CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2018-3851

    Last Modified: 21 Nov 2024

    In Hyland Perceptive Document Filters 11.4.0.2647 - x86/x64 Windows/Linux, an exploitable stack-based buffer overflow exists in the DOC-to-HTML conversion functionality of the Hyland Perceptive Document Filters version 11.4.0.2647. A crafted .doc document can lead to a stack-based buffer, resulting in direct code execution.

    Published: 26 Apr 2018
    5.3
    Medium

    CVE-2018-7527

    Last Modified: 21 Nov 2024

    A buffer overflow can be triggered in LeviStudio HMI Editor, Version 1.10 part of Wecon LeviStudioU 1.8.29, and PI Studio HMI Project Programmer, Build: November 11, 2017 and prior by opening a specially crafted file.

    Published: 26 Apr 2018
    7.8
    High

    CVE-2018-3855

    Last Modified: 21 Nov 2024

    In Hyland Perceptive Document Filters 11.4.0.2647 - x86/x64 Windows/Linux, a crafted OpenDocument document can lead to a SkCanvas object double free resulting in direct code execution.

    Published: 26 Apr 2018
    7.5
    High

    CVE-2017-17543

    Last Modified: 21 Nov 2024

    Users' VPN authentication credentials are unsafely encrypted in Fortinet FortiClient for Windows 5.6.0 and below versions, FortiClient for Mac OSX 5.6.0 and below versions and FortiClient SSLVPN Client for Linux 4.4.2335 and below versions, due to the use of a static encryption key and weak encryption algorithms.

    Published: 26 Apr 2018
    8.8
    High

    CVE-2018-3844

    Last Modified: 21 Nov 2024

    In Hyland Perceptive Document Filters 11.4.0.2647 - x86/x64 Windows/Linux, a crafted DOCX document can lead to a use-after-free resulting in direct code execution.

    Published: 26 Apr 2018
    7.8
    High

    CVE-2017-14010

    Last Modified: 21 Nov 2024

    In SpiderControl MicroBrowser Windows XP, Vista 7, 8 and 10, Versions 1.6.30.144 and prior, an uncontrolled search path element vulnerability has been identified which could be exploited by placing a specially crafted DLL file in the search path. If the malicious DLL is loaded prior to the valid DLL, an attacker could execute arbitrary code on the system.

    Published: 26 Apr 2018
    5.4
    Medium

    CVE-2018-7465

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in VirtueMart before 3.2.14. All the textareas in the backend of the plugin can be closed by simply adding </textarea> to the value and saving the product/config. By editing back the product/config, the editor's browser will execute everything after the </textarea>, leading to a possible XSS.

    Published: 26 Apr 2018
    9.8
    Critical

    CVE-2018-10429

    Last Modified: 21 Nov 2024

    Cosmo 1.0.0Beta6 allows attackers to execute arbitrary PHP code via the Database Prefix field on the Database Info screen of install.php.

    Published: 26 Apr 2018
    6.5
    Medium

    CVE-2017-15691

    Last Modified: 21 Nov 2024

    In Apache uimaj prior to 2.10.2, Apache uimaj 3.0.0-xxx prior to 3.0.0-beta, Apache uima-as prior to 2.10.2, Apache uimaFIT prior to 2.4.0, Apache uimaDUCC prior to 2.2.2, this vulnerability relates to an XML external entity expansion (XXE) capability of various XML parsers. UIMA as part of its configuration and operation may read XML from various sources, which could be tainted in ways to cause inadvertent disclosure of local files or other internal content.

    Published: 26 Apr 2018
    4.8
    Medium

    CVE-2018-10430

    Last Modified: 21 Nov 2024

    An issue was discovered in DiliCMS (aka DiligentCMS) 2.4.0. There is a Stored XSS Vulnerability in the fourth textbox of "System setting->site setting" of admin/index.php.

    Published: 26 Apr 2018
    7.2
    High

    CVE-2018-10431

    Last Modified: 21 Nov 2024

    D-Link DIR-615 2.5.17 devices allow Remote Code Execution via shell metacharacters in the Host field of the System / Traceroute screen.

    Published: 26 Apr 2018
    4.8
    Medium

    CVE-2017-9284

    Last Modified: 21 Nov 2024

    IDM 4.6 Identity Applications prior to 4.6.2.1 may expose sensitive information.

