CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2018-5955

    Last Modified: 21 Nov 2024

    An issue was discovered in GitStack through 2.3.10. User controlled input is not sufficiently filtered, allowing an unauthenticated attacker to add a user to the server via the username and password fields to the rest/user/ URI.

    Published: 21 Jan 2018
    7.8
    High

    CVE-2018-5956

    Last Modified: 21 Nov 2024

    In Zillya! Antivirus 3.0.2230.0, the driver file (zef.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402414.

    Published: 21 Jan 2018
    7.8
    High

    CVE-2018-5957

    Last Modified: 21 Nov 2024

    In Zillya! Antivirus 3.0.2230.0, the driver file (zef.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C40242C.

    Published: 21 Jan 2018
    7.8
    High

    CVE-2018-5958

    Last Modified: 21 Nov 2024

    In Zillya! Antivirus 3.0.2230.0, the driver file (zef.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402424.

    Published: 21 Jan 2018
    9.8
    Critical

    CVE-2017-18046

    Last Modified: 21 Nov 2024

    Buffer overflow on Dasan GPON ONT WiFi Router H640X 12.02-01121 2.77p1-1124 and 3.03p2-1146 devices allows remote attackers to execute arbitrary code via a long POST request to the login_action function in /cgi-bin/login_action.cgi (aka cgipage.cgi).

    Published: 21 Jan 2018
    9.8
    Critical

    CVE-2017-18045

    Last Modified: 21 Nov 2024

    JBMC DirectAdmin before 1.52, when the email_ftp_password_change setting is nonzero, allows remote attackers to obtain access or cause a denial of service (segfault) via an unspecified request.

    Published: 21 Jan 2018
    9.8
    Critical

    CVE-2018-1000060

    Last Modified: 21 Nov 2024

    Sensu, Inc. Sensu Core version Before 1.2.0 & before commit 46ff10023e8cbf1b6978838f47c51b20b98fe30b contains a CWE-522 vulnerability in Sensu::Utilities.redact_sensitive() that can result in sensitive configuration data (e.g. passwords) may be logged in clear-text. This attack appear to be exploitable via victims with configuration matching a specific pattern will observe sensitive data outputted in their service log files. This vulnerability appears to have been fixed in 1.2.1 and later, after commit 46ff10023e8cbf1b6978838f47c51b20b98fe30b.

    Published: 20 Jan 2018
    6.1
    Medium

    CVE-2018-5950

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in the web UI in Mailman before 2.1.26 allows remote attackers to inject arbitrary web script or HTML via a user-options URL.

    Published: 20 Jan 2018
    7.8
    High

    CVE-2017-15108

    Last Modified: 21 Nov 2024

    spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary commands to be executed.

    Published: 20 Jan 2018
    7.5
    High

    CVE-2017-12130

    Last Modified: 21 Nov 2024

    An exploitable NULL pointer dereference vulnerability exists in the tinysvcmdns library version 2017-11-05. A specially crafted packet can make the library dereference a NULL pointer leading to a server crash and denial of service. An attacker needs to send a DNS query to trigger this vulnerability.

    Published: 20 Jan 2018
    9.8
    Critical

    CVE-2017-14803

    Last Modified: 21 Nov 2024

    In NetIQ Access Manager 4.3 and 4.4, a bug exists in Identity Server when accessing a basic SSO connector and downloading the BasicSSO connector plugins on IE11 where an attacker can execute arbitrary code on the system.

    Published: 20 Jan 2018
    7.5
    High

    CVE-2017-12119

    Last Modified: 21 Nov 2024

    An exploitable unhandled exception vulnerability exists in multiple APIs of CPP-Ethereum JSON-RPC. Specially crafted JSON requests can cause an unhandled exception resulting in denial of service. An attacker can send malicious JSON to trigger this vulnerability.

    Published: 19 Jan 2018
    8.2
    High

    CVE-2017-14457

    Last Modified: 21 Nov 2024

    An exploitable information leak/denial of service vulnerability exists in the libevm (Ethereum Virtual Machine) `create2` opcode handler of CPP-Ethereum. A specially crafted smart contract code can cause an out-of-bounds read leading to memory disclosure or denial of service. An attacker can create/send malicious a smart contract to trigger this vulnerability.

