CVE-2018-10000 to CVE-2018-10999
239 CVEs with public proof-of-concept exploits.
- CVE-2018-100161 PoCNetwide Assembler (NASM) 2.14rc0 has a division-by-zero vulnerability in the expr5 function in asm/eval.c via a malformed input file.
- CVE-2018-100182 PoCsThe GDASPAMLib.AntiSpam ActiveX control ASK\GDASpam.dll in G DATA Total Security 25.4.0.3 has a buffer overflow via a long IsBlackListed…
- CVE-2018-100231 PoCCatfish CMS V4.7.21 allows XSS via the pinglun parameter to cat/index/index/pinglun (aka an authenticated comment).
- CVE-2018-100481 PoCiScripts eSwap v2.4 has CSRF via "registration_settings.php" in the Admin Panel.
- CVE-2018-100491 PoCiScripts eSwap v2.4 has XSS via the "registration_settings.php" txtDate parameter in the Admin Panel.
- CVE-2018-100501 PoCiScripts eSwap v2.4 has SQL injection via the "registration_settings.php" ddlFree parameter in the Admin Panel.
- CVE-2018-100511 PoCiScripts SupportDesk v4.3 has XSS via the staff/inteligentsearchresult.php txtinteligentsearch parameter.
- CVE-2018-100521 PoCiScripts SupportDesk v4.3 has XSS via the admin/inteligentsearchresult.php txtinteligentsearch parameter.
- CVE-2018-100543 PoCsH2 1.4.197, as used in Datomic before 0.9.5697 and other products, allows remote code execution because CREATE ALIAS can execute arbitrary…
- CVE-2018-100571 PoCThe remote management interface of cgminer 4.10.0 and bfgminer 5.5.0 allows an authenticated remote attacker to write the miner…
- CVE-2018-100581 PoCThe remote management interface of cgminer 4.10.0 and bfgminer 5.5.0 allows an authenticated remote attacker to execute arbitrary code due…
- CVE-2018-100631 PoCThe Convert Forms extension before 2.0.4 for Joomla! is vulnerable to Remote Command Execution using CSV Injection that is mishandled when…
- CVE-2018-100681 PoCThe jDownloads extension before 3.2.59 for Joomla! has XSS.
- CVE-2018-100702 PoCsA vulnerability in MikroTik Version 6.41.4 could allow an unauthenticated remote attacker to exhaust all available CPU and all available…
- CVE-2018-100772 PoCsXML external entity (XXE) vulnerability in Geist WatchDog Console 3.2.2 allows remote authenticated administrators to read arbitrary files…
- CVE-2018-100782 PoCsCross-site scripting (XSS) vulnerability in Geist WatchDog Console 3.2.2 allows remote authenticated administrators to inject arbitrary…
- CVE-2018-100792 PoCsGeist WatchDog Console 3.2.2 uses a weak ACL for the C:\ProgramData\WatchDog Console directory, which allows local users to modify…
- CVE-2018-100801 PoCSecutech RiS-11, RiS-22, and RiS-33 devices with firmware V5.07.52_es_FRI01 allow DNS settings changes via a…
- CVE-2018-100811 PoCCMS Made Simple (CMSMS) through 2.2.6 contains an admin password reset vulnerability because data values are improperly compared, as…
- CVE-2018-100821 PoCCMS Made Simple (CMSMS) through 2.2.7 allows physical path leakage via an invalid /index.php?page= value, a crafted URI starting with…
- CVE-2018-100831 PoCCMS Made Simple (CMSMS) through 2.2.7 contains an arbitrary file deletion vulnerability in the admin dashboard via directory traversal…
- CVE-2018-100841 PoCCMS Made Simple (CMSMS) through 2.2.6 contains a privilege escalation vulnerability from ordinary user to admin user by arranging for the…
- CVE-2018-100851 PoCCMS Made Simple (CMSMS) through 2.2.6 allows PHP object injection because of an unserialize call in the _get_data function of…
- CVE-2018-100861 PoCCMS Made Simple (CMSMS) through 2.2.7 contains an arbitrary code execution vulnerability in the admin dashboard because the implementation…
- CVE-2018-100883 PoCsBuffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulnerability than CVE-2017-16725.
- CVE-2018-100911 PoCAudioCodes IP phone 420HD devices using firmware version 2.2.12.126 allow XSS.
- CVE-2018-100921 PoCThe admin panel in Dolibarr before 7.0.2 might allow remote attackers to execute arbitrary commands by leveraging support for updating the…
- CVE-2018-100933 PoCsAudioCodes IP phone 420HD devices using firmware version 2.2.12.126 allow Remote Code Execution.
