CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2018-13072

    Last Modified: 21 Nov 2024

    The mintToken function of a smart contract implementation for Coffeecoin (COFFEE), an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

    Published: 2 Jul 2018
    6.2
    Medium

    CVE-2018-8868

    Last Modified: 22 May 2025

    Medtronic 24950 MyCareLink Monitor and 24952 MyCareLink Monitor contains debug code meant to test the functionality of the monitor's communication interfaces, including the interface between the monitor and implantable cardiac device. An attacker with physical access to the device can exploit other vulnerabilities to access this debug functionality. This debug functionality provides the ability to read and write arbitrary memory values to implantable cardiac devices via inductive or short range wireless protocols. An attacker with close physical proximity to a target implantable cardiac device can use this debug functionality.

    Published: 2 Jul 2018
    7.1
    High

    CVE-2018-10596

    Last Modified: 22 May 2025

    Medtronic 2090 CareLink Programmer uses a virtual private network connection to securely download updates. It does not verify it is still connected to this virtual private network before downloading updates. The affected products initially establish an encapsulated IP-based VPN connection to a Medtronic-hosted update network. Once the VPN is established, it makes a request to a HTTP (non-TLS) server across the VPN for updates, which responds and provides any available updates. The programmer-side (client) service responsible for this HTTP request does not check to ensure it is still connected to the VPN before making the HTTP request. Thus, an attacker could cause the VPN connection to terminate (through various methods and attack points) and intercept the HTTP request, responding with malicious updates via a man-in-the-middle attack. The affected products do not verify the origin or integrity of these updates, as it insufficiently relied on the security of the VPN. An attacker with remote network access to the programmer could influence these communications.

    Published: 2 Jul 2018
    6.4
    Medium

    CVE-2018-8870

    Last Modified: 22 May 2025

    Medtronic 24950 MyCareLink Monitor and 24952 MyCareLink Monitor contains a hard-coded operating system password. An attacker with physical access can remove the case of the device, connect to the debug port, and use the password to gain privileged access to the operating system.

    Published: 2 Jul 2018
    8.8
    High

    CVE-2018-1212

    Last Modified: 21 Nov 2024

    The web-based diagnostics console in Dell EMC iDRAC6 (Monolithic versions prior to 2.91 and Modular all versions) contains a command injection vulnerability. A remote authenticated malicious iDRAC user with access to the diagnostics console could potentially exploit this vulnerability to execute arbitrary commands as root on the affected iDRAC system.

    Published: 2 Jul 2018
    6.5
    Medium

    CVE-2018-1249

    Last Modified: 21 Nov 2024

    Dell EMC iDRAC9 versions prior to 3.21.21.21 did not enforce the use of TLS/SSL for a connection to iDRAC web server for certain URLs. A man-in-the-middle attacker could use this vulnerability to strip the SSL/TLS protection from a connection between a client and a server.

    Published: 2 Jul 2018
    8.8
    High

    CVE-2018-1244

    Last Modified: 21 Nov 2024

    Dell EMC iDRAC7/iDRAC8, versions prior to 2.60.60.60, and iDRAC9 versions prior to 3.21.21.21 contain a command injection vulnerability in the SNMP agent. A remote authenticated malicious iDRAC user with configuration privileges could potentially exploit this vulnerability to execute arbitrary commands on the iDRAC where SNMP alerting is enabled.

    Published: 2 Jul 2018
    9.8
    Critical

    CVE-2018-12426

    Last Modified: 21 Nov 2024

    The WP Live Chat Support Pro plugin before 8.0.07 for WordPress is vulnerable to unauthenticated Remote Code Execution due to client-side validation of allowed file types, as demonstrated by a v1/remote_upload request with a .php filename and the image/jpeg content type.

    Published: 2 Jul 2018
    7.5
    High

    CVE-2018-1243

    Last Modified: 21 Nov 2024

    Dell EMC iDRAC6, versions prior to 2.91, iDRAC7/iDRAC8, versions prior to 2.60.60.60 and iDRAC9, versions prior to 3.21.21.21, contain a weak CGI session ID vulnerability. The sessions invoked via CGI binaries use 96-bit numeric-only session ID values, which makes it easier for remote attackers to perform bruteforce session guessing attacks.

