CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2018-11126

    Last Modified: 21 Nov 2024

    dg-user/?controller=users&action=add in doorGets 7.0 has CSRF that results in adding an administrator account.

    Published: 15 May 2018
    6.5
    Medium

    CVE-2018-11127

    Last Modified: 21 Nov 2024

    e107 2.1.7 has CSRF resulting in arbitrary user deletion.

    Published: 15 May 2018
    8.1
    High

    CVE-2017-2815

    Last Modified: 21 Nov 2024

    An exploitable XML entity injection vulnerability exists in OpenFire User Import Export Plugin 2.6.0. A specially crafted web request can cause the retrieval of arbitrary files or denial of service. An authenticated attacker can send a crafted web request to trigger this vulnerability.

    Published: 15 May 2018
    6.1
    Medium

    CVE-2018-11105

    Last Modified: 21 Nov 2024

    There is stored cross site scripting in the wp-live-chat-support plugin before 8.0.08 for WordPress via the "name" (aka wplc_name) and "email" (aka wplc_email) input fields to wp-json/wp_live_chat_support/v1/start_chat whenever a malicious attacker would initiate a new chat with an administrator. NOTE: this issue exists because of an incomplete fix for CVE-2018-9864.

    Published: 15 May 2018
    6.5
    Medium

    CVE-2018-3611

    Last Modified: 21 Nov 2024

    Bounds check vulnerability in User Mode Driver in Intel Graphics Driver 15.40.x.4 and 21.20.x.x allows unprivileged user to cause a denial of service via local access.

    Published: 15 May 2018
    5.5
    Medium

    CVE-2018-3634

    Last Modified: 21 Nov 2024

    Parameter corruption in NDIS filter driver in Intel Online Connect Access 1.9.22.0 allows an attacker to cause a denial of service via local access.

    Published: 15 May 2018
    5.5
    Medium

    CVE-2018-3661

    Last Modified: 21 Nov 2024

    Buffer overflow in Intel system Configuration utilities selview.exe and syscfg.exe before version 14 build 11 allows a local user to crash these services potentially resulting in a denial of service.

    Published: 15 May 2018
    7.5
    High

    CVE-2018-1111

    Last Modified: 21 Nov 2024

    DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a command injection flaw in the NetworkManager integration script included in the DHCP client. A malicious DHCP server, or an attacker on the local network able to spoof DHCP responses, could use this flaw to execute arbitrary commands with root privileges on systems using NetworkManager and configured to obtain network configuration using the DHCP protocol.

    Published: 15 May 2018
    5.3
    Medium

    CVE-2018-10825

    Last Modified: 21 Nov 2024

    Mimo Baby 2 devices do not use authentication or encryption for the Bluetooth Low Energy (BLE) communication from a Turtle to a Lilypad, which allows attackers to inject fake information about the position and temperature of a baby via a replay or spoofing attack.

    Published: 15 May 2018
    7.5
    High

    CVE-2018-11102

    Last Modified: 21 Nov 2024

    An issue was discovered in Libav 12.3. A read access violation in the mov_probe function in libavformat/mov.c allows remote attackers to cause a denial of service (application crash), as demonstrated by avconv.

    Published: 15 May 2018
    7.5
    High

    CVE-2018-11097

    Last Modified: 21 Nov 2024

    An issue was discovered in cloudwu/cstring through 2016-11-09. There is a memory leak vulnerability that could lead to a program crash.

    Published: 15 May 2018
    7.2
    High

    CVE-2018-11098

    Last Modified: 21 Nov 2024

    An issue was discovered in Frog CMS 0.9.5. There is a file upload vulnerability via the admin/?/plugin/file_manager/upload URI, a similar issue to CVE-2014-4912.

    Published: 15 May 2018
    8.8
    High

    CVE-2018-11100

    Last Modified: 21 Nov 2024

    The decompileSETTARGET function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual size, which allows remote attackers to cause a denial of service (Segmentation fault and application crash) or possibly have unspecified other impact.

