CVE Feed

    Dashboard / CVE

    9
    Critical

    CVE-2018-1085

    Last Modified: 21 Nov 2024

    openshift-ansible before versions 3.9.23, 3.7.46 deploys a misconfigured etcd file that causes the SSL client certificate authentication to be disabled. Quotations around the values of ETCD_CLIENT_CERT_AUTH and ETCD_PEER_CLIENT_CERT_AUTH in etcd.conf result in etcd being configured to allow remote users to connect without any authentication if they can access the etcd server bound to the network on the master nodes. An attacker could use this flaw to read and modify all the data about the Openshift cluster in the etcd datastore, potentially adding another compute node, or bringing down the entire cluster.

    Published: 23 Mar 2018
    9.8
    Critical

    CVE-2018-1000140

    Last Modified: 21 Nov 2024

    rsyslog librelp version 1.2.14 and earlier contains a Buffer Overflow vulnerability in the checking of x509 certificates from a peer that can result in Remote code execution. This attack appear to be exploitable a remote attacker that can connect to rsyslog and trigger a stack buffer overflow by sending a specially crafted x509 certificate.

    Published: 23 Mar 2018
    5.5
    Medium

    CVE-2018-1090

    Last Modified: 21 Nov 2024

    In Pulp before version 2.16.2, secrets are passed into override_config when triggering a task and then become readable to all users with read access on the distributor/importer. An attacker with API access can then view these secrets.

    Published: 23 Mar 2018
    5.4
    Medium

    CVE-2018-8903

    Last Modified: 21 Nov 2024

    Open-AudIT Professional 2.1 allows XSS via the Name or Description field on the Credentials screen.

    Published: 22 Mar 2018
    5.4
    Medium

    CVE-2018-8942

    Last Modified: 21 Nov 2024

    Xiuno BBS 4.0.0 has XSS in the adminpage sitename parameter.

    Published: 22 Mar 2018
    9.8
    Critical

    CVE-2018-8943

    Last Modified: 21 Nov 2024

    There is a SQL injection in the PHPSHE 1.6 userbank parameter.

    Published: 22 Mar 2018
    9.8
    Critical

    CVE-2018-8944

    Last Modified: 21 Nov 2024

    PHPOK 4.8.338 has an arbitrary file upload vulnerability.

    Published: 22 Mar 2018
    6.5
    Medium

    CVE-2017-18243

    Last Modified: 21 Nov 2024

    The unpack_parse_unit function in libavcodec/dirac_parser.c in Libav 12.2 allows remote attackers to cause a denial of service (segmentation fault) via a crafted file.

    Published: 22 Mar 2018
    6.5
    Medium

    CVE-2017-18242

    Last Modified: 21 Nov 2024

    The apply_dependent_coupling function in libavcodec/aacdec.c in Libav 12.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted aac file.

    Published: 22 Mar 2018
    6.5
    Medium

    CVE-2017-18244

    Last Modified: 21 Nov 2024

    The stereo_processing function in libavcodec/aacps.c in Libav 12.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted aac file, related to ff_ps_apply.

    Published: 22 Mar 2018
    Unknown

    CVE-2018-1210

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 22 Mar 2018
    7.5
    High

    CVE-2018-5503

    Last Modified: 21 Nov 2024

    On F5 BIG-IP versions 13.0.0 - 13.1.0.3 or 12.0.0 - 12.1.3.1, TMM may restart when processing a specifically crafted page through a virtual server with an associated PEM policy that has content insertion as an action.

    Published: 22 Mar 2018
    8.1
    High

    CVE-2018-5504

    Last Modified: 21 Nov 2024

    In some circumstances, the Traffic Management Microkernel (TMM) does not properly handle certain malformed Websockets requests/responses, which allows remote attackers to cause a denial-of-service (DoS) or possible remote code execution on the F5 BIG-IP system running versions 13.0.0 - 13.1.0.3 or 12.1.0 - 12.1.3.1.

    Published: 22 Mar 2018
    5.9
    Medium

    CVE-2018-5505

    Last Modified: 21 Nov 2024

    On F5 BIG-IP versions 13.1.0 - 13.1.0.3, when ASM and AVR are both provisioned, TMM may restart while processing DNS requests when the virtual server is configured with a DNS profile and the Protocol setting is set to TCP.

    Published: 22 Mar 2018
    7.3
    High

    CVE-2018-7516

    Last Modified: 21 Nov 2024

    A server-side request forgery vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which could lead to proxied network scans.

    Published: 22 Mar 2018
    9.1
    Critical

    CVE-2018-7528

    Last Modified: 21 Nov 2024

    An SQL injection vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which may allow an attacker to alter stored data.

    Published: 22 Mar 2018
    Unknown

    CVE-2018-1208

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 22 Mar 2018
    Unknown

    CVE-2018-1209

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 22 Mar 2018
    8.8
    High

    CVE-2018-7524

    Last Modified: 21 Nov 2024

    A cross-site request forgery vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which may allow an unauthorized user to be added to the system.

