CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-13409

    Last Modified: 21 Nov 2024

    An issue was discovered in Jirafeau before 3.4.1. The "search file by hash" form is affected by reflected XSS that could allow, by targeting an administrator, stealing a session and gaining administrative privileges.

    Published: 6 Jul 2018
    5.5
    Medium

    CVE-2017-15824

    Last Modified: 21 Nov 2024

    In Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, the function UpdateDeviceStatus() writes a local stack buffer without initialization to flash memory using WriteToPartition() which may potentially leak memory.

    Published: 6 Jul 2018
    7
    High

    CVE-2017-15856

    Last Modified: 21 Nov 2024

    Due to a race condition while processing the power stats debug file to read status, a double free condition can occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2017-18158

    Last Modified: 21 Nov 2024

    Possible buffer overflows and array out of bounds accesses in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05 while flashing images.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2017-18159

    Last Modified: 21 Nov 2024

    In Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, while processing a StrHwPlatform with length smaller than EFICHIPINFO_MAX_ID_LENGTH, an array out of bounds access may occur.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5835

    Last Modified: 21 Nov 2024

    If the seq_len is greater then CSR_MAX_RSC_LEN, a buffer overflow in __wlan_hdd_cfg80211_add_key() may occur when copying keyRSC in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5887

    Last Modified: 21 Nov 2024

    While processing the USB StrSerialDescriptor array, an array index out of bounds can occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    6.5
    Medium

    CVE-2018-5894

    Last Modified: 21 Nov 2024

    Improper Validation of Array Index in Multimedia While parsing an mp4 file in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, an out-of-bounds access can occur.

    Published: 6 Jul 2018
    9.8
    Critical

    CVE-2017-11088

    Last Modified: 21 Nov 2024

    Improper Input Validation in Linux io-prefetch in Snapdragon Mobile and Snapdragon Wear, A SQL injection vulnerability exists in versions MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 820, SD 835, SD 845.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-11257

    Last Modified: 21 Nov 2024

    Permissions, Privileges, and Access Controls in TA in Snapdragon Mobile has an options that allows RPMB erase for secure devices in versions SD 210/SD 212/SD 205, SD 845, SD 850.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-11258

    Last Modified: 21 Nov 2024

    In ADSP RPC in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, a Use After Free condition can occur in versions MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDX20.

    Published: 6 Jul 2018
    7.7
    High

    CVE-2018-11259

    Last Modified: 21 Nov 2024

    Due to Improper Access Control of NAND-based EFS in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, From fastboot on a NAND-based device, the EFS partition can be erased. Apps processor then has non-secure world full read/write access to the partition until the modem boots and configures the EFS partition addresses in its MPU partition.

    Published: 6 Jul 2018
    6.1
    Medium

    CVE-2018-13408

    Last Modified: 21 Nov 2024

    An issue was discovered in Jirafeau before 3.4.1. The "search file by link" form is affected by reflected XSS that could allow, by targeting an administrator, stealing a session and gaining administrative privileges.

    Published: 6 Jul 2018
    7.5
    High

    CVE-2018-3577

    Last Modified: 21 Nov 2024

    While processing fragments, when the fragment count becomes very large, an integer overflow leading to a buffer overflow can occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-3564

    Last Modified: 21 Nov 2024

    In the FastRPC driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a Use After Free condition can occur when mapping on the remote processor fails.

    Published: 6 Jul 2018
    5.5
    Medium

    CVE-2018-5836

    Last Modified: 21 Nov 2024

    In wma_nan_rsp_event_handler() in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, the data_len value is received from firmware and not properly validated which could potentially lead to an out-of-bounds access.

    Published: 6 Jul 2018
    8.8
    High

    CVE-2018-5874

    Last Modified: 21 Nov 2024

    While parsing an mp4 file, a stack-based buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.

    Published: 6 Jul 2018
    9.8
    Critical

    CVE-2018-5878

    Last Modified: 21 Nov 2024

    While sending the response to a RIL_REQUEST_GET_SMSC_ADDRESS message, a buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.