    Published: 15 May 2018
    5.3
    Medium

    CVE-2018-1073

    Last Modified: 21 Nov 2024

    The web console login form in ovirt-engine before version 4.2.3 returned different errors for non-existent users and invalid passwords, allowing an attacker to discover the names of valid user accounts.

    Published: 15 May 2018
    7.8
    High

    CVE-2018-20976

    Last Modified: 21 Nov 2024

    An issue was discovered in fs/xfs/xfs_super.c in the Linux kernel before 4.18. A use after free exists, related to xfs_fs_fill_super failure.

    Published: 15 May 2018
    8.8
    High

    CVE-2018-11095

    Last Modified: 21 Nov 2024

    The decompileJUMP function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual size, which allows remote attackers to cause a denial of service (Segmentation fault and application crash) or possibly have unspecified other impact.

    Published: 15 May 2018
    3.3
    Low

    CVE-2018-11125

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 15 May 2018
    9.8
    Critical

    CVE-2018-11210

    Last Modified: 21 Nov 2024

    TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so. NOTE: The tinyxml2 developers have determined that the reported overflow is due to improper use of the library and not a vulnerability in tinyxml2

    Published: 15 May 2018
    5
    Medium

    CVE-2018-1117

    Last Modified: 21 Nov 2024

    ovirt-ansible-roles before version 1.0.6 has a vulnerability due to a missing no_log directive, resulting in the 'Add oVirt Provider to ManageIQ/CloudForms' playbook inadvertently disclosing admin passwords in the provisioning log. In an environment where logs are shared with other parties, this could lead to privilege escalation.

    Published: 15 May 2018
    7
    High

    CVE-2018-5814

    Last Modified: 21 Nov 2024

    In the Linux Kernel before version 4.16.11, 4.14.43, 4.9.102, and 4.4.133, multiple race condition errors when handling probe, disconnect, and rebind operations can be exploited to trigger a use-after-free condition or a NULL pointer dereference by sending multiple USB over IP packets.

    Published: 15 May 2018
    9.9
    Critical

    CVE-2018-11091

    Last Modified: 29 May 2026

    An issue was discovered in MyBiz MyProcureNet 5.0.0. A malicious file can be uploaded to the webserver by an attacker. It is possible for an attacker to upload a script to issue operating system commands. This vulnerability occurs because an attacker is able to adjust the "HiddenFieldControlCustomWhiteListedExtensions" parameter and add arbitrary extensions to the whitelist during the upload. For instance, if the extension .asp is added to the "HiddenFieldControlCustomWhiteListedExtensions" parameter, the server accepts "secctest.asp" as a legitimate file. Hence malicious files can be uploaded in order to execute arbitrary commands to take over the server.

    Published: 14 May 2018
    6.1
    Medium

    CVE-2018-10994

    Last Modified: 21 Nov 2024

    js/views/message_view.js in Open Whisper Signal (aka Signal-Desktop) before 1.10.1 allows XSS via a URL.

    Published: 14 May 2018
    6.1
    Medium

    CVE-2018-11090

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in MyBiz MyProcureNet 5.0.0. This vulnerability within "ProxyPage.aspx" allows an attacker to inject malicious client side scripting which will be executed in the browser of users if they visit the manipulated site.

    Published: 14 May 2018
    8.8
    High

    CVE-2017-14432

    Last Modified: 21 Nov 2024

    An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into the openvpnServer0_tmp= parameter in the "/goform/net\_Web\_get_value" uri to trigger this vulnerability.

    Published: 14 May 2018
    7.5
    High

    CVE-2017-14436

    Last Modified: 21 Nov 2024

    An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP URI can cause a null pointer dereference resulting in denial of service. An attacker can send a GET request to "/MOXA\_CFG2.ini" without a cookie header to trigger this vulnerability.

