CVE-2018-14000 to CVE-2018-14999
182 CVEs with public proof-of-concept exploits.
- CVE-2018-140095 PoCsCodiad through 2.8.4 allows Remote Code Execution, a different vulnerability than CVE-2017-11366 and CVE-2017-15689.
- CVE-2018-140101 PoCOS command injection in the guest Wi-Fi settings feature in /cgi-bin/luci on Xiaomi R3P before 2.14.5, R3C before 2.12.15, R3 before…
- CVE-2018-140121 PoCWolfSight CMS 3.2 allows SQL injection via the PATH_INFO to the default URI.
- CVE-2018-140133 PoCsSynacor Zimbra Collaboration Suite Collaboration before 8.8.11 has XSS in the AJAX and html web clients.
- CVE-2018-140141 PoCIn waimai Super Cms 20150505, there is a CSRF vulnerability that can add an admin account via admin.php?m=Member&a=adminadd.
- CVE-2018-140151 PoCThe sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid read and application…
- CVE-2018-140161 PoCThe r_bin_mdmp_init_directory_entry function in mdmp.c in radare2 2.7.0 allows remote attackers to cause a denial of service (heap-based…
- CVE-2018-140171 PoCThe r_bin_java_annotation_new function in shlr/java/class.c in radare2 2.7.0 allows remote attackers to cause a denial of service…
- CVE-2018-140232 PoCsOpen Whisper Signal (aka Signal-Desktop) before 1.15.0-beta.10 allows information leakage.
- CVE-2018-140282 PoCsIn WordPress 4.9.7, plugins uploaded via the admin area are not verified as being ZIP files. This allows for PHP files to be uploaded.…
- CVE-2018-140292 PoCsCSRF vulnerability in admin/user/edit in Creatiwity wityCMS 0.6.2 allows an attacker to take over a user account, as demonstrated by…
- CVE-2018-140371 PoCCross-site scripting (XSS) vulnerability in Progress Kendo UI Editor v2018.1.221 allows remote attackers to inject arbitrary JavaScript…
- CVE-2018-140403 PoCsIn Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.
- CVE-2018-140412 PoCsIn Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.
- CVE-2018-140422 PoCsIn Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
- CVE-2018-140461 PoCExiv2 0.26 has a heap-based buffer over-read in WebPImage::decodeChunks in webpimage.cpp.
- CVE-2018-140541 PoCA double free exists in the MP4StringProperty class in mp4property.cpp in MP4v2 2.0.0. A dangling pointer is freed again in the destructor…
- CVE-2018-140574 PoCsPimcore before 5.3.0 allows remote attackers to conduct cross-site request forgery (CSRF) attacks by leveraging validation of the…
- CVE-2018-140585 PoCsPimcore before 5.3.0 allows SQL Injection via the REST web service API.
- CVE-2018-140594 PoCsPimcore allows XSS via Users, Assets, Data Objects, Video Thumbnails, Image Thumbnails, Field-Collections, Objectbrick, Classification…
- CVE-2018-140601 PoCOS command injection in the AP mode settings feature in /cgi-bin/luci /api/misystem/set_router_wifiap on Xiaomi R3D before 2.26.4 devices…
- CVE-2018-140643 PoCsThe uc-http service 1.0.0 on VelotiSmart WiFi B-380 camera devices allows Directory Traversal, as demonstrated by /../../etc/passwd on TCP…
- CVE-2018-140681 PoCAn issue was discovered in SRCMS V2.3.1. There is a CSRF vulnerability that can add an admin account via admin.php?m=Admin&c=manager&a=add.
- CVE-2018-140822 PoCsPHP Scripts Mall JOB SITE (aka Job Portal) 3.0.1 has Cross-site Scripting (XSS) via the search bar.
- CVE-2018-140831 PoCLICA miniCMTS E8K(u/i/...) devices allow remote attackers to obtain sensitive information via a direct POST request for the inc/user.ini…
- CVE-2018-143241 PoCThe demo feature in Oracle GlassFish Open Source Edition 5.0 has TCP port 7676 open by default with a password of admin for the admin…
- CVE-2018-143251 PoCIn MP4v2 2.0.0, there is an integer underflow (with resultant memory corruption) when parsing MP4Atom in mp4atom.cpp.