- CVE-2018-100942 PoCsSQL injection vulnerability in Dolibarr before 7.0.2 allows remote attackers to execute arbitrary SQL commands via vectors involving…
- CVE-2018-100951 PoCCross-site scripting (XSS) vulnerability in Dolibarr before 7.0.2 allows remote attackers to inject arbitrary web script or HTML via the…
- CVE-2018-100972 PoCsXSS exists in Domain Trader 2.5.3 via the recoverlogin.php email_address parameter.
- CVE-2018-100991 PoCGoogle Monorail before 2018-04-04 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and…
- CVE-2018-101001 PoCBefore WordPress 4.9.5, the redirection URL for the login page was not validated or sanitized if forced to use HTTPS.
- CVE-2018-101011 PoCBefore WordPress 4.9.5, the URL validator assumed URLs with the hostname localhost were on the same host as the WordPress server.
- CVE-2018-101021 PoCBefore WordPress 4.9.5, the version string was not escaped in the get_the_generator function, and could lead to XSS in a generator tag.
- CVE-2018-101061 PoCD-Link DIR-815 REV. B (with firmware through DIR-815_REVB_FIRMWARE_PATCH_2.07.B01) devices have permission bypass and information…
- CVE-2018-101071 PoCD-Link DIR-815 REV. B (with firmware through DIR-815_REVB_FIRMWARE_PATCH_2.07.B01) devices have XSS in the RESULT parameter to…
- CVE-2018-101081 PoCD-Link DIR-815 REV. B (with firmware through DIR-815_REVB_FIRMWARE_PATCH_2.07.B01) devices have XSS in the Treturn parameter to…
- CVE-2018-101091 PoCMonstra CMS 3.0.4 has a stored XSS vulnerability when an attacker has access to the editor role, and enters the payload in the content…
- CVE-2018-101102 PoCsD-Link DIR-615 T1 devices allow XSS via the Add User feature.
- CVE-2018-101111 PoCAn issue was discovered in GEGL through 0.3.32. The render_rectangle function in process/gegl-processor.c has unbounded memory allocation,…
- CVE-2018-101121 PoCAn issue was discovered in GEGL through 0.3.32. The gegl_tile_backend_swap_constructed function in buffer/gegl-tile-backend-swap.c allows…
- CVE-2018-101131 PoCAn issue was discovered in GEGL through 0.3.32. The process function in operations/external/ppm-load.c has unbounded memory allocation,…
- CVE-2018-101142 PoCsAn issue was discovered in GEGL through 0.3.32. The gegl_buffer_iterate_read_simple function in buffer/gegl-buffer-access.c allows remote…
- CVE-2018-101182 PoCsMonstra CMS 3.0.4 has Stored XSS via the Name field on the Create New Page screen under the admin/index.php?id=pages URI, related to…
- CVE-2018-101221 PoCQingDao Nature Easy Soft Chanzhi Enterprise Portal System (aka chanzhieps) pro1.6 allows remote attackers to read arbitrary files via…
- CVE-2018-101232 PoCsp910nd on Inteno IOPSYS 2.0 through 4.2.0 allows remote attackers to read, or append data to, arbitrary files via requests on TCP port 9100.
- CVE-2018-101261 PoCijg-libjpeg before 9d, as used in tiff2pdf (from LibTIFF) and other products, does not check for a NULL pointer at a certain place in…
- CVE-2018-101321 PoCPbootCMS v0.9.8 has CSRF via an admin.php/Message/mod/id/19.html?backurl=/index.php request, resulting in PHP code injection in the…
- CVE-2018-101331 PoCPbootCMS v0.9.8 allows PHP code injection via an IF label in index.php/About/6.html or admin.php/Site/index.html, related to the…
- CVE-2018-101351 PoCiScripts eSwap v2.4 has Reflected XSS via the "catwiseproducts.php" catid parameter in the User Panel.
- CVE-2018-101361 PoCiScripts UberforX 2.2 has Stored XSS in the "manage_settings" section of the Admin Panel via a value field to the…
- CVE-2018-101371 PoCiScripts UberforX 2.2 has CSRF in the "manage_settings" section of the Admin Panel via the /cms?section=manage_settings&action=edit URI.
