CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-0527

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Cybozu Office 10.0.0 to 10.7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 26 Jun 2018
    7.8
    High

    CVE-2018-0563

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in the installer of FLET'S VIRUS CLEAR Easy Setup & Application Tool ver.13.0 and earlier versions and FLET'S VIRUS CLEAR v6 Easy Setup & Application Tool ver.13.0 and earlier versions allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-0569

    Last Modified: 21 Nov 2024

    baserCMS (baserCMS 4.1.0.1 and earlier versions, baserCMS 3.0.15 and earlier versions) allows remote authenticated attackers to execute arbitrary OS commands via unspecified vectors.

    Published: 26 Jun 2018
    7.5
    High

    CVE-2018-0584

    Last Modified: 21 Nov 2024

    IIJ SmartKey App for Android version 2.1.0 and earlier allows remote attackers to bypass authentication [effect_of_bypassing_authentication] via unspecified vectors.

    Published: 26 Jun 2018
    6.1
    Medium

    CVE-2018-0603

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Site Reviews versions prior to 2.15.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 26 Jun 2018
    7.2
    High

    CVE-2018-0606

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in the Pixelpost v1.7.3 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 26 Jun 2018
    9.8
    Critical

    CVE-2018-12889

    Last Modified: 21 Nov 2024

    An issue was discovered in CCN-lite 2.0.1. There is a heap-based buffer overflow in mkAddToRelayCacheRequest and in ccnl_populate_cache for an array lacking '\0' termination when reading a binary CCNx or NDN file. This can result in Heap Corruption. This was addressed by fixing the memory management in mkAddToRelayCacheRequest in ccn-lite-ctrl.c.

    Published: 26 Jun 2018
    6.5
    Medium

    CVE-2018-12884

    Last Modified: 21 Nov 2024

    In Octopus Deploy 3.0 onwards (before 2018.6.7), an authenticated user with incorrect permissions may be able to create Accounts under the Infrastructure menu.

    Published: 26 Jun 2018
    9.8
    Critical

    CVE-2018-5187

    Last Modified: 25 Nov 2025

    Memory safety bugs present in Firefox 60 and Firefox ESR 60. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 60, Firefox ESR < 60.1, and Firefox < 61.

    Published: 26 Jun 2018
    9.8
    Critical

    CVE-2018-8016

    Last Modified: 21 Nov 2024

    The default configuration in Apache Cassandra 3.8 through 3.11.1 binds an unauthenticated JMX/RMI interface to all network interfaces, which allows remote attackers to execute arbitrary Java code via an RMI request. This issue is a regression of CVE-2015-0225. The regression was introduced in https://issues.apache.org/jira/browse/CASSANDRA-12109. The fix for the regression is implemented in https://issues.apache.org/jira/browse/CASSANDRA-14173. This fix is contained in the 3.11.2 release of Apache Cassandra.

    Published: 26 Jun 2018
    9.8
    Critical

    CVE-2018-5188

    Last Modified: 21 Nov 2024

    Memory safety bugs present in Firefox 60, Firefox ESR 60, and Firefox ESR 52.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    9.8
    Critical

    CVE-2018-5156

    Last Modified: 25 Nov 2025

    A vulnerability can occur when capturing a media stream when the media source type is changed as the capture is occurring. This can result in stream data being cast to the wrong type causing a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    5
    Medium

    CVE-2018-1072

    Last Modified: 21 Nov 2024

    ovirt-engine before version ovirt 4.2.2 is vulnerable to an information exposure through log files. When engine-backup was run with one of the options "--provision*db", the database username and password were logged in cleartext. Sharing the provisioning log might inadvertently leak database passwords.

    Published: 26 Jun 2018
    4.3
    Medium

    CVE-2018-12358

    Last Modified: 21 Nov 2024

    Service workers can use redirection to avoid the tainting of cross-origin resources in some instances, allowing a malicious site to read responses which are supposed to be opaque. This vulnerability affects Firefox < 61.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12361

    Last Modified: 21 Nov 2024

    An integer overflow can occur in the SwizzleData code while calculating buffer sizes. The overflowed value is used for subsequent graphics computations when their inputs are not sanitized which results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Firefox ESR < 60.1, and Firefox < 61.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12362

    Last Modified: 21 Nov 2024

    An integer overflow can occur during graphics operations done by the Supplemental Streaming SIMD Extensions 3 (SSSE3) scaler, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12364

    Last Modified: 21 Nov 2024

    NPAPI plugins, such as Adobe Flash, can send non-simple cross-origin requests, bypassing CORS by making a same-origin POST that does a 307 redirect to the target site. This allows for a malicious site to engage in cross-site request forgery (CSRF) attacks. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    6.5
    Medium

    CVE-2018-12365

    Last Modified: 21 Nov 2024

    A compromised IPC child process can escape the content sandbox and list the names of arbitrary files on the file system without user consent or interaction. This could result in exposure of private local files. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    6.5
    Medium

    CVE-2018-12366

    Last Modified: 21 Nov 2024

    An invalid grid size during QCMS (color profile) transformations can result in the out-of-bounds read interpreted as a float value. This could leak private data into the output. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12370

    Last Modified: 21 Nov 2024

    In Reader View SameSite cookie protections are not checked on exiting. This allows for a payload to be triggered when Reader View is exited if loaded by a malicious site while Reader mode is active, bypassing CSRF protections. This vulnerability affects Firefox < 61.