- CVE-2018-143261 PoCIn MP4v2 2.0.0, there is an integer overflow (with resultant memory corruption) when resizing MP4Array for the ftyp atom in mp4array.h.
- CVE-2018-143272 PoCsThe installer for the Alcatel OSPREY3_MINI Modem component on EE EE40VB 4G mobile broadband modems with firmware before EE40_00_02.00_45…
- CVE-2018-143282 PoCsBrynamics "Online Trade - Online trading and cryptocurrency investment system" allows remote attackers to obtain sensitive information via…
- CVE-2018-143321 PoCAn issue was discovered in Clementine Music Player 1.3.1. Clementine.exe is vulnerable to a user mode write access violation due to a NULL…
- CVE-2018-143331 PoCTeamViewer through 13.1.1548 stores a password in Unicode format within TeamViewer.exe process memory between "[00 88] and "[00 00 00]"…
- CVE-2018-143351 PoCAn issue was discovered in H2 1.4.197. Insecure handling of permissions in the backup function allows attackers to read sensitive files…
- CVE-2018-143361 PoCTP-Link WR840N devices allow remote attackers to cause a denial of service (connectivity loss) via a series of packets with random MAC…
- CVE-2018-143641 PoCGitLab Community and Enterprise Edition before 10.7.7, 10.8.x before 10.8.6, and 11.x before 11.0.4 allows Directory Traversal with write…
- CVE-2018-143801 PoCIn Graylog before 2.4.6, XSS was possible in typeahead components, related to components/common/TypeAheadInput.jsx and…
- CVE-2018-143821 PoCInstantCMS 2.10.1 has /redirect?url= XSS.
- CVE-2018-143841 PoCThe Website Manager module in SEO Panel 3.13.0 and earlier is affected by a stored Cross-Site Scripting (XSS) vulnerability, allowing…
- CVE-2018-143871 PoCAn issue was discovered in WonderCMS before 2.5.2. An attacker can create a new session on a web application and record the associated…
- CVE-2018-143881 PoCjoyplus-cms 1.6.0 has XSS via the manager/admin_ajax.php can_search_device array parameter.
- CVE-2018-143921 PoCThe New Threads plugin before 1.2 for MyBB has XSS.
- CVE-2018-143961 PoCAn issue was discovered in Creme CRM 1.6.12. The salesman creation page is affected by 10 stored cross-site scripting vulnerabilities…
- CVE-2018-143971 PoCAn issue was discovered in Creme CRM 1.6.12. The organization creation page is affected by 9 stored cross-site scripting vulnerabilities…
- CVE-2018-143981 PoCAn issue was discovered in Creme CRM 1.6.12. The value of the cancel button uses the content of the HTTP Referer header, and could be used…
- CVE-2018-144011 PoCCopyData in AxmlParser.c in AXML Parser through 2018-01-04 has an out-of-bounds read.
- CVE-2018-144021 PoCaxmldec 1.2.0 has an out-of-bounds write in the jitana::axml_parser::parse_start_namespace function in lib/jitana/util/axml_parser.cpp.
- CVE-2018-144031 PoCMP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for…
- CVE-2018-144173 PoCsA command injection vulnerability was found in the web administration console in SoftNAS Cloud before 4.0.3. In particular, the snserv…
- CVE-2018-144181 PoCIn Msvod Cms v10, SQL Injection exists via an images/lists?cid= URI.
- CVE-2018-144201 PoCMetInfo 6.0.0 allows a CSRF attack to add a user account via a doaddsave action to admin/index.php, as demonstrated by an…
- CVE-2018-144301 PoCThe Mondula Multi Step Form plugin through 1.2.5 for WordPress allows XSS via the fw_data [id][1], fw_data [id][2], fw_data [id][3],…
- CVE-2018-144371 PoCImageMagick 7.0.8-4 has a memory leak in parse8BIM in coders/meta.c.