- CVE-2018-101381 PoCThe CATALooK.netStore module through 7.2.8 for DNN (formerly DotNetNuke) allows XSS via the /ViewEditGoogleMaps.aspx PortalID or CATSkin…
- CVE-2018-101411 PoCGlobalProtect Portal Login page in Palo Alto Networks PAN-OS before 8.1.4 allows an unauthenticated attacker to inject arbitrary…
- CVE-2018-101431 PoCThe Palo Alto Networks Expedition Migration tool 1.0.107 and earlier may allow an unauthenticated attacker with remote access to run…
- CVE-2018-101641 PoCStored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows…
- CVE-2018-101651 PoCStored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows…
- CVE-2018-101661 PoCThe web management interface in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows does not have…
- CVE-2018-101671 PoCThe web application backup file in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows is encrypted with…
- CVE-2018-101681 PoCTP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows do not control privileges for usage of the Web API,…
- CVE-2018-101731 PoCDigital Guardian Management Console 7.1.2.0015 allows authenticated remote code execution because of Arbitrary File Upload functionality.
- CVE-2018-101761 PoCDigital Guardian Management Console 7.1.2.0015 has a Directory Traversal issue.
- CVE-2018-101771 PoCIn ImageMagick 7.0.7-28, there is an infinite loop in the ReadOneMNGImage function of the coders/png.c file. Remote attackers could…
- CVE-2018-101831 PoCAn issue was discovered in BigTree 4.2.22. There is cross-site scripting (XSS) in /core/inc/lib/less.php/test/index.php because of a…
- CVE-2018-101851 PoCAn issue was discovered in TuziCMS v2.0.6. There is a CSRF vulnerability that can add an admin account, as demonstrated by a…
- CVE-2018-101861 PoCIn radare2 2.5.0, there is a heap-based buffer over-read in the r_hex_bin2str function (libr/util/hex.c). Remote attackers could leverage…
- CVE-2018-101871 PoCIn radare2 2.5.0, there is a heap-based buffer over-read in the dalvik_op function (libr/anal/p/anal_dalvik.c). Remote attackers could…
- CVE-2018-101881 PoCphpMyAdmin 4.8.0 before 4.8.0-1 has CSRF, allowing an attacker to execute arbitrary SQL statements, related to js/db_operations.js,…
- CVE-2018-101911 PoCIn versions of mruby up to and including 1.4.0, an integer overflow exists in src/vm.c::mrb_vm_exec() when handling OP_GETUPVAR in the…
- CVE-2018-101931 PoCLogMeIn LastPass through 4.15.0 allows remote attackers to cause a denial of service (browser hang) via an HTML document because the…
- CVE-2018-101971 PoCThere is a time-based blind SQL injection vulnerability in the Access Manager component before 9.18.040 and 10.x before 10.18.040 in ELO…
- CVE-2018-102013 PoCsAn issue was discovered in NcMonitorServer.exe in NC Monitor Server in NComputing vSpace Pro 10 and 11. It is possible to read arbitrary…
- CVE-2018-102211 PoCAn issue was discovered in WUZHI CMS V4.1.0. There is a persistent XSS vulnerability that can steal the administrator cookies via the…
- CVE-2018-102231 PoCAn issue was discovered in YzmCMS 3.8. There is a CSRF vulnerability that can add an admin account via…
- CVE-2018-102241 PoCAn issue was discovered in YzmCMS 3.8. There is a CSRF vulnerability that can add a tag via /index.php/admin/tag/add.html.
- CVE-2018-102271 PoCMiniCMS v1.10 has XSS via the mc-admin/conf.php site_link parameter.
- CVE-2018-102301 PoCZend Debugger in Zend Server before 9.1.3 has XSS, aka ZSR-2455.
- CVE-2018-102351 PoCPOSCMS 3.2.10 allows remote attackers to execute arbitrary PHP code via the diy\module\member\controllers\admin\Setting.php 'index'…
- CVE-2018-102361 PoCPOSCMS 3.2.18 allows remote attackers to execute arbitrary PHP code via the diy\dayrui\controllers\admin\Syscontroller.php 'add' function…
- CVE-2018-102411 PoCA denial of service vulnerability in SolarWinds Serv-U before 15.1.6 HFv1 allows an authenticated user to crash the application (with a…
- CVE-2018-102451 PoCA Full Path Disclosure vulnerability in AWStats through 7.6 allows remote attackers to know where the config file is allocated, obtaining…
- CVE-2018-102481 PoCAn issue was discovered in WUZHI CMS 4.1.0. There is a CSRF vulnerability that can delete any article via…
- CVE-2018-102491 PoCbaijiacms V3 has CSRF via index.php?mod=site&op=edituser&name=manager&do=user to add an administrator account.