    Published: 19 Jan 2018
    8.1
    High

    CVE-2017-12116

    Last Modified: 21 Nov 2024

    An exploitable improper authorization vulnerability exists in miner_setGasPrice API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the restricted functionality resulting in authorization bypass. An attacker can send JSON to trigger this vulnerability.

    Published: 19 Jan 2018
    8.1
    High

    CVE-2017-12118

    Last Modified: 21 Nov 2024

    An exploitable improper authorization vulnerability exists in miner_stop API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). An attacker can send JSON to trigger this vulnerability.

    Published: 19 Jan 2018
    8.1
    High

    CVE-2017-12113

    Last Modified: 21 Nov 2024

    An exploitable improper authorization vulnerability exists in admin_nodeInfo API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the restricted functionality resulting in authorization bypass. An attacker can send JSON to trigger this vulnerability.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2017-14460

    Last Modified: 21 Nov 2024

    An exploitable overly permissive cross-domain (CORS) whitelist vulnerability exists in JSON-RPC of Parity Ethereum client version 1.7.8. An automatically sent JSON object to JSON-RPC endpoint can trigger this vulnerability. A victim needs to visit a malicious website to trigger this vulnerability.

    Published: 19 Jan 2018
    8.1
    High

    CVE-2017-12112

    Last Modified: 21 Nov 2024

    An exploitable improper authorization vulnerability exists in admin_addPeer API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the restricted functionality resulting in authorization bypass. An attacker can send JSON to trigger this vulnerability.

    Published: 19 Jan 2018
    6.8
    Medium

    CVE-2017-12114

    Last Modified: 21 Nov 2024

    An exploitable improper authorization vulnerability exists in admin_peers API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the restricted functionality resulting in authorization bypass. An attacker can send JSON to trigger this vulnerability.

    Published: 19 Jan 2018
    8.1
    High

    CVE-2017-12115

    Last Modified: 21 Nov 2024

    An exploitable improper authorization vulnerability exists in miner_setEtherbase API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the restricted functionality resulting in authorization bypass.

    Published: 19 Jan 2018
    8.1
    High

    CVE-2017-12117

    Last Modified: 21 Nov 2024

    An exploitable improper authorization vulnerability exists in miner_start API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the restricted functionality resulting in authorization bypass. An attacker can send JSON to trigger this vulnerability.

    Published: 19 Jan 2018
    6.1
    Medium

    CVE-2017-12097

    Last Modified: 21 Nov 2024

    An exploitable cross site scripting (XSS) vulnerability exists in the filter functionality of the delayed_job_web rails gem version 1.4. A specially crafted URL can cause an XSS flaw resulting in an attacker being able to execute arbitrary javascript on the victim's browser. An attacker can phish an authenticated user to trigger this vulnerability.

    Published: 19 Jan 2018
    8.8
    High

    CVE-2017-11398

    Last Modified: 21 Nov 2024

    A session hijacking via log disclosure vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an unauthenticated attacker to hijack active user sessions to perform authenticated requests on a vulnerable system.

    Published: 19 Jan 2018
    6.1
    Medium

    CVE-2017-14096

    Last Modified: 21 Nov 2024

    A stored cross site scripting (XSS) vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an attacker to execute a malicious payload on vulnerable systems.

    Published: 19 Jan 2018
    9.8
    Critical

    CVE-2017-14094

    Last Modified: 21 Nov 2024

    A vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an attacker to perform remote command execution via a cron job injection on a vulnerable system.

    Published: 19 Jan 2018
    8.1
    High

    CVE-2017-14095

    Last Modified: 21 Nov 2024

    A vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an attacker to perform remote command execution via a local file inclusion on a vulnerable system.