- CVE-2018-144423 PoCsFoxit Reader before 9.2 and PhantomPDF before 9.2 have a Use-After-Free that leads to Remote Code Execution, aka V-88f4smlocs.
- CVE-2018-144451 PoCIn Bento4 v1.5.1-624, AP4_File::ParseStream in Ap4File.cpp allows remote attackers to cause a denial of service (infinite loop) via a…
- CVE-2018-144471 PoCtrim_whitespace in lexer.l in libConfuse v3.2.1 has an out-of-bounds read.
- CVE-2018-144481 PoCCodec::parse in track.cpp in Untrunc through 2018-06-07 has a NULL pointer dereference via a crafted MP4 file because of improper…
- CVE-2018-144691 PoCThe IKEv1 parser in tcpdump before 4.9.3 has a buffer over-read in print-isakmp.c:ikev1_n_print().
- CVE-2018-144721 PoCAn issue was discovered in WUZHI CMS 4.1.0. The vulnerable file is coreframe/app/order/admin/goods.php. The $keywords parameter is taken…
- CVE-2018-144731 PoCOCS Inventory 2.4.1 lacks a proper XML parsing configuration, allowing the use of external entities. This issue can be exploited by an…
- CVE-2018-144741 PoCviews/auth.go in Orange Forum 1.4.0 allows Open Redirection via the next parameter to /login or /signup.
- CVE-2018-144761 PoCGeniXCMS 1.1.5 has XSS via the dbuser or dbhost parameter during step 1 of installation.
- CVE-2018-144781 PoCecard.php in Coppermine Photo Gallery (CPG) 1.5.46 has XSS via the sender_name, recipient_email, greetings, or recipient_name parameter.
- CVE-2018-144811 PoCOsclass 3.7.4 has XSS via the query string to index.php, a different vulnerability than CVE-2014-6280.
- CVE-2018-144851 PoCBlogEngine.NET 3.3 allows XXE attacks via the POST body to metaweblog.axd.
- CVE-2018-144861 PoCDNN (formerly DotNetNuke) 9.1.1 allows cross-site scripting (XSS) via XML.
- CVE-2018-144921 PoCTenda AC7 through V15.03.06.44_CN, AC9 through V15.03.05.19(6318)_CN, and AC10 through V15.03.06.23_CN devices have a Stack-based Buffer…
- CVE-2018-144932 PoCsCross-site scripting (XSS) vulnerability in the Groups Page in Open-Audit Community 2.2.6 allows remote attackers to inject arbitrary web…
- CVE-2018-144971 PoCTenda D152 ADSL routers allow XSS via a crafted SSID.
- CVE-2018-144982 PoCsget_8bit_row in rdbmp.c in libjpeg-turbo through 1.5.90 and MozJPEG through 3.3.1 allows attackers to cause a denial of service…
- CVE-2018-145021 PoCcontrollers/quizzes.php in the Kiboko Chained Quiz plugin before 1.0.9 for WordPress allows remote unauthenticated users to execute…
- CVE-2018-145051 PoCmitmweb in mitmproxy v4.0.3 allows DNS Rebinding attacks, related to tools/web/app.py.
- CVE-2018-145121 PoCAn XSS vulnerability was discovered in WUZHI CMS 4.1.0. There is persistent XSS that allows remote attackers to inject arbitrary web…
- CVE-2018-145131 PoCAn XSS vulnerability was discovered in WUZHI CMS 4.1.0. There is persistent XSS that allows remote attackers to inject arbitrary web…
- CVE-2018-145151 PoCA SQL injection was discovered in WUZHI CMS 4.1.0 that allows remote attackers to inject a malicious SQL statement via the…
- CVE-2018-145171 PoCSeaCMS 6.61 has two XSS issues in the admin_config.php file via certain form fields.