    Published: 2 Jul 2018
    7.5
    High

    CVE-2018-13066

    Last Modified: 21 Nov 2024

    There is a memory leak in util/parser.c in libming 0.4.8, which will lead to a denial of service via parseSWF_DEFINEBUTTON2, parseSWF_DEFINEFONT, parseSWF_DEFINEFONTINFO, parseSWF_DEFINELOSSLESS, parseSWF_DEFINESPRITE, parseSWF_DEFINETEXT, parseSWF_DOACTION, parseSWF_FILLSTYLEARRAY, parseSWF_FRAMELABEL, parseSWF_LINESTYLEARRAY, parseSWF_PLACEOBJECT2, or parseSWF_SHAPEWITHSTYLE.

    Published: 2 Jul 2018
    8.8
    High

    CVE-2018-13067

    Last Modified: 21 Nov 2024

    /upload/catalog/controller/account/password.php in OpenCart through 3.0.2.0 has CSRF via the index.php?route=account/password URI to change a user's password.

    Published: 2 Jul 2018
    7.2
    High

    CVE-2018-9276

    Last Modified: 6 Nov 2025

    An issue was discovered in PRTG Network Monitor before 18.2.39. An attacker who has access to the PRTG System Administrator web console with administrative privileges can exploit an OS command injection vulnerability (both on the server and on devices) by sending malformed parameters in sensor or notification management scenarios.

    Published: 2 Jul 2018
    6.1
    Medium

    CVE-2018-10075

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in Zoho ManageEngine EventLog Analyzer 11.12 allows remote attackers to inject arbitrary web script or HTML via the import logs feature.

    Published: 2 Jul 2018
    6.1
    Medium

    CVE-2018-10076

    Last Modified: 21 Nov 2024

    An issue was discovered in Zoho ManageEngine EventLog Analyzer 11.12. A Cross-Site Scripting vulnerability allows a remote attacker to inject arbitrary web script or HTML via the search functionality (the search box of the Dashboard).

    Published: 2 Jul 2018
    7.4
    High

    CVE-2018-12499

    Last Modified: 21 Nov 2024

    The Motorola MBP853 firmware does not correctly validate server certificates. This allows for a Man in The Middle (MiTM) attack to take place between a Motorola MBP853 camera and the servers it communicates with. In one such instance, it was identified that the device was downloading what appeared to be a client certificate.

    Published: 2 Jul 2018
    8.1
    High

    CVE-2018-12528

    Last Modified: 21 Nov 2024

    An issue was discovered on Intex N150 devices. The backup/restore option does not check the file extension uploaded for importing a configuration files backup, which can lead to corrupting the router firmware settings or even the uploading of malicious files. In order to exploit the vulnerability, an attacker can upload any malicious file and force reboot the router with it.

    Published: 2 Jul 2018
    4.3
    Medium

    CVE-2018-12576

    Last Modified: 21 Nov 2024

    TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 180119 Rel.65243n devices allow clickjacking.

    Published: 2 Jul 2018
    8.8
    High

    CVE-2018-12577

    Last Modified: 21 Nov 2024

    The Ping and Traceroute features on TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 180119 Rel.65243n devices allow authenticated blind Command Injection.

    Published: 2 Jul 2018
    8.8
    High

    CVE-2018-12529

    Last Modified: 21 Nov 2024

    An issue was discovered on Intex N150 devices. The router firmware suffers from multiple CSRF injection point vulnerabilities including changing user passwords and router settings.

    Published: 2 Jul 2018
    8.8
    High

    CVE-2018-12574

    Last Modified: 21 Nov 2024

    CSRF exists for all actions in the web interface on TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 180119 Rel.65243n devices.

    Published: 2 Jul 2018
    9.8
    Critical

    CVE-2018-12575

    Last Modified: 21 Nov 2024

    On TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 171019 Rel.55346n devices, all actions in the web interface are affected by bypass of authentication via an HTTP request.

    Published: 2 Jul 2018
    7.5
    High

    CVE-2018-13056

    Last Modified: 21 Nov 2024

    An issue was discovered on zzcms 8.3. There is a vulnerability at /user/del.php that can delete any file by placing its relative path into the zzcms_main table and then making an img add request. This can be leveraged for database access by deleting install.lock.

    Published: 2 Jul 2018
    8.1
    High

    CVE-2018-13054

    Last Modified: 21 Nov 2024

    An issue was discovered in Cinnamon 1.9.2 through 3.8.6. The cinnamon-settings-users.py GUI runs as root and allows configuration of (for example) other users' icon files in _on_face_browse_menuitem_activated and _on_face_menuitem_activated. These icon files are written to the respective user's $HOME/.face location. If an unprivileged user prepares a symlink pointing to an arbitrary location, then this location will be overwritten with the icon content.