    Published: 6 Jul 2018
    8.4
    High

    CVE-2018-5884

    Last Modified: 21 Nov 2024

    Improper Access Control in Multimedia in Snapdragon Mobile and Snapdragon Wear, Non-standard applications without permission may acquire permission of Qualcomm-specific proprietary intents.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5889

    Last Modified: 21 Nov 2024

    While processing a compressed kernel image, a buffer overflow can occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    8.4
    High

    CVE-2018-5891

    Last Modified: 21 Nov 2024

    While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHandle but the local variable pointer is not updated which can lead to a Use After Free condition in Snapdragon Mobile and Snapdragon Wear.

    Published: 6 Jul 2018
    5.5
    Medium

    CVE-2018-5895

    Last Modified: 21 Nov 2024

    Buffer over-read may happen in wma_process_utf_event() due to improper buffer length validation before writing into param_buf->num_wow_packet_buffer in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.5
    High

    CVE-2018-13110

    Last Modified: 21 Nov 2024

    All ADB broadband gateways / routers based on the Epicentro platform are affected by a privilege escalation vulnerability where attackers can gain access to the command line interface (CLI) if previously disabled by the ISP, escalate their privileges, and perform further attacks.

    Published: 6 Jul 2018
    7.1
    High

    CVE-2018-1542

    Last Modified: 21 Nov 2024

    IBM FileNet Content Manager, IBM Content Foundation, and IBM Case Foundation Administration Console for Content Platform Engine (ACCE) 5.2.1 and 5.5.0 are vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 142597.

    Published: 6 Jul 2018
    5.9
    Medium

    CVE-2018-1546

    Last Modified: 21 Nov 2024

    IBM API Connect 5.0.0.0 through 5.0.8.3 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 142650.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2018-1555

    Last Modified: 21 Nov 2024

    IBM FileNet Content Manager 5.2.1 and 5.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142892.

    Published: 6 Jul 2018
    6.1
    Medium

    CVE-2018-1676

    Last Modified: 21 Nov 2024

    IBM Planning Analytics 2.0.0 through 2.0.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 145118.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2018-11124

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in Attributes functionality in Open-AudIT Community edition before 2.2.2 allows remote attackers to inject arbitrary web script or HTML via a crafted attribute name of an Attribute.

    Published: 6 Jul 2018
    4.4
    Medium

    CVE-2017-1795

    Last Modified: 21 Nov 2024

    IBM WebSphere MQ 7.5, 8.0, and 9.0 through 9.0.4 could allow a local user to obtain highly sensitive information via trace logs in IBM WebSphere MQ Managed File Transfer. IBM X-Force ID: 137042.

    Published: 6 Jul 2018
    3.7
    Low

    CVE-2017-1488

    Last Modified: 21 Nov 2024

    An undisclosed vulnerability in Jazz common products exists with potential for information disclosure. IBM X-Force ID: 128627.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-13108

    Last Modified: 21 Nov 2024

    All ADB broadband gateways / routers based on the Epicentro platform are affected by a local root jailbreak vulnerability where attackers are able to gain root access on the device, and extract further information such as sensitive configuration data of the ISP (e.g., VoIP credentials) or attack the internal network of the ISP.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2018-1556

    Last Modified: 21 Nov 2024

    IBM FileNet Content Manager 5.2.1 and 5.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142893.

    Published: 6 Jul 2018
    4.4
    Medium

    CVE-2018-1621

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a local attacker to obtain clear text password in a trace file caused by improper handling of some datasource custom properties. IBM X-Force ID: 144346.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2017-1237

    Last Modified: 21 Nov 2024

    IBM Jazz based applications are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 124355.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2017-1238

    Last Modified: 21 Nov 2024

    IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 124356.

