CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2017-1000141

    Last Modified: 21 Nov 2024

    An issue was discovered in Mahara before 18.10.0. It mishandled user requests that could discontinue a user's ability to maintain their own account (changing username, changing primary email address, deleting account). The correct behavior was to either prompt them for their password and/or send a warning to their primary email address.

    Published: 30 Jan 2018
    8.8
    High

    CVE-2017-1731

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could provide weaker than expected security when using the Administrative Console. An authenticated remote attacker could exploit this vulnerability to possibly gain elevated privileges.

    Published: 30 Jan 2018
    6.1
    Medium

    CVE-2018-6377

    Last Modified: 21 Nov 2024

    In Joomla! before 3.8.4, inadequate input filtering in com_fields leads to an XSS vulnerability in multiple field types, i.e., list, radio, and checkbox

    Published: 30 Jan 2018
    6.1
    Medium

    CVE-2018-6379

    Last Modified: 21 Nov 2024

    In Joomla! before 3.8.4, inadequate input filtering in the Uri class (formerly JUri) leads to an XSS vulnerability.

    Published: 30 Jan 2018
    6.1
    Medium

    CVE-2018-6380

    Last Modified: 21 Nov 2024

    In Joomla! before 3.8.4, lack of escaping in the module chromes leads to XSS vulnerabilities in the module system.

    Published: 30 Jan 2018
    7.5
    High

    CVE-2014-4705

    Last Modified: 21 Nov 2024

    Multiple heap-based buffer overflows in the eSap software platform in Huawei Campus S9300, S7700, S9700, S5300, S5700, S6300, and S6700 series switches; AR150, AR160, AR200, AR1200, AR2200, AR3200, AR530, NetEngine16EX, SRG1300, SRG2300, and SRG3300 series routers; and WLAN AC6005, AC6605, and ACU2 access controllers allow remote attackers to cause a denial of service (device restart) via a crafted length field in a packet.

    Published: 30 Jan 2018
    6.1
    Medium

    CVE-2018-6355

    Last Modified: 21 Nov 2024

    /goform/setLang on iBall 300M devices with "iB-WRB302N_1.0.1-Sep 8 2017" firmware has Unauthenticated Stored Cross Site Scripting via the lang parameter.

    Published: 30 Jan 2018
    9.8
    Critical

    CVE-2018-6376

    Last Modified: 21 Nov 2024

    In Joomla! before 3.8.4, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Hathor postinstall message.

    Published: 30 Jan 2018
    9.8
    Critical

    CVE-2018-6395

    Last Modified: 21 Nov 2024

    SQL Injection exists in the Visual Calendar 3.1.3 component for Joomla! via the id parameter in a view=load action.

    Published: 30 Jan 2018
    7.5
    High

    CVE-2018-6397

    Last Modified: 21 Nov 2024

    Directory Traversal exists in the Picture Calendar 3.1.4 component for Joomla! via the list.php folder parameter.

    Published: 30 Jan 2018
    9.8
    Critical

    CVE-2018-6398

    Last Modified: 21 Nov 2024

    SQL Injection exists in the CP Event Calendar 3.0.1 component for Joomla! via the id parameter in a task=load action.

    Published: 30 Jan 2018
    3.3
    Low

    CVE-2018-6382

    Last Modified: 21 Nov 2024

    MantisBT 2.10.0 allows local users to conduct SQL Injection attacks via the vendor/adodb/adodb-php/server.php sql parameter in a request to the 127.0.0.1 IP address. NOTE: the vendor disputes the significance of this report because server.php is intended to execute arbitrary SQL statements on behalf of authenticated users from 127.0.0.1, and the issue does not have an authentication bypass

    Published: 30 Jan 2018
    8.8
    High

    CVE-2018-5802

    Last Modified: 21 Nov 2024

    An error within the "kodak_radc_load_raw()" function (internal/dcraw_common.cpp) related to the "buf" variable in LibRaw versions prior to 0.18.7 can be exploited to cause an out-of-bounds read memory access and subsequently cause a crash.

    Published: 30 Jan 2018
    8.8
    High

    CVE-2018-6406

    Last Modified: 21 Nov 2024

    The function ParseVP9SuperFrameIndex in common/libwebm_util.cc in libwebm through 2018-01-30 does not validate the child_frame_length data obtained from a .webm file, which allows remote attackers to cause an information leak or a denial of service (heap-based buffer over-read and later out-of-bounds write), or possibly have unspecified other impact.

