CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2018-6629

    Last Modified: 21 Nov 2024

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000118.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2018-6631

    Last Modified: 21 Nov 2024

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110009.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000170.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2018-6633

    Last Modified: 21 Nov 2024

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000038.

    Published: 5 Feb 2018
    7.5
    High

    CVE-2018-6635

    Last Modified: 21 Nov 2024

    System Manager in Avaya Aura before 7.1.2 does not properly use SSL in conjunction with authentication, which allows remote attackers to bypass intended Remote Method Invocation (RMI) restrictions, aka SMGR-26896.

    Published: 5 Feb 2018
    9.8
    Critical

    CVE-2018-6624

    Last Modified: 21 Nov 2024

    OMRON NS devices 1.1 through 1.3 allow remote attackers to bypass authentication via a direct request to the .html file for a specific screen, as demonstrated by monitor.html.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2018-6632

    Last Modified: 21 Nov 2024

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000110.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2018-6625

    Last Modified: 21 Nov 2024

    In WatchDog Anti-Malware 2.74.186.150, the driver file (ZAMGUARD32.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80002010.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2018-6627

    Last Modified: 21 Nov 2024

    In WatchDog Anti-Malware 2.74.186.150, the driver file (ZAMGUARD32.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80002054.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2018-6630

    Last Modified: 21 Nov 2024

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8000014c.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2015-1418

    Last Modified: 21 Nov 2024

    The do_ed_script function in pch.c in GNU patch through 2.7.6, and patch in FreeBSD 10.1 before 10.1-RELEASE-p17, 10.2 before 10.2-BETA2-p3, 10.2-RC1 before 10.2-RC1-p2, and 0.2-RC2 before 10.2-RC2-p1, allows remote attackers to execute arbitrary commands via a crafted patch file, because a '!' character can be passed to the ed program.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2015-1416

    Last Modified: 21 Nov 2024

    Larry Wall's patch; patch in FreeBSD 10.2-RC1 before 10.2-RC1-p1, 10.2 before 10.2-BETA2-p2, and 10.1 before 10.1-RELEASE-p16; Bitrig; GNU patch before 2.2.5; and possibly other patch variants allow remote attackers to execute arbitrary shell commands via a crafted patch file.

    Published: 5 Feb 2018
    8.8
    High

    CVE-2015-4179

    Last Modified: 21 Nov 2024

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Codestyling Localization plugin 1.99.30 and earlier for Wordpress.

    Published: 5 Feb 2018
    6.5
    Medium

    CVE-2015-4461

    Last Modified: 21 Nov 2024

    Absolute path traversal vulnerability in eFront CMS 3.6.15.4 and earlier allows remote Professor users to obtain sensitive information via a full pathname in the other parameter.

    Published: 5 Feb 2018
    6.5
    Medium

    CVE-2015-5674

    Last Modified: 21 Nov 2024

    The routed daemon in FreeBSD 9.3 before 9.3-RELEASE-p22, 10.2-RC2 before 10.2-RC2-p1, 10.2-RC1 before 10.2-RC1-p2, 10.2 before 10.2-BETA2-p3, and 10.1 before 10.1-RELEASE-p17 allows remote authenticated users to cause a denial of service (assertion failure and daemon exit) via a query from a network that is not directly connected.

    Published: 5 Feb 2018
    8.8
    High

    CVE-2017-9414

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in the Subscribe to Podcast feature in Subsonic 6.1.1 allows remote attackers to hijack the authentication of unspecified victims for requests that conduct cross-site scripting (XSS) attacks or possibly have unspecified other impact via the name parameter to playerSettings.view.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2018-6461

    Last Modified: 21 Nov 2024

    March Hare WINCVS before 2.8.01 build 6610, and CVS Suite before 2009R2 build 6610, contains an Insecure Library Loading vulnerability in the wincvs2.exe or wincvs.exe file, which may allow local users to gain privileges via a Trojan horse Python or TCL DLL file in the current working directory.

    Published: 5 Feb 2018
    7.5
    High

    CVE-2018-5788

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated Denial of Service in the RIM (Radio Interface Module) process running on the WiNG Access Point via crafted packets.

    Published: 5 Feb 2018
    5.9
    Medium

    CVE-2018-5791

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated Heap Overflow in the HSD Process over the MINT (Media Independent Tunnel) Protocol on the WiNG Access Point via crafted packets.

    Published: 5 Feb 2018
    5.9
    Medium

    CVE-2018-5793

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated Heap Overflow in the HSD Process over the MINT (Media Independent Tunnel) Protocol on the WiNG Access Point via crafted packets.

    Published: 5 Feb 2018
    4.9
    Medium

    CVE-2018-5795

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is Arbitrary File Write from the WebGUI on the WiNG Access Point / Controller.

