CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2014-1399

    Last Modified: 21 Nov 2024

    The entity wrapper access API in the Entity API module 7.x-1.x before 7.x-1.3 for Drupal might allow remote authenticated users to bypass intended access restrictions on referenced entities via unspecified vectors.

    Published: 10 Apr 2018
    8.8
    High

    CVE-2014-1946

    Last Modified: 21 Nov 2024

    OpenDocMan 1.2.7 and earlier does not properly validate allowed actions, which allows remote authenticated users to bypass an intended access restrictions and assign administrative privileges to themselves via a crafted request to signup.php.

    Published: 10 Apr 2018
    5.4
    Medium

    CVE-2018-2403

    Last Modified: 21 Nov 2024

    Under certain conditions, SAP Disclosure Management 10.1 allows an attacker to access information which would otherwise be restricted. It is possible for an authorized user to get SAP Disclosure Management to point a specific chapter type to a chapter the user has not been given access to.

    Published: 10 Apr 2018
    4.3
    Medium

    CVE-2018-2404

    Last Modified: 21 Nov 2024

    SAP Disclosure Management 10.1 allows an attacker to upload any file without proper file format validation.

    Published: 10 Apr 2018
    5.4
    Medium

    CVE-2018-2405

    Last Modified: 21 Nov 2024

    SAP Solution Manager, 7.10, 7.20, Incident Management Work Center allows an attacker to upload a malicious script as an attachment and this could lead to possible Cross-Site Scripting.

    Published: 10 Apr 2018
    5.3
    Medium

    CVE-2018-2406

    Last Modified: 21 Nov 2024

    Unquoted windows search path (directory/path traversal) vulnerability in Crystal Reports Server, OEM Edition (CRSE), 4.0, 4.10, 4.20, 4.30, startup path.

    Published: 10 Apr 2018
    5.4
    Medium

    CVE-2018-2410

    Last Modified: 21 Nov 2024

    SAP Business One, 9.2, 9.3, browser access does not sufficiently encode user controlled inputs, which results in a Cross-Site Scripting (XSS) vulnerability.

    Published: 10 Apr 2018
    3.8
    Low

    CVE-2018-2412

    Last Modified: 21 Nov 2024

    SAP Disclosure Management 10.1 does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.

    Published: 10 Apr 2018
    5.4
    Medium

    CVE-2018-2413

    Last Modified: 21 Nov 2024

    SAP Disclosure Management 10.1 does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.

    Published: 10 Apr 2018
    5.3
    Medium

    CVE-2015-1957

    Last Modified: 21 Nov 2024

    IBM WebSphere MQ 7.5.x before 7.5.0.6 and 8.0.x before 8.0.0.3 allows remote authenticated users to obtain sensitive information via a man-in-the-middle attack, related to duplication of message data in cleartext outside the protected payload. IBM X-Force ID: 103482.

    Published: 10 Apr 2018
    8.1
    High

    CVE-2014-3999

    Last Modified: 21 Nov 2024

    The Horde_Ldap library before 2.0.6 for Horde allows remote attackers to bypass authentication by leveraging knowledge of the LDAP bind user DN.

    Published: 10 Apr 2018
    6.5
    Medium

    CVE-2014-1398

    Last Modified: 21 Nov 2024

    The entity wrapper access API in the Entity API module 7.x-1.x before 7.x-1.3 for Drupal might allow remote authenticated users to bypass intended access restrictions on comment, user and node statistics properties via unspecified vectors.

    Published: 10 Apr 2018
    6.5
    Medium

    CVE-2014-1400

    Last Modified: 21 Nov 2024

    The entity_access API in the Entity API module 7.x-1.x before 7.x-1.3 for Drupal might allow remote authenticated users to bypass intended access restrictions and read unpublished comments via unspecified vectors.

    Published: 10 Apr 2018
    6.5
    Medium

    CVE-2014-1889

    Last Modified: 21 Nov 2024

    The Group creation process in the Buddypress plugin before 1.9.2 for WordPress allows remote authenticated users to gain control of arbitrary groups by leveraging a missing permissions check.

