CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2018-0522

    Last Modified: 21 Nov 2024

    Buffer overflow in Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary code via a specially crafted file.

    Published: 9 Mar 2018
    8.8
    High

    CVE-2018-0523

    Last Modified: 21 Nov 2024

    Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.

    Published: 9 Mar 2018
    7.3
    High

    CVE-2018-0524

    Last Modified: 21 Nov 2024

    Jubatus 1.0.2 and earlier allows remote code execution via unspecified vectors.

    Published: 9 Mar 2018
    7.8
    High

    CVE-2018-0544

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in WinShot 1.53a and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 9 Mar 2018
    6.1
    Medium

    CVE-2018-0547

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in WP All Import plugin prior to version 3.4.7 for WordPress allows an attacker to inject arbitrary web script or HTML via unspecified vectors.

    Published: 9 Mar 2018
    6.1
    Medium

    CVE-2018-7997

    Last Modified: 21 Nov 2024

    Eramba e1.0.6.033 has Reflected XSS on the Error page of the CSV file inclusion tab of the /importTool/preview URI, with a CSV file polluted with malicious JavaScript.

    Published: 9 Mar 2018
    8.8
    High

    CVE-2018-0521

    Last Modified: 21 Nov 2024

    Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to bypass authentication and execute arbitrary commands on the device via unspecified vectors.

    Published: 9 Mar 2018
    5.3
    Medium

    CVE-2018-0525

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in Jubatus 1.0.2 and earlier allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 9 Mar 2018
    6.1
    Medium

    CVE-2018-0546

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in WP All Import plugin prior to version 3.4.6 for WordPress allows an attacker to inject arbitrary web script or HTML via unspecified vectors.

    Published: 9 Mar 2018
    8.8
    High

    CVE-2017-10852

    Last Modified: 21 Nov 2024

    Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary code via unspecified vectors.

    Published: 9 Mar 2018
    8.8
    High

    CVE-2017-10854

    Last Modified: 21 Nov 2024

    Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to bypass authentication and change the login password via unspecified vectors.

    Published: 9 Mar 2018
    8.8
    High

    CVE-2017-10853

    Last Modified: 21 Nov 2024

    Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary commands via unspecified vectors.

    Published: 9 Mar 2018
    7.8
    High

    CVE-2018-0543

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in Jtrim 1.53c and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 9 Mar 2018
    6.1
    Medium

    CVE-2018-7996

    Last Modified: 21 Nov 2024

    Eramba e1.0.6.033 has Stored XSS on the tooltip box via the /programScopes description parameter.

    Published: 9 Mar 2018
    9.8
    Critical

    CVE-2018-6916

    Last Modified: 21 Nov 2024

    In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p7, 10.4-STABLE, 10.4-RELEASE-p7, and 10.3-RELEASE-p28, the kernel does not properly validate IPsec packets coming from a trusted host. Additionally, a use-after-free vulnerability exists in the IPsec AH handling code. This issue could cause a system crash or other unpredictable results.

    Published: 9 Mar 2018
    6.1
    Medium

    CVE-2018-7894

    Last Modified: 21 Nov 2024

    Eramba e1.0.6.033 has Reflected XSS in reviews/filterIndex/ThirdPartyRiskReview via the advanced_filter parameter (aka the Search Parameter).

    Published: 9 Mar 2018
    5.5
    Medium

    CVE-2018-1071

    Last Modified: 21 Nov 2024

    zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the exec.c:hashcmd() function. A local attacker could exploit this to cause a denial of service.

    Published: 9 Mar 2018
    4.7
    Medium

    CVE-2018-7995

    Last Modified: 21 Nov 2024

    Race condition in the store_int_with_restart() function in arch/x86/kernel/cpu/mcheck/mce.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (panic) by leveraging root access to write to the check_interval file in a /sys/devices/system/machinecheck/machinecheck<cpu number> directory. NOTE: a third party has indicated that this report is not security relevant

    Published: 9 Mar 2018
    9.8
    Critical

    CVE-2018-7890

    Last Modified: 21 Nov 2024

    A remote code execution issue was discovered in Zoho ManageEngine Applications Manager before 13.6 (build 13640). The publicly accessible testCredential.do endpoint takes multiple user inputs and validates supplied credentials by accessing a specified system. This endpoint calls several internal classes, and then executes a PowerShell script. If the specified system is OfficeSharePointServer, then the username and password parameters to this script are not validated, leading to Command Injection.

    Published: 8 Mar 2018
    7.8
    High

    CVE-2018-7889

    Last Modified: 21 Nov 2024

    gui2/viewer/bookmarkmanager.py in Calibre 3.18 calls cPickle.load on imported bookmark data, which allows remote attackers to execute arbitrary code via a crafted .pickle file, as demonstrated by Python code that contains an os.system call.

