CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2018-0506

    Last Modified: 21 Nov 2024

    Nootka 1.4.4 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.

    Published: 26 Jan 2018
    6.1
    Medium

    CVE-2017-2166

    Last Modified: 21 Nov 2024

    Open redirect vulnerability in GroupSession version 4.7.0 and earlier allows an attacker to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

    Published: 26 Jan 2018
    7.8
    High

    CVE-2018-0507

    Last Modified: 21 Nov 2024

    Untrusted search path vulnerability in FLET'S VIRUS CLEAR Easy Setup & Application Tool ver.11 and earlier versions, FLET'S VIRUS CLEAR v6 Easy Setup & Application Tool ver.11 and earlier versions allow an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 26 Jan 2018
    Unknown

    CVE-2018-1000017

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-1142857. Reason: This candidate is effectively a reservation duplicate of CVE-2015-1142857, originally it was thought that an incomplete fix occurred and a second CVE was needed, however this does not appear to be the case. Notes: All CVE users should reference CVE-2015-1142857 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 26 Jan 2018
    9.8
    Critical

    CVE-2018-1342

    Last Modified: 21 Nov 2024

    A Vulnerability exists on Admin Console where an attacker can upload files to the Admin Console server, and potentially execute them. This impacts NetIQ Access Manager versions 4.3 and 4.4 as well as the Administrative console.

    Published: 26 Jan 2018
    7.8
    High

    CVE-2017-1000387

    Last Modified: 21 Nov 2024

    Jenkins Build-Publisher plugin version 1.21 and earlier stores credentials to other Jenkins instances in the file hudson.plugins.build_publisher.BuildPublisher.xml in the Jenkins master home directory. These credentials were stored unencrypted, allowing anyone with local file system access to access them. Additionally, the credentials were also transmitted in plain text as part of the configuration form. This could result in exposure of the credentials through browser extensions, cross-site scripting vulnerabilities, and similar situations.

    Published: 26 Jan 2018
    5.9
    Medium

    CVE-2017-1000397

    Last Modified: 21 Nov 2024

    Jenkins Maven Plugin 2.17 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks. Maven Plugin 3.0 no longer has a dependency on commons-httpclient.

    Published: 26 Jan 2018
    6.1
    Medium

    CVE-2017-1000404

    Last Modified: 21 Nov 2024

    The Jenkins Delivery Pipeline Plugin version 1.0.7 and earlier used the unescaped content of the query parameter 'fullscreen' in its JavaScript, resulting in a cross-site scripting vulnerability through specially crafted URLs.

    Published: 26 Jan 2018
    8.8
    High

    CVE-2017-1000403

    Last Modified: 21 Nov 2024

    Jenkins Speaks! Plugin, all current versions, allows users with Job/Configure permission to run arbitrary Groovy code inside the Jenkins JVM, effectively elevating privileges to Overall/Run Scripts.

    Published: 26 Jan 2018
    4.3
    Medium

    CVE-2017-1000390

    Last Modified: 21 Nov 2024

    Jenkins Multijob plugin version 1.25 and earlier did not check permissions in the Resume Build action, allowing anyone with Job/Read permission to resume the build.

    Published: 26 Jan 2018
    5.4
    Medium

    CVE-2017-1000386

    Last Modified: 21 Nov 2024

    Jenkins Active Choices plugin version 1.5.3 and earlier allowed users with Job/Configure permission to provide arbitrary HTML to be shown on the 'Build With Parameters' page through the 'Active Choices Reactive Reference Parameter' type. This could include, for example, arbitrary JavaScript. Active Choices now sanitizes the HTML inserted on the 'Build With Parameters' page if and only if the script is executed in a sandbox. As unsandboxed scripts are subject to administrator approval, it is up to the administrator to allow or disallow problematic script output.

    Published: 26 Jan 2018
    4.3
    Medium

    CVE-2017-1000388

    Last Modified: 21 Nov 2024

    Jenkins Dependency Graph Viewer plugin 0.12 and earlier did not perform permission checks for the API endpoint that modifies the dependency graph, allowing anyone with Overall/Read permission to modify this data.

    Published: 26 Jan 2018
    6.1
    Medium

    CVE-2017-1000389

    Last Modified: 21 Nov 2024

    Some URLs provided by Jenkins global-build-stats plugin version 1.4 and earlier returned a JSON response that contained request parameters. These responses had the Content Type: text/html, so could have been interpreted as HTML by clients, resulting in a potential reflected cross-site scripting vulnerability. Additionally, some URLs provided by global-build-stats plugin that modify data did not require POST requests to be sent, resulting in a potential cross-site request forgery vulnerability.

