CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2018-7418

    Last Modified: 21 Nov 2024

    In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the SIGCOMP dissector could crash. This was addressed in epan/dissectors/packet-sigcomp.c by correcting the extraction of the length value.

    Published: 11 Feb 2018
    8.8
    High

    CVE-2018-1097

    Last Modified: 21 Nov 2024

    A flaw was found in foreman before 1.16.1. The issue allows users with limited permissions for powering oVirt/RHV hosts on and off to discover the username and password used to connect to the compute resource.

    Published: 10 Feb 2018
    8.8
    High

    CVE-2018-1000050

    Last Modified: 21 Nov 2024

    Sean Barrett stb_vorbis version 1.12 and earlier contains a Buffer Overflow vulnerability in All vorbis decoding paths. that can result in memory corruption, denial of service, comprised execution of host program. This attack appear to be exploitable via Victim must open a specially crafted Ogg Vorbis file. This vulnerability appears to have been fixed in 1.13.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2018-1000020

    Last Modified: 21 Nov 2024

    OpenEMR version 5.0.0 contains a Cross Site Scripting (XSS) vulnerability in open-flash-chart.swf and _posteddata.php that can result in . This vulnerability appears to have been fixed in 5.0.0 Patch 2 or higher.

    Published: 9 Feb 2018
    5.3
    Medium

    CVE-2018-1000023

    Last Modified: 21 Nov 2024

    Bitpay/insight-api Insight-api version 5.0.0 and earlier contains a CWE-20: input validation vulnerability in transaction broadcast endpoint that can result in Full Path Disclosure. This attack appear to be exploitable via Web request.

    Published: 9 Feb 2018
    7.8
    High

    CVE-2018-1000045

    Last Modified: 21 Nov 2024

    NASA Singledop version v1.0 contains a CWE-502 vulnerability in NASA Singledop library (Weather data) that can result in remote code execution. This attack appear to be exploitable via Victim opening a specially crafted radar data file. This vulnerability appears to have been fixed in v1.1.

    Published: 9 Feb 2018
    7.8
    High

    CVE-2018-1000046

    Last Modified: 21 Nov 2024

    NASA Pyblock version v1.0 - v1.3 contains a CWE-502 vulnerability in Radar data parsing library that can result in remote code execution. This attack appear to be exploitable via Victim opening a specially crafted radar data file. This vulnerability appears to have been fixed in v1.4.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-1000047

    Last Modified: 21 Nov 2024

    NASA Kodiak version v1.0 contains a CWE-502 vulnerability in Kodiak library's data processing function that can result in remote code execution. This attack appear to be exploitable via Victim opens an untrusted file for optimization using Kodiak library.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-1000048

    Last Modified: 21 Nov 2024

    NASA RtRetrievalFramework version v1.0 contains a CWE-502 vulnerability in Data retrieval functionality of RtRetrieval framework that can result in remote code execution. This attack appear to be exploitable via Victim tries to retrieve and process a weather data file.

    Published: 9 Feb 2018
    7.8
    High

    CVE-2018-1000051

    Last Modified: 21 Nov 2024

    Artifex Mupdf version 1.12.0 contains a Use After Free vulnerability in fz_keep_key_storable that can result in DOS / Possible code execution. This attack appear to be exploitable via Victim opens a specially crafted PDF.

    Published: 9 Feb 2018
    7.5
    High

    CVE-2018-1000052

    Last Modified: 21 Nov 2024

    fmtlib version prior to version 4.1.0 (before commit 0555cea5fc0bf890afe0071a558e44625a34ba85) contains a Memory corruption (SIGSEGV), CWE-134 vulnerability in fmt::print() library function that can result in Denial of Service. This attack appear to be exploitable via Specifying an invalid format specifier in the fmt::print() function results in a SIGSEGV (memory corruption, invalid write). This vulnerability appears to have been fixed in after commit 8cf30aa2be256eba07bb1cefb998c52326e846e7.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-1000053

    Last Modified: 21 Nov 2024

    LimeSurvey version 3.0.0-beta.3+17110 contains a Cross ite Request Forgery (CSRF) vulnerability in Theme Uninstallation that can result in CSRF causing LimeSurvey admins to delete all their themes, rendering the website unusable. This attack appear to be exploitable via Simple HTML markup can be used to send a GET request to the affected endpoint.