- CVE-2018-102531 PoCPaessler PRTG Network Monitor before 18.1.39.1648 mishandles stack memory during unspecified API calls.
- CVE-2018-102541 PoCNetwide Assembler (NASM) 2.13 has a stack-based buffer over-read in the disasm function of the disasm/disasm.c file. Remote attackers…
- CVE-2018-102551 PoCA CSV Injection vulnerability was discovered in clustercoding Blog Master Pro v1.0 that allows a user with low level privileges to inject…
- CVE-2018-102562 PoCsA SQL Injection vulnerability was discovered in HRSALE The Ultimate HRM v1.0.2 that allows a user with low level privileges to directly…
- CVE-2018-102571 PoCA CSV Injection vulnerability was discovered in HRSALE The Ultimate HRM v1.0.2 that allows a user with low level privileges to inject a…
- CVE-2018-102582 PoCsA CSV Injection vulnerability was discovered in Shopy Point of Sale v1.0 that allows a user with low level privileges to inject a command…
- CVE-2018-102592 PoCsAn Authenticated Stored XSS vulnerability was found in HRSALE The Ultimate HRM v1.0.2, exploitable by a low privileged user.
- CVE-2018-102602 PoCsA Local File Inclusion vulnerability was found in HRSALE The Ultimate HRM v1.0.2, exploitable by a low privileged user.
- CVE-2018-102851 PoCThe Ericsson-LG iPECS NMS A.1Ac web application uses incorrect access control mechanisms. Since the app does not use any sort of session…
- CVE-2018-102861 PoCThe Ericsson-LG iPECS NMS A.1Ac web application discloses sensitive information such as the NMS admin credentials and the PostgreSQL…
- CVE-2018-102891 PoCIn MuPDF 1.13.0, there is an infinite loop in the fz_skip_space function of the pdf/pdf-xref.c file. A remote adversary could leverage…
- CVE-2018-102951 PoCChemCMS v1.0.6 has CSRF by using public/admin/user/addpost.html to add an administrator account.
- CVE-2018-102992 PoCsAn integer overflow in the batchTransfer function of a smart contract implementation for Beauty Ecosystem Coin (BEC), the Ethereum ERC20…
- CVE-2018-103091 PoCThe Responsive Cookie Consent plugin before 1.8 for WordPress mishandles number fields, leading to XSS.
- CVE-2018-103101 PoCA persistent cross-site scripting vulnerability has been identified in the web interface of the Catapult UK Cookie Consent plugin before…
- CVE-2018-103112 PoCsA vulnerability was discovered in WUZHI CMS 4.1.0. There is persistent XSS that allows remote attackers to inject arbitrary web script or…
- CVE-2018-103122 PoCsindex.php?m=member&v=pw_reset in WUZHI CMS 4.1.0 allows CSRF to change the password of a common member.
- CVE-2018-103132 PoCsWUZHI CMS 4.1.0 allows persistent XSS via the form%5Bqq_10%5D parameter to the /index.php?m=member&f=index&v=profile&set_iframe=1 URI.
- CVE-2018-103142 PoCsCross-site scripting (XSS) vulnerability in Open-AudIT Community 2.2.0 allows remote attackers to inject arbitrary web script or HTML via…
- CVE-2018-103161 PoCNetwide Assembler (NASM) 2.14rc0 has an endless while loop in the assemble_file function of asm/nasm.c because of a globallineno integer…
- CVE-2018-103181 PoCFrog CMS 0.9.5 has XSS via the admin/?/page/edit page[keywords] parameter, aka Edit Page Metadata.
- CVE-2018-103211 PoCFrog CMS 0.9.5 has a stored Cross Site Scripting Vulnerability via "Admin Site title" in Settings.
- CVE-2018-103221 PoCThe xfs_dinode_verify function in fs/xfs/libxfs/xfs_inode_buf.c in the Linux kernel through 4.16.3 allows local users to cause a denial of…
- CVE-2018-103231 PoCThe xfs_bmap_extents_to_btree function in fs/xfs/libxfs/xfs_bmap.c in the Linux kernel through 4.16.3 allows local users to cause a denial…
- CVE-2018-103651 PoCAn XSS issue was discovered in the Threads to Link plugin 1.3 for MyBB. When editing a thread, the user is given the option to convert the…
- CVE-2018-103661 PoCAn issue was discovered in the Users (aka Front-end user management) plugin 1.4.5 for October CMS. XSS exists in the name field.
