CVE Feed

    Dashboard / CVE

    Unknown

    CVE-2018-6538

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 3 Feb 2018
    7.8
    High

    CVE-2018-6593

    Last Modified: 21 Nov 2024

    An issue was discovered in MalwareFox AntiMalware 2.74.0.150. Improper access control in zam32.sys and zam64.sys allows a non-privileged process to register itself with the driver by connecting to the filter communication port and then using IOCTL 0x8000204C to \\.\ZemanaAntiMalware to elevate privileges.

    Published: 3 Feb 2018
    8.6
    High

    CVE-2017-18123

    Last Modified: 21 Nov 2024

    The call parameter of /lib/exe/ajax.php in DokuWiki through 2017-02-19e does not properly encode user input, which leads to a reflected file download vulnerability, and allows remote attackers to run arbitrary programs.

    Published: 3 Feb 2018
    6.7
    Medium

    CVE-2018-1185

    Last Modified: 21 Nov 2024

    An issue was discovered in EMC RecoverPoint for Virtual Machines versions prior to 5.1.1, EMC RecoverPoint version 5.1.0.0, and EMC RecoverPoint versions prior to 5.0.1.3. Command injection vulnerability in Admin CLI may allow a malicious user with admin privileges to escape from the restricted shell to an interactive shell and run arbitrary commands with root privileges.

    Published: 3 Feb 2018
    6.7
    Medium

    CVE-2018-1184

    Last Modified: 21 Nov 2024

    An issue was discovered in EMC RecoverPoint for Virtual Machines versions prior to 5.1.1, EMC RecoverPoint version 5.1.0.0, and EMC RecoverPoint versions prior to 5.0.1.3. Command injection vulnerability in Boxmgmt CLI may allow a malicious user with boxmgmt privileges to bypass Boxmgmt CLI and run arbitrary commands with root privileges.

    Published: 3 Feb 2018
    7.5
    High

    CVE-2018-6952

    Last Modified: 21 Nov 2024

    A double free exists in the another_hunk function in pch.c in GNU patch through 2.7.6.

    Published: 3 Feb 2018
    7.5
    High

    CVE-2009-5144

    Last Modified: 21 Nov 2024

    mod-gnutls does not validate client certificates when "GnuTLSClientVerify require" is set in a directory context, which allows remote attackers to spoof clients via a crafted certificate.

    Published: 3 Feb 2018
    7.5
    High

    CVE-2015-2186

    Last Modified: 21 Nov 2024

    The Ansible edxapp role in the Configuration Repo in edX allows remote websites to spoof edX accounts by leveraging use of the string literal "False" instead of a boolean False for the CORS_ORIGIN_ALLOW_ALL setting. Note: this vulnerability was fixed on 2015-03-06, but the version number was not changed.

    Published: 3 Feb 2018
    9.8
    Critical

    CVE-2017-17108

    Last Modified: 21 Nov 2024

    Path traversal vulnerability in the administrative panel in KonaKart eCommerce Platform version 8.7 and earlier could allow an attacker to download system files, as well as upload specially crafted JSP files and in turn gain access to the server.

    Published: 3 Feb 2018
    7.5
    High

    CVE-2018-6594

    Last Modified: 21 Nov 2024

    lib/Crypto/PublicKey/ElGamal.py in PyCrypto through 2.6.1 generates weak ElGamal key parameters, which allows attackers to obtain sensitive information by reading ciphertext data (i.e., it does not have semantic security in face of a ciphertext-only attack). The Decisional Diffie-Hellman (DDH) assumption does not hold for PyCrypto's ElGamal implementation.

    Published: 3 Feb 2018
    7.8
    High

    CVE-2018-6767

    Last Modified: 21 Nov 2024

    A stack-based buffer over-read in the ParseRiffHeaderConfig function of cli/riff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service attack or possibly have unspecified other impact via a maliciously crafted RF64 file.