    Published: 9 Feb 2018
    8.3
    High

    CVE-2018-1000054

    Last Modified: 21 Nov 2024

    Jenkins CCM Plugin 3.1 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.

    Published: 9 Feb 2018
    8.3
    High

    CVE-2018-1000055

    Last Modified: 21 Nov 2024

    Jenkins Android Lint Plugin 2.5 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.

    Published: 9 Feb 2018
    9.8
    Critical

    CVE-2018-1000059

    Last Modified: 21 Nov 2024

    ValidFormBuilder version 4.5.4 contains a PHP Object Injection vulnerability in Valid Form unserialize method that can result in Possible to execute unauthorised system commands remotely and disclose file contents in file system.

    Published: 9 Feb 2018
    Unknown

    CVE-2018-1000061

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 9 Feb 2018
    9.8
    Critical

    CVE-2018-1000044

    Last Modified: 21 Nov 2024

    Security Onion Solutions Squert version 1.1.1 through 1.6.7 contains a SQL Injection vulnerability in .inc/callback.php that can result in execution of SQL commands. This attack appear to be exploitable via Web request to .inc/callback.php with the payload in the sensors parameter, used in ec(). This vulnerability appears to have been fixed in 1.7.0.

    Published: 9 Feb 2018
    7.5
    High

    CVE-2018-1000049

    Last Modified: 21 Nov 2024

    Nanopool Claymore Dual Miner version 7.3 and earlier contains a remote code execution vulnerability by abusing the miner API. The flaw can be exploited only if the software is executed with read/write mode enabled.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2017-1000506

    Last Modified: 21 Nov 2024

    Mautic version 2.11.0 and earlier contains a Cross Site Scripting (XSS) vulnerability in Company's name that can result in denial of service and execution of javascript code.

    Published: 9 Feb 2018
    8.1
    High

    CVE-2018-1000025

    Last Modified: 21 Nov 2024

    Jerome Gamez Firebase Admin SDK for PHP version from 3.2.0 to 3.8.0 contains a Incorrect Access Control vulnerability in src/Firebase/Auth/IdTokenVerifier.php does not verify for token signature that can result in JWT with any email address and user ID could be forged from an actual token, or from thin air. This attack appear to be exploitable via Attacker would only need to know email address of the victim on most cases.. This vulnerability appears to have been fixed in 3.8.1.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-1000041

    Last Modified: 21 Nov 2024

    GNOME librsvg version before commit c6ddf2ed4d768fd88adbea2b63f575cd523022ea contains a Improper input validation vulnerability in rsvg-io.c that can result in the victim's Windows username and NTLM password hash being leaked to remote attackers through SMB. This attack appear to be exploitable via The victim must process a specially crafted SVG file containing an UNC path on Windows.

    Published: 9 Feb 2018
    9.8
    Critical

    CVE-2018-1000043

    Last Modified: 21 Nov 2024

    Security Onion Solutions Squert version 1.0.1 through 1.6.7 contains a CWE-78: Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in .inc/callback.php that can result in execution of OS Commands. This attack appear to be exploitable via Web request to .inc/callback.php with the payload in the txdata parameter, used in tx()/transcript(), or the catdata parameter, used in cat(). This vulnerability appears to have been fixed in 1.7.0.

    Published: 9 Feb 2018
    4.4
    Medium

    CVE-2018-1000062

    Last Modified: 21 Nov 2024

    WonderCMS version 2.4.0 contains a Stored Cross-Site Scripting on File Upload through SVG vulnerability in uploadFileAction(), 'svg' => 'image/svg+xml' that can result in An attacker can execute arbitrary script on an unsuspecting user's browser. This attack appear to be exploitable via Crafted SVG File.