- CVE-2018-103713 PoCsAn issue was discovered in the wunderfarm WF Cookie Consent plugin 1.1.3 for WordPress. A persistent cross-site scripting vulnerability…
- CVE-2018-103761 PoCAn integer overflow in the transferProxy function of a smart contract implementation for SmartMesh (aka SMT), an Ethereum ERC20 token,…
- CVE-2018-103831 PoCLantronix SecureLinx Spider (SLS) 2.2+ devices have XSS in the auth.asp login page.
- CVE-2018-103881 PoCFormat string vulnerability in the logMess function in TFTP Server SP 1.66 and earlier allows remote attackers to perform a denial of…
- CVE-2018-103911 PoCAn issue was discovered in WUZHI CMS 4.1.0. There is XSS via the email parameter to the index.php?m=member&v=register URI.
- CVE-2018-104251 PoCAn issue was discovered in Shanghai 2345 Security Guard 3.7.0. 2345MPCSafe.exe, 2345SafeTray.exe, and 2345Speedup.exe allow local users to…
- CVE-2018-104282 PoCsILIAS before 5.1.26, 5.2.x before 5.2.15, and 5.3.x before 5.3.4, due to inconsistencies in parameter handling, is vulnerable to various…
- CVE-2018-105031 PoCAn issue was discovered in index.php in baijiacms V4 v4_1_4_20170105. CSRF allows adding an administrator account via op=edituser,…
- CVE-2018-105041 PoCThe WebDorado "Form Maker by WD" plugin before 1.12.24 for WordPress allows CSV injection.
- CVE-2018-105072 PoCsA vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a attacker to take a series of steps to bypass or render the…
- CVE-2018-105151 PoCIn CMS Made Simple (CMSMS) through 2.2.7, the "file unpack" operation in the admin dashboard contains a remote code execution…
- CVE-2018-105161 PoCIn CMS Made Simple (CMSMS) through 2.2.7, the "file rename" operation in the admin dashboard contains a sensitive information disclosure…
- CVE-2018-105173 PoCsIn CMS Made Simple (CMSMS) through 2.2.7, the "module import" operation in the admin dashboard contains a remote code execution…
- CVE-2018-105181 PoCIn CMS Made Simple (CMSMS) through 2.2.7, the "file delete" operation in the admin dashboard contains an arbitrary file deletion…
- CVE-2018-105191 PoCCMS Made Simple (CMSMS) 2.2.7 contains a privilege escalation vulnerability from ordinary user to admin user by arranging for the eff_uid…
- CVE-2018-105201 PoCIn CMS Made Simple (CMSMS) through 2.2.7, the "module remove" operation in the admin dashboard contains an arbitrary file deletion…
- CVE-2018-105211 PoCIn CMS Made Simple (CMSMS) through 2.2.7, the "file move" operation in the admin dashboard contains an arbitrary file movement…
- CVE-2018-105221 PoCIn CMS Made Simple (CMSMS) through 2.2.7, the "file view" operation in the admin dashboard contains a sensitive information disclosure…
- CVE-2018-105231 PoCCMS Made Simple (CMSMS) through 2.2.7 contains a physical path leakage Vulnerability via…
- CVE-2018-105461 PoCAn issue was discovered in PHP before 5.6.36, 7.0.x before 7.0.30, 7.1.x before 7.1.17, and 7.2.x before 7.2.5. An infinite loop exists in…
- CVE-2018-105541 PoCAn issue was discovered in Nagios XI 5.4.13. There is XSS exploitable via CSRF in (1) the Schedule New Report screen via the hour, minute,…
- CVE-2018-105614 PoCsKEVAn issue was discovered on Dasan GPON home routers. It is possible to bypass authentication simply by appending "?images" to any URL of…
- CVE-2018-105626 PoCsKEVAn issue was discovered on Dasan GPON home routers. Command Injection can occur via the dest_host parameter in a diag_action=ping request…
- CVE-2018-105751 PoCAn issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15. Hardcoded credentials exist for an…
- CVE-2018-105761 PoCAn issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15. Improper authentication handling by…
- CVE-2018-105771 PoCAn issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15, and AP300 devices with firmware…
- CVE-2018-105802 PoCsThe "Latest Posts on Profile" plugin 1.1 for MyBB has XSS because there is an added section in a user profile that displays that user's…
- CVE-2018-105836 PoCsAn information disclosure vulnerability occurs when LibreOffice 6.0.3 and Apache OpenOffice Writer 4.1.5 automatically process and…
- CVE-2018-105943 PoCsDelta Industrial Automation COMMGR from Delta Electronics versions 1.08 and prior with accompanying PLC Simulators (DVPSimulator EH2, EH3,…
- CVE-2018-106081 PoCSEL AcSELerator Architect version 2.2.24.0 and prior can be exploited when the AcSELerator Architect FTP client connects to a malicious…
- CVE-2018-106181 PoCDavolink DVW-3200N all version prior to Version 1.00.06. The device generates a weak password hash that is easily cracked, allowing a…
- CVE-2018-106191 PoCAn unquoted search path or element in RSLinx Classic Versions 3.90.01 and prior and FactoryTalk Linx Gateway Versions 3.90.00 and prior…
- CVE-2018-106412 PoCsD-Link DIR-601 A1 1.02NA devices do not require the old password for a password change, which occurs in cleartext.