    Published: 3 Feb 2018
    7.8
    High

    CVE-2018-1056

    Last Modified: 21 Nov 2024

    An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

    Published: 3 Feb 2018
    7.5
    High

    CVE-2018-6951

    Last Modified: 21 Nov 2024

    An issue was discovered in GNU patch through 2.7.6. There is a segmentation fault, associated with a NULL pointer dereference, leading to a denial of service in the intuit_diff_type function in pch.c, aka a "mangled rename" issue.

    Published: 3 Feb 2018
    7.8
    High

    CVE-2014-1834

    Last Modified: 21 Nov 2024

    The perform_request function in /lib/echor/backplane.rb in echor 0.1.6 Ruby Gem allows local users to inject arbitrary code by adding a semi-colon in their username or password.

    Published: 2 Feb 2018
    5.5
    Medium

    CVE-2018-6319

    Last Modified: 21 Nov 2024

    In Sophos Tester Tool 3.2.0.7 Beta, the driver accepts a special DeviceIoControl code that doesn't check its argument. This argument is a memory address: if a caller passes a NULL pointer or a random invalid address, the driver will cause a Blue Screen of Death. If a program or malware does this at boot time, it can cause a persistent denial of service on the machine.

    Published: 2 Feb 2018
    7.8
    High

    CVE-2014-1835

    Last Modified: 21 Nov 2024

    The perform_request function in /lib/echor/backplane.rb in echor 0.1.6 Ruby Gem allows local users to steal the login credentials by watching the process table.

    Published: 2 Feb 2018
    5.4
    Medium

    CVE-2016-0329

    Last Modified: 21 Nov 2024

    Open redirect vulnerability in IBM Emptoris Sourcing 10.0.0.x before 10.0.0.1_iFix3, 10.0.1.x before 10.0.1.3_iFix3, 10.0.2.x before 10.0.2.8_iFix1, 10.0.4.0 before 10.0.4.0_iFix8, and 10.1.0.0 before 10.1.0.0_iFix3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors. IBM X-Force ID: 111692.

    Published: 2 Feb 2018
    6.1
    Medium

    CVE-2015-2796

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in Project-Pier ProjectPier-Core allow remote attackers to inject arbitrary web script or HTML via the search_for parameter to (1) search_by_tag.php, (2) search_contacts.php, or (3) search.php.

    Published: 2 Feb 2018
    5.4
    Medium

    CVE-2016-0342

    Last Modified: 21 Nov 2024

    IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 allows remote authenticated users to read or modify arbitrary reports by leveraging an incorrect grant of access. IBM X-Force ID: 111783.

    Published: 2 Feb 2018
    5.4
    Medium

    CVE-2016-0300

    Last Modified: 21 Nov 2024

    IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 might allow remote attackers to access arbitrary JSP pages via vectors related to improper input validation. IBM X-Force ID: 111412.

    Published: 2 Feb 2018
    5.4
    Medium

    CVE-2016-0303

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in IBM Tivoli Integrated Portal 2.2.0.0 through 2.2.0.15 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 2 Feb 2018
    5.4
    Medium

    CVE-2016-0311

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in IBM Tivoli Business Service Manager 6.1.0 before 6.1.0-TIV-BSM-FP0004 and 6.1.1 before 6.1.1-TIV-BSM-FP0004 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. IBM X-Force ID: 111480.

    Published: 2 Feb 2018
    7.5
    High

    CVE-2016-0312

    Last Modified: 21 Nov 2024

    IBM TRIRIGA Application Platform before 3.3.2 allows remote attackers to obtain sensitive information via vectors related to granting unauthenticated access to Document Manager. IBM X-Force ID: 111486.

    Published: 2 Feb 2018
    8.1
    High

    CVE-2018-5261

    Last Modified: 21 Nov 2024

    An issue was discovered in Flexense DiskBoss 8.8.16 and earlier. Due to the usage of plaintext information from the handshake as input for the encryption key used for the encryption of the rest of the session, the server and client disclose sensitive information, such as the authentication credentials, to any man-in-the-middle (MiTM) listener.

