CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2018-6592

    Last Modified: 21 Nov 2024

    Unisys Stealth 3.3 Windows endpoints before 3.3.016.1 allow local users to gain access to Stealth-enabled devices by leveraging improper cleanup of memory used for negotiation key storage.

    Published: 19 Feb 2018
    6.5
    Medium

    CVE-2010-0109

    Last Modified: 21 Nov 2024

    DBManager in Symantec Altiris Deployment Solution 6.9.x before DS 6.9 SP4 allows remote attackers to cause a denial of service via a crafted request.

    Published: 19 Feb 2018
    5.4
    Medium

    CVE-2015-2324

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in the filemanager in the Photo Gallery plugin before 1.2.13 for WordPress allows remote authenticated users with edit permission to inject arbitrary web script or HTML via unspecified vectors.

    Published: 19 Feb 2018
    9.8
    Critical

    CVE-2016-9568

    Last Modified: 21 Nov 2024

    A security design issue can allow an unprivileged user to interact with the Carbon Black Sensor and perform unauthorized actions.

    Published: 19 Feb 2018
    9.8
    Critical

    CVE-2017-17101

    Last Modified: 21 Nov 2024

    An issue was discovered in Apexis APM-H803-MPC software, as used with many different models of IP Camera. An unprotected CGI method inside the web application permits an unauthenticated user to bypass the login screen and access the webcam contents including: live video stream, configuration files with all the passwords, system information, and much more. With this vulnerability, anyone can access to a vulnerable webcam with 'super admin' privilege.

    Published: 19 Feb 2018
    5.5
    Medium

    CVE-2011-3477

    Last Modified: 21 Nov 2024

    GEAR Software CD DVD Filter driver (aka GEARAspiWDM.sys), as used in Symantec Backup Exec System Recovery 8.5 and BESR 2010, Symantec System Recovery 2011, Norton 360, and Norton Ghost, allows local users to cause a denial of service (system crash) via unspecified vectors.

    Published: 19 Feb 2018
    8.8
    High

    CVE-2012-0771

    Last Modified: 21 Nov 2024

    Adobe Shockwave Player before 11.6.4.634 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-0759.

    Published: 19 Feb 2018
    9.8
    Critical

    CVE-2018-5439

    Last Modified: 21 Nov 2024

    A Command Injection issue was discovered in Nortek Linear eMerge E3 series Versions V0.32-07e and prior. A remote attacker may be able to execute arbitrary code on a target machine with elevated privileges.

    Published: 19 Feb 2018
    9.8
    Critical

    CVE-2018-5473

    Last Modified: 21 Nov 2024

    An Improper Restriction of Operations within the Bounds of a Memory Buffer issue was discovered in GE D60 Line Distance Relay devices running firmware Version 7.11 and prior. The SSH functions of the device are vulnerable to buffer overflow conditions that may allow a remote attacker to execute arbitrary code on the device.

    Published: 19 Feb 2018
    9.8
    Critical

    CVE-2018-5475

    Last Modified: 21 Nov 2024

    A Stack-based Buffer Overflow issue was discovered in GE D60 Line Distance Relay devices running firmware Version 7.11 and prior. Multiple stack-based buffer overflow vulnerabilities have been identified, which may allow remote code execution.

    Published: 19 Feb 2018
    9.8
    Critical

    CVE-2018-7247

    Last Modified: 21 Nov 2024

    An issue was discovered in pixHtmlViewer in prog/htmlviewer.c in Leptonica before 1.75.3. Unsanitized input (rootname) can overflow a buffer, leading potentially to arbitrary code execution or possibly unspecified other impact.

    Published: 19 Feb 2018
    6.5
    Medium

    CVE-2009-4267

    Last Modified: 21 Nov 2024

    The console in Apache jUDDI 3.0.0 does not properly escape line feeds, which allows remote authenticated users to spoof log entries via the numRows parameter.