- CVE-2018-106421 PoCCommand injection vulnerability in Combodo iTop 2.4.1 allows remote authenticated administrators to execute arbitrary commands by changing…
- CVE-2018-106531 PoCThere is an XML External Entity (XXE) Processing Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
- CVE-2018-106553 PoCsDLPnpAuditor.exe in DeviceLock Plug and Play Auditor (freeware) 5.72 has a Unicode Buffer Overflow (SEH).
- CVE-2018-106581 PoCThere was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which causes a denial of service (crash). The crash…
- CVE-2018-106591 PoCThere was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which allows remote attackers to cause a denial of…
- CVE-2018-106603 PoCsAn issue was discovered in multiple models of Axis IP Cameras. There is Shell Command Injection.
- CVE-2018-106613 PoCsAn issue was discovered in multiple models of Axis IP Cameras. There is a bypass of access control.
- CVE-2018-106623 PoCsAn issue was discovered in multiple models of Axis IP Cameras. There is an Exposed Insecure Interface.
- CVE-2018-106631 PoCAn issue was discovered in multiple models of Axis IP Cameras. There is an Incorrect Size Calculation.
- CVE-2018-106641 PoCAn issue was discovered in the httpd process in multiple models of Axis IP Cameras. There is Memory Corruption.
- CVE-2018-106761 PoCCeNova, Night OWL, Novo, Pulnix, QSee, Securus, and TBK Vision DVR devices allow remote attackers to download a file and obtain sensitive…
- CVE-2018-106821 PoCAn issue was discovered in WildFly 10.1.2.Final. It is possible for an attacker to access the administration panel on TCP port 9990…
- CVE-2018-106831 PoCAn issue was discovered in WildFly 10.1.2.Final. In the case of a default installation without a security realm reference, an attacker can…
- CVE-2018-106851 PoCIn Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote…
- CVE-2018-106902 PoCsAn issue was discovered on Moxa AWK-3121 1.14 devices. The device by default allows HTTP traffic thus providing an insecure communication…
- CVE-2018-106911 PoCAn issue was discovered on Moxa AWK-3121 1.14 devices. It is intended that an administrator can download /systemlog.log (the system log).…
- CVE-2018-106921 PoCAn issue was discovered on Moxa AWK-3121 1.14 devices. The session cookie "Password508" does not have an HttpOnly flag. This allows an…
- CVE-2018-106931 PoCAn issue was discovered on Moxa AWK-3121 1.14 devices. It provides ping functionality so that an administrator can execute ICMP calls to…
- CVE-2018-106941 PoCAn issue was discovered on Moxa AWK-3121 1.14 devices. The device provides a Wi-Fi connection that is open and does not use any encryption…
- CVE-2018-106952 PoCsAn issue was discovered on Moxa AWK-3121 1.14 devices. It provides alert functionality so that an administrator can send emails to his/her…
- CVE-2018-106962 PoCsAn issue was discovered on Moxa AWK-3121 1.14 devices. The device provides a web interface to allow an administrator to manage the device.…
- CVE-2018-106972 PoCsAn issue was discovered on Moxa AWK-3121 1.14 devices. The Moxa AWK 3121 provides ping functionality so that an administrator can execute…
- CVE-2018-106981 PoCAn issue was discovered on Moxa AWK-3121 1.14 devices. The device enables an unencrypted TELNET service by default. This allows an…
- CVE-2018-106992 PoCsAn issue was discovered on Moxa AWK-3121 1.14 devices. The Moxa AWK 3121 provides certfile upload functionality so that an administrator…
- CVE-2018-107001 PoCAn issue was discovered on Moxa AWK-3121 1.19 devices. It provides functionality so that an administrator can change the name of the…
- CVE-2018-107011 PoCAn issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to…
- CVE-2018-107022 PoCsAn issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to…
- CVE-2018-107031 PoCAn issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to…
- CVE-2018-107091 PoCThe AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before…
- CVE-2018-107101 PoCThe AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before…
- CVE-2018-107111 PoCThe AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before…
- CVE-2018-107121 PoCThe AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before…
- CVE-2018-107161 PoCAn issue was discovered in Shanghai 2345 Security Guard 3.7.0. 2345MPCSafe.exe, 2345SafeTray.exe, and 2345Speedup.exe allow local users to…
- CVE-2018-107183 PoCsStack-based buffer overflow in Activision Infinity Ward Call of Duty Modern Warfare 2 before 2018-04-26 allows remote attackers to execute…
- CVE-2018-107321 PoCThe REST API in Dataiku DSS before 4.2.3 allows remote attackers to obtain sensitive information (i.e., determine if a username is valid)…
- CVE-2018-107331 PoCThere is a heap-based buffer over-read in the function ft_font_face_hash of gxps-fonts.c in libgxps through 0.3.0. A crafted input will…
- CVE-2018-107341 PoCKONGTOP DVR devices A303, A403, D303, D305, and D403 contain a backdoor that prints the login password via a Print_Password function call…
- CVE-2018-107353 PoCsA SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/commandline.php cname parameter.