    Published: 19 Jan 2018
    6.1
    Medium

    CVE-2017-12098

    Last Modified: 21 Nov 2024

    An exploitable cross site scripting (XSS) vulnerability exists in the add filter functionality of the rails_admin rails gem version 1.2.0. A specially crafted URL can cause an XSS flaw resulting in an attacker being able to execute arbitrary javascript on the victim's browser. An attacker can phish an authenticated user to trigger this vulnerability.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2017-14082

    Last Modified: 21 Nov 2024

    An uninitialized pointer information disclosure vulnerability in Trend Micro Mobile Security (Enterprise) versions 9.7 and below could allow an unauthenticated remote attacker to disclosure sensitive information on a vulnerable system.

    Published: 19 Jan 2018
    9.8
    Critical

    CVE-2017-14097

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an attacker to decrypt contents of a database with information that could be used to access a vulnerable system.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2017-7325

    Last Modified: 21 Nov 2024

    Yandex Browser before 16.9.0 allows remote attackers to spoof the address bar via window.open.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2017-7326

    Last Modified: 21 Nov 2024

    Race condition issue in Yandex Browser for Android before 17.4.0.16 allowed a remote attacker to potentially exploit memory corruption via a crafted HTML page

    Published: 19 Jan 2018
    7.8
    High

    CVE-2017-7327

    Last Modified: 21 Nov 2024

    Yandex Browser installer for Desktop before 17.4.1 has a DLL Hijacking Vulnerability because an untrusted search path is used for dnsapi.dll, winmm.dll, ntmarta.dll, cryptbase.dll or profapi.dll.

    Published: 19 Jan 2018
    6.5
    Medium

    CVE-2017-15713

    Last Modified: 21 Nov 2024

    Vulnerability in Apache Hadoop 0.23.x, 2.x before 2.7.5, 2.8.x before 2.8.3, and 3.0.0-alpha through 3.0.0-beta1 allows a cluster user to expose private files owned by the user running the MapReduce job history server process. The malicious user can construct a configuration file containing XML directives that reference sensitive files on the MapReduce job history server host.

    Published: 19 Jan 2018
    9.8
    Critical

    CVE-2017-18044

    Last Modified: 21 Nov 2024

    A Command Injection issue was discovered in ContentStore/Base/CVDataPipe.dll in Commvault before v11 SP6. A certain message parsing function inside the Commvault service does not properly validate the input of an incoming string before passing it to CreateProcess. As a result, a specially crafted message can inject commands that will be executed on the target operating system. Exploitation of this vulnerability does not require authentication and can lead to SYSTEM level privilege on any system running the cvd daemon. This is a different vulnerability than CVE-2017-3195.

    Published: 19 Jan 2018
    5.4
    Medium

    CVE-2014-4919

    Last Modified: 21 Nov 2024

    OXID eShop Professional Edition before 4.7.13 and 4.8.x before 4.8.7, Enterprise Edition before 5.0.13 and 5.1.x before 5.1.7, and Community Edition before 4.7.13 and 4.8.x before 4.8.7 allow remote attackers to assign users to arbitrary dynamical user groups.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2015-6926

    Last Modified: 21 Nov 2024

    The OpenID Single Sign-On authentication functionality in OXID eShop before 4.5.0 allows remote attackers to impersonate users via the email address in a crafted authentication token.

    Published: 19 Jan 2018
    5
    Medium

    CVE-2018-1362

    Last Modified: 21 Nov 2024

    IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, and 7.0.1 within Citizen Portal could allow an authenticated user to withdraw other user's submitted applications from the system and possibly obtain privileges. IBM X-Force ID: 137380.

    Published: 19 Jan 2018
    4.8
    Medium

    CVE-2017-6142

    Last Modified: 21 Nov 2024

    X509 certificate verification was not correctly implemented in the early access "user id" feature in the F5 BIG-IP Advanced Firewall Manager versions 13.0.0, 12.1.0-12.1.2, and 11.6.0-11.6.2, and thus did not properly validate the remote server's identity on certain versions of BIG-IP.

    Published: 19 Jan 2018
    5.6
    Medium

    CVE-2017-1693

    Last Modified: 21 Nov 2024

    IBM Integration Bus 9.0 and 10.0 could allow an attacker that has captured a valid session id to hijack another users session during a small timeframe before the session times out. IBM X-Force ID: 134164.

