7.5
    High

    CVE-2018-7745

    Last Modified: 9 Apr 2018

    An issue was discovered in Western Bridge Cobub Razor 0.7.2. Authentication is not required for /index.php?/install/installation/createuserinfo requests, resulting in account creation.

    Source:ppb
    Published:7 Mar 2018
    9.8
    Critical

    CVE-2018-7739

    Last Modified: 7 Mar 2018

    antsle antman before 0.9.1a allows remote attackers to bypass authentication via invalid characters in the username and password parameters, as demonstrated by a username=>&password=%0a string to the /login URI. This allows obtaining root permissions within the web management console, because the login process uses Java's ProcessBuilder class and a bash script called antsle-auth with insufficient input validation.

    Source:Joshua Bowser
    Published:6 Mar 2018
    5.3
    Medium

    CVE-2018-7737

    Last Modified: 5 Apr 2018

    In Z-BlogPHP 1.5.1.1740, there is Web Site physical path leakage, as demonstrated by admin_footer.php or admin_footer.php. NOTE: the software maintainer disputes that this is a vulnerability

    Source:zzw
    Published:6 Mar 2018
    6.1
    Medium

    CVE-2018-7736

    Last Modified: 5 Apr 2018

    In Z-BlogPHP 1.5.1.1740, cmd.php has XSS via the ZC_BLOG_SUBNAME parameter or ZC_UPLOAD_FILETYPE parameter. NOTE: the software maintainer disputes that this is a vulnerability

    Source:zzw
    Published:6 Mar 2018
    7.5
    High

    CVE-2018-7719

    Last Modified: 26 Mar 2018

    Acrolinx Server before 5.2.5 on Windows allows Directory Traversal.

    Source:Berk Dusunur
    Published:25 Mar 2018
    6.1
    Medium

    CVE-2018-7707

    Last Modified: 13 Mar 2018

    Cross-site scripting (XSS) vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote attackers to inject arbitrary web script or HTML via an HTML-formatted e-mail message.

    Source:SEC Consult
    Published:14 Mar 2018
    6.5
    Medium

    CVE-2018-7706

    Last Modified: 13 Mar 2018

    Directory traversal vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read arbitrary e-mail messages via a .. (dot dot) in the option2 parameter in an attachment action to secmail/getmessage.exe.

    Source:SEC Consult
    Published:14 Mar 2018
    8.1
    High

    CVE-2018-7705

    Last Modified: 13 Mar 2018

    Directory traversal vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read e-mail messages to arbitrary recipients via a .. (dot dot) in the filename parameter to secupload2/upload.aspx.

    Source:SEC Consult
    Published:14 Mar 2018
    6.5
    Medium

    CVE-2018-7704

    Last Modified: 13 Mar 2018

    SecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read arbitrary e-mail messages via the option1 parameter in a reply action to secmail/getmessage.exe.

    Source:SEC Consult
    Published:14 Mar 2018
    6.1
    Medium

    CVE-2018-7703

    Last Modified: 13 Mar 2018

    Cross-site scripting (XSS) vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote attackers to inject arbitrary web script or HTML via the mailboxid parameter to secmail/getmessage.exe.

    Source:SEC Consult
    Published:14 Mar 2018
    9.1
    Critical

    CVE-2018-7702

    Last Modified: 13 Mar 2018

    SecurEnvoy SecurMail before 9.2.501 allows remote attackers to spoof transmission of arbitrary e-mail messages, resend e-mail messages to arbitrary recipients, or modify arbitrary message bodies and attachments by leveraging missing authentication and authorization.

    Source:SEC Consult
    Published:14 Mar 2018
    6.5
    Medium

    CVE-2018-7701

    Last Modified: 13 Mar 2018

    Multiple cross-site request forgery (CSRF) vulnerabilities in SecurEnvoy SecurMail before 9.2.501 allow remote attackers to hijack the authentication of arbitrary users for requests that (1) delete e-mail messages via a delete action in a request to secmail/getmessage.exe or (2) spoof arbitrary users and reply to their messages via a request to secserver/securectrl.exe.