- CVE-2018-145191 PoCAn issue was discovered in Kirby 2.5.12. The delete page functionality suffers from a CSRF flaw. A remote attacker can craft a malicious…
- CVE-2018-145201 PoCAn issue was discovered in Kirby 2.5.12. The application allows malicious HTTP requests to be sent in order to trick a user into adding…
- CVE-2018-145331 PoCread_tmp and write_tmp in Inteno IOPSYS allow attackers to gain privileges after writing to /tmp/etc/smb.conf because /var is a symlink to…
- CVE-2018-145412 PoCsPHP Scripts Mall Basic B2B Script 2.0.0 has Reflected and Stored XSS via the First name, Last name, Address 1, City, State, and Company…
- CVE-2018-145511 PoCThe ReadMATImageV4 function in coders/mat.c in ImageMagick 7.0.8-7 uses an uninitialized variable, leading to memory corruption.
- CVE-2018-145571 PoCAn issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through…
- CVE-2018-145581 PoCKEVAn issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through…
- CVE-2018-145591 PoCAn issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through…
- CVE-2018-145682 PoCsSuricata before 4.0.5 stops TCP stream inspection upon a TCP RST from a server. This allows detection bypass because Windows TCP clients…
- CVE-2018-145701 PoCA file upload vulnerability in application/shop/controller/member.php in Niushop B2B2C Multi-business basic version V1.11 allows any…
- CVE-2018-145721 PoCIn conference-scheduler-cli, a pickle.load call on imported data allows remote attackers to execute arbitrary code via a crafted .pickle…
- CVE-2018-145743 PoCsdjango.middleware.common.CommonMiddleware in Django 1.11.x before 1.11.15 and 2.0.x before 2.0.8 has an Open Redirect.
- CVE-2018-145752 PoCsTrash Bin plugin 1.1.3 for MyBB has cross-site scripting (XSS) via a thread subject and a cross-site request forgery (CSRF) via a post…
- CVE-2018-145821 PoCindex.php?r=admini/admin/create in BageCMS V3.1.3 allows CSRF to add a background administrator account.
- CVE-2018-145841 PoCAn issue has been discovered in Bento4 1.5.1-624. AP4_AvccAtom::Create in Core/Ap4AvccAtom.cpp has a heap-based buffer over-read.
- CVE-2018-145923 PoCsThe CWJoomla CW Article Attachments PRO extension before 2.0.7 and CW Article Attachments FREE extension before 1.0.6 for Joomla! allow…
- CVE-2018-146061 PoCAn issue was discovered in GitLab Community and Enterprise Edition before 10.8.7, 11.0.x before 11.0.5, and 11.1.x before 11.1.2. XSS can…
- CVE-2018-146071 PoCThomson Reuters UltraTax CS 2017 on Windows, in a client/server configuration, transfers customer records and bank account numbers in…
- CVE-2018-146081 PoCThomson Reuters UltraTax CS 2017 on Windows has a password protection option; however, the level of protection might be inconsistent with…
- CVE-2018-146101 PoCAn issue was discovered in the Linux kernel through 4.17.10. There is out-of-bounds access in write_extent_buffer() when mounting and…
- CVE-2018-146131 PoCAn issue was discovered in the Linux kernel through 4.17.10. There is an invalid pointer dereference in io_ctl_map_page() when mounting…
- CVE-2018-146151 PoCAn issue was discovered in the Linux kernel through 4.17.10. There is a buffer overflow in truncate_inline_inode() in fs/f2fs/inline.c…
- CVE-2018-146161 PoCAn issue was discovered in the Linux kernel through 4.17.10. There is a NULL pointer dereference in fscrypt_do_page_crypto() in…
- CVE-2018-146171 PoCAn issue was discovered in the Linux kernel through 4.17.10. There is a NULL pointer dereference and panic in hfsplus_lookup() in…
- CVE-2018-146303 PoCsmoodle before versions 3.5.2, 3.4.5, 3.3.8, 3.1.14 is vulnerable to an XML import of ddwtos could lead to intentional remote code…
- CVE-2018-146343 PoCsKEVAn integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or…
- CVE-2018-1466512 PoCsA flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options when starting Xorg.…
- CVE-2018-146678 PoCsKEVThe RichFaces Framework 3.X through 3.3.4 is vulnerable to Expression Language (EL) injection via the UserResource resource. A remote,…
- CVE-2018-146851 PoCThe add function in www/Lib/Lib/Action/Admin/TplAction.class.php in Gxlcms v1.1.4 allows remote attackers to read arbitrary files via a…
- CVE-2018-146861 PoCsystem/edit_book.php in XYCMS 1.7 has stored XSS via a crafted add_do.php request, related to add_book.php.