    Published: 19 Jan 2018
    5.5
    Medium

    CVE-2018-5783

    Last Modified: 21 Nov 2024

    In PoDoFo 0.9.5, there is an uncontrolled memory allocation in the PoDoFo::PdfVecObjects::Reserve function (base/PdfVecObjects.h). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted pdf file.

    Published: 19 Jan 2018
    5.5
    Medium

    CVE-2018-5786

    Last Modified: 21 Nov 2024

    In Long Range Zip (aka lrzip) 0.631, there is an infinite loop and application hang in the get_fileinfo function (lrzip.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted lrz file.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2017-15107

    Last Modified: 21 Nov 2024

    A vulnerability was found in the implementation of DNSSEC in Dnsmasq up to and including 2.78. Wildcard synthesized NSEC records could be improperly interpreted to prove the non-existence of hostnames that actually exist.

    Published: 19 Jan 2018
    5.3
    Medium

    CVE-2017-15105

    Last Modified: 21 Nov 2024

    A flaw was found in the way unbound before 1.6.8 validated wildcard-synthesized NSEC records. An improperly validated wildcard NSEC record could be used to prove the non-existence (NXDOMAIN answer) of an existing wildcard record, or trick unbound into accepting a NODATA proof.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2018-1000024

    Last Modified: 21 Nov 2024

    The Squid Software Foundation Squid HTTP Caching Proxy version 3.0 to 3.5.27, 4.0 to 4.0.22 contains a Incorrect Pointer Handling vulnerability in ESI Response Processing that can result in Denial of Service for all clients using the proxy.. This attack appear to be exploitable via Remote server delivers an HTTP response payload containing valid but unusual ESI syntax.. This vulnerability appears to have been fixed in 4.0.23 and later.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2018-1000027

    Last Modified: 21 Nov 2024

    The Squid Software Foundation Squid HTTP Caching Proxy version prior to version 4.0.23 contains a NULL Pointer Dereference vulnerability in HTTP Response X-Forwarded-For header processing that can result in Denial of Service to all clients of the proxy. This attack appear to be exploitable via Remote HTTP server responding with an X-Forwarded-For header to certain types of HTTP request. This vulnerability appears to have been fixed in 4.0.23 and later.

    Published: 19 Jan 2018
    6.5
    Medium

    CVE-2018-5785

    Last Modified: 21 Nov 2024

    In OpenJPEG 2.3.0, there is an integer overflow caused by an out-of-bounds left shift in the opj_j2k_setup_encoder function (openjp2/j2k.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.

    Published: 19 Jan 2018
    7.5
    High

    CVE-2016-10707

    Last Modified: 21 Nov 2024

    jQuery 3.0.0-rc.1 is vulnerable to Denial of Service (DoS) due to removing a logic that lowercased attribute names. Any attribute getter using a mixed-cased name for boolean attributes goes into an infinite recursion, exceeding the stack call limit.

    Published: 18 Jan 2018
    6.1
    Medium

    CVE-2018-5776

    Last Modified: 21 Nov 2024

    WordPress before 4.9.2 has XSS in the Flash fallback files in MediaElement (under wp-includes/js/mediaelement).

    Published: 18 Jan 2018
    5.7
    Medium

    CVE-2017-17860

    Last Modified: 21 Nov 2024

    In Samsung Gear products, Bluetooth link key is updated to the different key which is same with attacker's link key. It can be attacked without user's intention only if attacker can reveal the Bluetooth address of target device and paired user's smartphone

    Published: 18 Jan 2018
    6.1
    Medium

    CVE-2018-5773

    Last Modified: 21 Nov 2024

    An issue was discovered in markdown2 (aka python-markdown2) through 2.3.5. The safe_mode feature, which is supposed to sanitize user input against XSS, is flawed and does not escape the input properly. With a crafted payload, XSS can be triggered, as demonstrated by omitting the final '>' character from an IMG tag.

    Published: 18 Jan 2018