CVE Feed

    Dashboard / CVE

    Unknown

    CVE-2018-4613

    Last Modified: 7 Nov 2023

    This candidate is unused by its CNA.

    Published: 2 Jan 2018
    8.8
    High

    CVE-2018-3814

    Last Modified: 21 Nov 2024

    Craft CMS 2.6.3000 allows remote attackers to execute arbitrary PHP code by using the "Assets->Upload files" screen and then the "Replace it" option, because this allows a .jpg file to have embedded PHP code, and then be renamed to a .php extension.

    Published: 1 Jan 2018
    9.8
    Critical

    CVE-2018-3813

    Last Modified: 21 Nov 2024

    getConfigExportFile.cgi on FLIR Brickstream 2300 devices 2.0 4.1.53.166 has Incorrect Access Control, as demonstrated by reading the AVI_USER_ID and AVI_USER_PASSWORD fields via a direct request.

    Published: 1 Jan 2018
    6.1
    Medium

    CVE-2017-18012

    Last Modified: 21 Nov 2024

    The Z-URL Preview plugin 1.6.1 for WordPress has XSS via the class.zlinkpreview.php url parameter.

    Published: 1 Jan 2018
    6.1
    Medium

    CVE-2017-18010

    Last Modified: 21 Nov 2024

    The E-goi Smart Marketing SMS and Newsletters Forms plugin before 2.0.0 for WordPress has XSS via the admin/partials/custom/egoi-for-wp-form_egoi.php url parameter.

    Published: 1 Jan 2018
    6.1
    Medium

    CVE-2017-18011

    Last Modified: 21 Nov 2024

    The MyCBGenie Affiliate Ads for Clickbank Products plugin through 1.6 for WordPress has XSS via the text_ads_ajax.php border_color parameter.

    Published: 1 Jan 2018
    9.8
    Critical

    CVE-2018-3810

    Last Modified: 21 Nov 2024

    Authentication Bypass vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackers to insert arbitrary JavaScript or HTML code (via the sgcgoogleanalytic parameter) that runs on all pages served by WordPress. The saveGoogleCode() function in smartgooglecode.php does not check if the current request is made by an authorized user, thus allowing any unauthenticated user to successfully update the inserted code.

    Published: 1 Jan 2018
    9.8
    Critical

    CVE-2018-3811

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackers to execute SQL queries in the context of the web server. The saveGoogleAdWords() function in smartgooglecode.php did not use prepared statements and did not sanitize the $_POST["oId"] variable before passing it as input into the SQL query.

    Published: 1 Jan 2018
    7.5
    High

    CVE-2017-18009

    Last Modified: 21 Nov 2024

    In OpenCV 3.3.1, a heap-based buffer over-read exists in the function cv::HdrDecoder::checkSignature in modules/imgcodecs/src/grfmt_hdr.cpp.

    Published: 1 Jan 2018
    6.1
    Medium

    CVE-2017-18006

    Last Modified: 20 Apr 2025

    netpub/server.np in Extensis Portfolio NetPublish has XSS in the quickfind parameter, aka Open Bug Bounty ID OBB-290447.

    Published: 1 Jan 2018
    5.4
    Medium

    CVE-2017-18004

    Last Modified: 20 Apr 2025

    Zurmo 3.2.3 allows XSS via the latitude or longitude parameter to maps/default/mapAndPoint.

    Published: 31 Dec 2017
    9.8
    Critical

    CVE-2017-18001

    Last Modified: 20 Apr 2025

    Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the device's SSH Authorized Keys data, and consequently obtain remote root access, via the publicKey parameter to the /sendKey URI.

    Published: 31 Dec 2017
    7.4
    High

    CVE-2017-17704

    Last Modified: 20 Apr 2025

    A door-unlocking issue was discovered on Software House iStar Ultra devices through 6.5.2.20569 when used in conjunction with the IP-ACM Ethernet Door Module. The communications between the IP-ACM and the iStar Ultra is encrypted using a fixed AES key and IV. Each message is encrypted in CBC mode and restarts with the fixed IV, leading to replay attacks of entire messages. There is no authentication of messages beyond the use of the fixed AES key, so message forgery is also possible.

    Published: 31 Dec 2017
    6.1
    Medium

    CVE-2016-10704

    Last Modified: 20 Apr 2025

    Magento Community Edition and Enterprise Edition before 2.0.10 and 2.1.x before 2.1.2 have XSS via e-mail templates that are mishandled during a preview, aka APPSEC-1503.

    Published: 30 Dec 2017
    4.8
    Medium

    CVE-2017-17089

    Last Modified: 20 Apr 2025

    custom/run.cgi in Webmin before 1.870 allows remote authenticated administrators to conduct XSS attacks via the description field in the custom command functionality.