- CVE-2018-107363 PoCsA SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/info.php key1 parameter.
- CVE-2018-107373 PoCsA SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/logbook.php txtSearch parameter.
- CVE-2018-107383 PoCsA SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/menuaccess.php chbKey1 parameter.
- CVE-2018-107511 PoCA malformed OMACP WAP push message can cause memory corruption on a Samsung S7 Edge device when processing the String Extension portion of…
- CVE-2018-107522 PoCsThe Tagregator plugin 0.6 for WordPress has stored XSS via the title field in an Add New action.
- CVE-2018-107572 PoCsCSP MySQL User Manager 2.3.1 allows SQL injection, and resultant Authentication Bypass, via a crafted username during a login attempt.
- CVE-2018-107632 PoCsMultiple cross-site scripting (XSS) vulnerabilities in Synametrics SynaMan 4.0 build 1488 via the (1) Main heading or (2) Sub heading…
- CVE-2018-107671 PoCThere is a stack-based buffer over-read in calling GLib in the function gxps_images_guess_content_type of gxps-images.c in libgxps through…
- CVE-2018-107681 PoCThere is a NULL pointer dereference in the AnnotPath::getCoordsLength function in Annot.h in an Ubuntu package for Poppler 0.24.5. A…
- CVE-2018-107721 PoCThe tEXtToDataBuf function in pngimage.cpp in Exiv2 through 0.26 allows remote attackers to cause a denial of service (application crash)…
- CVE-2018-107751 PoCNULL pointer dereference in the _fields_add function in fields.c in libbibcore.a in bibutils through 6.2 allows remote attackers to cause…
- CVE-2018-107791 PoCTIFFWriteScanline in tif_write.c in LibTIFF 3.8.2 has a heap-based buffer over-read, as demonstrated by bmp2tiff.
- CVE-2018-107801 PoCExiv2::Image::byteSwap2 in image.cpp in Exiv2 0.26 has a heap-based buffer over-read.
- CVE-2018-107902 PoCsThe AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause a denial of service (application crash),…
- CVE-2018-107951 PoCLiferay 6.2.x and before has an FCKeditor configuration that allows an attacker to upload or transfer files of dangerous types that can be…
- CVE-2018-107961 PoCIn 2345 Security Guard 3.7, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD) or possibly have…
- CVE-2018-108011 PoCTIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff.
- CVE-2018-108061 PoCAn issue was discovered in Frog CMS 0.9.5. There is a reflected Cross Site Scripting Vulnerability via the file[current_name] parameter to…
- CVE-2018-108093 PoCsIn 2345 Security Guard 3.7, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD) or possibly have…
- CVE-2018-108141 PoCSynametrics SynaMan 4.0 build 1488 uses cleartext password storage for SMTP credentials.