    Published: 19 Feb 2018
    Unknown

    CVE-2017-12609

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 19 Feb 2018
    5.4
    Medium

    CVE-2017-18092

    Last Modified: 21 Nov 2024

    The print snippet resource in Atlassian Crucible before version 4.4.3 (the fixed version for 4.4.x) and before 4.5.0 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the contents of a comment on the snippet.

    Published: 19 Feb 2018
    4.8
    Medium

    CVE-2017-18093

    Last Modified: 21 Nov 2024

    Various resources in Atlassian Fisheye and Crucible before version 4.4.3 (the fixed version for 4.4.x) and before 4.5.0 allow remote attackers who have permission to add or modify a repository to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the location setting of a configured repository.

    Published: 19 Feb 2018
    7.8
    High

    CVE-2018-1409

    Last Modified: 21 Nov 2024

    IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138708.

    Published: 19 Feb 2018
    7.8
    High

    CVE-2018-1410

    Last Modified: 21 Nov 2024

    IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138709.

    Published: 19 Feb 2018
    7.8
    High

    CVE-2018-1411

    Last Modified: 21 Nov 2024

    IBM Notes Diagnostics (IBM Client Application Access and IBM Notes) could allow a local user to execute commands on the system. By crafting a command line sent via the shared memory IPC, which could be tricked into executing an executable chosen by the attacker. IBM X-Force ID: 138710.

    Published: 19 Feb 2018
    8.8
    High

    CVE-2018-7219

    Last Modified: 21 Nov 2024

    application/admin/controller/Admin.php in NoneCms 1.3.0 has CSRF, as demonstrated by changing an admin password or adding an account via a public/index.php/admin/admin/edit.html request.

    Published: 19 Feb 2018
    6.5
    Medium

    CVE-2017-15712

    Last Modified: 21 Nov 2024

    Vulnerability allows a user of Apache Oozie 3.1.3-incubating to 4.3.0 and 5.0.0-beta1 to expose private files on the Oozie server process. The malicious user can construct a workflow XML file containing XML directives and configuration that reference sensitive files on the Oozie server host.

    Published: 19 Feb 2018
    6.1
    Medium

    CVE-2017-16755

    Last Modified: 21 Nov 2024

    An issue was discovered in Userscape HelpSpot before 4.7.2. A reflected cross-site scripting vulnerability exists in the "return" parameter of the "index.php?pg=moderated" endpoint. It executes when the return link is clicked.

    Published: 19 Feb 2018
    8.8
    High

    CVE-2017-16756

    Last Modified: 21 Nov 2024

    An issue was discovered in Userscape HelpSpot before 4.7.2. A cross-site request forgery vulnerability exists on POST requests to the "index.php?pg=password.change" endpoint. This allows an attacker to change the password of another user's HelpSpot account.

    Published: 19 Feb 2018
    5.3
    Medium

    CVE-2017-18095

    Last Modified: 21 Nov 2024

    The SnippetRPCServiceImpl class in Atlassian Crucible before version 4.5.1 (the fixed version 4.5.x) and before 4.6.0 allows remote attackers to comment on snippets they do not have authorization to access via an improper authorization vulnerability.

    Published: 19 Feb 2018
    5.3
    Medium

    CVE-2018-6591

    Last Modified: 21 Nov 2024

    Converse.js and Inverse.js through 3.3 allow remote attackers to obtain sensitive information because it is too difficult to determine whether safe publication of private data was configured or even intended. For example, users might have an expectation that chatroom bookmarks are private, but the various interacting software components do not necessarily make that happen.

    Published: 19 Feb 2018
    9.8
    Critical

    CVE-2017-16924

    Last Modified: 21 Nov 2024

    Remote Information Disclosure and Escalation of Privileges in ManageEngine Desktop Central MSP 10.0.137 allows attackers to download unencrypted XML files containing all data for configuration policies via a predictable /client-data/<client_id>/collections/##/usermgmt.xml URL, as demonstrated by passwords and Wi-Fi keys. This is fixed in build 100157.

    Published: 19 Feb 2018
    5.3
    Medium

    CVE-2018-1109

    Last Modified: 1 Dec 2025

    A vulnerability was found in Braces versions 2.2.0 and above, prior to 2.3.1. Affected versions of this package are vulnerable to Regular Expression Denial of Service (ReDoS) attacks.