    Published: 2 Feb 2018
    9.1
    Critical

    CVE-2018-6317

    Last Modified: 21 Nov 2024

    The remote management interface in Claymore Dual Miner 10.5 and earlier is vulnerable to an unauthenticated format string vulnerability, allowing remote attackers to read memory or cause a denial of service.

    Published: 2 Feb 2018
    7.8
    High

    CVE-2018-6318

    Last Modified: 21 Nov 2024

    In Sophos Tester Tool 3.2.0.7 Beta, the driver loads (in the context of the application used to test an exploit or ransomware) the DLL using a payload that runs from NTDLL.DLL (so, it's run in userland), but the driver doesn't perform any validation of this DLL (not its signature, not its hash, etc.). A person can change this DLL in a local way, or with a remote connection, to a malicious DLL with the same name -- and when the product is used, this malicious DLL will be loaded, aka a DLL Hijacking attack.

    Published: 2 Feb 2018
    9.8
    Critical

    CVE-2018-6575

    Last Modified: 21 Nov 2024

    SQL Injection exists in the JEXTN Classified 1.0.0 component for Joomla! via a view=boutique&sid= request.

    Published: 2 Feb 2018
    9.8
    Critical

    CVE-2018-6576

    Last Modified: 21 Nov 2024

    SQL Injection exists in Event Manager 1.0 via the event.php id parameter or the page.php slug parameter.

    Published: 2 Feb 2018
    9.8
    Critical

    CVE-2018-6577

    Last Modified: 21 Nov 2024

    SQL Injection exists in the JEXTN Membership 3.1.0 component for Joomla! via the usr_plan parameter in a view=myplans&task=myplans.usersubscriptions request.

    Published: 2 Feb 2018
    9.8
    Critical

    CVE-2018-6578

    Last Modified: 21 Nov 2024

    SQL Injection exists in the JE PayperVideo 3.0.0 component for Joomla! via the usr_plan parameter in a view=myplans&task=myplans.usersubscriptions request.

    Published: 2 Feb 2018
    9.8
    Critical

    CVE-2018-6579

    Last Modified: 21 Nov 2024

    SQL Injection exists in the JEXTN Reverse Auction 3.1.0 component for Joomla! via a view=products&uid= request.

    Published: 2 Feb 2018
    9.8
    Critical

    CVE-2018-6580

    Last Modified: 21 Nov 2024

    Arbitrary file upload exists in the Jimtawl 2.1.6 and 2.2.5 component for Joomla! via a view=upload&task=upload&pop=true&tmpl=component request.

    Published: 2 Feb 2018
    9.8
    Critical

    CVE-2018-6581

    Last Modified: 21 Nov 2024

    SQL Injection exists in the JMS Music 1.1.1 component for Joomla! via a search with the keyword, artist, or username parameter.

    Published: 2 Feb 2018
    6.1
    Medium

    CVE-2017-18121

    Last Modified: 21 Nov 2024

    The consentAdmin module in SimpleSAMLphp through 1.14.15 is vulnerable to a Cross-Site Scripting attack, allowing an attacker to craft links that could execute arbitrary JavaScript code on the victim's web browser.

    Published: 2 Feb 2018
    8.1
    High

    CVE-2017-18122

    Last Modified: 21 Nov 2024

    A signature-validation bypass issue was discovered in SimpleSAMLphp through 1.14.16. A SimpleSAMLphp Service Provider using SAML 1.1 will regard as valid any unsigned SAML response containing more than one signed assertion, provided that the signature of at least one of the assertions is valid. Attributes contained in all the assertions received will be merged and the entityID of the first assertion received will be used, allowing an attacker to impersonate any user of any IdP given an assertion signed by the targeted IdP.

    Published: 2 Feb 2018
    7.8
    High

    CVE-2017-5727

    Last Modified: 21 Nov 2024

    Pointer dereference in subsystem in Intel Graphics Driver 15.40.x.x, 15.45.x.x, 15.46.x.x allows unprivileged user to elevate privileges via local access.