- CVE-2018-108223 PoCsDirectory traversal vulnerability in the web interface on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02,…
- CVE-2018-108234 PoCsAn issue was discovered on D-Link DWR-116 through 1.06, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through…
- CVE-2018-108243 PoCsAn issue was discovered on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712…
- CVE-2018-108281 PoCAn issue was discovered in Alps Pointing-device Driver 10.1.101.207. ApMsgFwd.exe allows the current user to map and write to the…
- CVE-2018-108302 PoCsIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-108322 PoCsModbusPal 1.6b is vulnerable to an XML External Entity (XXE) attack. Projects are saved as .xmpp files and automations can be exported as…
- CVE-2018-108401 PoCLinux kernel is vulnerable to a heap-based buffer overflow in the fs/ext4/xattr.c:ext4_xattr_set_entry() function. An attacker could…
- CVE-2018-108761 PoCA flaw was found in Linux kernel in the ext4 filesystem code. A use-after-free is possible in ext4_ext_remove_space() function when…
- CVE-2018-108781 PoCA flaw was found in the Linux kernel's ext4 filesystem. A local user can cause an out-of-bounds write and a denial of service or…
- CVE-2018-108791 PoCA flaw was found in the Linux kernel's ext4 filesystem. A local user can cause a use-after-free in ext4_xattr_set_entry function and a…
- CVE-2018-108801 PoCLinux kernel is vulnerable to a stack-out-of-bounds write in the ext4 filesystem code when mounting and writing to a crafted ext4 image in…
- CVE-2018-108811 PoCA flaw was found in the Linux kernel's ext4 filesystem. A local user can cause an out-of-bound access in ext4_get_group_info function, a…
- CVE-2018-108821 PoCA flaw was found in the Linux kernel's ext4 filesystem. A local user can cause an out-of-bound write in in fs/jbd2/transaction.c code, a…
- CVE-2018-109002 PoCsNetwork Manager VPNC plugin (aka networkmanager-vpnc) before version 1.2.6 is vulnerable to a privilege escalation attack. A new line…
- CVE-2018-109061 PoCIn fuse before versions 2.9.8 and 3.x before 3.2.5, fusermount is vulnerable to a restriction bypass when SELinux is active. This allows…
- CVE-2018-109151 PoCA vulnerability was found in libpq, the default PostgreSQL client library where libpq failed to properly reset its internal state between…
- CVE-2018-109201 PoCImproper input validation bug in DNS resolver component of Knot Resolver before 2.4.1 allows remote attacker to poison cache.
- CVE-2018-1093343 PoCsA vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels…
- CVE-2018-109361 PoCA weakness was found in postgresql-jdbc before version 42.2.5. It was possible to provide an SSL Factory and not check the host name if a…
- CVE-2018-109421 PoCmodules/attributewizardpro/file_upload.php in the Attribute Wizard addon 1.6.9 for PrestaShop 1.4.0.1 through 1.6.1.18 allows remote…
- CVE-2018-109491 PoCmailboxd in Zimbra Collaboration Suite 8.8 before 8.8.8; 8.7 before 8.7.11.Patch3; and 8.6 allows Account Enumeration by leveraging a…
- CVE-2018-109521 PoCIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-109531 PoCIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-109541 PoCIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-109551 PoCIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-109563 PoCsIPConfigure Orchid Core VMS 2.0.5 allows Directory Traversal.
- CVE-2018-109571 PoCCSRF exists on D-Link DIR-868L devices, leading to (for example) a change to the Admin password. hedwig.cgi and pigwidgeon.cgi are two of…
- CVE-2018-109581 PoCIn types.cpp in Exiv2 0.26, a large size value may lead to a SIGABRT during an attempt at memory allocation for an…
- CVE-2018-109621 PoCAn issue was discovered in Shanghai 2345 Security Guard 3.7.0. 2345MPCSafe.exe, 2345SafeTray.exe, and 2345Speedup.exe allow local users to…
- CVE-2018-109631 PoCThe TIFFWriteDirectorySec() function in tif_dirwrite.c in LibTIFF through 4.0.9 allows remote attackers to cause a denial of service…
- CVE-2018-109691 PoCSQL injection vulnerability in the Pie Register plugin before 3.0.10 for WordPress allows remote attackers to execute arbitrary SQL…
- CVE-2018-109741 PoCIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-109751 PoCIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-109761 PoCIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-109771 PoCIn 2345 Security Guard 3.7, the driver file (2345BdPcSafe.sys, X64 version) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-109971 PoCEtere EtereWeb before 28.1.20 has a pre-authentication blind SQL injection in the POST parameters txUserName and txPassword.
- CVE-2018-109981 PoCAn issue was discovered in Exiv2 0.26. readMetadata in jp2image.cpp allows remote attackers to cause a denial of service (SIGABRT) by…
- CVE-2018-109991 PoCAn issue was discovered in Exiv2 0.26. The Exiv2::Internal::PngChunk::parseTXTChunk function has a heap-based buffer over-read.