CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2018-9853

    Last Modified: 21 Nov 2024

    Insecure access control in freeSSHd version 1.3.1 allows attackers to obtain the privileges of the freesshd.exe process by leveraging the ability to login to an unprivileged account on the server.

    Published: 10 Jul 2018
    8.1
    High

    CVE-2018-10887

    Last Modified: 21 Nov 2024

    A flaw was found in libgit2 before version 0.27.3. It has been discovered that an unexpected sign extension in git_delta_apply function in delta.c file may lead to an integer overflow which in turn leads to an out of bound read, allowing to read before the base object. An attacker may use this flaw to leak memory addresses or cause a Denial of Service.

    Published: 10 Jul 2018
    4.7
    Medium

    CVE-2018-13389

    Last Modified: 21 Nov 2024

    The attachment resource in Atlassian Confluence before version 6.6.1 allows remote attackers to spoof web content in the Mozilla Firefox Browser through attachments that have a content-type of application/rdf+xml.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-1337

    Last Modified: 21 Nov 2024

    In Apache Directory LDAP API before 1.0.2, a bug in the way the SSL Filter was setup made it possible for another thread to use the connection before the TLS layer has been established, if the connection has already been used and put back in a pool of connections, leading to leaking any information contained in this request (including the credentials when sending a BIND request).

    Published: 10 Jul 2018
    5.4
    Medium

    CVE-2018-13388

    Last Modified: 21 Nov 2024

    The review attachment resource in Atlassian Fisheye and Crucible before version 4.5.3 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in attached files.

    Published: 10 Jul 2018
    7.5
    High

    CVE-2018-12230

    Last Modified: 21 Nov 2024

    An wrong logical check identified in the transferFrom function of a smart contract implementation for RemiCoin (RMC), an Ethereum ERC20 token, allows the attacker to steal tokens or conduct resultant integer underflow attacks.

    Published: 10 Jul 2018
    7.5
    High

    CVE-2016-10726

    Last Modified: 21 Nov 2024

    The XMLUI feature in DSpace before 3.6, 4.x before 4.5, and 5.x before 5.5 allows directory traversal via the themes/ path in an attack with two or more arbitrary characters and a colon before a pathname, as demonstrated by a themes/Reference/aa:etc/passwd URI.

    Published: 10 Jul 2018
    6.5
    Medium

    CVE-2018-10872

    Last Modified: 21 Nov 2024

    A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or Pop SS instructions. During the stack switch operation, processor does not deliver interrupts and exceptions, they are delivered once the first instruction after the stack switch is executed. An unprivileged system user could use this flaw to crash the system kernel resulting in DoS. This CVE-2018-10872 was assigned due to regression of CVE-2018-8897 in Red Hat Enterprise Linux 6.10 GA kernel. No other versions are affected by this CVE.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13869

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a memcpy parameter overlap in the function H5O_link_decode in H5Olink.c.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13870

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_link_decode in H5Olink.c.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13873

    Last Modified: 18 Mar 2025

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a buffer over-read in H5O_chunk_deserialize in H5Ocache.c.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13874

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a stack-based buffer overflow in the function H5FD_sec2_read in H5FDsec2.c, related to HDmemset.

    Published: 10 Jul 2018
    7.8
    High

    CVE-2018-13875

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is an out-of-bounds read in the function H5VM_memcpyvv in H5VM.c.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13876

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a stack-based buffer overflow in the function H5FD_sec2_read in H5FDsec2.c, related to HDread.

    Published: 10 Jul 2018
    8.8
    High

    CVE-2018-14031

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5T_copy in H5T.c.

    Published: 10 Jul 2018
    8.8
    High

    CVE-2018-14034

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in the function H5O_pline_reset in H5Opline.c.

    Published: 10 Jul 2018
    8.8
    High

    CVE-2018-14035

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5VM_memcpyvv in H5VM.c.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13866

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a stack-based buffer over-read in the function H5F_addr_decode_len in H5Fint.c.

    Published: 10 Jul 2018
    5.3
    Medium

    CVE-2018-14032

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-11206. Reason: This candidate is a reservation duplicate of CVE-2018-11206. Notes: All CVE users should reference CVE-2018-11206 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 10 Jul 2018
    8.8
    High

    CVE-2018-5007

    Last Modified: 21 Nov 2024

    Adobe Flash Player 30.0.0.113 and earlier versions have a Type Confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

    Published: 10 Jul 2018
    7.5
    High

    CVE-2018-5008

    Last Modified: 21 Nov 2024

    Adobe Flash Player 30.0.0.113 and earlier versions have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 10 Jul 2018
    7.5
    High

    CVE-2017-15139

    Last Modified: 21 Nov 2024

    A vulnerability was found in openstack-cinder releases up to and including Queens, allowing newly created volumes in certain storage volume configurations to contain previous data. It specifically affects ScaleIO volumes using thin volumes and zero padding. This could lead to leakage of sensitive information between tenants.