    Published: 26 Jan 2018
    8.8
    High

    CVE-2017-14592

    Last Modified: 21 Nov 2024

    Sourcetree for macOS had several argument and command injection bugs in Mercurial and Git repository handling. An attacker with permission to commit to a repository linked in Sourcetree for macOS is able to exploit this issue to gain code execution on the system. From version 1.4.0 of Sourcetree for macOS, this vulnerability can be triggered from a webpage through the use of the Sourcetree URI handler. Versions of Sourcetree for macOS starting with 1.0b2 before version 2.7.0 are affected by this vulnerability.

    Published: 26 Jan 2018
    8.8
    High

    CVE-2017-14593

    Last Modified: 21 Nov 2024

    Sourcetree for Windows had several argument and command injection bugs in Mercurial and Git repository handling. An attacker with permission to commit to a repository linked in Sourcetree for Windows is able to exploit this issue to gain code execution on the system. From version 0.8.4b of Sourcetree for Windows, this vulnerability can be triggered from a webpage through the use of the Sourcetree URI handler. Versions of Sourcetree for Windows starting with 0.5.1.0 before version 2.4.7.0 are affected by this vulnerability

    Published: 26 Jan 2018
    7.8
    High

    CVE-2017-3762

    Last Modified: 21 Nov 2024

    Sensitive data stored by Lenovo Fingerprint Manager Pro, version 8.01.86 and earlier, including users' Windows logon credentials and fingerprint data, is encrypted using a weak algorithm, contains a hard-coded password, and is accessible to all users with local non-administrative access to the system in which it is installed.

    Published: 26 Jan 2018
    7.5
    High

    CVE-2017-12626

    Last Modified: 28 May 2026

    Apache POI in versions prior to release 3.17 are vulnerable to Denial of Service Attacks: 1) Infinite Loops while parsing crafted WMF, EMF, MSG and macros (POI bugs 61338 and 61294), and 2) Out of Memory Exceptions while parsing crafted DOC, PPT and XLS (POI bugs 52372 and 61295).

    Published: 26 Jan 2018
    8.1
    High

    CVE-2016-10710

    Last Modified: 21 Nov 2024

    Biscom Secure File Transfer (SFT) 5.0.1000 through 5.0.1048 does not validate the dataFieldId value, and uses sequential numbers, which allows remote authenticated users to overwrite or read files via crafted requests. Version 5.0.1050 contains the fix.

    Published: 25 Jan 2018
    9.8
    Critical

    CVE-2018-5447

    Last Modified: 21 Nov 2024

    An Improper Input Validation issue was discovered in Nari PCS-9611 relay. An improper input validation vulnerability has been identified that affects a service within the software that may allow a remote attacker to arbitrarily read/access system resources and affect the availability of the system.

    Published: 25 Jan 2018
    4.8
    Medium

    CVE-2018-6313

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) in WBCE CMS 1.3.1 allows remote authenticated administrators to inject arbitrary web script or HTML via the Modify Page screen, a different issue than CVE-2017-2118.

    Published: 25 Jan 2018
    8.8
    High

    CVE-2018-6315

    Last Modified: 21 Nov 2024

    The outputSWF_TEXT_RECORD function (util/outputscript.c) in libming through 0.4.8 is vulnerable to an integer overflow and resultant out-of-bounds read, which may allow attackers to cause a denial of service or unspecified other impact via a crafted SWF file.

    Published: 25 Jan 2018
    5
    Medium

    CVE-2017-15703

    Last Modified: 21 Nov 2024

    Any authenticated user (valid client certificate but without ACL permissions) could upload a template which contained malicious code and caused a denial of service via Java deserialization attack. The fix to properly handle Java deserialization was applied on the Apache NiFi 1.4.0 release. Users running a prior 1.x release should upgrade to the appropriate release.

    Published: 25 Jan 2018
    9.8
    Critical

    CVE-2018-5973

    Last Modified: 21 Nov 2024

    SQL Injection exists in Professional Local Directory Script 1.0 via the sellers_subcategories.php IndustryID parameter, or the suppliers.php IndustryID or CategoryID parameter.

    Published: 25 Jan 2018
    9.8
    Critical

    CVE-2018-5997

    Last Modified: 21 Nov 2024

    An issue was discovered in the HTTP Server in RAVPower Filehub 2.000.056. Due to an unrestricted upload feature and a path traversal vulnerability, it is possible to upload a file on a filesystem with root privileges: this will lead to remote code execution as root.

    Published: 25 Jan 2018
    4.8
    Medium

    CVE-2018-5964

    Last Modified: 21 Nov 2024

    CMS Made Simple (CMSMS) 2.2.5 has XSS in admin/moduleinterface.php via the m1_messages parameter.

    Published: 25 Jan 2018
    4.8
    Medium

    CVE-2018-5965

    Last Modified: 21 Nov 2024

    CMS Made Simple (CMSMS) 2.2.5 has XSS in admin/moduleinterface.php via the m1_errors parameter.