    Source:SEC Consult
    Published:14 Mar 2018
    6.5
    Medium

    CVE-2018-7691

    Last Modified: 14 Dec 2018

    A potential Remote Unauthorized Access in Micro Focus Fortify Software Security Center (SSC), versions 17.10, 17.20, 18.10 this exploitation could allow Remote Unauthorized Access

    Source:alt3kx
    Published:13 Dec 2018
    6.5
    Medium

    CVE-2018-7690

    Last Modified: 14 Dec 2018

    A potential Remote Unauthorized Access in Micro Focus Fortify Software Security Center (SSC), versions 17.10, 17.20, 18.10 this exploitation could allow Remote Unauthorized Access

    Source:alt3kx
    Published:13 Dec 2018
    7.5
    High

    CVE-2018-7669

    Last Modified: 9 Aug 2018

    An issue was discovered in Sitecore Sitecore.NET 8.1 rev. 151207 Hotfix 141178-1 and above. The 'Log Viewer' application is vulnerable to a directory traversal attack, allowing an attacker to access arbitrary files from the host Operating System using a sitecore/shell/default.aspx?xmlcontrol=LogViewerDetails&file= URI. Validation is performed to ensure that the text passed to the 'file' parameter correlates to the correct log file directory. This filter can be bypassed by including a valid log filename and then appending a traditional 'dot dot' style attack.

    Source:Chris
    Published:27 Apr 2018
    7.5
    High

    CVE-2018-7658

    Last Modified: 6 Mar 2018

    NTSServerSvc.exe in the server in Softros Network Time System 2.3.4 allows remote attackers to cause a denial of service (daemon crash) by sending exactly 11 bytes.

    Source:hyp3rlinx
    Published:26 Mar 2018
    6.1
    Medium

    CVE-2018-7653

    Last Modified: 5 Apr 2018

    In YzmCMS 3.6, index.php has XSS via the a, c, or m parameter.

    Source:zzw
    Published:4 Mar 2018
    9.8
    Critical

    CVE-2018-7602

    Last Modified: 28 Aug 2018

    A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and 8.x. This potentially allows attackers to exploit multiple attack vectors on a Drupal site, which could result in the site being compromised. This vulnerability is related to Drupal core - Highly critical - Remote Code Execution - SA-CORE-2018-002. Both SA-CORE-2018-002 and this vulnerability are being exploited in the wild.

    Source:SixP4ck3r
    Published:19 Jul 2018
    9.8
    Critical

    CVE-2018-7600

    Last Modified: 28 Aug 2018

    Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because of an issue affecting multiple subsystems with default or common module configurations.

    Source:José Ignacio Rojo
    Published:29 Mar 2018
    9.8
    Critical

    CVE-2018-7584

    Last Modified: 6 Jun 2018

    In PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and 7.2.x through 7.2.2, there is a stack-based buffer under-read while parsing an HTTP response in the php_stream_url_wrap_http_ex function in ext/standard/http_fopen_wrapper.c. This subsequently results in copying a large string.

    Source:Wei Lei and Liu Yang
    Published:20 Feb 2018
    7.5
    High

    CVE-2018-7583

    Last Modified: 2 Mar 2018

    Proxy.exe in DualDesk 20 allows Remote Denial Of Service (daemon crash) via a long string to TCP port 5500.

    Source:hyp3rlinx
    Published:4 Mar 2018
    7.5
    High

    CVE-2018-7582

    Last Modified: 9 Mar 2018

    WebLog Expert Web Server Enterprise 9.4 allows Remote Denial Of Service (daemon crash) via a long HTTP Accept Header to TCP port 9991.

    Source:hyp3rlinx
    Published:9 Mar 2018
    7.8
    High

    CVE-2018-7581

    Last Modified: 9 Mar 2018

    \ProgramData\WebLog Expert\WebServer\WebServer.cfg in WebLog Expert Web Server Enterprise 9.4 has weak permissions (BUILTIN\Users:(ID)C), which allows local users to set a cleartext password and login as admin.

    Source:hyp3rlinx
    Published:9 Mar 2018
    9.8
    Critical

    CVE-2018-7573

    Last Modified: 2 Jul 2018

    An issue was discovered in FTPShell Client 6.7. A remote FTP server can send 400 characters of 'F' in conjunction with the FTP 220 response code to crash the application; after this overflow, one can run arbitrary code on the victim machine. This is similar to CVE-2009-3364 and CVE-2017-6465.

    Source:r4wd3r
    Published:1 Mar 2018
    6.1
    Medium

    CVE-2018-7543

    Last Modified: 15 Mar 2018

    Cross-site scripting (XSS) vulnerability in installer/build/view.step4.php of the SnapCreek Duplicator plugin 1.2.32 for WordPress allows remote attackers to inject arbitrary JavaScript or HTML via the json parameter.