    Published: 22 Mar 2018
    9.8
    Critical

    CVE-2018-7532

    Last Modified: 21 Nov 2024

    Unauthentication vulnerabilities have been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which may allow remote code execution.

    Published: 22 Mar 2018
    7.5
    High

    CVE-2018-5502

    Last Modified: 21 Nov 2024

    On F5 BIG-IP versions 13.0.0 - 13.1.0.3, attackers may be able to disrupt services on the BIG-IP system with maliciously crafted client certificate. This vulnerability affects virtual servers associated with Client SSL profile which enables the use of client certificate authentication. Client certificate authentication is not enabled by default in Client SSL profile. There is no control plane exposure.

    Published: 22 Mar 2018
    7.5
    High

    CVE-2018-5509

    Last Modified: 21 Nov 2024

    On F5 BIG-IP versions 13.0.0 or 12.1.0 - 12.1.3.1, when a specifically configured virtual server receives traffic of an undisclosed nature, TMM will crash and take the configured failover action, potentially causing a denial of service. The configuration which exposes this issue is not common and in general does not work when enabled in previous versions of BIG-IP. Starting in 12.1.0, BIG-IP will crash if the configuration which exposes this issue is enabled and the virtual server receives non TCP traffic. With the fix of this issue, additional configuration validation logic has been added to prevent this configuration from being applied to a virtual server. There is only data plane exposure to this issue with a non-standard configuration. There is no control plane exposure.

    Published: 22 Mar 2018
    6.1
    Medium

    CVE-2018-7512

    Last Modified: 21 Nov 2024

    A cross-site scripting vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which may allow remote code execution.

    Published: 22 Mar 2018
    9.8
    Critical

    CVE-2018-7520

    Last Modified: 21 Nov 2024

    An improper access control vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which could allow a full configuration download, including passwords.

    Published: 22 Mar 2018
    7
    High

    CVE-2018-5731

    Last Modified: 21 Nov 2024

    An issue was discovered in Heimdal PRO 2.2.190. As part of the scanning feature, a process called md.hs writes an executable called CS1.tmp to C:\windows\TEMP. Afterwards the executable is run. It is possible for an attacker to create the file first, let md.hs overwrite it, and then rewrite the file in the window between md.hs closing the file and executing it. This can be exploited via opportunistic locks and a high priority thread. The vulnerability is triggered when a scan starts. NOTE: any affected Heimdal products are completely unrelated to the Heimdal vendor of a Kerberos 5 product on the h5l.org web site.

    Published: 22 Mar 2018
    7.8
    High

    CVE-2018-5349

    Last Modified: 21 Nov 2024

    A vulnerability has been found in Heimdal PRO v2.2.190, but it is most likely also present in Heimdal FREE and Heimdal CORP. Faulty permissions on the directory "C:\ProgramData\Heimdal Security\Heimdal Agent" allow BUILTIN\Users to write new files to the directory. On startup, the process Heimdal.MonitorServices.exe running as SYSTEM will attempt to load version.dll from this directory. Placing a malicious version.dll in this directory will result in privilege escalation. NOTE: any affected Heimdal products are completely unrelated to the Heimdal vendor of a Kerberos 5 product on the h5l.org web site.

    Published: 22 Mar 2018
    6.8
    Medium

    CVE-2017-16242

    Last Modified: 21 Nov 2024

    An issue was discovered on MECO USB Memory Stick with Fingerprint MECOZiolsamDE601 devices. The fingerprint authentication requirement for data access can be bypassed. An attacker with physical access can send a static packet to a serial port exposed on the PCB to unlock the key and get access to the data without possessing the required fingerprint.

    Published: 22 Mar 2018
    4.3
    Medium

    CVE-2017-0920

    Last Modified: 21 Nov 2024

    GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab instance.

    Published: 22 Mar 2018
    9
    Critical

    CVE-2018-8932

    Last Modified: 21 Nov 2024

    The AMD Ryzen and Ryzen Pro processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-2, RYZENFALL-3, and RYZENFALL-4.

    Published: 22 Mar 2018
    9
    Critical

    CVE-2018-8933

    Last Modified: 21 Nov 2024

    The AMD EPYC Server processor chips have insufficient access control for protected memory regions, aka FALLOUT-1, FALLOUT-2, and FALLOUT-3.

    Published: 22 Mar 2018
    9
    Critical

    CVE-2018-8934

    Last Modified: 21 Nov 2024

    The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in firmware, aka CHIMERA-FW.

    Published: 22 Mar 2018
    9
    Critical

    CVE-2018-8935

    Last Modified: 21 Nov 2024

    The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in the ASIC, aka CHIMERA-HW.