    Published: 25 Jan 2018
    7.5
    High

    CVE-2017-1000414

    Last Modified: 21 Nov 2024

    ImpulseAdventure JPEGsnoop version 1.7.5 is vulnerable to a division by zero in the JFIF decode handling resulting denial of service.

    Published: 25 Jan 2018
    7.5
    High

    CVE-2018-5954

    Last Modified: 21 Nov 2024

    phpFreeChat 1.7 and earlier allows remote attackers to cause a denial of service by sending a large number of connect commands.

    Published: 25 Jan 2018
    4.8
    Medium

    CVE-2018-5963

    Last Modified: 21 Nov 2024

    CMS Made Simple (CMSMS) 2.2.5 has XSS in admin/addbookmark.php via the title parameter.

    Published: 25 Jan 2018
    Unknown

    CVE-2017-4962

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2017. Notes: none

    Published: 25 Jan 2018
    5.3
    Medium

    CVE-2018-4835

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in TeleControl Server Basic < V3.1. An attacker with network access to the TeleControl Server Basic's port 8000/tcp could bypass the authentication mechanism and read limited information.

    Published: 25 Jan 2018
    8.8
    High

    CVE-2018-4836

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in TeleControl Server Basic < V3.1. An authenticated attacker with a low-privileged account to the TeleControl Server Basic's port 8000/tcp could escalate his privileges and perform administrative operations.

    Published: 25 Jan 2018
    Unknown

    CVE-2017-1000468

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 25 Jan 2018
    Unknown

    CVE-2017-1000464

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 25 Jan 2018
    7.5
    High

    CVE-2018-4837

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in TeleControl Server Basic < V3.1. An attacker with access to the TeleControl Server Basic's webserver (port 80/tcp or 443/tcp) could cause a Denial-of-Service condition on the web server. The remaining functionality of the TeleControl Server Basic is not affected by the Denial-of-Service condition.

    Published: 25 Jan 2018
    5.4
    Medium

    CVE-2018-5967

    Last Modified: 21 Nov 2024

    Netis WF2419 V2.2.36123 devices allow XSS via the Description parameter on the Bandwidth Control Rule Settings page.

    Published: 25 Jan 2018
    5.5
    Medium

    CVE-2018-6217

    Last Modified: 21 Nov 2024

    The WStr::_alloc_iostr_data() function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 allows remote attackers to cause a denial of service (application crash) via a crafted (a) web page, (b) office document, or (c) .rtf file.

    Published: 25 Jan 2018
    9.8
    Critical

    CVE-2018-6308

    Last Modified: 21 Nov 2024

    Multiple SQL injections exist in SugarCRM Community Edition 6.5.26 and below via the track parameter to modules\Campaigns\Tracker.php and modules\Campaigns\utils.php, the default_currency_name parameter to modules\Configurator\controller.php and modules\Currencies\Currency.php, the duplicate parameter to modules\Contacts\ShowDuplicates.php, the mergecur parameter to modules\Currencies\index.php and modules\Opportunities\Opportunity.php, and the load_signed_id parameter to modules\Documents\Document.php.

    Published: 25 Jan 2018
    6.1
    Medium

    CVE-2018-6200

    Last Modified: 21 Nov 2024

    vBulletin 3.x.x and 4.2.x through 4.2.5 has an open redirect via the redirector.php url parameter.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6202

    Last Modified: 21 Nov 2024

    In eScan Antivirus 14.0.1400.2029, the driver file (econceal.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x830020F8.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6203

    Last Modified: 21 Nov 2024

    In eScan Antivirus 14.0.1400.2029, the driver file (econceal.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8300210C.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6204

    Last Modified: 21 Nov 2024

    In Max Secure Anti Virus 19.0.3.019,, the driver file (SDActMon.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220019.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6205

    Last Modified: 21 Nov 2024

    In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxProtector32.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220009.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6206

    Last Modified: 21 Nov 2024

    In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxProtector32.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220011.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6207

    Last Modified: 21 Nov 2024

    In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxProtector32.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220019.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6208

    Last Modified: 21 Nov 2024

    In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxProtector32.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x22000d.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6209

    Last Modified: 21 Nov 2024

    In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxCryptMon.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220019.

    Published: 25 Jan 2018
    7.8
    High

    CVE-2018-6201

    Last Modified: 21 Nov 2024

    In eScan Antivirus 14.0.1400.2029, the driver file (econceal.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x830020E0 or 0x830020E4.

    Published: 25 Jan 2018
    5.3
    Medium

    CVE-2018-5445

    Last Modified: 21 Nov 2024

    A Path Traversal issue was discovered in Advantech WebAccess/SCADA versions prior to V8.2_20170817. An attacker has read access to files within the directory structure of the target device.

    Published: 25 Jan 2018
    7.5
    High

    CVE-2018-6197

    Last Modified: 21 Nov 2024

    w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c.

    Published: 25 Jan 2018