CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-0581

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in ASUS RT-AC87U Firmware version prior to 3.0.0.4.378.9383 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 May 2018
    6.1
    Medium

    CVE-2018-0582

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in ASUS RT-AC68U Firmware version prior to 3.0.0.4.380.1031 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 May 2018
    5.4
    Medium

    CVE-2018-0585

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 May 2018
    4.3
    Medium

    CVE-2018-0586

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in the shortcodes function of Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated attackers to read arbitrary files via unspecified vectors.

    Published: 14 May 2018
    4.3
    Medium

    CVE-2018-0587

    Last Modified: 21 Nov 2024

    Unrestricted file upload vulnerability in Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated users to upload arbitrary image files via unspecified vectors.

    Published: 14 May 2018
    7.5
    High

    CVE-2018-0588

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in the AJAX function of Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 14 May 2018
    4.3
    Medium

    CVE-2018-0589

    Last Modified: 21 Nov 2024

    Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated attackers to bypass access restriction to add a new form in the 'Forms' page via unspecified vectors.

    Published: 14 May 2018
    4.3
    Medium

    CVE-2018-0590

    Last Modified: 21 Nov 2024

    Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated attackers to bypass access restriction to modify the other users profiles via unspecified vectors.

    Published: 14 May 2018
    8.8
    High

    CVE-2018-0568

    Last Modified: 21 Nov 2024

    Unrestricted file upload vulnerability in SiteBridge Inc. Joruri Gw Ver 3.2.0 and earlier allows remote authenticated users to execute arbitrary PHP code via unspecified vectors.

    Published: 14 May 2018
    5.4
    Medium

    CVE-2018-0576

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Events Manager plugin prior to version 5.9 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 May 2018
    7.8
    High

    CVE-2018-0580

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in CELSYS, Inc CLIP STUDIO series (CLIP STUDIO PAINT (for Windows) EX/PRO/DEBUT Ver.1.7.3 and earlier, CLIP STUDIO ACTION (for Windows) Ver.1.5.5 and earlier, with its timestamp prior to April 25, 2018, 12:11:31, and CLIP STUDIO MODELER (for Windows) Ver.1.6.3 and earlier, with its timestamp prior to April 25, 2018, 17:02:49) allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 14 May 2018
    6.1
    Medium

    CVE-2017-16860

    Last Modified: 21 Nov 2024

    The invalidRedirectUrl template in Atlassian Application Links before version 5.2.7, from version 5.3.0 before version 5.3.4 and from version 5.4.0 before version 5.4.3 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the redirectUrl parameter link in the redirect warning message.

    Published: 14 May 2018
    6.1
    Medium

    CVE-2018-0583

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in ASUS RT-AC1200HP Firmware version prior to 3.0.0.4.380.4180 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 May 2018
    5.9
    Medium

    CVE-2018-0591

    Last Modified: 21 Nov 2024

    The KINEPASS App for Android Ver 3.1.1 and earlier, and for iOS Ver 3.1.2 and earlier do not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 14 May 2018
    6.1
    Medium

    CVE-2018-5230

    Last Modified: 21 Nov 2024

    The issue collector in Atlassian Jira before version 7.6.6, from version 7.7.0 before version 7.7.4, from version 7.8.0 before version 7.8.4 and from version 7.9.0 before version 7.9.2 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the error message of custom fields when an invalid value is specified.

    Published: 14 May 2018
    5.9
    Medium

    CVE-2018-10944

    Last Modified: 21 Nov 2024

    The request_dividend function of a smart contract implementation for ROC (aka Rasputin Online Coin), an Ethereum ERC20 token, allows attackers to steal all of the contract's Ether.

    Published: 14 May 2018
    7.8
    High

    CVE-2018-11034

    Last Modified: 21 Nov 2024

    In 2345 Security Guard 3.7, the driver file (2345NsProtect.sys, X64 version) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCTL 0x8000200D.

    Published: 14 May 2018
    7.8
    High

    CVE-2018-11035

    Last Modified: 21 Nov 2024

    In 2345 Security Guard 3.7, the driver file (2345NsProtect.sys, X64 version) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCTL 0x80002019.

    Published: 14 May 2018
    Unknown

    CVE-2018-11103

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 14 May 2018
    5.9
    Medium

    CVE-2017-17688

    Last Modified: 21 Nov 2024

    The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a problem in the OpenPGP specification

    Published: 14 May 2018
    5.9
    Medium

    CVE-2017-17689

    Last Modified: 21 Nov 2024

    The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.