    Published: 5 Feb 2018
    7.5
    High

    CVE-2018-5797

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is an Smint_encrypt Hardcoded AES Key that can be used for packet decryption (obtaining cleartext credentials) by an attacker who has access to a wired port.

    Published: 5 Feb 2018
    Unknown

    CVE-2018-6620

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 5 Feb 2018
    7.5
    High

    CVE-2018-5787

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated Stack Overflow in the RIM (Radio Interface Module) process running on the WiNG Access Point via crafted packets.

    Published: 5 Feb 2018
    7.5
    High

    CVE-2018-5789

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated XML Entity Expansion Denial of Service on the WiNG Access Point / Controller via crafted XML entities to the Web User Interface.

    Published: 5 Feb 2018
    7.2
    High

    CVE-2018-5796

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Hidden Root Shell by entering the administrator password in conjunction with the 'service start-shell' CLI command.

    Published: 5 Feb 2018
    6.5
    Medium

    CVE-2018-6621

    Last Modified: 21 Nov 2024

    The decode_frame function in libavcodec/utvideodec.c in FFmpeg through 3.2 allows remote attackers to cause a denial of service (out of array read) via a crafted AVI file.

    Published: 5 Feb 2018
    5.3
    Medium

    CVE-2018-5790

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is Remote, Unauthenticated "Global" Denial of Service in the RIM (Radio Interface Module) over the MINT (Media Independent Tunnel) Protocol on the WiNG Access Point via crafted packets.

    Published: 5 Feb 2018
    5.9
    Medium

    CVE-2018-5792

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated Heap Overflow in the HSD Process over the MINT (Media Independent Tunnel) Protocol on the WiNG Access Point via crafted packets.

    Published: 5 Feb 2018
    5.3
    Medium

    CVE-2018-5794

    Last Modified: 21 Nov 2024

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is No Authentication for the AeroScout Service via a crafted UDP packet.

    Published: 5 Feb 2018
    7.5
    High

    CVE-2018-6188

    Last Modified: 21 Nov 2024

    django.contrib.auth.forms.AuthenticationForm in Django 2.0 before 2.0.2, and 1.11.8 and 1.11.9, allows remote attackers to obtain potentially sensitive information by leveraging data exposure from the confirm_login_allowed() method, as demonstrated by discovering whether a user account is inactive.

    Published: 5 Feb 2018
    8.8
    High

    CVE-2017-15536

    Last Modified: 21 Nov 2024

    An issue was discovered in Cloudera Data Science Workbench (CDSW) 1.x before 1.2.0. Several web application vulnerabilities allow malicious authenticated users of CDSW to escalate privileges in CDSW. CDSW users can exploit these vulnerabilities in combination to gain root access to CDSW nodes, gain access to the CDSW database which includes Kerberos keytabs of CDSW users and bcrypt hashed passwords, and gain access to other privileged information such as session tokens, invitation tokens, and environment variables.

    Published: 5 Feb 2018
    7.5
    High

    CVE-2017-12174

    Last Modified: 15 Jun 2026

    It was found that when Artemis and HornetQ before 2.4.0 are configured with UDP discovery and JGroups discovery a huge byte array is created when receiving an unexpected multicast message. This may result in a heap memory exhaustion, full GC, or OutOfMemoryError.

    Published: 5 Feb 2018
    8.3
    High

    CVE-2018-1000056

    Last Modified: 21 Nov 2024

    Jenkins JUnit Plugin 1.23 and earlier processes XML external entities in files it parses as part of the build process, allowing attackers with user permissions in Jenkins to extract secrets from the Jenkins master, perform server-side request forgery, or denial-of-service attacks.

    Published: 5 Feb 2018
    8.8
    High

    CVE-2018-1000058

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: Supporting APIs Plugin 2.17 and earlier have an arbitrary code execution due to incomplete sandbox protection: Methods related to Java deserialization like readResolve implemented in Pipeline scripts were not subject to sandbox protection, and could therefore execute arbitrary code. This could be exploited e.g. by regular Jenkins users with the permission to configure Pipelines in Jenkins, or by trusted committers to repositories containing Jenkinsfiles.

    Published: 5 Feb 2018
    7.5
    High

    CVE-2018-1041

    Last Modified: 21 Nov 2024

    A vulnerability was found in the way RemoteMessageChannel, introduced in jboss-remoting versions 3.3.10, reads from an empty buffer. An attacker could use this flaw to cause denial of service via high CPU caused by an infinite loop.

    Published: 5 Feb 2018
    7.8
    High

    CVE-2018-6764

    Last Modified: 21 Nov 2024

    util/virlog.c in libvirt does not properly determine the hostname on LXC container startup, which allows local guest OS users to bypass an intended container protection mechanism and execute arbitrary commands via a crafted NSS module.