    Published: 22 Mar 2018
    9
    Critical

    CVE-2018-8930

    Last Modified: 21 Nov 2024

    The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient enforcement of Hardware Validated Boot, aka MASTERKEY-1, MASTERKEY-2, and MASTERKEY-3.

    Published: 22 Mar 2018
    8.8
    High

    CVE-2017-0932

    Last Modified: 21 Nov 2024

    Ubiquiti Networks EdgeOS version 1.9.1.1 and prior suffer from an Improper Privilege Management vulnerability due to the lack of validation on the input of the Feature functionality. An attacker with access to an operator (read-only) account and ssh connection to the devices could escalate privileges to admin (root) access in the system.

    Published: 22 Mar 2018
    9
    Critical

    CVE-2018-8931

    Last Modified: 21 Nov 2024

    The AMD Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-1.

    Published: 22 Mar 2018
    9
    Critical

    CVE-2018-8936

    Last Modified: 21 Nov 2024

    The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips allow Platform Security Processor (PSP) privilege escalation.

    Published: 22 Mar 2018
    8.8
    High

    CVE-2017-0934

    Last Modified: 21 Nov 2024

    Ubiquiti Networks EdgeOS version 1.9.1 and prior suffer from an Improper Privilege Management vulnerability due to the lack of protection of the file system leading to sensitive information being exposed. An attacker with access to an operator (read-only) account could escalate privileges to admin (root) access in the system.

    Published: 22 Mar 2018
    8.8
    High

    CVE-2017-0935

    Last Modified: 21 Nov 2024

    Ubiquiti Networks EdgeOS version 1.9.1.1 and prior suffer from an Improper Privilege Management vulnerability due to the lack of protection of the file system leading to sensitive information being exposed. An attacker with access to an operator (read-only) account could escalate privileges to admin (root) access in the system.

    Published: 22 Mar 2018
    6.1
    Medium

    CVE-2017-16771

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in Log Viewer in Synology Photo Station before 6.8.3-3463 and before 6.3-2971 allows remote attackers to inject arbitrary web script or HTML via the username parameter.

    Published: 22 Mar 2018
    8.8
    High

    CVE-2017-16772

    Last Modified: 21 Nov 2024

    Improper input validation vulnerability in SYNOPHOTO_Flickr_MultiUpload in Synology Photo Station before 6.8.3-3463 and before 6.3-2971 allows remote authenticated users to execute arbitrary codes via the prog_id parameter.

    Published: 22 Mar 2018
    8
    High

    CVE-2017-0933

    Last Modified: 21 Nov 2024

    Ubiquiti Networks EdgeOS version 1.9.1 and prior suffer from a Cross-Site Request Forgery (CSRF) vulnerability. An attacker with access to an operator (read-only) account could lure an admin (root) user to access the attacker-controlled page, allowing the attacker to gain admin privileges in the system.

    Published: 22 Mar 2018
    6.1
    Medium

    CVE-2018-0536

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in QQQ SYSTEMS ver2.24 allows an attacker to inject arbitrary web script or HTML via quiz.cgi.

    Published: 22 Mar 2018
    6.1
    Medium

    CVE-2018-0537

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in QQQ SYSTEMS ver2.24 allows an attacker to inject arbitrary web script or HTML via quiz_op.cgi.

    Published: 22 Mar 2018
    6.1
    Medium

    CVE-2018-0538

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in QQQ SYSTEMS ver2.24 allows an attacker to inject arbitrary web script or HTML via unspecified vectors.

    Published: 22 Mar 2018
    9.8
    Critical

    CVE-2018-0539

    Last Modified: 21 Nov 2024

    QQQ SYSTEMS version 2.24 allows an attacker to execute arbitrary commands via unspecified vectors.

    Published: 22 Mar 2018
    7.8
    High

    CVE-2018-0540

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in ViX version 2.21.148.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 22 Mar 2018
    7.5
    High

    CVE-2018-0542

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in WebProxy version 1.7.8 allows an attacker to read arbitrary files via unspecified vectors.

    Published: 22 Mar 2018
    6.1
    Medium

    CVE-2018-0534

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in ArsenoL Version 0.5 allows an attacker to inject arbitrary web script or HTML via unspecified vectors.

    Published: 22 Mar 2018
    9.8
    Critical

    CVE-2018-0541

    Last Modified: 21 Nov 2024

    Buffer overflow in Tiny FTP Daemon Ver0.52d allows an attacker to cause a denial-of-service (DoS) condition or execute arbitrary code via unspecified vectors.

    Published: 22 Mar 2018
    4.8
    Medium

    CVE-2017-18094

    Last Modified: 21 Nov 2024

    Various resources in Atlassian Fisheye and Crucible before version 4.4.3 (the fixed version for 4.4.x) and 4.5.0 allow remote attackers with administrative privileges to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the base path setting of a configured file system repository.

    Published: 22 Mar 2018