    Published: 9 Feb 2018
    5.4
    Medium

    CVE-2017-1000507

    Last Modified: 21 Nov 2024

    Canvs Canvas version 3.4.2 contains a Cross Site Scripting (XSS) vulnerability in User's details that can result in denial of service and execution of javascript code.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2017-1000508

    Last Modified: 21 Nov 2024

    Invoice Plane version 1.5.4 and earlier contains a Cross Site Scripting (XSS) vulnerability in Client's details that can result in execution of javascript code . This vulnerability appears to have been fixed in 1.5.5 and later.

    Published: 9 Feb 2018
    5.4
    Medium

    CVE-2017-1000509

    Last Modified: 21 Nov 2024

    Dolibarr version 6.0.2 contains a Cross Site Scripting (XSS) vulnerability in Product details that can result in execution of javascript code.

    Published: 9 Feb 2018
    5.4
    Medium

    CVE-2017-1000510

    Last Modified: 21 Nov 2024

    Croogo version 2.3.1-17-g6f82e6c contains a Cross Site Scripting (XSS) vulnerability in Page name that can result in execution of javascript code.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-1000019

    Last Modified: 21 Nov 2024

    OpenEMR version 5.0.0 contains a OS Command Injection vulnerability in fax_dispatch.php that can result in OS command injection by an authenticated attacker with any role. This vulnerability appears to have been fixed in 5.0.0 Patch 2 or higher.

    Published: 9 Feb 2018
    5.3
    Medium

    CVE-2018-1000022

    Last Modified: 21 Nov 2024

    Electrum Technologies GmbH Electrum Bitcoin Wallet version prior to version 3.0.5 contains a Missing Authorization vulnerability in JSONRPC interface that can result in Bitcoin theft, if the user's wallet is not password protected. This attack appear to be exploitable via The victim must visit a web page with specially crafted javascript. This vulnerability appears to have been fixed in 3.0.5.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2018-1000029

    Last Modified: 21 Nov 2024

    mcholste Enterprise Log Search and Archive (ELSA) version revision 1205, commit 2cc17f1 and earlier contains a Cross Site Scripting (XSS) vulnerability in index view (/) that can result in . This attack appear to be exploitable via Payload delivered via the type, name, and value parameters of /Query/set_preference and the name and value parameters of /Query/preference. Payload executed when the user visits the index view (/).

    Published: 9 Feb 2018
    9.8
    Critical

    CVE-2018-1000042

    Last Modified: 21 Nov 2024

    Security Onion Solutions Squert version 1.3.0 through 1.6.7 contains a CWE-78: Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in .inc/callback.php that can result in execution of OS Commands. This attack appear to be exploitable via Web request to .inc/callback.php with the payload in the data or obj parameters, used in autocat(). This vulnerability appears to have been fixed in 1.7.0.

    Published: 9 Feb 2018
    6.5
    Medium

    CVE-2018-3600

    Last Modified: 21 Nov 2024

    A external entity processing information disclosure (XXE) vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to disclose sensitive information on vulnerable installations.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-3603

    Last Modified: 21 Nov 2024

    A CGGIServlet SQL injection remote code execution (RCE) vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-3604

    Last Modified: 21 Nov 2024

    GetXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-3606

    Last Modified: 21 Nov 2024

    XXXStatusXXX, XXXSummary, TemplateXXX and XXXCompliance method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-3607

    Last Modified: 21 Nov 2024

    XXXTreeNode method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2018-5307

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in Sonatype Nexus Repository Manager (aka NXRM) 2.x before 2.14.6 allow remote attackers to inject arbitrary web script or HTML via (1) the repoId or (2) format parameter to service/siesta/healthcheck/healthCheckFileDetail/.../index.html; (3) the filename in the "File Upload" functionality of the Staging Upload; (4) the username when creating a new user; or (5) the IQ Server URL field in the IQ Server Connection functionality.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2012-6346

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in FortiWeb before 4.4.4 allow remote attackers to inject arbitrary web script or HTML via the (1) redir or (2) mkey parameter to waf/pcre_expression/validate.