    Published: 19 Feb 2018
    7.5
    High

    CVE-2018-7337

    Last Modified: 21 Nov 2024

    In Wireshark 2.4.0 to 2.4.4, the DOCSIS protocol dissector could crash. This was addressed in plugins/docsis/packet-docsis.c by removing the recursive algorithm that had been used for concatenated PDUs.

    Published: 19 Feb 2018
    6.1
    Medium

    CVE-2019-7608

    Last Modified: 21 Nov 2024

    Kibana versions before 5.6.15 and 6.6.1 had a cross-site scripting (XSS) vulnerability that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.

    Published: 19 Feb 2018
    7.5
    High

    CVE-2017-18191

    Last Modified: 21 Nov 2024

    An issue was discovered in OpenStack Nova 15.x through 15.1.0 and 16.x through 16.1.1. By detaching and reattaching an encrypted volume, an attacker may access the underlying raw volume and corrupt the LUKS header, resulting in a denial of service attack on the compute host. (The same code error also results in data loss, but that is not a vulnerability because the user loses their own data.) All Nova setups supporting encrypted volumes are affected.

    Published: 19 Feb 2018
    7.5
    High

    CVE-2018-5735

    Last Modified: 21 Nov 2024

    The Debian backport of the fix for CVE-2017-3137 leads to assertion failure in validator.c:1858; Affects Debian versions 9.9.5.dfsg-9+deb8u15; 9.9.5.dfsg-9+deb8u18; 9.10.3.dfsg.P4-12.3+deb9u5; 9.11.5.P4+dfsg-5.1 No ISC releases are affected. Other packages from other distributions who did similar backports for the fix for 2017-3137 may also be affected.

    Published: 19 Feb 2018
    5.3
    Medium

    CVE-2018-6459

    Last Modified: 21 Nov 2024

    The rsa_pss_params_parse function in libstrongswan/credentials/keys/signature_params.c in strongSwan 5.6.1 allows remote attackers to cause a denial of service via a crafted RSASSA-PSS signature that lacks a mask generation function parameter.

    Published: 19 Feb 2018
    7.8
    High

    CVE-2018-7253

    Last Modified: 21 Nov 2024

    The ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (heap-based buffer over-read) or possibly overwrite the heap via a maliciously crafted DSDIFF file.

    Published: 19 Feb 2018
    7.8
    High

    CVE-2018-7254

    Last Modified: 21 Nov 2024

    The ParseCaffHeaderConfig function of the cli/caff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (global buffer over-read), or possibly trigger a buffer overflow or incorrect memory allocation, via a maliciously crafted CAF file.

    Published: 19 Feb 2018
    9.8
    Critical

    CVE-2018-6024

    Last Modified: 21 Nov 2024

    SQL Injection exists in the Project Log 1.5.3 component for Joomla! via the search parameter.

    Published: 18 Feb 2018
    8.8
    High

    CVE-2018-7217

    Last Modified: 21 Nov 2024

    In Bravo Tejari Procurement Portal, uploaded files are not properly validated by the application either on the client or the server side. An attacker can take advantage of this vulnerability and upload malicious executable files to compromise the application, as demonstrated by an esop/evm/OPPreliminaryForms.do?formId=857 request.

    Published: 18 Feb 2018
    8
    High

    CVE-2018-7216

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in esop/toolkit/profile/regData.do in Bravo Tejari Procurement Portal allows remote authenticated users to hijack the authentication of application users for requests that modify their personal data by leveraging lack of anti-CSRF tokens.

    Published: 18 Feb 2018
    Unknown

    CVE-2018-7207

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 18 Feb 2018
    7.5
    High

    CVE-2018-7209

    Last Modified: 21 Nov 2024

    An issue was discovered in iDashboards 9.6b. It allows remote attackers to obtain sensitive information via a direct request for the idashboards/config.xml URI, as demonstrated by intranet URLs for reports.