- CVE-2018-146881 PoCAn issue was discovered in Subsonic 6.1.1. The radio settings are affected by three stored cross-site scripting vulnerabilities in the…
- CVE-2018-146891 PoCAn issue was discovered in Subsonic 6.1.1. The transcoding settings are affected by five stored cross-site scripting vulnerabilities in…
- CVE-2018-146901 PoCAn issue was discovered in Subsonic 6.1.1. The general settings are affected by two stored cross-site scripting vulnerabilities in the…
- CVE-2018-146911 PoCAn issue was discovered in Subsonic 6.1.1. The music tags feature is affected by three stored cross-site scripting vulnerabilities in the…
- CVE-2018-146951 PoCIncorrect access control in the /mysql/api/diags.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers…
- CVE-2018-146961 PoCIncorrect access control in the /mysql/api/drobo.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers…
- CVE-2018-146971 PoCCross-site scripting in the /DroboAccess/enable_user endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to execute…
- CVE-2018-146981 PoCCross-site scripting in the /DroboAccess/delete_user endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to execute…
- CVE-2018-146992 PoCsSystem command injection in the /DroboAccess/enable_user endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated…
- CVE-2018-147001 PoCIncorrect access control in the /mysql/api/logfile.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated…
- CVE-2018-147011 PoCSystem command injection in the /DroboAccess/delete_user endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated…
- CVE-2018-147021 PoCIncorrect access control in the /drobopix/api/drobo.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated…
- CVE-2018-147031 PoCIncorrect access control in the /mysql/api/droboapp/data endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated…
- CVE-2018-147041 PoCCross-site scripting in the MySQL API error page in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to execute JavaScript via a…
- CVE-2018-147061 PoCSystem command injection in the /DroboPix/api/drobopix/demo endpoint on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated…
- CVE-2018-147071 PoCDirectory traversal in the Drobo Pix web application on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to upload…
- CVE-2018-147081 PoCAn insecure transport protocol used by Drobo Dashboard API on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to intercept…
- CVE-2018-147091 PoCIncorrect access control in the Dashboard API on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows attackers to bypass authentication due to…
- CVE-2018-147101 PoCCross-site scripting in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to execute JavaScript via the "hook" URL…
- CVE-2018-147111 PoCMissing cross-site request forgery protection in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to cause…
- CVE-2018-147121 PoCBuffer overflow in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to inject system commands via the "hook" URL…
- CVE-2018-147131 PoCFormat string vulnerability in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to read arbitrary sections of…
- CVE-2018-147147 PoCsSystem command injection in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to execute system commands via the…
- CVE-2018-147164 PoCsA Server Side Template Injection (SSTI) was discovered in the SEOmatic plugin before 3.1.4 for Craft CMS, because requests that don't…
- CVE-2018-147241 PoCIn the Ban List plugin 1.0 for MyBB, any forum user with mod privileges can ban users and input an XSS payload into the ban reason, which…
- CVE-2018-147283 PoCsupload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter.