    Published: 8 Mar 2018
    7.8
    High

    CVE-2014-7272

    Last Modified: 21 Nov 2024

    Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to gain root privileges because code running as root performs write operations within a user home directory, and this user may have created links in advance (exploitation requires the user to win a race condition in the ~/.Xauthority chown case, but not other cases).

    Published: 8 Mar 2018
    7.8
    High

    CVE-2014-7271

    Last Modified: 21 Nov 2024

    Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to log in as user "sddm" without authentication.

    Published: 8 Mar 2018
    7.8
    High

    CVE-2018-5313

    Last Modified: 21 Nov 2024

    A vulnerability allows local attackers to escalate privilege on Rapid Scada 5.5.0 because of weak C:\SCADA permissions. The specific flaw exists within the access control that is set and modified during the installation of the product. The product sets weak access control restrictions. An attacker can leverage this vulnerability to execute arbitrary code under the context of Administrator, the IUSR account, or SYSTEM.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7866

    Last Modified: 21 Nov 2024

    A NULL pointer dereference was discovered in newVar3 in util/decompile.c in libming 0.4.8. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7867

    Last Modified: 21 Nov 2024

    There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 during a RegisterNumber sprintf. A Crafted input will lead to a denial of service attack.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7868

    Last Modified: 21 Nov 2024

    There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input will lead to a denial of service attack.

    Published: 8 Mar 2018
    7.5
    High

    CVE-2018-7869

    Last Modified: 21 Nov 2024

    There is a memory leak triggered in the function dcinit of util/decompile.c in libming 0.4.8, which will lead to a denial of service attack.

    Published: 8 Mar 2018
    8.8
    High

    CVE-2018-7871

    Last Modified: 21 Nov 2024

    There is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data. A crafted input will lead to a denial of service or possibly unspecified other impact.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7872

    Last Modified: 21 Nov 2024

    An invalid memory address dereference was discovered in the function getName in libming 0.4.8 for CONSTANT16 data. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7873

    Last Modified: 21 Nov 2024

    There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for INTEGER data. A Crafted input will lead to a denial of service attack.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7874

    Last Modified: 21 Nov 2024

    An invalid memory address dereference was discovered in strlenext in util/decompile.c in libming 0.4.8. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7875

    Last Modified: 21 Nov 2024

    There is a heap-based buffer over-read in the getString function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input will lead to a denial of service attack.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7876

    Last Modified: 21 Nov 2024

    In libming 0.4.8, a memory exhaustion vulnerability was found in the function parseSWF_ACTIONRECORD in util/parser.c, which allows remote attackers to cause a denial of service via a crafted file.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7870

    Last Modified: 21 Nov 2024

    An invalid memory address dereference was discovered in getString in util/decompile.c in libming 0.4.8 for CONSTANT16 data. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.

    Published: 8 Mar 2018
    6.5
    Medium

    CVE-2018-7877

    Last Modified: 21 Nov 2024

    There is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for DOUBLE data. A Crafted input will lead to a denial of service attack.

    Published: 8 Mar 2018
    7.5
    High

    CVE-2018-4838

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in EN100 Ethernet module IEC 61850 variant (All versions < V4.30), EN100 Ethernet module DNP3 variant (All versions < V1.04), EN100 Ethernet module PROFINET IO variant (All versions), EN100 Ethernet module Modbus TCP variant (All versions), EN100 Ethernet module IEC 104 variant (All versions < V1.22). The web interface (TCP/80) of affected devices allows an unauthenticated user to upgrade or downgrade the firmware of the device, including to older versions with known vulnerabilities.

    Published: 8 Mar 2018
    5.3
    Medium

    CVE-2018-4839

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in DIGSI 4 (All versions < V4.92), EN100 Ethernet module DNP3 variant (All versions < V1.05.00), EN100 Ethernet module IEC 104 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.30), EN100 Ethernet module Modbus TCP variant (All versions), EN100 Ethernet module PROFINET IO variant (All versions), Other SIPROTEC 4 relays (All versions), Other SIPROTEC Compact relays (All versions), SIPROTEC 4 7SD80 (All versions < V4.70), SIPROTEC 4 7SJ61 (All versions < V4.96), SIPROTEC 4 7SJ62 (All versions < V4.96), SIPROTEC 4 7SJ64 (All versions < V4.96), SIPROTEC 4 7SJ66 (All versions < V4.30), SIPROTEC Compact 7SJ80 (All versions < V4.77), SIPROTEC Compact 7SK80 (All versions < V4.77). An attacker with local access to the engineering system or in a privileged network position and able to obtain certain network traffic could possibly reconstruct access authorization passwords.