    Published: 18 Feb 2018
    8.1
    High

    CVE-2018-7211

    Last Modified: 21 Nov 2024

    An issue was discovered in iDashboards 9.6b. The SSO implementation is affected by a weak obfuscation library, allowing man-in-the-middle attackers to discover credentials.

    Published: 18 Feb 2018
    7.5
    High

    CVE-2018-7210

    Last Modified: 21 Nov 2024

    An issue was discovered in iDashboards 9.6b. It allows remote attackers to obtain sensitive information via a direct request for the idb/config?CMD=installLicense URI, as demonstrated by intranet IP addresses and names of guest accounts.

    Published: 18 Feb 2018
    6.1
    Medium

    CVE-2018-7197

    Last Modified: 21 Nov 2024

    An issue was discovered in Pluck through 4.7.4. A stored cross-site scripting (XSS) vulnerability allows remote unauthenticated users to inject arbitrary web script or HTML into admin/blog Reaction Comments via a crafted URL.

    Published: 18 Feb 2018
    6.1
    Medium

    CVE-2018-7198

    Last Modified: 21 Nov 2024

    October CMS through 1.0.431 allows XSS by entering HTML on the Add Posts page.

    Published: 18 Feb 2018
    8.8
    High

    CVE-2018-7206

    Last Modified: 21 Nov 2024

    An issue was discovered in Project Jupyter JupyterHub OAuthenticator 0.6.x before 0.6.2 and 0.7.x before 0.7.3. When using JupyterHub with GitLab group whitelisting for access control, group membership was not checked correctly, allowing members not in the whitelisted groups to create accounts on the Hub. (Users were not allowed to access other users' accounts, but could create their own accounts on the Hub linked to their GitLab account. GitLab authentication not using gitlab_group_whitelist is unaffected. No other Authenticators are affected.)

    Published: 18 Feb 2018
    5.3
    Medium

    CVE-2018-7212

    Last Modified: 21 Nov 2024

    An issue was discovered in rack-protection/lib/rack/protection/path_traversal.rb in Sinatra 2.x before 2.0.1 on Windows. Path traversal is possible via backslash characters.

    Published: 18 Feb 2018
    9.8
    Critical

    CVE-2018-7225

    Last Modified: 21 Nov 2024

    An issue was discovered in LibVNCServer through 0.9.11. rfbProcessClientNormalMessage() in rfbserver.c does not sanitize msg.cct.length, leading to access to uninitialized and potentially sensitive data or possibly unspecified other impact (e.g., an integer overflow) via specially crafted VNC packets.

    Published: 18 Feb 2018
    7.5
    High

    CVE-2018-7419

    Last Modified: 21 Nov 2024

    In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the NBAP dissector could crash. This was addressed in epan/dissectors/asn1/nbap/nbap.cnf by ensuring DCH ID initialization.

    Published: 18 Feb 2018
    9.8
    Critical

    CVE-2018-7226

    Last Modified: 21 Nov 2024

    An issue was discovered in vcSetXCutTextProc() in VNConsole.c in LinuxVNC and VNCommand from the LibVNC/vncterm distribution through 0.9.10. Missing sanitization of the client-specified message length may cause integer overflow or possibly have unspecified other impact via a specially crafted VNC packet.

    Published: 18 Feb 2018
    7.5
    High

    CVE-2018-7335

    Last Modified: 21 Nov 2024

    In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the IEEE 802.11 dissector could crash. This was addressed in epan/crypt/airpdcap.c by rejecting lengths that are too small.

    Published: 18 Feb 2018
    9.8
    Critical

    CVE-2018-5974

    Last Modified: 21 Nov 2024

    SQL Injection exists in the SimpleCalendar 3.1.9 component for Joomla! via the catid array parameter.

    Published: 17 Feb 2018
    9.8
    Critical

    CVE-2018-5975

    Last Modified: 21 Nov 2024

    SQL Injection exists in the Smart Shoutbox 3.0.0 component for Joomla! via the shoutauthor parameter to the archive URI.

    Published: 17 Feb 2018