    Published: 30 Dec 2017
    8.6
    High

    CVE-2017-14855

    Last Modified: 20 Apr 2025

    Red Lion HMI panels allow remote attackers to cause a denial of service (software exception) via an HTTP POST request to a long URI that does not exist, as demonstrated by version HMI 2.41 PLC 2.42.

    Published: 30 Dec 2017
    Unknown

    CVE-2017-1000435

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-16227. Reason: This candidate is a reservation duplicate of CVE-2017-16227. Notes: All CVE users should reference CVE-2017-16227 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 30 Dec 2017
    Unknown

    CVE-2017-1000436

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-14975. Reason: This candidate is a reservation duplicate of CVE-2017-14975. Notes: All CVE users should reference CVE-2017-14975 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 30 Dec 2017
    Unknown

    CVE-2017-1000440

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-14976. Reason: This candidate is a reservation duplicate of CVE-2017-14976. Notes: All CVE users should reference CVE-2017-14976 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 30 Dec 2017
    Unknown

    CVE-2017-1000446

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-15954. Reason: This candidate is a reservation duplicate of CVE-2017-15954. Notes: All CVE users should reference CVE-2017-15954 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 30 Dec 2017
    Unknown

    CVE-2017-1000447

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-15955. Reason: This candidate is a reservation duplicate of CVE-2017-15955. Notes: All CVE users should reference CVE-2017-15955 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 30 Dec 2017
    6.1
    Medium

    CVE-2017-12813

    Last Modified: 20 Apr 2025

    PHPJabbers File Sharing Script 1.0 has stored XSS in the comments section.

    Published: 30 Dec 2017
    6.1
    Medium

    CVE-2017-12810

    Last Modified: 20 Apr 2025

    PHPJabbers PHP Newsletter Script 4.2 has stored XSS in lists in the admin panel.

    Published: 30 Dec 2017
    6.1
    Medium

    CVE-2017-12811

    Last Modified: 20 Apr 2025

    PHPJabbers Star Rating Script 4.0 has stored XSS via a rating item.

    Published: 30 Dec 2017
    6.1
    Medium

    CVE-2017-12812

    Last Modified: 20 Apr 2025

    PHPJabbers Night Club Booking Software has stored XSS in the name parameter in the reservations tab.

    Published: 30 Dec 2017
    9.8
    Critical

    CVE-2017-17992

    Last Modified: 20 Apr 2025

    Biometric Shift Employee Management System allows Arbitrary File Download via directory traversal sequences in the index.php form_file_name parameter in a download_form action.

    Published: 30 Dec 2017
    8.8
    High

    CVE-2017-17990

    Last Modified: 20 Apr 2025

    Biometric Shift Employee Management System has CSRF via index.php in an edit_holiday action.

    Published: 30 Dec 2017
    5.4
    Medium

    CVE-2017-17981

    Last Modified: 20 Apr 2025

    PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/slider_edit.php edit_id parameter.

    Published: 30 Dec 2017
    4.8
    Medium

    CVE-2017-17984

    Last Modified: 20 Apr 2025

    PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/event_edit.php edit_id parameter.

    Published: 30 Dec 2017
    4.8
    Medium

    CVE-2017-17985

    Last Modified: 20 Apr 2025

    PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/state_view.php cou_id parameter.

    Published: 30 Dec 2017
    4.8
    Medium

    CVE-2017-17986

    Last Modified: 20 Apr 2025

    PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/caste_view.php comm_id parameter.

    Published: 30 Dec 2017
    7.2
    High

    CVE-2017-17987

    Last Modified: 20 Apr 2025

    PHP Scripts Mall Muslim Matrimonial Script allows arbitrary file upload via admin/mydetails_edit.php.

    Published: 30 Dec 2017
    4.8
    Medium

    CVE-2017-17988

    Last Modified: 20 Apr 2025

    PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/event_add.php event_title parameter.

    Published: 30 Dec 2017
    5.4
    Medium

    CVE-2017-17989

    Last Modified: 20 Apr 2025

    Biometric Shift Employee Management System has XSS via the index.php holiday_name parameter in an edit_holiday action.

    Published: 30 Dec 2017
    5.4
    Medium

    CVE-2017-17993

    Last Modified: 20 Apr 2025

    Biometric Shift Employee Management System has XSS via the amount parameter in an index.php?user=addition_deduction request.

    Published: 30 Dec 2017
    5.4
    Medium

    CVE-2017-17994

    Last Modified: 20 Apr 2025

    Biometric Shift Employee Management System has XSS via the criteria parameter in an index.php?user=competency_criteria request.

    Published: 30 Dec 2017
    5.4
    Medium

    CVE-2017-17995

    Last Modified: 20 Apr 2025

    Biometric Shift Employee Management System has XSS via the Last_Name parameter in an index.php?user=ajax request.