    Source:Stefan Broeder
    Published:26 Mar 2018
    9.8
    Critical

    CVE-2018-7538

    Last Modified: 20 Nov 2018

    A SQL injection vulnerability in the tracker functionality of Enalean Tuleap software engineering platform before 9.18 allows attackers to execute arbitrary SQL commands.

    Source:Cristiano Maruti
    Published:12 Mar 2018
    7.5
    High

    CVE-2018-7490

    Last Modified: 2 Mar 2018

    uWSGI before 2.0.17 mishandles a DOCUMENT_ROOT check during use of the --php-docroot option, allowing directory traversal.

    Source:Marios Nicolaides
    Published:26 Feb 2018
    9.8
    Critical

    CVE-2018-7489

    Last Modified: 21 Nov 2024

    FasterXML jackson-databind before 2.7.9.3, 2.8.x before 2.8.11.1 and 2.9.x before 2.9.5 allows unauthenticated remote code execution because of an incomplete fix for the CVE-2017-7525 deserialization flaw. This is exploitable by sending maliciously crafted JSON input to the readValue method of the ObjectMapper, bypassing a blacklist that is ineffective if the c3p0 libraries are available in the classpath.

    Published:26 Feb 2018
    9.8
    Critical

    CVE-2018-7477

    Last Modified: 27 Feb 2018

    SQL Injection exists in PHP Scripts Mall School Management Script 3.0.4 via the Username and Password fields to parents/Parent_module/parent_login.php.

    Source:Samiran Santra
    Published:28 Feb 2018
    9.8
    Critical

    CVE-2018-7474

    Last Modified: 12 Mar 2018

    An issue was discovered in Textpattern CMS 4.6.2 and earlier. It is possible to inject SQL code in the variable "qty" on the page index.php.

    Source:Manuel García Cárdenas
    Published:14 Mar 2018
    7.5
    High

    CVE-2018-7466

    Last Modified: 2 Mar 2018

    install/installNewDB.php in TestLink through 1.9.16 allows remote attackers to conduct injection attacks by leveraging control over DB LOGIN NAMES data during installation to provide a long, crafted value.

    Source:Manish Tanwar
    Published:25 Feb 2018
    5.4
    Medium

    CVE-2018-7465

    Last Modified: 16 May 2018

    An XSS issue was discovered in VirtueMart before 3.2.14. All the textareas in the backend of the plugin can be closed by simply adding </textarea> to the value and saving the product/config. By editing back the product/config, the editor's browser will execute everything after the </textarea>, leading to a possible XSS.

    Source:Mattia Furlani
    Published:26 Apr 2018
    7.5
    High

    CVE-2018-7449

    Last Modified: 2 Mar 2018

    SEGGER FTP Server for Windows before 3.22a allows remote attackers to cause a denial of service (daemon crash) via an invalid LIST, STOR, or RETR command.

    Source:hyp3rlinx
    Published:4 Mar 2018
    7.5
    High

    CVE-2018-7448

    Last Modified: 27 Feb 2018

    Remote code execution vulnerability in /cmsms-2.1.6-install.php/index.php in CMS Made Simple version 2.1.6 allows remote attackers to inject arbitrary PHP code via the "timezone" parameter in step 4 of a fresh installation procedure.

    Source:Keerati T.
    Published:26 Feb 2018
    9.8
    Critical

    CVE-2018-7445

    Last Modified: 16 Mar 2018

    A buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages. Remote attackers with access to the service can exploit this vulnerability and gain code execution on the system. The overflow occurs before authentication takes place, so it is possible for an unauthenticated remote attacker to exploit it. All architectures and all devices running RouterOS before versions 6.41.3/6.42rc27 are vulnerable.

    Source:CoreLabs
    Published:19 Mar 2018
    7.5
    High

    CVE-2018-7422

    Last Modified: 20 Jul 2018

    A Local File Inclusion vulnerability in the Site Editor plugin through 1.1.1 for WordPress allows remote attackers to retrieve arbitrary files via the ajax_path parameter to editor/extensions/pagebuilder/includes/ajax_shortcode_pattern.php, aka absolute path traversal.

    Source:Nicolas Buzy-Debat
    Published:19 Mar 2018
    6.5
    Medium

    CVE-2018-7358

    Last Modified: 11 Dec 2018

    ZTE ZXHN H168N product with versions V2.2.0_PK1.2T5, V2.2.0_PK1.2T2, V2.2.0_PK11T7 and V2.2.0_PK11T have an improper change control vulnerability, which may allow an unauthorized user to perform unauthorized operations.