    Published: 26 Jun 2018
    4.3
    Medium

    CVE-2018-12367

    Last Modified: 25 Nov 2025

    In the previous mitigations for Spectre, the resolution or precision of various methods was reduced to counteract the ability to measure precise time intervals. In that work PerformanceNavigationTiming was not adjusted but it was found that it could be used as a precision timer. This vulnerability affects Thunderbird < 60, Firefox ESR < 60.1, and Firefox < 61.

    Published: 26 Jun 2018
    9.8
    Critical

    CVE-2018-5186

    Last Modified: 21 Nov 2024

    Memory safety bugs present in Firefox 60. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 61.

    Published: 26 Jun 2018
    9.8
    Critical

    CVE-2018-12369

    Last Modified: 25 Nov 2025

    WebExtensions bundled with embedded experiments were not correctly checked for proper authorization. This allowed a malicious WebExtension to gain full browser permissions. This vulnerability affects Firefox ESR < 60.1 and Firefox < 61.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12371

    Last Modified: 25 Nov 2025

    An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 16 GB of RAM. This results in the use of uninitialized memory, resulting in a potentially exploitable crash. This vulnerability affects Firefox ESR < 60.1, Thunderbird < 60, and Firefox < 61.

    Published: 26 Jun 2018
    7.8
    High

    CVE-2018-0598

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in Self-extracting archive files created by IExpress bundled with Microsoft Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12359

    Last Modified: 21 Nov 2024

    A buffer overflow can occur when rendering canvas content while adjusting the height and width of the canvas element dynamically, causing data to be written outside of the currently computed boundaries. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12363

    Last Modified: 21 Nov 2024

    A use-after-free vulnerability can occur when script uses mutation events to move DOM nodes between documents, resulting in the old document that held the node being freed but the node still having a pointer referencing it. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    3.8
    Low

    CVE-2018-10852

    Last Modified: 21 Nov 2024

    The UNIX pipe which sudo uses to contact SSSD and read the available sudo rules from SSSD has too wide permissions, which means that anyone who can send a message using the same raw protocol that sudo and SSSD use can read the sudo rules available for any user. This affects versions of SSSD before 1.16.3.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12360

    Last Modified: 21 Nov 2024

    A use-after-free vulnerability can occur when deleting an input element during a mutation event handler triggered by focusing that element. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    8.1
    High

    CVE-2018-12368

    Last Modified: 21 Nov 2024

    Windows 10 does not warn users before opening executable files with the SettingContent-ms extension even when they have been downloaded from the internet and have the "Mark of the Web." Without the warning, unsuspecting users unfamiliar with this new file type might run an unwanted executable. This also allows a WebExtension with the limited downloads.open permission to execute arbitrary code without user interaction on Windows 10 systems. *Note: this issue only affects Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12900

    Last Modified: 21 Nov 2024

    Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0beta7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6, 4.0.7, 4.0.8 and 4.0.9 allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact via a crafted TIFF file.

    Published: 26 Jun 2018
    8.8
    High

    CVE-2018-12603

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in admin.php in LFCMS 3.7.0 allows remote attackers to hijack the authentication of unspecified users for requests that add administrator users via the s parameter, a related issue to CVE-2018-12114.

    Published: 25 Jun 2018
    9.8
    Critical

    CVE-2018-11589

    Last Modified: 21 Nov 2024

    Multiple SQL injection vulnerabilities in Centreon 3.4.6 including Centreon Web 2.8.23 allow attacks via the searchU parameter in viewLogs.php, the id parameter in GetXmlHost.php, the chartId parameter in ExportCSVServiceData.php, the searchCurve parameter in listComponentTemplates.php, or the host_id parameter in makeXML_ListMetrics.php.

    Published: 25 Jun 2018
    5.4
    Medium

    CVE-2018-11588

    Last Modified: 21 Nov 2024

    Centreon 3.4.6 including Centreon Web 2.8.23 is vulnerable to an authenticated user injecting a payload into the username or command description, resulting in stored XSS. This is related to www/include/core/menu/menu.php and www/include/configuration/configObject/command/formArguments.php.