    Published: 10 Apr 2018
    9.8
    Critical

    CVE-2014-2073

    Last Modified: 21 Nov 2024

    Stack-based buffer overflow in Dassault Systemes CATIA V5-6R2013 allows remote attackers to execute arbitrary code via a crafted packet, related to "CATV5_Backbone_Bus."

    Published: 10 Apr 2018
    8.8
    High

    CVE-2014-0158

    Last Modified: 21 Nov 2024

    Heap-based buffer overflow in the JPEG2000 image tile decoder in OpenJPEG before 1.5.2 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file because of incorrect j2k_decode, j2k_read_eoc, and tcd_decode_tile interaction, a related issue to CVE-2013-6045. NOTE: this is not a duplicate of CVE-2013-1447, because the scope of CVE-2013-1447 was specifically defined in http://openwall.com/lists/oss-security/2013/12/04/6 as only "null pointer dereferences, division by zero, and anything that would just fit as DoS."

    Published: 10 Apr 2018
    5.3
    Medium

    CVE-2014-2078

    Last Modified: 21 Nov 2024

    The backend in Open-Xchange (OX) AppSuite 7.4.2 before 7.4.2-rev9 allows remote attackers to obtain sensitive information about user email addresses in opportunistic circumstances by leveraging a failure in e-mail auto configuration for external accounts.

    Published: 10 Apr 2018
    9.8
    Critical

    CVE-2014-3114

    Last Modified: 21 Nov 2024

    The EZPZ One Click Backup (ezpz-one-click-backup) plugin 12.03.10 and earlier for WordPress allows remote attackers to execute arbitrary commands via the cmd parameter to functions/ezpz-archive-cmd.php.

    Published: 10 Apr 2018
    7.5
    High

    CVE-2015-0172

    Last Modified: 21 Nov 2024

    IBM Security SiteProtector System 3.0, 3.1.0 and 3.1.1 allows remote attackers to bypass intended security restrictions and consequently execute unspecified commands and obtain sensitive information via unknown vectors. IBM X-Force ID: 100927.

    Published: 10 Apr 2018
    6.3
    Medium

    CVE-2018-2409

    Last Modified: 21 Nov 2024

    Improper session management when using SAP Cloud Platform 2.0 (Connectivity Service and Cloud Connector). Under certain conditions, data of some other user may be shown or modified when using an application built on top of SAP Cloud Platform.

    Published: 10 Apr 2018
    7.3
    High

    CVE-2018-2408

    Last Modified: 21 Nov 2024

    Improper Session Management in SAP Business Objects, 4.0, from 4.10, from 4.20, 4.30, CMC/BI Launchpad/Fiorified BI Launchpad. In case of password change for a user, all other active sessions created using older password continues to be active.

    Published: 10 Apr 2018
    9.8
    Critical

    CVE-2017-14323

    Last Modified: 21 Nov 2024

    SSRF (Server Side Request Forgery) in getRemoteImage.php in Ueditor in Onethink V1.0 and V1.1 allows remote attackers to obtain sensitive information, attack intranet hosts, or possibly trigger remote command execution via the upfile parameter.

    Published: 10 Apr 2018
    9.1
    Critical

    CVE-2017-14611

    Last Modified: 21 Nov 2024

    SSRF (Server Side Request Forgery) in Cockpit 0.13.0 allows remote attackers to read arbitrary files or send TCP traffic to intranet hosts via the url parameter, related to use of the discontinued aheinze/fetch_url_contents component.

    Published: 10 Apr 2018
    6.1
    Medium

    CVE-2017-18100

    Last Modified: 21 Nov 2024

    The agile wallboard gadget in Atlassian Jira before version 7.8.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the name of quick filters.

