nov 2024

    Out-of-bounds read condition in older versions of some Intel Graphics Driver for Windows code branches allows local users to perform a denial of service attack.

    Published: 1 Aug 2018
    6
    Medium

    CVE-2018-12467

    Last Modified: 21 Nov 2024

    Authorized users of the openbuildservice before 2.9.4 could delete packages by using a malicious request against projects having the OBS:InitializeDevelPackage attribute, a similar issue to CVE-2018-7689.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-3666

    Last Modified: 21 Nov 2024

    Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute arbitrary code as administrator via a non-paged pool overflow.

    Published: 1 Aug 2018
    5.7
    Medium

    CVE-2018-3671

    Last Modified: 21 Nov 2024

    Escalation of privilege in Intel Saffron admin application before 11.4 allows an authenticated user to access unauthorized information.

    Published: 1 Aug 2018
    6.1
    Medium

    CVE-2018-14574

    Last Modified: 21 Nov 2024

    django.middleware.common.CommonMiddleware in Django 1.11.x before 1.11.15 and 2.0.x before 2.0.8 has an Open Redirect.

    Published: 1 Aug 2018
    7.4
    High

    CVE-2018-1999025

    Last Modified: 21 Nov 2024

    A man in the middle vulnerability exists in Jenkins TraceTronic ECU-TEST Plugin 2.3 and earlier in ATXPublisher.java, ATXValidator.java that allows attackers to impersonate any service that Jenkins connects to.

    Published: 1 Aug 2018
    7.5
    High

    CVE-2018-1999027

    Last Modified: 21 Nov 2024

    An exposure of sensitive information vulnerability exists in Jenkins SaltStack Plugin 3.1.6 and earlier in SaltAPIBuilder.java, SaltAPIStep.java that allows attackers to capture credentials with a known credentials ID stored in Jenkins.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-1999028

    Last Modified: 21 Nov 2024

    An exposure of sensitive information vulnerability exists in Jenkins Accurev Plugin 0.7.16 and earlier in AccurevSCM.java that allows attackers to capture credentials with a known credentials ID stored in Jenkins.

    Published: 1 Aug 2018
    6.5
    Medium

    CVE-2018-1999031

    Last Modified: 21 Nov 2024

    An exposure of sensitive information vulnerability exists in Jenkins meliora-testlab Plugin 1.14 and earlier in TestlabNotifier.java that allows attackers with file system access to the Jenkins master to obtain the API key stored in this plugin's configuration.

    Published: 1 Aug 2018
    6.5
    Medium

    CVE-2018-1999032

    Last Modified: 21 Nov 2024

    A data modification vulnerability exists in Jenkins Agiletestware Pangolin Connector for TestRail Plugin 2.1 and earlier in GlobalConfig.java that allows attackers with Overall/Read permission to override this plugin's configuration by sending crafted HTTP requests to an unprotected endpoint.

    Published: 1 Aug 2018
    6.5
    Medium

    CVE-2018-1999033

    Last Modified: 21 Nov 2024

    An exposure of sensitive information vulnerability exists in Jenkins Anchore Container Image Scanner Plugin 10.16 and earlier in AnchoreBuilder.java that allows attackers with Item/ExtendedRead permission or file system access to the Jenkins master to obtain the password stored in this plugin's configuration.

    Published: 1 Aug 2018
    7.4
    High

    CVE-2018-1999034

    Last Modified: 21 Nov 2024

    A man in the middle vulnerability exists in Jenkins Inedo ProGet Plugin 0.8 and earlier in ProGetApi.java, ProGetConfig.java, ProGetConfiguration.java that allows attackers to impersonate any service that Jenkins connects to.

    Published: 1 Aug 2018
    4.3
    Medium

    CVE-2018-1999037

    Last Modified: 21 Nov 2024

    A data modification vulnerability exists in Jenkins Resource Disposer Plugin 0.11 and earlier in AsyncResourceDisposer.java that allows attackers to stop tracking a resource.

    Published: 1 Aug 2018
    4.2
    Medium

    CVE-2018-1999038

    Last Modified: 21 Nov 2024

    A confused deputy vulnerability exists in Jenkins Publisher Over CIFS Plugin 0.10 and earlier in CifsPublisherPluginDescriptor.java that allows attackers to have Jenkins connect to an attacker specified CIFS server with attacker specified credentials.