    Published: 14 May 2018
    9.8
    Critical

    CVE-2018-11031

    Last Modified: 21 Nov 2024

    application/home/controller/debug.php in PHPRAP 1.0.4 through 1.0.8 has SSRF via the /debug URI, as demonstrated by an api[url]=file:////etc/passwd&api[method]=get POST request.

    Published: 14 May 2018
    9.8
    Critical

    CVE-2018-11032

    Last Modified: 21 Nov 2024

    PHPRAP 1.0.4 through 1.0.8 has SQL Injection via the application/home/controller/project.php search() function.

    Published: 14 May 2018
    7.8
    High

    CVE-2018-11033

    Last Modified: 21 Nov 2024

    The DCTStream::readHuffSym function in Stream.cc in the DCT decoder in xpdf before 4.00 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted JPEG data.

    Published: 14 May 2018
    8.8
    High

    CVE-2018-11018

    Last Modified: 21 Nov 2024

    An issue was discovered in PbootCMS v1.0.7. Cross-site request forgery (CSRF) vulnerability in apps/admin/controller/system/RoleController.php allows remote attackers to add administrator accounts via admin.php/role/add.html.

    Published: 13 May 2018
    8.8
    High

    CVE-2018-11017

    Last Modified: 21 Nov 2024

    The newVar_N function in decompile.c in libming through 0.4.8 mishandles cases where the header indicates a file size greater than the actual size, which allows remote attackers to cause a denial of service (Segmentation fault and application crash) or possibly have unspecified other impact.

    Published: 13 May 2018
    6.1
    Medium

    CVE-2018-10678

    Last Modified: 21 Nov 2024

    MyBB 1.8.15, when accessed with Microsoft Edge, mishandles 'target="_blank" rel="noopener"' in A elements, which makes it easier for remote attackers to conduct redirection attacks.

    Published: 13 May 2018
    9.8
    Critical

    CVE-2018-11013

    Last Modified: 21 Nov 2024

    Stack-based buffer overflow in the websRedirect function in GoAhead on D-Link DIR-816 A2 (CN) routers with firmware version 1.10B05 allows unauthenticated remote attackers to execute arbitrary code via a request with a long HTTP Host header.

    Published: 13 May 2018
    6.5
    Medium

    CVE-2018-11037

    Last Modified: 21 Nov 2024

    In Exiv2 0.26, the Exiv2::PngImage::printStructure function in pngimage.cpp allows remote attackers to cause an information leak via a crafted file.

    Published: 13 May 2018
    7.5
    High

    CVE-2018-11358

    Last Modified: 21 Nov 2024

    In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the Q.931 dissector could crash. This was addressed in epan/dissectors/packet-q931.c by avoiding a use-after-free after a malformed packet prevented certain cleanup.

    Published: 13 May 2018
    6.1
    Medium

    CVE-2018-11012

    Last Modified: 21 Nov 2024

    ruibaby Halo 0.0.2 has stored XSS via the loginName and loginPwd parameters in a failed login attempt to AdminController.java.

    Published: 12 May 2018
    6.5
    Medium

    CVE-2018-11003

    Last Modified: 21 Nov 2024

    An issue was discovered in YXcms 1.4.7. Cross-site request forgery (CSRF) vulnerability in protected/apps/admin/controller/adminController.php allows remote attackers to delete administrator accounts via index.php?r=admin/admin/admindel.

    Published: 12 May 2018
    8.8
    High

    CVE-2018-11004

    Last Modified: 21 Nov 2024

    An issue was discovered in SDcms v1.5. Cross-site request forgery (CSRF) vulnerability in /WWW//app/admin/controller/admincontroller.php allows remote attackers to add administrator accounts via m=admin&c=admin&a=add.

    Published: 12 May 2018
    6.1
    Medium

    CVE-2018-11011

    Last Modified: 21 Nov 2024

    ruibaby Halo 0.0.2 has stored XSS via the commentAuthor field to FrontCommentController.java.

    Published: 12 May 2018
    9.8
    Critical

    CVE-2018-10996

    Last Modified: 21 Nov 2024

    The weblogin_log function in /htdocs/cgibin on D-Link DIR-629-B1 devices allows attackers to execute arbitrary code or cause a denial of service (buffer overflow) via a session.cgi?ACTION=logout request involving a long REMOTE_ADDR environment variable.