- CVE-2018-147292 PoCsThe database backup feature in upload/source/admincp/admincp_db.php in Discuz! 2.5 and 3.4 allows remote attackers to execute arbitrary…
- CVE-2018-147311 PoCAn issue was discovered in HMRServer.js in Parcel parcel-bundler. Attackers are able to steal developer's code because the origin of…
- CVE-2018-147321 PoCAn issue was discovered in lib/Server.js in webpack-dev-server before 3.1.6. Attackers are able to steal developer's code because the…
- CVE-2018-147451 PoCBuffer overflow in prot_get_ring_space in the bcmdhd4358 Wi-Fi driver on the Samsung Galaxy S6 SM-G920F G920FXXU5EQH7 allows an attacker…
- CVE-2018-147721 PoCPydio 4.2.1 through 8.2.1 has an authenticated remote code execution vulnerability in which an attacker with administrator access to the…
- CVE-2018-147771 PoCAn issue was discovered in DataLife Engine (DLE) through 13.0. An attacker can use XSS (related to the /addnews.html and…
- CVE-2018-148381 PoCrejucms 2.1 has stored XSS via the admin/book.php content parameter.
- CVE-2018-148391 PoCKEVLG N1A1 NAS 3718.510 is affected by: Remote Command Execution. The impact is: execute arbitrary code (remote). The attack vector is: HTTP…
- CVE-2018-148401 PoCuploads/.htaccess in Subrion CMS 4.2.1 allows XSS because it does not block .html file uploads (but does block, for example, .htm file…
- CVE-2018-148463 PoCsThe Mondula Multi Step Form plugin before 1.2.8 for WordPress has multiple stored XSS via wp-admin/admin-ajax.php.
- CVE-2018-1484742 PoCsKEVMikroTik RouterOS through 6.42 allows unauthenticated remote attackers to read arbitrary files and remote authenticated attackers to write…
- CVE-2018-148691 PoCPHP Template Store Script 3.0.6 allows XSS via the Address line 1, Address Line 2, Bank name, or A/C Holder name field in a profile.
- CVE-2018-148741 PoCAn issue was discovered in the Armor module in Polaris FT Intellect Core Banking 9.7.1. Input passed through the code parameter in three…
- CVE-2018-148751 PoCAn issue was discovered in the Core and Portal modules in Polaris FT Intellect Core Banking 9.7.1. Reflected XSS exists with an…
- CVE-2018-148791 PoCThe command-line argument parser in tcpdump before 4.9.3 has a buffer overflow in tcpdump.c:get_next_file().
- CVE-2018-148801 PoCThe OSPFv3 parser in tcpdump before 4.9.3 has a buffer over-read in print-ospf6.c:ospf6_print_lshdr().
- CVE-2018-148841 PoCAn issue was discovered in PHP 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. Inappropriately parsing an HTTP response…
- CVE-2018-148882 PoCsinc/plugins/thankyoulike.php in the Eldenroot Thank You/Like plugin before 3.1.0 for MyBB allows XSS via a post or thread subject.
- CVE-2018-148921 PoCMissing protections against Cross-Site Request Forgery in the web application in ZyXEL NSA325 V2 version 4.81 allow attackers to perform…
- CVE-2018-148931 PoCA system command injection vulnerability in zyshclient in ZyXEL NSA325 V2 version 4.81 allows attackers to execute system commands via the…
- CVE-2018-148944 PoCsCyberArk Endpoint Privilege Manager 10.2.1.603 and earlier allows an attacker (who is able to edit permissions of a file) to bypass…
- CVE-2018-149041 PoCSamsung Syncthru Web Service V4.05.61 is vulnerable to Multiple unauthenticated XSS attacks on several parameters, as demonstrated by…
- CVE-2018-149051 PoCThe Web server in 3CX version 15.5.8801.3 is vulnerable to Reflected XSS on the api/CallLog TimeZoneName parameter.
- CVE-2018-149061 PoCThe Web server in 3CX version 15.5.8801.3 is vulnerable to Reflected XSS on all stack traces' propertyPath parameters.
- CVE-2018-149071 PoCThe Web server in 3CX version 15.5.8801.3 is vulnerable to Information Leakage, because of improper error handling in Stack traces, as…
- CVE-2018-149081 PoCSamsung Syncthru Web Service V4.05.61 is vulnerable to CSRF on every request, as demonstrated by…
- CVE-2018-149111 PoCA file upload vulnerability exists in ukcms v1.1.7 and earlier. The vulnerability is due to the system not strictly filtering the file…
- CVE-2018-149123 PoCscgit_clone_objects in CGit before 1.2.1 has a directory traversal vulnerability when `enable-http-clone=1` is not turned off, as…
- CVE-2018-149164 PoCsLOYTEC LGATE-902 6.3.2 devices allow Arbitrary file deletion.