    Published: 10 Jul 2018
    4.4
    Medium

    CVE-2018-1116

    Last Modified: 21 Nov 2024

    A flaw was found in polkit before version 0.116. The implementation of the polkit_backend_interactive_authority_check_authorization function in polkitd allows to test for authentication and trigger authentication of unrelated processes owned by other users. This may result in a local DoS and information disclosure.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13867

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in the function H5F__accum_read in H5Faccum.c.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13868

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_fill_old_decode in H5Ofill.c.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13871

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer overflow in the function H5FL_blk_malloc in H5FL.c.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13872

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer overflow in the function H5G_ent_decode in H5Gent.c.

    Published: 10 Jul 2018
    8.8
    High

    CVE-2018-14033

    Last Modified: 21 Nov 2024

    An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_layout_decode in H5Olayout.c, related to HDmemcpy.

    Published: 10 Jul 2018
    5.5
    Medium

    CVE-2018-8356

    Last Modified: 21 Nov 2024

    A security feature bypass vulnerability exists when Microsoft .NET Framework components do not correctly validate certificates, aka ".NET Framework Security Feature Bypass Vulnerability." This affects .NET Framework 4.7.2, Microsoft .NET Framework 3.0, Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2, ASP.NET Core 1.1, Microsoft .NET Framework 4.5.2, ASP.NET Core 2.0, ASP.NET Core 1.0, .NET Core 1.1, Microsoft .NET Framework 3.5, Microsoft .NET Framework 3.5.1, Microsoft .NET Framework 4.6/4.6.1/4.6.2, .NET Core 1.0, .NET Core 2.0, Microsoft .NET Framework 4.6, Microsoft .NET Framework 4.6/4.6.1/4.6.2/4.7/4.7.1/4.7.1/4.7.2, Microsoft .NET Framework 4.7.2.

    Published: 10 Jul 2018
    9.8
    Critical

    CVE-2018-13794

    Last Modified: 21 Nov 2024

    A heap-based buffer overflow exists in stbi__bmp_load_cont in stb_image.h in catimg 2.4.0.

    Published: 9 Jul 2018
    7.5
    High

    CVE-2018-13795

    Last Modified: 21 Nov 2024

    Gravity before 0.5.1 does not support a maximum recursion depth.

    Published: 9 Jul 2018
    9.8
    Critical

    CVE-2018-13791

    Last Modified: 21 Nov 2024

    The HTTP API in ABBYY FlexiCapture before 12 Release 1 Update 7 allows an attacker to conduct Access Control attacks via the /FlexiCapture12/Login/Server/SevaUserProfile FlexiCaptureTmsSts2 parameter.

    Published: 9 Jul 2018
    8.8
    High

    CVE-2018-13793

    Last Modified: 21 Nov 2024

    Multiple Cross Site Request Forgery (CSRF) vulnerabilities in the HTTP API in ABBYY FlexiCapture before 12 Release 1 Update 7 exist in Web Verification, Web Scanning, Web Capture, Monitoring and Administration, and Login.

    Published: 9 Jul 2018
    7.5
    High

    CVE-2018-1000615

    Last Modified: 21 Nov 2024

    ONOS ONOS Controller version 1.13.1 and earlier contains a Denial of Service (Service crash) vulnerability in OVSDB component in ONOS that can result in An adversary can remotely crash OVSDB service ONOS controller via a normal switch.. This attack appear to be exploitable via the attacker should be able to control or forge a switch in the network..

    Published: 9 Jul 2018
    8.1
    High

    CVE-2018-1000621

    Last Modified: 21 Nov 2024

    Mycroft AI mycroft-core version 18.2.8b and earlier contains a Incorrect Access Control vulnerability in Websocket configuration that can result in code execution. This impacts ONLY the Mycroft for Linux and "non-enclosure" installs - Mark 1 and Picroft unaffected. This attack appear to be exploitable remote access to the unsecured websocket server. This vulnerability appears to have been fixed in No fix currently available.

    Published: 9 Jul 2018
    8.1
    High

    CVE-2018-6965

    Last Modified: 21 Nov 2024

    VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator. Successful exploitation of this issue may lead to information disclosure or may allow attackers with normal user privileges to crash their VMs, a different vulnerability than CVE-2018-6966 and CVE-2018-6967.

    Published: 9 Jul 2018
    8.1
    High

    CVE-2018-6967

    Last Modified: 21 Nov 2024

    VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator. Successful exploitation of this issue may lead to information disclosure or may allow attackers with normal user privileges to crash their VMs, a different vulnerability than CVE-2018-6965 and CVE-2018-6966.

    Published: 9 Jul 2018
    6.1
    Medium

    CVE-2018-1000611

    Last Modified: 21 Nov 2024

    SURFnet OpenConext EngineBlock version 5.7.0 to 5.7.3 contains a Cross Site Scripting (XSS) vulnerability that can result in Allows an attacker to inject arbitrary web scripts or HTML into help and login pages. This attack appear to be exploitable via the victim opening a specially crafted URL.