    Published: 30 Jan 2018
    7.5
    High

    CVE-2018-7336

    Last Modified: 21 Nov 2024

    In Wireshark 2.4.0 to 2.4.4 and 2.2.0 to 2.2.12, the FCP protocol dissector could crash. This was addressed in epan/dissectors/packet-fcp.c by checking for a NULL pointer.

    Published: 30 Jan 2018
    5.9
    Medium

    CVE-2018-1196

    Last Modified: 21 Nov 2024

    Spring Boot supports an embedded launch script that can be used to easily run the application as a systemd or init.d linux service. The script included with Spring Boot 1.5.9 and earlier and 2.0.0.M1 through 2.0.0.M7 is susceptible to a symlink attack which allows the "run_user" to overwrite and take ownership of any file on the same system. In order to instigate the attack, the application must be installed as a service and the "run_user" requires shell access to the server. Spring Boot application that are not installed as a service, or are not using the embedded launch script are not susceptible.

    Published: 30 Jan 2018
    6.1
    Medium

    CVE-2018-3820

    Last Modified: 21 Nov 2024

    Kibana versions after 6.1.0 and before 6.1.3 had a cross-site scripting (XSS) vulnerability in labs visualizations that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.

    Published: 30 Jan 2018
    6.1
    Medium

    CVE-2018-3819

    Last Modified: 21 Nov 2024

    The fix in Kibana for ESA-2017-23 was incomplete. With X-Pack security enabled, Kibana versions before 6.1.3 and 5.6.7 have an open redirect vulnerability on the login page that would enable an attacker to craft a link that redirects to an arbitrary website.

    Published: 30 Jan 2018
    6.1
    Medium

    CVE-2018-3821

    Last Modified: 21 Nov 2024

    Kibana versions after 5.1.1 and before 5.6.7 and 6.1.3 had a cross-site scripting (XSS) vulnerability in the tag cloud visualization that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.

    Published: 30 Jan 2018
    6.5
    Medium

    CVE-2018-5800

    Last Modified: 21 Nov 2024

    An off-by-one error within the "LibRaw::kodak_ycbcr_load_raw()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.7 can be exploited to cause a heap-based buffer overflow and subsequently cause a crash.

    Published: 30 Jan 2018
    6.5
    Medium

    CVE-2018-5801

    Last Modified: 21 Nov 2024

    An error within the "LibRaw::unpack()" function (src/libraw_cxx.cpp) in LibRaw versions prior to 0.18.7 can be exploited to trigger a NULL pointer dereference.

    Published: 30 Jan 2018
    10
    Critical

    CVE-2018-0101

    Last Modified: 11 Aug 2026

    A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause a reload of the affected system or to remotely execute code. The vulnerability is due to an attempt to double free a region of memory when the webvpn feature is enabled on the Cisco ASA device. An attacker could exploit this vulnerability by sending multiple, crafted XML packets to a webvpn-configured interface on the affected system. An exploit could allow the attacker to execute arbitrary code and obtain full control of the system, or cause a reload of the affected device. This vulnerability affects Cisco ASA Software that is running on the following Cisco products: 3000 Series Industrial Security Appliance (ISA), ASA 5500 Series Adaptive Security Appliances, ASA 5500-X Series Next-Generation Firewalls, ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers, ASA 1000V Cloud Firewall, Adaptive Security Virtual Appliance (ASAv), Firepower 2100 Series Security Appliance, Firepower 4110 Security Appliance, Firepower 9300 ASA Security Module, Firepower Threat Defense Software (FTD). Cisco Bug IDs: CSCvg35618.

    Published: 29 Jan 2018
    8.8
    High

    CVE-2018-3835

    Last Modified: 21 Nov 2024

    An exploitable out of bounds write vulnerability exists in version 2.2 of the Per Face Texture mapping application known as PTEX. The vulnerability is present in the reading of a file without proper parameter checking. The value read in, is not verified to be valid and its use can lead to a buffer overflow, potentially resulting in code execution.

    Published: 29 Jan 2018
    7.2
    High

    CVE-2018-6393

    Last Modified: 21 Nov 2024

    FreePBX 10.13.66-32bit and 14.0.1.24 (SNG7-PBX-64bit-1712-2) allow post-authentication SQL injection via the order parameter. NOTE: the vendor disputes this issue because it is intentional that a user can "directly modify SQL tables ... [or] run shell scripts ... once ... logged in to the administration interface; there is no need to try to find input validation errors.