    Published: 2 Feb 2018
    7.3
    High

    CVE-2018-6486

    Last Modified: 21 Nov 2024

    XML External Entity (XXE) vulnerability in Micro Focus Fortify Audit Workbench (AWB) and Micro Focus Fortify Software Security Center (SSC), versions 16.10, 16.20, 17.10. This vulnerability could be exploited to allow a XML External Entity (XXE) injection.

    Published: 2 Feb 2018
    6.1
    Medium

    CVE-2017-18085

    Last Modified: 21 Nov 2024

    The viewdefaultdecorator resource in Atlassian Confluence Server before version 6.6.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the key parameter.

    Published: 2 Feb 2018
    6.1
    Medium

    CVE-2017-18086

    Last Modified: 21 Nov 2024

    Various resources in Atlassian Confluence Server before version 6.4.2 allow remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the issuesURL parameter.

    Published: 2 Feb 2018
    7.5
    High

    CVE-2017-14178

    Last Modified: 21 Nov 2024

    In snapd 2.27 through 2.29.2 the 'snap logs' command could be made to call journalctl without match arguments and therefore allow unprivileged, unauthenticated users to bypass systemd-journald's access restrictions.

    Published: 2 Feb 2018
    7.8
    High

    CVE-2017-14180

    Last Modified: 3 Nov 2025

    Apport 2.13 through 2.20.7 does not properly handle crashes originating from a PID namespace allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via resource exhaustion or possibly gain root privileges, a different vulnerability than CVE-2017-14179.

    Published: 2 Feb 2018
    7.8
    High

    CVE-2017-14177

    Last Modified: 21 Nov 2024

    Apport through 2.20.7 does not properly handle core dumps from setuid binaries allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via resource exhaustion or possibly gain root privileges. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1324.

    Published: 2 Feb 2018
    7.8
    High

    CVE-2017-14179

    Last Modified: 21 Nov 2024

    Apport before 2.13 does not properly handle crashes originating from a PID namespace allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via resource exhaustion, possibly gain root privileges, or escape from containers.

    Published: 2 Feb 2018
    5.4
    Medium

    CVE-2017-18034

    Last Modified: 21 Nov 2024

    The source browse resource in Atlassian Fisheye and Crucible before version 4.5.1 and 4.6.0 allows allows remote attackers that have write access to an indexed repository to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in via a specially crafted repository branch name when trying to display deleted files of the branch.

    Published: 2 Feb 2018
    4.3
    Medium

    CVE-2017-18035

    Last Modified: 21 Nov 2024

    The /rest/review-coverage-chart/1.0/data/<repository_name>/.json resource in Atlassian Fisheye and Crucible before version 4.5.1 and 4.6.0 was missing a permissions check, this allows remote attackers who do not have access to a particular repository to determine its existence and access review coverage statistics for it.

    Published: 2 Feb 2018
    4.3
    Medium

    CVE-2017-18036

    Last Modified: 21 Nov 2024

    The Github repository importer in Atlassian Bitbucket Server before version 5.3.0 allows remote attackers to determine if a service they could not otherwise reach has open ports via a Server Side Request Forgery (SSRF) vulnerability.

    Published: 2 Feb 2018
    6.1
    Medium

    CVE-2017-18039

    Last Modified: 21 Nov 2024

    The IncomingMailServers resource in Atlassian Jira from version 6.2.1 before version 7.4.4 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the messagesThreshold parameter.

    Published: 2 Feb 2018
    5.4
    Medium

    CVE-2017-18040

    Last Modified: 21 Nov 2024

    The viewDeploymentVersionCommits resource in Atlassian Bamboo before version 6.2.0 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the name of a release.

    Published: 2 Feb 2018
    5.4
    Medium

    CVE-2017-18041

    Last Modified: 21 Nov 2024

    The viewDeploymentVersionJiraIssuesDialog resource in Atlassian Bamboo before version 6.2.0 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the name of a release.

    Published: 2 Feb 2018
    8.8
    High

    CVE-2017-18042

    Last Modified: 21 Nov 2024

    The update user administration resource in Atlassian Bamboo before version 6.3.1 allows remote attackers to modify user data including passwords via a Cross-site request forgery (CSRF) vulnerability.

    Published: 2 Feb 2018