    Published: 26 Apr 2018
    2.8
    Low

    CVE-2017-9275

    Last Modified: 21 Nov 2024

    NetIQ Identity Reporting, in versions prior to 5.5 Service Pack 1, is susceptible to an XSS attack.

    Published: 26 Apr 2018
    8.8
    High

    CVE-2018-8072

    Last Modified: 21 Nov 2024

    An issue was discovered on EDIMAX IC-3140W through 3.06, IC-5150W through 3.09, and IC-6220DC through 3.06 devices. The ipcam_cgi binary contains a stack-based buffer overflow that is possible to trigger from a remote unauthenticated /camera-cgi/public/getsysyeminfo.cgi?action=VALUE_HERE HTTP request: if the VALUE_HERE length is more than 0x400 (1024), it is possible to overwrite other values located on the stack due to an incorrect use of the strcpy() function.

    Published: 26 Apr 2018
    8.8
    High

    CVE-2018-1418

    Last Modified: 21 Nov 2024

    IBM Security QRadar SIEM 7.2 and 7.3 could allow a user to bypass authentication which could lead to code execution. IBM X-Force ID: 138824.

    Published: 26 Apr 2018
    4.8
    Medium

    CVE-2018-6518

    Last Modified: 21 Nov 2024

    Composr CMS 10.0.13 has XSS via the site_name parameter in a page=admin-setupwizard&type=step3 request to /adminzone/index.php.

    Published: 26 Apr 2018
    6.5
    Medium

    CVE-2017-1723

    Last Modified: 21 Nov 2024

    IBM Security QRadar SIEM 7.2 and 7.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 134812.

    Published: 26 Apr 2018
    4.8
    Medium

    CVE-2017-14740

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in GeniXCMS 1.1.0 allows remote authenticated users to inject arbitrary web script or HTML via the Menu ID when adding a menu.

    Published: 26 Apr 2018
    6.3
    Medium

    CVE-2017-1722

    Last Modified: 21 Nov 2024

    IBM Security QRadar SIEM 7.2 and 7.3 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 134811.

    Published: 26 Apr 2018
    5.6
    Medium

    CVE-2017-1721

    Last Modified: 21 Nov 2024

    IBM Security QRadar SIEM 7.2 and 7.3 could allow an unauthenticated user to execute code remotely with lower level privileges under unusual circumstances. IBM X-Force ID: 134810.

    Published: 26 Apr 2018
    6.1
    Medium

    CVE-2017-1724

    Last Modified: 21 Nov 2024

    IBM Security QRadar SIEM 7.2 and 7.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 134814.

    Published: 26 Apr 2018
    7.8
    High

    CVE-2018-10425

    Last Modified: 21 Nov 2024

    An issue was discovered in Shanghai 2345 Security Guard 3.7.0. 2345MPCSafe.exe, 2345SafeTray.exe, and 2345Speedup.exe allow local users to bypass intended process protections, and consequently terminate processes, because SetParent is not properly considered.

    Published: 26 Apr 2018
    7.8
    High

    CVE-2018-8974

    Last Modified: 21 Nov 2024

    Centers for Disease Control and Prevention MicrobeTRACE 0.1.11 allows remote attackers to execute arbitrary code, related to code injection via a crafted CSV file with an initial 'Source<script type="text/javascript" src=' line. Fix released on 2018-03-28.

    Published: 26 Apr 2018
    7.8
    High

    CVE-2018-9113

    Last Modified: 21 Nov 2024

    Centers for Disease Control and Prevention MicrobeTRACE 0.1.12 allows remote attackers to execute arbitrary code, related to code injection via a crafted CSV file with an initial '><script type="text/javascript" src=' line. Fix released on 2018-03-29.

    Published: 26 Apr 2018
    4.8
    Medium

    CVE-2018-10391

    Last Modified: 5 May 2025

    An issue was discovered in WUZHI CMS 4.1.0. There is XSS via the email parameter to the index.php?m=member&v=register URI.

    Published: 26 Apr 2018
    4.8
    Medium

    CVE-2018-10422

    Last Modified: 21 Nov 2024

    An issue was discovered in HongCMS 3.0.0. The post news feature has Stored XSS via the content field.