    Published: 9 Feb 2018
    9.8
    Critical

    CVE-2018-3601

    Last Modified: 21 Nov 2024

    A password hash usage authentication bypass vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to bypass authentication on vulnerable installations.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-3605

    Last Modified: 21 Nov 2024

    TopXXX, ViolationXXX, and IncidentXXX method SQL injection remote code execution (RCE) vulnerabilities in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.

    Published: 9 Feb 2018
    7.8
    High

    CVE-2014-3219

    Last Modified: 21 Nov 2024

    fish before 2.1.1 allows local users to write to arbitrary files via a symlink attack on (1) /tmp/fishd.log.%s, (2) /tmp/.pac-cache.$USER, (3) /tmp/.yum-cache.$USER, or (4) /tmp/.rpm-cache.$USER.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2012-6347

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in Java number format exception handling in FortiGate FortiDB before 4.4.2 allow remote attackers to inject arbitrary web script or HTML via the conversationContext parameter to (1) admin/auditTrail.jsf, (2) mapolicymgmt/targetsMonitorView.jsf, (3) vascan/globalsummary.jsf, (4) vaerrorlog/vaErrorLog.jsf, (5) database/listTargetGroups.jsf, (6) sysconfig/listSystemInfo.jsf, (7) vascan/list.jsf, (8) network/router.jsf, (9) mapolicymgmt/editPolicyProfile.jsf, or (10) mapolicymgmt/maPolicyMasterList.jsf.

    Published: 9 Feb 2018
    5.4
    Medium

    CVE-2017-0911

    Last Modified: 21 Nov 2024

    Twitter Kit for iOS versions 3.0 to 3.2.1 is vulnerable to a callback verification flaw in the "Login with Twitter" component allowing an attacker to provide alternate credentials. In the final step of "Login with Twitter" authentication information is passed back to the application using the registered custom URL scheme (typically twitterkit-<consumer-key>) on iOS. Because the callback handler did not verify the authenticity of the response, this step is vulnerable to forgery, potentially allowing attacker to associate a Twitter account with a third-party service.

    Published: 9 Feb 2018
    8.8
    High

    CVE-2018-3602

    Last Modified: 21 Nov 2024

    An AdHocQuery_Processor SQL injection remote code execution (RCE) vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to execute arbitrary code on vulnerable installations.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2018-5306

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in Sonatype Nexus Repository Manager (aka NXRM) 3.x before 3.8 allow remote attackers to inject arbitrary web script or HTML via (1) the repoId or (2) format parameter to service/siesta/healthcheck/healthCheckFileDetail/.../index.html; (3) the filename in the "File Upload" functionality of the Staging Upload; (4) the username when creating a new user; or (5) the IQ Server URL field in the IQ Server Connection functionality.

    Published: 9 Feb 2018
    5.4
    Medium

    CVE-2018-6878

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) exists in the review section in PHP Scripts Mall Hot Scripts Clone Script Classified 3.1 via the title or description field.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2018-1401

    Last Modified: 21 Nov 2024

    IBM WebSphere Portal 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138437.

    Published: 9 Feb 2018
    6.1
    Medium

    CVE-2017-1761

    Last Modified: 21 Nov 2024

    IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 136005.

    Published: 9 Feb 2018
    4.4
    Medium

    CVE-2018-1368

    Last Modified: 21 Nov 2024

    IBM Security Guardium Database Activity Monitor 9.0, 9.1, and 9.5 could allow a local user with low privileges to view report pages and perform some actions that only an admin should be performing, so there is risk that someone not authorized can change things that they are not suppose to. IBM X-Force ID: 137765.

    Published: 9 Feb 2018
    9.8
    Critical

    CVE-2018-6825

    Last Modified: 21 Nov 2024

    An issue was discovered on VOBOT CLOCK before 0.99.30 devices. An SSH server exists with a hardcoded vobot account that has root access.

    Published: 9 Feb 2018