    Published: 5 Feb 2018
    5.5
    Medium

    CVE-2018-6872

    Last Modified: 21 Nov 2024

    The elf_parse_notes function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (out-of-bounds read and segmentation violation) via a note with a large alignment.

    Published: 5 Feb 2018
    4.3
    Medium

    CVE-2018-1000057

    Last Modified: 21 Nov 2024

    Jenkins Credentials Binding Plugin 1.14 and earlier masks passwords it provides to build processes in their build logs. Jenkins however transforms provided password values, e.g. replacing environment variable references, which could result in values different from but similar to configured passwords being provided to the build. Those values are not subject to masking, and could allow unauthorized users to recover the original password.

    Published: 5 Feb 2018
    6.5
    Medium

    CVE-2017-10690

    Last Modified: 21 Nov 2024

    In previous versions of Puppet Agent it was possible for the agent to retrieve facts from an environment that it was not classified to retrieve from. This was resolved in Puppet Agent 5.3.4, included in Puppet Enterprise 2017.3.4

    Published: 5 Feb 2018
    8
    High

    CVE-2018-6508

    Last Modified: 21 Nov 2024

    Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.

    Published: 5 Feb 2018
    9.8
    Critical

    CVE-2018-6836

    Last Modified: 21 Nov 2024

    The netmonrec_comment_destroy function in wiretap/netmon.c in Wireshark through 2.4.4 performs a free operation on an uninitialized memory address, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

    Published: 5 Feb 2018
    5.5
    Medium

    CVE-2018-6612

    Last Modified: 21 Nov 2024

    An integer underflow bug in the process_EXIF function of the exif.c file of jhead 3.00 raises a heap-based buffer over-read when processing a malicious JPEG file, which may allow a remote attacker to cause a denial-of-service attack or unspecified other impact.

    Published: 4 Feb 2018
    8.8
    High

    CVE-2018-6611

    Last Modified: 21 Nov 2024

    soundlib/Load_stp.cpp in OpenMPT through 1.27.04.00, and libopenmpt before 0.3.6, has an out-of-bounds read via a malformed STP file.

    Published: 4 Feb 2018
    7.8
    High

    CVE-2018-6606

    Last Modified: 21 Nov 2024

    An issue was discovered in MalwareFox AntiMalware 2.74.0.150. Improper access control in zam32.sys and zam64.sys allows a non-privileged process to register itself with the driver by sending IOCTL 0x80002010 and then using IOCTL 0x8000204C to \\.\ZemanaAntiMalware to elevate privileges.

    Published: 4 Feb 2018
    5.4
    Medium

    CVE-2017-8783

    Last Modified: 21 Nov 2024

    Synacor Zimbra Collaboration Suite (ZCS) before 8.7.10 has Persistent XSS.

    Published: 4 Feb 2018
    6.1
    Medium

    CVE-2017-17703

    Last Modified: 21 Nov 2024

    Synacor Zimbra Collaboration Suite (ZCS) before 8.8.3 has Persistent XSS.

    Published: 4 Feb 2018
    4.7
    Medium

    CVE-2018-1065

    Last Modified: 21 Nov 2024

    The netfilter subsystem in the Linux kernel through 4.15.7 mishandles the case of a rule blob that contains a jump but lacks a user-defined chain, which allows local users to cause a denial of service (NULL pointer dereference) by leveraging the CAP_NET_RAW or CAP_NET_ADMIN capability, related to arpt_do_table in net/ipv4/netfilter/arp_tables.c, ipt_do_table in net/ipv4/netfilter/ip_tables.c, and ip6t_do_table in net/ipv6/netfilter/ip6_tables.c.

    Published: 4 Feb 2018
    5.5
    Medium

    CVE-2018-6616

    Last Modified: 21 Nov 2024

    In OpenJPEG 2.3.0, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.

    Published: 4 Feb 2018
    9.8
    Critical

    CVE-2018-11236

    Last Modified: 21 Nov 2024

    stdlib/canonicalize.c in the GNU C Library (aka glibc or libc6) 2.27 and earlier, when processing very long pathname arguments to the realpath function, could encounter an integer overflow on 32-bit architectures, leading to a stack-based buffer overflow and, potentially, arbitrary code execution.

    Published: 4 Feb 2018
    9.1
    Critical

    CVE-2018-6596

    Last Modified: 21 Nov 2024

    webhooks/base.py in Anymail (aka django-anymail) before 1.2.1 is prone to a timing attack vulnerability on the WEBHOOK_AUTHORIZATION secret, which allows remote attackers to post arbitrary e-mail tracking events.

    Published: 3 Feb 2018