    Published: 10 Apr 2018
    7.5
    High

    CVE-2017-1081

    Last Modified: 21 Nov 2024

    In FreeBSD before 11.0-STABLE, 11.0-RELEASE-p10, 10.3-STABLE, and 10.3-RELEASE-p19, ipfilter using "keep state" or "keep frags" options can cause a kernel panic when fed specially crafted packet fragments due to incorrect memory handling.

    Published: 10 Apr 2018
    6.5
    Medium

    CVE-2017-18101

    Last Modified: 21 Nov 2024

    Various administrative external system import resources in Atlassian JIRA Server (including JIRA Core) before version 7.6.5, from version 7.7.0 before version 7.7.3, from version 7.8.0 before version 7.8.3 and before version 7.9.0 allow remote attackers to run import operations and to determine if an internal service exists through missing permission checks.

    Published: 10 Apr 2018
    4.8
    Medium

    CVE-2018-5227

    Last Modified: 21 Nov 2024

    Various administrative application link resources in Atlassian Application Links before version 5.4.4 allow remote attackers with administration rights to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the display url of a configured application link.

    Published: 10 Apr 2018
    8.8
    High

    CVE-2018-9934

    Last Modified: 21 Nov 2024

    The reset-password feature in MetInfo 6.0 allows remote attackers to change arbitrary passwords via vectors involving a Host HTTP header that is modified to specify a web server under the attacker's control.

    Published: 10 Apr 2018
    9.8
    Critical

    CVE-2018-9924

    Last Modified: 21 Nov 2024

    An issue was discovered in idreamsoft iCMS through 7.0.7. SQL injection exists via the pid array parameter in an admincp.php?app=tag&do=save&frame=iPHP request.

    Published: 10 Apr 2018
    5.4
    Medium

    CVE-2018-9925

    Last Modified: 21 Nov 2024

    An issue was discovered in idreamsoft iCMS through 7.0.7. XSS exists via the nickname field in an admincp.php?app=user&do=save&frame=iPHP request.

    Published: 10 Apr 2018
    8.8
    High

    CVE-2018-9926

    Last Modified: 21 Nov 2024

    An issue was discovered in WUZHI CMS 4.1.0. There is a CSRF vulnerability that can add an admin account via index.php?m=core&f=power&v=add.

    Published: 10 Apr 2018
    8.8
    High

    CVE-2018-9927

    Last Modified: 21 Nov 2024

    An issue was discovered in WUZHI CMS 4.1.0. There is a CSRF vulnerability that can add a user account via index.php?m=member&f=index&v=add.

    Published: 10 Apr 2018
    6.1
    Medium

    CVE-2018-9928

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in save.php in MetInfo 6.0 allows remote attackers to inject arbitrary web script or HTML via the webname or weburl parameter.

    Published: 10 Apr 2018
    5.3
    Medium

    CVE-2018-9922

    Last Modified: 21 Nov 2024

    An issue was discovered in idreamsoft iCMS through 7.0.7. Physical path leakage exists via an invalid nickname field that reveals a core/library/weixin.class.php pathname.

    Published: 10 Apr 2018
    8.8
    High

    CVE-2018-9923

    Last Modified: 21 Nov 2024

    An issue was discovered in idreamsoft iCMS through 7.0.7. CSRF exists in admincp.php, as demonstrated by adding an article via an app=article&do=save&frame=iPHP request.

    Published: 10 Apr 2018
    6.8
    Medium

    CVE-2018-9840

    Last Modified: 21 Nov 2024

    The Open Whisper Signal app before 2.23.2 for iOS allows physically proximate attackers to bypass the screen locker feature via certain rapid sequences of actions that include app opening, clicking on cancel, and using the home button.

    Published: 10 Apr 2018
    5.5
    Medium

    CVE-2018-10016

    Last Modified: 21 Nov 2024

    Netwide Assembler (NASM) 2.14rc0 has a division-by-zero vulnerability in the expr5 function in asm/eval.c via a malformed input file.