    Published: 12 May 2018
    6.5
    Medium

    CVE-2018-14680

    Last Modified: 21 Nov 2024

    An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. It does not reject blank CHM filenames.

    Published: 12 May 2018
    7.5
    High

    CVE-2018-11360

    Last Modified: 21 Nov 2024

    In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the GSM A DTAP dissector could crash. This was addressed in epan/dissectors/packet-gsm_a_dtap.c by fixing an off-by-one error that caused a buffer overflow.

    Published: 12 May 2018
    7.5
    High

    CVE-2018-11361

    Last Modified: 21 Nov 2024

    In Wireshark 2.6.0, the IEEE 802.11 protocol dissector could crash. This was addressed in epan/crypt/dot11decrypt.c by avoiding a buffer overflow during FTE processing in Dot11DecryptTDLSDeriveKey.

    Published: 12 May 2018
    6.5
    Medium

    CVE-2018-14679

    Last Modified: 21 Nov 2024

    An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL chunk number validity checks, which could lead to denial of service (uninitialized data dereference and application crash).

    Published: 12 May 2018
    6.5
    Medium

    CVE-2018-10999

    Last Modified: 21 Nov 2024

    An issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk::parseTXTChunk function has a heap-based buffer over-read.

    Published: 12 May 2018
    7.5
    High

    CVE-2018-11355

    Last Modified: 21 Nov 2024

    In Wireshark 2.6.0, the RTCP dissector could crash. This was addressed in epan/dissectors/packet-rtcp.c by avoiding a buffer overflow for packet status chunks.

    Published: 12 May 2018
    7.5
    High

    CVE-2018-11356

    Last Modified: 21 Nov 2024

    In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the DNS dissector could crash. This was addressed in epan/dissectors/packet-dns.c by avoiding a NULL pointer dereference for an empty name in an SRV record.

    Published: 12 May 2018
    7.5
    High

    CVE-2018-11357

    Last Modified: 21 Nov 2024

    In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the LTP dissector and other dissectors could consume excessive memory. This was addressed in epan/tvbuff.c by rejecting negative lengths.

    Published: 12 May 2018
    9.8
    Critical

    CVE-2018-10992

    Last Modified: 21 Nov 2024

    lilypond-invoke-editor in LilyPond 2.19.80 does not validate strings before launching the program specified by the BROWSER environment variable, which allows remote attackers to conduct argument-injection attacks via a crafted URL, as demonstrated by a --proxy-pac-file argument, because the GNU Guile code uses the system Scheme procedure instead of the system* Scheme procedure. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-17523.

    Published: 11 May 2018
    5.4
    Medium

    CVE-2018-5303

    Last Modified: 21 Nov 2024

    An issue was discovered on the Impinj Speedway Connect R420 RFID Reader before 2.2.2. The license key parameter of the web application is vulnerable to Cross Site Scripting; this vulnerability allows an attacker to send malicious code to another user.

    Published: 11 May 2018
    4.3
    Medium

    CVE-2018-5304

    Last Modified: 21 Nov 2024

    An issue was discovered on the Impinj Speedway Connect R420 RFID Reader before 2.2.2. The affected web interface is vulnerable to ClickJacking or UI Redressing: it is possible to access the web application in an iframe, and clicking on the iframe will redirect to a third-party application or perform other malicious actions.

    Published: 11 May 2018
    8.8
    High

    CVE-2018-6023

    Last Modified: 21 Nov 2024

    Fastweb FASTgate 0.00.47 devices are vulnerable to CSRF, with impacts including Wi-Fi password changing, Guest Wi-Fi activating, etc.

    Published: 11 May 2018
    6.1
    Medium

    CVE-2018-6361

    Last Modified: 21 Nov 2024

    Easy Hosting Control Panel (EHCP) v0.37.12.b has XSS via the op parameter, as demonstrated by adding a backdoor FTP account.

    Published: 11 May 2018
    8.8
    High

    CVE-2018-6458

    Last Modified: 21 Nov 2024

    Easy Hosting Control Panel (EHCP) v0.37.12.b allows remote attackers to conduct cross-site request forgery (CSRF) attacks by leveraging lack of CSRF protection.

    Published: 11 May 2018
    7.8
    High

    CVE-2018-6618

    Last Modified: 21 Nov 2024

    Easy Hosting Control Panel (EHCP) v0.37.12.b allows attackers to obtain sensitive information by leveraging cleartext password storage.

    Published: 11 May 2018