    Published: 9 Jul 2018
    8.8
    High

    CVE-2018-1000619

    Last Modified: 21 Nov 2024

    Ovidentia version 8.4.3 and earlier contains a Unsanitized User Input vulnerability in utilit.php, bab_getAddonFilePathfromTg that can result in Authenticated Remote Code Execution. This attack appear to be exploitable via The attacker must have permission to upload addons.

    Published: 9 Jul 2018
    8.1
    High

    CVE-2018-6966

    Last Modified: 21 Nov 2024

    VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator. Successful exploitation of this issue may lead to information disclosure or may allow attackers with normal user privileges to crash their VMs, a different vulnerability than CVE-2018-6965 and CVE-2018-6967.

    Published: 9 Jul 2018
    9.8
    Critical

    CVE-2018-1000614

    Last Modified: 21 Nov 2024

    ONOS ONOS Controller version 1.13.1 and earlier contains a XML External Entity (XXE) vulnerability in providers/netconf/alarm/src/main/java/org/onosproject/provider/netconf/alarm/NetconfAlarmTranslator.java that can result in An adversary can remotely launch advanced XXE attacks on ONOS controller without authentication.. This attack appear to be exploitable via crafted protocol message.

    Published: 9 Jul 2018
    9.8
    Critical

    CVE-2018-1000616

    Last Modified: 21 Nov 2024

    ONOS ONOS controller version 1.13.1 and earlier contains a XML External Entity (XXE) vulnerability in onos\drivers\utilities\src\main\java\org\onosproject\drivers\utilities\XmlConfigParser.java loadxml() that can result in An adversary can remotely launch XXE attacks on ONOS controller via an OpenConfig Terminal Device.. This attack appear to be exploitable via network connectivity.

    Published: 9 Jul 2018
    7.5
    High

    CVE-2018-1000617

    Last Modified: 21 Nov 2024

    Atlassian Floodlight Atlassian Floodlight Controller version 1.2 and earlier versions contains a Denial of Service vulnerability in Forwarding module that can result in Improper type cast in Forwarding module allows remote attackers to cause a DoS(thread crash).. This attack appear to be exploitable via network connectivity (Remote attack).

    Published: 9 Jul 2018
    9.8
    Critical

    CVE-2018-1000618

    Last Modified: 21 Nov 2024

    EOSIO/eos eos version after commit f1545dd0ae2b77580c2236fdb70ae7138d2c7168 contains a stack overflow vulnerability in abi_serializer that can result in attack eos network node. This attack appear to be exploitable via network request. This vulnerability appears to have been fixed in after commit cf7209e703e6d3f7a5413e0cb1fe88a4d8e4b38d .

    Published: 9 Jul 2018
    9.8
    Critical

    CVE-2018-1000620

    Last Modified: 21 Nov 2024

    Eran Hammer cryptiles version 4.1.1 earlier contains a CWE-331: Insufficient Entropy vulnerability in randomDigits() method that can result in An attacker is more likely to be able to brute force something that was supposed to be random.. This attack appear to be exploitable via Depends upon the calling application.. This vulnerability appears to have been fixed in 4.1.2.

    Published: 9 Jul 2018
    7.2
    High

    CVE-2018-1000623

    Last Modified: 21 Nov 2024

    JFrog JFrog Artifactory version Prior to version 6.0.3, since version 4.0.0 contains a Directory Traversal vulnerability in The "Import Repository from Zip" feature, available through the Admin menu -> Import & Export -> Repositories, triggers a vulnerable UI REST endpoint (/ui/artifactimport/upload) that can result in Directory traversal / file overwrite and remote code execution. This attack appear to be exploitable via An attacker with Admin privileges may use the aforementioned UI endpoint and exploit the publicly known "Zip Slip" vulnerability, to add/overwrite files outside the target directory. This vulnerability appears to have been fixed in 6.0.3.

    Published: 9 Jul 2018
    6.1
    Medium

    CVE-2018-11450

    Last Modified: 21 Nov 2024

    A reflected Cross-Site-Scripting (XSS) vulnerability has been identified in Siemens PLM Software TEAMCENTER (V9.1.2.5). If a user visits the login portal through the URL crafted by the attacker, the attacker can insert html/javascript and thus alter/rewrite the login portal page. Siemens PLM Software TEAMCENTER V9.1.3 and newer are not affected.

    Published: 9 Jul 2018
    7.2
    High

    CVE-2018-13790

    Last Modified: 21 Nov 2024

    A Server Side Request Forgery (SSRF) vulnerability in tools/files/importers/remote.php in concrete5 8.2.0 can lead to attacks on the local network and mapping of the internal network, because of URL functionality on the File Manager page.

    Published: 9 Jul 2018
    8.8
    High

    CVE-2018-4990

    Last Modified: 23 Oct 2025

    Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Double Free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

    Published: 9 Jul 2018
    8.8
    High

    CVE-2018-4946

    Last Modified: 21 Nov 2024

    Adobe Photoshop CC versions 19.1.3 and earlier, 18.1.3 and earlier, and 18.1.2 and earlier have an Out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

    Published: 9 Jul 2018