    Published: 30 Dec 2017
    5.4
    Medium

    CVE-2017-17991

    Last Modified: 20 Apr 2025

    Biometric Shift Employee Management System has XSS via the expense_name parameter in an index.php?user=expenses request.

    Published: 30 Dec 2017
    6.8
    Medium

    CVE-2017-17982

    Last Modified: 20 Apr 2025

    PHP Scripts Mall Muslim Matrimonial Script has CSRF via admin/subadmin_edit.php.

    Published: 30 Dec 2017
    8.8
    High

    CVE-2017-17983

    Last Modified: 20 Apr 2025

    PHP Scripts Mall Muslim Matrimonial Script has SQL injection via the view-profile.php mem_id parameter.

    Published: 30 Dec 2017
    9.8
    Critical

    CVE-2014-3630

    Last Modified: 20 Apr 2025

    XML external entity (XXE) vulnerability in the Java XML processing functionality in Play before 2.2.6 and 2.3.x before 2.3.5 might allow remote attackers to read arbitrary files, cause a denial of service, or have unspecified other impact via crafted XML data.

    Published: 29 Dec 2017
    7.5
    High

    CVE-2015-3302

    Last Modified: 20 Apr 2025

    The TheCartPress eCommerce Shopping Cart (aka The Professional WordPress eCommerce Plugin) plugin for WordPress before 1.3.9.3 allows remote attackers to obtain sensitive order detail information by leveraging a "broken authentication mechanism."

    Published: 29 Dec 2017
    7.5
    High

    CVE-2015-8008

    Last Modified: 20 Apr 2025

    The OAuth extension for MediaWiki improperly negotiates a new client token only over Special:OAuth/initiate, which allows attackers to bypass intended IP address access restrictions by making an API request with an existing token.

    Published: 29 Dec 2017
    5.5
    Medium

    CVE-2014-4978

    Last Modified: 20 Apr 2025

    The rs_filter_graph function in librawstudio/rs-filter.c in rawstudio might allow local users to truncate arbitrary files via a symlink attack on (1) /tmp/rs-filter-graph.png or (2) /tmp/rs-filter-graph.

    Published: 29 Dec 2017
    7.5
    High

    CVE-2017-17901

    Last Modified: 20 Apr 2025

    ZyXEL P-660HW v3 devices allow remote attackers to cause a denial of service (CPU consumption) via a flood of IP packets with a TTL of 1.

    Published: 29 Dec 2017
    9.8
    Critical

    CVE-2017-17974

    Last Modified: 20 Apr 2025

    BA SYSTEMS BAS Web on BAS920 devices (with Firmware 01.01.00*, HTTPserv 00002, and Script 02.*) and ISC2000 devices allows remote attackers to obtain sensitive information via a request for isc/get_sid_js.aspx or isc/get_sid.aspx, as demonstrated by obtaining administrative access by subsequently using the credential information for the Supervisor/Administrator account.

    Published: 29 Dec 2017
    6.5
    Medium

    CVE-2017-17910

    Last Modified: 20 Apr 2025

    On Hoermann BiSecur devices before 2018, a vulnerability can be exploited by recording a single radio transmission. An attacker can intercept an arbitrary radio frame exchanged between a BiSecur transmitter and a receiver to obtain the encrypted packet and the 32-bit serial number. The interception of the one-time pairing process is specifically not required. Due to use of AES-128 with an initial static random value and static data vector (all of this static information is the same across different customers' installations), the attacker can easily derive the utilized encryption key and decrypt the intercepted packet. The key can be verified by decrypting the intercepted packet and checking for known plaintext. Subsequently, an attacker can create arbitrary radio frames with the correct encryption key to control BiSecur garage and entrance gate operators and possibly other BiSecur systems as well ("wireless cloning"). To conduct the attack, a low cost Software Defined Radio (SDR) is sufficient. This affects Hoermann Hand Transmitter HS5-868-BS, HSE1-868-BS, and HSE2-868-BS devices.

    Published: 29 Dec 2017
    6.1
    Medium

    CVE-2017-17933

    Last Modified: 20 Apr 2025

    cgi/surgeftpmgr.cgi (aka the Web Manager interface on TCP port 7021 or 9021) in NetWin SurgeFTP version 23f2 has XSS via the classid, domainid, or username parameter.

    Published: 29 Dec 2017
    6.1
    Medium

    CVE-2017-17971

    Last Modified: 20 Apr 2025

    The test_sql_and_script_inject function in htdocs/main.inc.php in Dolibarr ERP/CRM 6.0.4 blocks some event attributes but neither onclick nor onscroll, which allows XSS.

    Published: 29 Dec 2017
    8.1
    High

    CVE-2017-17916

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in the 'find_by' method in Ruby on Rails 5.1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the 'name' parameter. NOTE: The vendor disputes this issue because the documentation states that this method is not intended for use with untrusted input

    Published: 29 Dec 2017