    Published: 26 Apr 2018
    2.7
    Low

    CVE-2018-10423

    Last Modified: 21 Nov 2024

    mc-admin/post.php in MiniCMS 1.10 allows remote attackers to obtain a directory listing of the top-level directory of the web root via a link that becomes available after posting an article.

    Published: 26 Apr 2018
    2.7
    Low

    CVE-2018-10424

    Last Modified: 21 Nov 2024

    mc-admin/post-edit.php in MiniCMS 1.10 allows full path disclosure via a modified id field.

    Published: 26 Apr 2018
    7.5
    High

    CVE-2018-10546

    Last Modified: 21 Nov 2024

    An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. An infinite loop exists in ext/iconv/iconv.c because the iconv stream filter does not reject invalid multibyte sequences.

    Published: 26 Apr 2018
    6.1
    Medium

    CVE-2018-10547

    Last Modified: 21 Nov 2024

    An issue was discovered in ext/phar/phar_object.c in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. There is Reflected XSS on the PHAR 403 and 404 error pages via request data of a request for a .phar file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2018-5712.

    Published: 26 Apr 2018
    6.1
    Medium

    CVE-2018-16658

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 4.18.6. An information leak in cdrom_ioctl_drive_status in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast from unsigned long to int interferes with bounds checking. This is similar to CVE-2018-10940.

    Published: 26 Apr 2018
    8.8
    High

    CVE-2018-6118

    Last Modified: 21 Nov 2024

    A double-eviction in the Incognito mode cache that lead to a user-after-free in cache in Google Chrome prior to 66.0.3359.139 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.

    Published: 26 Apr 2018
    7.5
    High

    CVE-2019-1010083

    Last Modified: 21 Nov 2024

    The Pallets Project Flask before 1.0 is affected by: unexpected memory usage. The impact is: denial of service. The attack vector is: crafted encoded JSON data. The fixed version is: 1. NOTE: this may overlap CVE-2018-1000656.

    Published: 26 Apr 2018
    9.8
    Critical

    CVE-2018-10381

    Last Modified: 21 Nov 2024

    TunnelBear 3.2.0.6 for Windows suffers from a SYSTEM privilege escalation vulnerability through the "TunnelBearMaintenance" service. This service establishes a NetNamedPipe endpoint that allows arbitrary installed applications to connect and call publicly exposed methods. The "OpenVPNConnect" method accepts a server list argument that provides attacker control of the OpenVPN command line. An attacker can specify a dynamic library plugin that should run for every new VPN connection attempt. This plugin will execute code in the context of the SYSTEM user.

    Published: 26 Apr 2018
    7.5
    High

    CVE-2018-10548

    Last Modified: 21 Nov 2024

    An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. ext/ldap/ldap.c allows remote LDAP servers to cause a denial of service (NULL pointer dereference and application crash) because of mishandling of the ldap_get_dn return value.

    Published: 26 Apr 2018
    7.7
    High

    CVE-2018-1074

    Last Modified: 21 Nov 2024

    ovirt-engine API and administration web portal before versions 4.2.2.5, 4.1.11.2 is vulnerable to an exposure of Power Management credentials, including cleartext passwords to Host Administrators. A Host Administrator could use this flaw to gain access to the power management systems of hosts they control.

    Published: 26 Apr 2018
    8.8
    High

    CVE-2018-10549

    Last Modified: 21 Nov 2024

    An issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. exif_read_data in ext/exif/exif.c has an out-of-bounds read for crafted JPEG data because exif_iif_add_value mishandles the case of a MakerNote that lacks a final '\0' character.

    Published: 26 Apr 2018
    7.8
    High

    CVE-2018-8833

    Last Modified: 21 Nov 2024

    Heap-based buffer overflow vulnerabilities in Advantech WebAccess HMI Designer 2.1.7.32 and prior caused by processing specially crafted .pm3 files may allow remote code execution.

    Published: 25 Apr 2018
    7.8
    High

    CVE-2018-8837

    Last Modified: 21 Nov 2024

    Processing specially crafted .pm3 files in Advantech WebAccess HMI Designer 2.1.7.32 and prior may cause the system to write outside the intended buffer area and may allow remote code execution.