    Published: 1 Aug 2018
    6.5
    Medium

    CVE-2018-1999026

    Last Modified: 21 Nov 2024

    A server-side request forgery vulnerability exists in Jenkins TraceTronic ECU-TEST Plugin 2.3 and earlier in ATXPublisher.java that allows attackers to have Jenkins send HTTP requests to an attacker-specified host.

    Published: 1 Aug 2018
    5.4
    Medium

    CVE-2018-1999029

    Last Modified: 21 Nov 2024

    A cross-site scripting vulnerability exists in Jenkins Shelve Project Plugin 1.5 and earlier in ShelveProjectAction/index.jelly, ShelvedProjectsAction/index.jelly that allows attackers with Job/Configure permission to define JavaScript that would be executed in another user's browser when that other user performs some UI actions.

    Published: 1 Aug 2018
    7.4
    High

    CVE-2018-1999035

    Last Modified: 21 Nov 2024

    A man in the middle vulnerability exists in Jenkins Inedo BuildMaster Plugin 1.3 and earlier in BuildMasterConfiguration.java, BuildMasterConfig.java, BuildMasterApi.java that allows attackers to impersonate any service that Jenkins connects to.

    Published: 1 Aug 2018
    5.5
    Medium

    CVE-2018-1999041

    Last Modified: 21 Nov 2024

    An exposure of sensitive information vulnerability exists in Jenkins Tinfoil Security Plugin 1.6.1 and earlier in TinfoilScanRecorder.java that allows attackers with file system access to the Jenkins master to obtain the API secret key stored in this plugin's configuration.

    Published: 1 Aug 2018
    5.4
    Medium

    CVE-2018-1999030

    Last Modified: 21 Nov 2024

    An exposure of sensitive information vulnerability exists in Jenkins Maven Artifact ChoiceListProvider (Nexus) Plugin 1.3.1 and earlier in ArtifactoryChoiceListProvider.java, NexusChoiceListProvider.java, Nexus3ChoiceListProvider.java that allows attackers to capture credentials with a known credentials ID stored in Jenkins.

    Published: 1 Aug 2018
    6.5
    Medium

    CVE-2018-1999036

    Last Modified: 21 Nov 2024

    An exposure of sensitive information vulnerability exists in Jenkins SSH Agent Plugin 1.15 and earlier in SSHAgentStepExecution.java that exposes the SSH private key password to users with permission to read the build log.

    Published: 1 Aug 2018
    4.3
    Medium

    CVE-2018-1999039

    Last Modified: 21 Nov 2024

    A server-side request forgery vulnerability exists in Jenkins Confluence Publisher Plugin 2.0.1 and earlier in ConfluenceSite.java that allows attackers to have Jenkins submit login requests to an attacker-specified Confluence server URL with attacker specified credentials.

    Published: 1 Aug 2018
    5.5
    Medium

    CVE-2018-14775

    Last Modified: 21 Nov 2024

    tss_alloc in sys/arch/i386/i386/gdt.c in OpenBSD 6.2 and 6.3 has a Local Denial of Service (system crash) due to incorrect I/O port access control on the i386 architecture.

    Published: 1 Aug 2018
    5.4
    Medium

    CVE-2018-14776

    Last Modified: 21 Nov 2024

    Click Studios Passwordstate before 8.3 Build 8397 allows XSS by authenticated users via an uploaded HTML document.

    Published: 1 Aug 2018
    8.8
    High

    CVE-2018-11050

    Last Modified: 21 Nov 2024

    Dell EMC NetWorker versions between 9.0 and 9.1.1.8 through 9.2.1.3, and the version 18.1.0.1 contain a Clear-Text authentication over network vulnerability in the Rabbit MQ Advanced Message Queuing Protocol (AMQP) component. User credentials are sent unencrypted to the remote AMQP service. An unauthenticated attacker in the same network collision domain, could potentially sniff the password from the network and use it to access the component using the privileges of the compromised user.

    Published: 1 Aug 2018
    9.8
    Critical

    CVE-2015-9262

    Last Modified: 21 Nov 2024

    _XcursorThemeInherits in library.c in libXcursor before 1.1.15 allows remote attackers to cause denial of service or potentially code execution via a one-byte heap overflow.

    Published: 1 Aug 2018