- CVE-2018-149184 PoCsLOYTEC LGATE-902 6.3.2 devices allow Directory Traversal.
- CVE-2018-149193 PoCsLOYTEC LGATE-902 6.3.2 devices allow XSS.
- CVE-2018-149221 PoCMultiple cross-site scripting (XSS) vulnerabilities in Monstra CMS 3.0.4 allow remote attackers to inject arbitrary web script or HTML via…
- CVE-2018-149301 PoCAn issue was discovered in the Armor module in Polaris FT Intellect Core Banking 9.7.1. CSRF can occur via a…
- CVE-2018-149312 PoCsAn issue was discovered in the Core and Portal modules in Polaris FT Intellect Core Banking 9.7.1. An open redirect exists via a…
- CVE-2018-149334 PoCsKEVupgrade_handle.php on NUUO NVRmini devices allows Remote Command Execution via shell metacharacters in the uploaddir parameter for a…
- CVE-2018-149571 PoCCMS ISWEB 3.5.3 is vulnerable to directory traversal and local file download, as demonstrated by…
- CVE-2018-149581 PoCAn issue was discovered in WeaselCMS v0.3.5. CSRF can update the website settings (such as the theme, title, and description) via index.php.
- CVE-2018-149591 PoCAn issue was discovered in WeaselCMS v0.3.5. CSRF can create new pages via an index.php?b=pages&a=new URI.
- CVE-2018-149612 PoCsdl/dl_sendmail.php in zzcms 8.3 has SQL Injection via the sql parameter.
- CVE-2018-149621 PoCzzcms 8.3 has stored XSS related to the content variable in user/manage.php and zt/show.php.
- CVE-2018-149631 PoCzzcms 8.3 has CSRF via the admin/adminadd.php?action=add URI.
- CVE-2018-149792 PoCsThe ASUS ZenFone 3 Max Android device with a build fingerprint of…
- CVE-2018-149841 PoCThe Leagoo Z5C Android device with a build fingerprint of sp7731c_1h10_32v4_bird:6.0/MRA58K/android.20170629.214736:user/release-keys…
- CVE-2018-149851 PoCThe Leagoo Z5C Android device with a build fingerprint of sp7731c_1h10_32v4_bird:6.0/MRA58K/android.20170629.214736:user/release-keys…
- CVE-2018-149891 PoCThe Plum Compass Android device with a build fingerprint of PLUM/c179_hwf_221/c179_hwf_221:6.0/MRA58K/W16.51.5-22:user/release-keys…
- CVE-2018-149901 PoCThe Coolpad Defiant device with a build fingerprint of Coolpad/cp3632a/cp3632a:7.1.1/NMF26F/099480857:user/release-keys, the ZTE ZMAX Pro…
- CVE-2018-149911 PoCThe Coolpad Defiant device with a build fingerprint of Coolpad/cp3632a/cp3632a:7.1.1/NMF26F/099480857:user/release-keys, the ZTE ZMAX Pro…
- CVE-2018-149921 PoCThe ASUS ZenFone 3 Max Android device with a build fingerprint of…
- CVE-2018-149941 PoCThe Essential Phone Android device with a build fingerprint of essential/mata/mata:8.1.0/OPM1.180104.166/297:user/release-keys contains a…
- CVE-2018-149952 PoCsThe ZTE Blade Vantage Android device with a build fingerprint of ZTE/Z839/sweet:7.1.1/NMF26V/20180120.095344:user/release-keys, the ZTE…
- CVE-2018-149981 PoCThe Leagoo P1 Android device with a build fingerprint of sp7731c_1h10_32v4_bird:6.0/MRA58K/android.20170629.214736:user/release-keys…