    Published: 14 May 2018
    8.8
    High

    CVE-2017-14434

    Last Modified: 21 Nov 2024

    An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into the remoteNetmask0= parameter in the "/goform/net\_Web\_get_value" uri to trigger this vulnerability.

    Published: 14 May 2018
    7.5
    High

    CVE-2017-14437

    Last Modified: 21 Nov 2024

    An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP URI can cause a null pointer dereference resulting in denial of service. An attacker can send a GET request to "/MOXA\_LOG.ini" without a cookie header to trigger this vulnerability.

    Published: 14 May 2018
    8.8
    High

    CVE-2017-12121

    Last Modified: 21 Nov 2024

    An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into the rsakey\_name= parm in the "/goform/WebRSAKEYGen" uri to trigger this vulnerability.

    Published: 14 May 2018
    8.8
    High

    CVE-2017-12123

    Last Modified: 21 Nov 2024

    An exploitable clear text transmission of password vulnerability exists in the web server and telnet functionality of Moxa EDR-810 V4.1 build 17030317. An attacker can look at network traffic to get the admin password for the device. The attacker can then use the credentials to login as admin.

    Published: 14 May 2018
    6.5
    Medium

    CVE-2017-12124

    Last Modified: 21 Nov 2024

    An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP URI can cause a null pointer dereference resulting in the web server crashing. An attacker can send a crafted URI to trigger this vulnerability.

    Published: 14 May 2018
    4.4
    Medium

    CVE-2017-12127

    Last Modified: 21 Nov 2024

    A password storage vulnerability exists in the operating system functionality of Moxa EDR-810 V4.1 build 17030317. An attacker with shell access could extract passwords in clear text from the device.

    Published: 14 May 2018
    7.5
    High

    CVE-2017-12128

    Last Modified: 21 Nov 2024

    An exploitable information disclosure vulnerability exists in the Server Agent functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted TCP packet can cause information disclosure. An attacker can send a crafted TCP packet to trigger this vulnerability.

    Published: 14 May 2018
    8
    High

    CVE-2017-12129

    Last Modified: 21 Nov 2024

    An exploitable Weak Cryptography for Passwords vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. An attacker could intercept weakly encrypted passwords and could brute force them.

    Published: 14 May 2018
    8.8
    High

    CVE-2017-14433

    Last Modified: 21 Nov 2024

    An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into the remoteNetwork0= parameter in the "/goform/net\_Web\_get_value" uri to trigger this vulnerability.

    Published: 14 May 2018
    7.5
    High

    CVE-2017-14435

    Last Modified: 21 Nov 2024

    An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP URI can cause a null pointer dereference resulting in denial of service. An attacker can send a GET request to "/MOXA\_CFG.ini" without a cookie header to trigger this vulnerability.

    Published: 14 May 2018
    7.5
    High

    CVE-2017-14438

    Last Modified: 21 Nov 2024

    Exploitable denial of service vulnerabilities exists in the Service Agent functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted packet can cause a denial of service. An attacker can send a large packet to 4000/tcp to trigger this vulnerability.

    Published: 14 May 2018
    7.5
    High

    CVE-2017-14439

    Last Modified: 21 Nov 2024

    Exploitable denial of service vulnerabilities exists in the Service Agent functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted packet can cause a denial of service. An attacker can send a large packet to 4001/tcp to trigger this vulnerability.

    Published: 14 May 2018
    8.8
    High

    CVE-2017-12120

    Last Modified: 21 Nov 2024

    An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation, resulting in a root shell. An attacker can inject OS commands into the ip= parm in the "/goform/net_WebPingGetValue" URI to trigger this vulnerability.

    Published: 14 May 2018
    8.8
    High

    CVE-2017-12125

    Last Modified: 21 Nov 2024

    An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into the CN= parm in the "/goform/net_WebCSRGen" uri to trigger this vulnerability.