    Published: 10 Apr 2018
    8.8
    High

    CVE-2018-4932

    Last Modified: 21 Nov 2024

    Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable Use-After-Free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

    Published: 10 Apr 2018
    6.5
    Medium

    CVE-2018-4933

    Last Modified: 21 Nov 2024

    Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 10 Apr 2018
    6.5
    Medium

    CVE-2018-4934

    Last Modified: 21 Nov 2024

    Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

    Published: 10 Apr 2018
    8.8
    High

    CVE-2018-4935

    Last Modified: 21 Nov 2024

    Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

    Published: 10 Apr 2018
    7.8
    High

    CVE-2018-9918

    Last Modified: 21 Nov 2024

    libqpdf.a in QPDF through 8.0.2 mishandles certain "expected dictionary key but found non-name object" cases, allowing remote attackers to cause a denial of service (stack exhaustion), related to the QPDFObjectHandle and QPDF_Dictionary classes, because nesting in direct objects is not restricted.

    Published: 10 Apr 2018
    5.4
    Medium

    CVE-2017-7534

    Last Modified: 21 Nov 2024

    OpenShift Enterprise version 3.x is vulnerable to a stored XSS via the log viewer for pods. The flaw is due to lack of sanitation of user input, specifically terminal escape characters, and the creation of clickable links automatically when viewing the log files for a pod.

    Published: 10 Apr 2018
    7.5
    High

    CVE-2018-1000656

    Last Modified: 21 Nov 2024

    The Pallets Project flask version Before 0.12.3 contains a CWE-20: Improper Input Validation vulnerability in flask that can result in Large amount of memory usage possibly leading to denial of service. This attack appear to be exploitable via Attacker provides JSON data in incorrect encoding. This vulnerability appears to have been fixed in 0.12.3. NOTE: this may overlap CVE-2019-1010083.

    Published: 10 Apr 2018
    6.5
    Medium

    CVE-2018-4936

    Last Modified: 21 Nov 2024

    Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable Heap Overflow vulnerability. Successful exploitation could lead to information disclosure.

    Published: 10 Apr 2018
    8.8
    High

    CVE-2018-4937

    Last Modified: 21 Nov 2024

    Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

    Published: 10 Apr 2018
    7.8
    High

    CVE-2018-5463

    Last Modified: 21 Nov 2024

    A structured exception handler overflow vulnerability in Leao Consultoria e Desenvolvimento de Sistemas (LCDS) LTDA ME LAquis SCADA 4.1.0.3391 and earlier may allow code execution.

    Published: 9 Apr 2018
    3.7
    Low

    CVE-2017-2826

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists in the iConfig proxy request of Zabbix server 2.4.X. A specially crafted iConfig proxy request can cause the Zabbix server to send the configuration information of any Zabbix proxy, resulting in information disclosure. An attacker can make requests from an active Zabbix proxy to trigger this vulnerability.

    Published: 9 Apr 2018
    9.8
    Critical

    CVE-2018-1217

    Last Modified: 21 Nov 2024

    Avamar Installation Manager in Dell EMC Avamar Server 7.3.1, 7.4.1, and 7.5.0, and Dell EMC Integrated Data Protection Appliance 2.0 and 2.1, is affected by a missing access control check vulnerability which could potentially allow a remote unauthenticated attacker to read or change the Local Download Service (LDLS) credentials. The LDLS credentials are used to connect to Dell EMC Online Support. If the LDLS configuration was changed to an invalid configuration, then Avamar Installation Manager may not be able to connect to Dell EMC Online Support web site successfully. The remote unauthenticated attacker can also read and use the credentials to login to Dell EMC Online Support, impersonating the AVI service actions using those credentials.

    Published: 9 Apr 2018
    6.1
    Medium

    CVE-2018-6182

    Last Modified: 21 Nov 2024

    Mahara 16.10 before 16.10.9 and 17.04 before 17.04.7 and 17.10 before 17.10.4 are vulnerable to bad input when TinyMCE is bypassed by POST packages. Therefore, Mahara should not rely on TinyMCE's code stripping alone but also clean input on the server / PHP side as one can create own packets of POST data containing bad content with which to hit the server.

    Published: 9 Apr 2018