    Published: 25 Apr 2018
    7.8
    High

    CVE-2018-8835

    Last Modified: 21 Nov 2024

    Double free vulnerabilities in Advantech WebAccess HMI Designer 2.1.7.32 and prior caused by processing specially crafted .pm3 files may allow remote code execution.

    Published: 25 Apr 2018
    8.8
    High

    CVE-2018-5226

    Last Modified: 21 Nov 2024

    There was an argument injection vulnerability in Sourcetree for Windows via Mercurial repository tag name that is going to be deleted. An attacker with permission to create a tag on a Mercurial repository linked in Sourcetree for Windows is able to exploit this issue to gain code execution on the system. All versions of Sourcetree for Windows before 2.5.5.0 are affected by this vulnerability.

    Published: 25 Apr 2018
    7.8
    High

    CVE-2018-5486

    Last Modified: 21 Nov 2024

    NetApp OnCommand Unified Manager for Linux versions 7.2 though 7.3 ship with the Java Debug Wire Protocol (JDWP) enabled which allows unauthorized local attackers to execute arbitrary code.

    Published: 25 Apr 2018
    7.4
    High

    CVE-2014-0881

    Last Modified: 21 Nov 2024

    The TPM on Integrated Management Module II (IMM2) on IBM Flex System x222 servers with firmware 1.00 through 3.56 allows remote attackers to obtain sensitive key information or cause a denial of service by leveraging an incorrect configuration. IBM X-Force ID: 91146.

    Published: 25 Apr 2018
    5.4
    Medium

    CVE-2018-8716

    Last Modified: 21 Nov 2024

    WSO2 Identity Server before 5.5.0 has XSS via the dashboard, allowing attacks by low-privileged attackers.

    Published: 25 Apr 2018
    6.1
    Medium

    CVE-2018-9101

    Last Modified: 21 Nov 2024

    A vulnerability in the conferencing component of Mitel MiVoice Connect, versions R1707-PREM SP1 (21.84.5535.0) and earlier, and Mitel ST 14.2, versions GA27 (19.49.5200.0) and earlier, could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation for the launch_presenter.php page. A successful exploit could allow an attacker to execute arbitrary scripts.

    Published: 25 Apr 2018
    6.5
    Medium

    CVE-2018-9102

    Last Modified: 21 Nov 2024

    A vulnerability in the conferencing component of Mitel MiVoice Connect, versions R1707-PREM SP1 (21.84.5535.0) and earlier, and Mitel ST 14.2, versions GA27 (19.49.5200.0) and earlier, could allow an unauthenticated attacker to conduct an SQL injection attack due to insufficient input validation for the signin interface. A successful exploit could allow an attacker to extract sensitive information from the database.

    Published: 25 Apr 2018
    6.1
    Medium

    CVE-2018-9103

    Last Modified: 21 Nov 2024

    A vulnerability in the conferencing component of Mitel MiVoice Connect, versions R1707-PREM SP1 (21.84.5535.0) and earlier, and Mitel ST 14.2, versions GA27 (19.49.5200.0) and earlier, could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation for the signin.php page. A successful exploit could allow an attacker to execute arbitrary scripts.

    Published: 25 Apr 2018
    4.1
    Medium

    CVE-2014-0872

    Last Modified: 21 Nov 2024

    The installation process in IBM Security Key Lifecycle Manager 2.5 stores unencrypted credentials, which might allow local users to obtain sensitive information by leveraging root access. IBM X-Force ID: 90988.

    Published: 25 Apr 2018
    6.5
    Medium

    CVE-2014-0882

    Last Modified: 21 Nov 2024

    Integrated Management Module II (IMM2) on IBM Flex System, NeXtScale, System x3xxx, and System x iDataPlex systems might allow remote authenticated users to obtain sensitive account information via vectors related to generated Service Advisor data (FFDC). IBM X-Force ID: 91149.

    Published: 25 Apr 2018
    6.1
    Medium

    CVE-2018-9104

    Last Modified: 21 Nov 2024

    A vulnerability in the conferencing component of Mitel MiVoice Connect, versions R1707-PREM SP1 (21.84.5535.0) and earlier, and Mitel ST 14.2, versions GA27 (19.49.5200.0) and earlier, could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation for the api.php page. A successful exploit could allow an attacker to execute arbitrary scripts.

    Published: 25 Apr 2018