    Published: 29 Jan 2018
    9.8
    Critical

    CVE-2016-10711

    Last Modified: 21 Nov 2024

    Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751.

    Published: 29 Jan 2018
    8.8
    High

    CVE-2018-6391

    Last Modified: 21 Nov 2024

    A cross-site request forgery web vulnerability has been discovered on Netis WF2419 V2.2.36123 devices. A remote attacker is able to delete Address Reservation List settings.

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17072

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17078

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17076

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17077

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17073

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    5.4
    Medium

    CVE-2017-9513

    Last Modified: 21 Nov 2024

    Several rest inline action resources of Atlassian Activity Streams before version 6.3.0 allows remote authenticated attackers to watch any Confluence page & receive notifications when comments are added to the watched page, and vote & watch JIRA issues that they do not have access to, although they will not receive notifications for the issue, via missing permission checks.

    Published: 29 Jan 2018
    7.5
    High

    CVE-2017-15133

    Last Modified: 21 Nov 2024

    A denial of service flaw was found in miekg-dns before 1.0.4. A remote attacker could use carefully timed TCP packets to block the DNS server from accepting new connections.

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17074

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17075

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17070

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17071

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-3739

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    Unknown

    CVE-2017-17079

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

    Published: 29 Jan 2018
    6.5
    Medium

    CVE-2018-6390

    Last Modified: 21 Nov 2024

    The WStr::assign function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 does not validate the size of the source memory block before an _copy call, which allows remote attackers to cause a denial of service (access violation and application crash) via a crafted (a) web page, (b) office document, or (c) .rtf file.

    Published: 29 Jan 2018
    6.5
    Medium

    CVE-2018-6392

    Last Modified: 21 Nov 2024

    The filter_slice function in libavfilter/vf_transpose.c in FFmpeg through 3.4.1 allows remote attackers to cause a denial of service (out-of-array access) via a crafted MP4 file.

    Published: 29 Jan 2018
    9.8
    Critical

    CVE-2018-6387

    Last Modified: 21 Nov 2024

    iBall iB-WRA150N 1.2.6 build 110401 Rel.47776n devices have a hardcoded password of admin for the admin account, a hardcoded password of support for the support account, and a hardcoded password of user for the user account.

    Published: 29 Jan 2018
    8.8
    High

    CVE-2018-6388

    Last Modified: 21 Nov 2024

    iBall iB-WRA150N 1.2.6 build 110401 Rel.47776n devices allow remote authenticated users to execute arbitrary OS commands via shell metacharacters in the ping test arguments on the Diagnostics page.

    Published: 29 Jan 2018
    8.8
    High

    CVE-2018-6383

    Last Modified: 21 Nov 2024

    Monstra CMS through 3.0.4 has an incomplete "forbidden types" list that excludes .php (and similar) file extensions but not the .pht or .phar extension, which allows remote authenticated Admins or Editors to execute arbitrary PHP code by uploading a file, a different vulnerability than CVE-2017-18048.

    Published: 29 Jan 2018
    8.2
    High

    CVE-2018-1364

    Last Modified: 21 Nov 2024

    IBM Content Navigator 2.0 and 3.0 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 137449.

    Published: 29 Jan 2018
    7.8
    High

    CVE-2017-1779

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.0 could store cached credentials locally that could be obtained by a local user. IBM X-Force ID: 136824.

    Published: 29 Jan 2018
    4
    Medium

    CVE-2017-1783

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.0 could allow a local user to change parameters set from the Cognos Analytics menus without proper authentication. IBM X-Force ID: 136857.

    Published: 29 Jan 2018
    5.5
    Medium

    CVE-2017-1784

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.0 could produce results in temporary files that contain highly sensitive information that can be read by a local user. IBM X-Force ID: 136858.

    Published: 29 Jan 2018
    8.8
    High

    CVE-2017-4951

    Last Modified: 21 Nov 2024

    VMware AirWatch Console (9.2.x before 9.2.2 and 9.1.x before 9.1.5) contains a Cross Site Request Forgery vulnerability when accessing the App Catalog. An attacker may exploit this issue by tricking users into installing a malicious application on their devices.

    Published: 29 Jan 2018
    6.1
    Medium

    CVE-2017-14190

    Last Modified: 21 Nov 2024

    A Cross-site Scripting vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.7, 5.2 and earlier, allows attacker to inject arbitrary web script or HTML via maliciously crafted "Host" header in user HTTP requests.

    Published: 29 Jan 2018