    Published: 6 Jul 2018
    4.3
    Medium

    CVE-2017-1239

    Last Modified: 21 Nov 2024

    IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 could reveal sensitive information in HTTP 500 Internal Server Error responses. IBM X-Force ID: 124357.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2017-1242

    Last Modified: 21 Nov 2024

    IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 124524.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2017-1248

    Last Modified: 21 Nov 2024

    IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 124628.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2017-1329

    Last Modified: 21 Nov 2024

    IBM Quality Manager (RQM) 5.0.x and 6.0 through 6.0.5 are vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 126231.

    Published: 6 Jul 2018
    4.3
    Medium

    CVE-2017-1509

    Last Modified: 21 Nov 2024

    IBM Jazz Foundation products could allow an authenticated user to obtain sensitive information from a stack trace that could be used to aid future attacks. IBM X-Force ID: 129719.

    Published: 6 Jul 2018
    3.1
    Low

    CVE-2017-1559

    Last Modified: 21 Nov 2024

    Multiple IBM Rational products could disclose sensitive information by an attacker that intercepts vulnerable requests. IBM X-Force ID: 131758.

    Published: 6 Jul 2018
    7.5
    High

    CVE-2018-13109

    Last Modified: 21 Nov 2024

    All ADB broadband gateways / routers based on the Epicentro platform are affected by an authorization bypass vulnerability where attackers are able to access and manipulate settings within the web interface that are forbidden to end users (e.g., by the ISP). An attacker would be able to enable the TELNET server or other settings as well.

    Published: 6 Jul 2018
    5.4
    Medium

    CVE-2018-1494

    Last Modified: 21 Nov 2024

    IBM DOORS Next Generation (DNG/RRC) 5.0 through 5.0.2 and 6.0 through 6.0.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 141097.

    Published: 6 Jul 2018
    7.3
    High

    CVE-2018-8929

    Last Modified: 21 Nov 2024

    Improper restriction of communication channel to intended endpoints vulnerability in HTTP daemon in Synology SSL VPN Client before 1.2.4-0224 allows remote attackers to conduct man-in-the-middle attacks via a crafted payload.

    Published: 6 Jul 2018
    Unknown

    CVE-2018-13372

    Last Modified: 29 Apr 2025

    Not used

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-16276

    Last Modified: 21 Nov 2024

    An issue was discovered in yurex_read in drivers/usb/misc/yurex.c in the Linux kernel before 4.17.7. Local attackers could use user access read/writes with incorrect bounds checking in the yurex USB driver to crash the kernel or potentially escalate privileges.

    Published: 6 Jul 2018
    6.5
    Medium

    CVE-2018-16640

    Last Modified: 21 Nov 2024

    ImageMagick 7.0.8-5 has a memory leak vulnerability in the function ReadOneJNGImage in coders/png.c.

    Published: 6 Jul 2018
    7.1
    High

    CVE-2018-10896

    Last Modified: 21 Nov 2024

    The default cloud-init configuration, in cloud-init 0.6.2 and newer, included "ssh_deletekeys: 0", disabling cloud-init's deletion of ssh host keys. In some environments, this could lead to instances created by cloning a golden master or template system, sharing ssh host keys, and being able to impersonate one another or conduct man-in-the-middle attacks.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-13406

    Last Modified: 21 Nov 2024

    An integer overflow in the uvesafb_setcmap function in drivers/video/fbdev/uvesafb.c in the Linux kernel before 4.17.4 could result in local attackers being able to crash the kernel or potentially elevate privileges because kmalloc_array is not used.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-19358

    Last Modified: 21 Nov 2024

    GNOME Keyring through 3.28.2 allows local users to retrieve login credentials via a Secret Service API call and the D-Bus interface if the keyring is unlocked, a similar issue to CVE-2008-7320. One perspective is that this occurs because available D-Bus protection mechanisms (involving the busconfig and policy XML elements) are not used. NOTE: the vendor disputes this because, according to the security model, untrusted applications must not be allowed to access the user's session bus socket.

    Published: 6 Jul 2018