    Source:Usman Saeed
    Published:14 Nov 2018
    6.5
    Medium

    CVE-2018-7357

    Last Modified: 11 Dec 2018

    ZTE ZXHN H168N product with versions V2.2.0_PK1.2T5, V2.2.0_PK1.2T2, V2.2.0_PK11T7 and V2.2.0_PK11T have an improper access control vulnerability, which may allow an unauthorized user to gain unauthorized access.

    Source:Usman Saeed
    Published:14 Nov 2018
    6.1
    Medium

    CVE-2018-7355

    Last Modified: 9 Jan 2019

    All versions up to V1.0.0B05 of ZTE MF65 and all versions up to V1.0.0B02 of ZTE MF65M1 are impacted by cross-site scripting vulnerability. Due to improper neutralization of input during web page generation, an attacker could exploit this vulnerability to conduct reflected XSS or HTML injection attacks on the devices.

    Source:Nathu Nandwani
    Published:26 Sept 2018
    9.8
    Critical

    CVE-2018-7319

    Last Modified: 22 Feb 2018

    SQL Injection exists in the OS Property Real Estate 3.12.7 component for Joomla! via the cooling_system1, heating_system1, or laundry parameter.

    Source:Ihsan Sencan
    Published:22 Feb 2018
    9.8
    Critical

    CVE-2018-7318

    Last Modified: 22 Feb 2018

    SQL Injection exists in the CheckList 1.1.1 component for Joomla! via the title_search, tag_search, name_search, description_search, or filter_order parameter.

    Source:Ihsan Sencan
    Published:22 Feb 2018
    7.5
    High

    CVE-2018-7317

    Last Modified: 22 Feb 2018

    Backup Download exists in the Proclaim 9.1.1 component for Joomla! via a direct request for a .sql file under backup/.

    Source:Ihsan Sencan
    Published:22 Feb 2018
    9.8
    Critical

    CVE-2018-7316

    Last Modified: 22 Feb 2018

    Arbitrary File Upload exists in the Proclaim 9.1.1 component for Joomla! via a mediafileform action.

    Source:Ihsan Sencan
    Published:22 Feb 2018
    9.8
    Critical

    CVE-2018-7315

    Last Modified: 22 Feb 2018

    SQL Injection exists in the Ek Rishta 2.9 component for Joomla! via the gender, age1, age2, religion, mothertounge, caste, or country parameter.

    Source:Ihsan Sencan
    Published:22 Feb 2018
    9.8
    Critical

    CVE-2018-7314

    Last Modified: 22 Feb 2018

    SQL Injection exists in the PrayerCenter 3.0.2 component for Joomla! via the sessionid parameter, a different vulnerability than CVE-2008-6429.

    Source:Ihsan Sencan
    Published:22 Feb 2018
    9.8
    Critical

    CVE-2018-7313

    Last Modified: 22 Feb 2018

    SQL Injection exists in the CW Tags 2.0.6 component for Joomla! via the searchtext array parameter.

    Source:Ihsan Sencan
    Published:22 Feb 2018
    9.8
    Critical

    CVE-2018-7312

    Last Modified: 22 Feb 2018

    SQL Injection exists in the Alexandria Book Library 3.1.2 component for Joomla! via the letter parameter.

    Source:Ihsan Sencan
    Published:22 Feb 2018
    9.8
    Critical

    CVE-2018-7300

    Last Modified: 30 Mar 2018

    Directory Traversal / Arbitrary File Write / Remote Code Execution in the User.setLanguage method in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows remote attackers to write arbitrary files to the device's filesystem. This vulnerability can be exploited by unauthenticated attackers with access to the web interface.

    Source:Patrick Muench and Gregor Kopf
    Published:22 Feb 2018
    9.8
    Critical

    CVE-2018-7297

    Last Modified: 30 Mar 2018

    Remote Code Execution in the TCL script interpreter in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows remote attackers to obtain read/write access and execute system commands on the device. This vulnerability can be exploited by unauthenticated attackers with access to the web interface.

    Source:Patrick Muench and Gregor Kopf
    Published:22 Feb 2018
    3.3
    Low

    CVE-2018-7289

    Last Modified: 22 Feb 2018

    An issue was discovered in armadito-windows-driver/src/communication.c in Armadito 0.12.7.2. Malware with filenames containing pure UTF-16 characters can bypass detection. The user-mode service will fail to open the file for scanning after the conversion is done from Unicode to ANSI. This happens because characters that cannot be converted from Unicode are replaced with '?' characters.

    Source:Souhail Hammou
    Published:21 Feb 2018