    Published: 2 Jul 2018
    6.5
    Medium

    CVE-2017-17175

    Last Modified: 21 Nov 2024

    Short Message Service (SMS) module of Mate 9 Pro Huawei smart phones with the versions before LON-AL00B 8.0.0.354(C00) has a Denial of Service (DoS) vulnerability. An unauthenticated attacker may set up a pseudo base station, and send special malware text message to the phone, causing the mobile phone to fail to make calls and send and receive text messages.

    Published: 2 Jul 2018
    5.3
    Medium

    CVE-2017-17316

    Last Modified: 21 Nov 2024

    Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; TE50 V500R002C00; V600R006C00; TE60 V100R001C10; V500R002C00; V600R006C00 have an out-of-bounds read vulnerability. An unauthenticated, remote attacker has to control the peer device and craft the Signalling Connection Control Part (SCCP) messages to the target devices. Due to insufficient input validation of some values in the messages, successful exploit will cause out-of-bounds read and some services abnormal.

    Published: 2 Jul 2018
    3.7
    Low

    CVE-2017-17317

    Last Modified: 21 Nov 2024

    Common Open Policy Service Protocol (COPS) module in Huawei USG6300 V100R001C10; V100R001C20; V100R001C30; V500R001C00; V500R001C20; V500R001C30; V500R001C50; Secospace USG6500 V100R001C10; V100R001C20; V100R001C30; V500R001C00; V500R001C20; V500R001C30; V500R001C50; Secospace USG6600 V100R001C00; V100R001C20; V100R001C30; V500R001C00; V500R001C20; V500R001C30; V500R001C50; TE30 V100R001C02; V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; TE50 V500R002C00; V600R006C00; TE60 V100R001C01; V100R001C10; V500R002C00; V600R006C00 has a buffer overflow vulnerability. An unauthenticated, remote attacker has to control the peer device and send specially crafted message to the affected products. Due to insufficient input validation, successful exploit may cause some services abnormal.

    Published: 2 Jul 2018
    8.8
    High

    CVE-2018-13049

    Last Modified: 21 Nov 2024

    The constructSQL function in inc/search.class.php in GLPI 9.2.x through 9.3.0 allows SQL Injection, as demonstrated by triggering a crafted LIMIT clause to front/computer.php.

    Published: 2 Jul 2018
    9.8
    Critical

    CVE-2018-13050

    Last Modified: 21 Nov 2024

    A SQL Injection vulnerability exists in Zoho ManageEngine Applications Manager 13.x before build 13800 via the j_username parameter in a /j_security_check POST request.

    Published: 2 Jul 2018
    6.1
    Medium

    CVE-2018-0499

    Last Modified: 21 Nov 2024

    A cross-site scripting vulnerability in queryparser/termgenerator_internal.cc in Xapian xapian-core before 1.4.6 exists due to incomplete HTML escaping by Xapian::MSet::snippet().

    Published: 2 Jul 2018
    7.8
    High

    CVE-2018-9415

    Last Modified: 21 Nov 2024

    In driver_override_store and driver_override_show of bus.c, there is a possible double free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-69129004 References: Upstream kernel.

    Published: 2 Jul 2018
    9.8
    Critical

    CVE-2018-13043

    Last Modified: 21 Nov 2024

    scripts/grep-excuses.pl in Debian devscripts through 2.18.3 allows code execution through unsafe YAML loading because YAML::Syck is used without a configuration that prevents unintended blessing.

    Published: 1 Jul 2018
    7.8
    High

    CVE-2018-13037

    Last Modified: 21 Nov 2024

    An issue was discovered in jpeg-compressor 0.1. The bmp_load function in stb_image.c allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact.

    Published: 1 Jul 2018
    9.8
    Critical

    CVE-2018-13038

    Last Modified: 21 Nov 2024

    OpenSID 18.06-pasca has an Unrestricted File Upload vulnerability via an Attachment Document in the article feature. This vulnerability leads to uploading arbitrary PHP code via a .php filename with the application/pdf Content-Type.

    Published: 1 Jul 2018
    6.1
    Medium

    CVE-2018-13039

    Last Modified: 21 Nov 2024

    OpenSID 18.06-pasca has reflected Cross Site Scripting (XSS) via the cari parameter, aka an index.php/first?cari= URI.

    Published: 1 Jul 2018
    8.8
    High

    CVE-2018-13040

    Last Modified: 21 Nov 2024

    OpenSID 18.06-pasca has a CSRF vulnerability. This vulnerability can add an account (at the admin level) via the index.php/man_user/insert URI.