    Published: 25 Jun 2018
    9.8
    Critical

    CVE-2018-11587

    Last Modified: 21 Nov 2024

    There is Remote Code Execution in Centreon 3.4.6 including Centreon Web 2.8.23 via the RPN value in the Virtual Metric form in centreonGraph.class.php.

    Published: 25 Jun 2018
    7.5
    High

    CVE-2018-12735

    Last Modified: 21 Nov 2024

    SAJ Solar Inverter allows remote attackers to obtain potentially sensitive information via a direct request for the inverter_info.htm or english_main.htm URI.

    Published: 25 Jun 2018
    9.8
    Critical

    CVE-2018-8755

    Last Modified: 21 Nov 2024

    NuCom WR644GACV devices before STA006 allow an attacker to download the configuration file without credentials. By downloading this file, an attacker can access the admin password, WPA key, and any config information of the device.

    Published: 25 Jun 2018
    7.5
    High

    CVE-2017-9312

    Last Modified: 21 Nov 2024

    Improperly implemented option-field processing in the TCP/IP stack on Allen-Bradley L30ERMS safety devices v30 and earlier causes a denial of service. When a crafted TCP packet is received, the device reboots immediately.

    Published: 25 Jun 2018
    7.5
    High

    CVE-2018-10956

    Last Modified: 21 Nov 2024

    IPConfigure Orchid Core VMS 2.0.5 allows Directory Traversal.

    Published: 25 Jun 2018
    6.1
    Medium

    CVE-2018-11041

    Last Modified: 21 Nov 2024

    Cloud Foundry UAA, versions later than 4.6.0 and prior to 4.19.0 except 4.10.1 and 4.7.5 and uaa-release versions later than v48 and prior to v60 except v55.1 and v52.9, does not validate redirect URL values on a form parameter used for internal UAA redirects on the login page, allowing open redirects. A remote attacker can craft a malicious link that, when clicked, will redirect users to arbitrary websites after a successful login attempt.

    Published: 25 Jun 2018
    6.5
    Medium

    CVE-2018-11046

    Last Modified: 21 Nov 2024

    Pivotal Operations Manager, versions 2.1.x prior to 2.1.6 and version 2.0.14, includes NGINX packages that lacks security vulnerability patches. An attacker with access to the NGINX processes and knowledge of how to exploit the unpatched vulnerabilities may be able to impact Operations Manager

    Published: 25 Jun 2018
    8.8
    High

    CVE-2018-12602

    Last Modified: 21 Nov 2024

    A CSRF vulnerability exists in LFCMS 3.7.0: users can be added arbitrarily.

    Published: 25 Jun 2018
    Unknown

    CVE-2018-1000522

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-10364. Reason: This candidate is a reservation duplicate of CVE-2018-10364. Notes: All CVE users should reference CVE-2018-10364 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 25 Jun 2018
    Unknown

    CVE-2018-1000530

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-11522. Reason: This candidate is a reservation duplicate of CVE-2018-11522. Notes: All CVE users should reference CVE-2018-11522 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 25 Jun 2018
    Unknown

    CVE-2018-1000541

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-10362. Reason: This candidate is a reservation duplicate of CVE-2018-10362. Notes: All CVE users should reference CVE-2018-10362 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 25 Jun 2018
    Unknown

    CVE-2018-1000555

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-10188. Reason: This candidate is a reservation duplicate of CVE-2018-10188. Notes: All CVE users should reference CVE-2018-10188 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 25 Jun 2018
    Unknown

    CVE-2018-1000545

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-11416. Reason: This candidate is a reservation duplicate of CVE-2018-11416. Notes: All CVE users should reference CVE-2018-11416 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 25 Jun 2018
    7.5
    High

    CVE-2018-12067

    Last Modified: 21 Nov 2024

    The sell function of a smart contract implementation for Substratum (SUB), a tradable Ethereum ERC20 token, allows a potential trap that could be used to cause financial damage to the seller, because of overflow of the multiplication of its argument amount and a manipulable variable sellPrice, aka the "tradeTrap" issue.

    Published: 25 Jun 2018
    7.5
    High

    CVE-2018-12070

    Last Modified: 21 Nov 2024

    The sell function of a smart contract implementation for SEC, a tradable Ethereum ERC20 token, allows a potential trap that could be used to cause financial damage to the seller, because of overflow of the multiplication of its argument amount and a manipulable variable sellPrice, aka the "tradeTrap" issue.

    Published: 25 Jun 2018
    7.5
    High

    CVE-2018-12079

    Last Modified: 21 Nov 2024

    The mintToken function of a smart contract implementation for Substratum (SUB), a tradable Ethereum ERC20 token, has no period constraint, which allows the owner to increase the total supply of the digital assets arbitrarily so as to make profits, aka the "tradeTrap" issue.

    Published: 25 Jun 2018