    Published: 8 Mar 2018
    7.5
    High

    CVE-2018-4840

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in DIGSI 4 (All versions < V4.92), EN100 Ethernet module DNP3 variant (All versions < V1.05.00), EN100 Ethernet module IEC 104 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.30), EN100 Ethernet module Modbus TCP variant (All versions), EN100 Ethernet module PROFINET IO variant (All versions). The device engineering mechanism allows an unauthenticated remote user to upload a modified device configuration overwriting access authorization passwords.

    Published: 8 Mar 2018
    4.3
    Medium

    CVE-2018-1442

    Last Modified: 21 Nov 2024

    IBM Application Performance Management - Response Time Monitoring Agent (IBM Monitoring 8.1.4) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 139598.

    Published: 8 Mar 2018
    5.9
    Medium

    CVE-2018-1443

    Last Modified: 21 Nov 2024

    An XML parsing vulnerability affects IBM SAML-based single sign-on (SSO) systems (IBM Security Access Manager 9.0.0 - 9.0.4 and IBM Tivoli Federated Identity Manager 6.2 - 6.0.2.) This vulnerability can allow an attacker with authenticated access to trick SAML systems into authenticating as a different user without knowledge of the victim users password. IBM X-Force ID: 139754.

    Published: 8 Mar 2018
    5.3
    Medium

    CVE-2018-1387

    Last Modified: 21 Nov 2024

    IBM Application Performance Management for Monitoring & Diagnostics (IBM Monitoring 8.1.3 and 8.1.4) may release sensitive personal data to the staff who can access to the database of this product. IBM X-Force ID: 138210.

    Published: 8 Mar 2018
    5.3
    Medium

    CVE-2017-1625

    Last Modified: 21 Nov 2024

    IBM Pulse for QRadar 1.0.0 - 1.0.3 discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system. IBM X-Force ID: 133123.

    Published: 8 Mar 2018
    6.1
    Medium

    CVE-2018-1220

    Last Modified: 21 Nov 2024

    EMC RSA Archer, versions prior to 6.2.0.8, contains a redirect vulnerability in the QuickLinks feature. A remote attacker may potentially exploit this vulnerability to redirect genuine users to phishing websites with the intent of obtaining sensitive information from the users.

    Published: 8 Mar 2018
    8.8
    High

    CVE-2018-1215

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability was discovered in vApp Manager which is embedded in Dell EMC Unisphere for VMAX, Dell EMC Solutions Enabler, Dell EMC VASA Virtual Appliances, and Dell EMC VMAX Embedded Management (eManagement): Dell EMC Unisphere for VMAX Virtual Appliance versions prior to 8.4.0.18, Dell EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.21, Dell EMC VASA Virtual Appliance versions prior to 8.4.0.514, and Dell EMC VMAX Embedded Management (eManagement) versions prior to and including 1.4 (Enginuity Release 5977.1125.1125 and earlier). A remote authenticated malicious user may potentially upload arbitrary maliciously crafted files in any location on the web server. By chaining this vulnerability with CVE-2018-1216, the attacker may use the default account to exploit this vulnerability.

    Published: 8 Mar 2018
    9.8
    Critical

    CVE-2018-1216

    Last Modified: 21 Nov 2024

    A hard-coded password vulnerability was discovered in vApp Manager which is embedded in Dell EMC Unisphere for VMAX, Dell EMC Solutions Enabler, Dell EMC VASA Virtual Appliances, and Dell EMC VMAX Embedded Management (eManagement): Dell EMC Unisphere for VMAX Virtual Appliance versions prior to 8.4.0.18, Dell EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.21, Dell EMC VASA Virtual Appliance versions prior to 8.4.0.514, and Dell EMC VMAX Embedded Management (eManagement) versions prior to and including 1.4 (Enginuity Release 5977.1125.1125 and earlier). They contain an undocumented default account (smc) with a hard-coded password that may be used with certain web servlets. A remote attacker with the knowledge of the hard-coded password and the message format may use vulnerable servlets to gain unauthorized access to the system. Note: This account cannot be used to log in via the web user interface.

    Published: 8 Mar 2018
    Unknown

    CVE-2017-9975

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 8 Mar 2018
    Unknown

    CVE-2017-9971

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 8 Mar 2018
    Unknown

    CVE-2017-9972

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 8 Mar 2018
    Unknown

    CVE-2017-9973

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 8 Mar 2018
    Unknown

    CVE-2017-9974

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 8 Mar 2018