    Published: 14 May 2018
    8.8
    High

    CVE-2017-12126

    Last Modified: 21 Nov 2024

    An exploitable cross-site request forgery vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP packet can cause cross-site request forgery. An attacker can create malicious HTML to trigger this vulnerability.

    Published: 14 May 2018
    5.5
    Medium

    CVE-2018-8843

    Last Modified: 21 Nov 2024

    Rockwell Automation Arena versions 15.10.00 and prior contains a use after free vulnerability caused by processing specially crafted Arena Simulation Software files that may cause the software application to crash, potentially losing any unsaved data..

    Published: 14 May 2018
    Unknown

    CVE-2018-10991

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-10990. Reason: This candidate is a reservation duplicate of CVE-2018-10990. Notes: All CVE users should reference CVE-2018-10990 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 14 May 2018
    7.5
    High

    CVE-2017-6021

    Last Modified: 21 Nov 2024

    In Schneider Electric ClearSCADA 2014 R1 (build 75.5210) and prior, 2014 R1.1 (build 75.5387) and prior, 2015 R1 (build 76.5648) and prior, and 2015 R2 (build 77.5882) and prior, an attacker with network access to the ClearSCADA server can send specially crafted sequences of commands and data packets to the ClearSCADA server that can cause the ClearSCADA server process and ClearSCADA communications driver processes to terminate. A CVSS v3 base score of 7.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).

    Published: 14 May 2018
    8.1
    High

    CVE-2018-10252

    Last Modified: 21 Nov 2024

    An issue was discovered on Actiontec WCB6200Q before 1.1.10.20a devices. The admin login session cookie is insecurely generated making admin session hijacking possible. When an admin logs in, a session cookie is generated using the time of day rounded to 10ms. Since the web server returns its current time of day in responses, it is possible to step backward through possible session values until a working one is found. Once a working session ID is found, an attacker then has admin control of the device and can add a secondary SSID to create a backdoor to the network.

    Published: 14 May 2018
    6.6
    Medium

    CVE-2018-10989

    Last Modified: 21 Nov 2024

    Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices are distributed by some ISPs with a default password of "password" for the admin account that is used over an unencrypted http://192.168.0.1 connection, which might allow remote attackers to bypass intended access restrictions by leveraging access to the local network. NOTE: one or more user's guides distributed by ISPs state "At a minimum, you should set a login password."

    Published: 14 May 2018
    8
    High

    CVE-2018-10990

    Last Modified: 21 Nov 2024

    On Arris Touchstone Telephony Gateway TG1682G 9.1.103J6 devices, a logout action does not immediately destroy all state on the device related to the validity of the "credential" cookie, which might make it easier for attackers to obtain access at a later time (e.g., "at least for a few minutes"). NOTE: there is no documentation stating that the web UI's logout feature was supposed to do anything beyond removing the cookie from one instance of a web browser; a client-side logout action is often not intended to address cases where a person has made a copy of a cookie outside of a browser.

    Published: 14 May 2018
    8.8
    High

    CVE-2018-1131

    Last Modified: 21 Nov 2024

    Infinispan permits improper deserialization of trusted data via XML and JSON transcoders under certain server configurations. A user with authenticated access to the server could send a malicious object to a cache configured to accept certain types of objects, achieving code execution and possible further attacks. Versions 9.0.3.Final, 9.1.7.Final, 8.2.10.Final, 9.2.2.Final, 9.3.0.Alpha1 are believed to be affected.

    Published: 14 May 2018
    5.4
    Medium

    CVE-2018-0577

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in WP Google Map Plugin prior to version 4.0.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 May 2018
    5.4
    Medium

    CVE-2018-0578

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in PixelYourSite plugin prior to version 5.3.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 May 2018
    6.1
    Medium

    CVE-2018-0579

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Open Graph for Facebook, Google+ and Twitter Card Tags plugin prior to version 2.2.4.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 May 2018