    Published: 1 Jul 2018
    7.5
    High

    CVE-2018-13041

    Last Modified: 21 Nov 2024

    The mint function of a smart contract implementation for Link Platform (LNK), an Ethereum ERC20 token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

    Published: 1 Jul 2018
    8.8
    High

    CVE-2018-13032

    Last Modified: 21 Nov 2024

    ECESSA ShieldLink SL175EHQ 10.7.4 devices have CSRF to add superuser accounts via the cgi-bin/pl_web.cgi/util_configlogin_act URI.

    Published: 1 Jul 2018
    7.5
    High

    CVE-2018-1000632

    Last Modified: 21 Nov 2024

    dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.

    Published: 1 Jul 2018
    6.5
    Medium

    CVE-2018-8036

    Last Modified: 21 Nov 2024

    In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.

    Published: 1 Jul 2018
    5.5
    Medium

    CVE-2018-13033

    Last Modified: 21 Nov 2024

    The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (excessive memory allocation and application crash) via a crafted ELF file, as demonstrated by _bfd_elf_parse_attributes in elf-attrs.c and bfd_malloc in libbfd.c. This can occur during execution of nm.

    Published: 1 Jul 2018
    6.1
    Medium

    CVE-2018-7475

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability for webdav/ticket/ URIs in IceWarp Mail Server 12.0.3 allows remote attackers to inject arbitrary web script or HTML.

    Published: 30 Jun 2018
    5.3
    Medium

    CVE-2018-12990

    Last Modified: 21 Nov 2024

    phpwcms 1.8.9 allows remote attackers to discover the installation path via an invalid csrf_token_value field.

    Published: 30 Jun 2018
    9.8
    Critical

    CVE-2018-13026

    Last Modified: 21 Nov 2024

    An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Type.

    Published: 30 Jun 2018
    7.8
    High

    CVE-2018-13030

    Last Modified: 21 Nov 2024

    An issue was discovered in jpeg-compressor 0.1. The build_huffman function in stb_image.c allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact.

    Published: 30 Jun 2018
    7.2
    High

    CVE-2018-13021

    Last Modified: 21 Nov 2024

    An issue was discovered in HongCMS 3.0.0. There is an Arbitrary Script File Upload issue that can result in PHP code execution via the admin/index.php/template/upload URI.

    Published: 29 Jun 2018
    4.9
    Medium

    CVE-2018-13025

    Last Modified: 21 Nov 2024

    protected/apps/admin/controller/photoController.php in YXcms 1.4.7 allows remote attackers to delete arbitrary files via the index.php?r=admin/photo/delpic picname parameter.

    Published: 29 Jun 2018
    7.2
    High

    CVE-2018-13024

    Last Modified: 21 Nov 2024

    Metinfo v6.0.0 allows remote attackers to write code into a .php file, and execute that code, via the module parameter to admin/column/save.php in an editor upload action.

    Published: 29 Jun 2018
    9.1
    Critical

    CVE-2018-12465

    Last Modified: 21 Nov 2024

    An OS command injection vulnerability in the web administration component of Micro Focus Secure Messaging Gateway (SMG) allows a remote attacker authenticated as a privileged user to execute arbitrary OS commands on the SMG server. This can be exploited in conjunction with CVE-2018-12464 to achieve unauthenticated remote code execution. Affects Micro Focus Secure Messaging Gateway versions prior to 471. It does not affect previous versions of the product that used GWAVA product name (i.e. GWAVA 6.5).

    Published: 29 Jun 2018
    10
    Critical

    CVE-2018-12464

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability in the web administration and quarantine components of Micro Focus Secure Messaging Gateway allows an unauthenticated remote attacker to execute arbitrary SQL statements against the database. This can be exploited to create an administrative account and used in conjunction with CVE-2018-12465 to achieve unauthenticated remote code execution. Affects Micro Focus Secure Messaging Gateway versions prior to 471. It does not affect previous versions of the product that use the GWAVA product name (i.e. GWAVA 6.5).

    Published: 29 Jun 2018
    8.1
    High

    CVE-2018-13012

    Last Modified: 21 Nov 2024

    Download of code with improper integrity check in snsupd.exe and upd.exe in SAFE'N'SEC SoftControl/SafenSoft SysWatch, SoftControl/SafenSoft TPSecure, and SoftControl/SafenSoft Enterprise Suite before 4.4.12 allows the remote attacker to execute unauthorized code by substituting a forged update server.

    Published: 29 Jun 2018