CVE-2018-16000 to CVE-2018-16999
177 CVEs with public proof-of-concept exploits.
- CVE-2018-160592 PoCsEndress+Hauser WirelessHART Fieldgate SWG70 3.x devices allow Directory Traversal via the fcgi-bin/wgsetcgi filename parameter.
- CVE-2018-160603 PoCsMitsubishi Electric Europe B.V. SmartRTU devices allow remote attackers to obtain sensitive information (directory listing and source…
- CVE-2018-160612 PoCsMitsubishi Electric Europe B.V. SmartRTU devices allow XSS via the username parameter or PATH_INFO to login.php.
- CVE-2018-160711 PoCA use after free in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap corruption via a…
- CVE-2018-160831 PoCAn out of bounds read in forward error correction code in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to…
- CVE-2018-161192 PoCsStack-based buffer overflow in the httpd server of TP-Link WR1043nd (Firmware Version 3) allows remote attackers to execute arbitrary code…
- CVE-2018-161301 PoCSystem command injection in request_mitv in Xiaomi Mi Router 3 version 2.22.15 allows attackers to execute arbitrary system commands via…
- CVE-2018-161333 PoCsCybrotech CyBroHttpServer 1.0.3 allows Directory Traversal via a ../ in the URI.
- CVE-2018-161342 PoCsCybrotech CyBroHttpServer 1.0.3 allows XSS via a URI.
- CVE-2018-161391 PoCCross-site scripting (XSS) vulnerability in BIBLIOsoft BIBLIOpac 2008 allows remote attackers to inject arbitrary web script or HTML via…
- CVE-2018-161411 PoCThinkCMF X2.2.3 has an arbitrary file deletion vulnerability in do_avatar in \application\User\Controller\ProfileController.class.php via…
- CVE-2018-161421 PoCPHPOK 4.8.278 has a Reflected XSS vulnerability in framework/www/login_control.php via the _back parameter to the ok_f function.
- CVE-2018-161442 PoCsThe test connection functionality in the NetAudit section of Opsview Monitor before 5.3.1 and 5.4.x before 5.4.2 is vulnerable to command…
- CVE-2018-161452 PoCsThe /etc/init.d/opsview-reporting-module script that runs at boot time in Opsview Monitor before 5.3.1 and 5.4.x before 5.4.2 invokes a…
- CVE-2018-161462 PoCsThe web management console of Opsview Monitor 5.4.x before 5.4.2 provides functionality accessible by an authenticated administrator to…
- CVE-2018-161472 PoCsThe data parameter of the /settings/api/router endpoint in Opsview Monitor before 5.3.1 and 5.4.x before 5.4.2 is vulnerable to Cross-Site…
- CVE-2018-161482 PoCsThe diagnosticsb2ksy parameter of the /rest endpoint in Opsview Monitor before 5.3.1 and 5.4.x before 5.4.2 is vulnerable to Cross-Site…
- CVE-2018-161491 PoCIn sig_verify() in x509.c in axTLS version 2.1.3 and before, the PKCS#1 v1.5 signature verification blindly trusts the declared lengths in…
- CVE-2018-161563 PoCsIn PaperStream IP (TWAIN) 1.42.0.5685 (Service Update 7), the FJTWSVIC service running with SYSTEM privilege processes unauthenticated…
- CVE-2018-161582 PoCsEaton Power Xpert Meter 4000, 6000, and 8000 devices before 13.4.0.10 have a single SSH private key across different customers'…
- CVE-2018-161592 PoCsThe Gift Vouchers plugin through 2.0.1 for WordPress allows SQL Injection via the template_id parameter in a wp-admin/admin-ajax.php…
- CVE-2018-161673 PoCsLogonTracer 1.2.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.
- CVE-2018-162101 PoCWAGO 750-88X and WAGO 750-89X Ethernet Controller devices, versions 01.09.18(13) and before, have XSS in the SNMP configuration via the…
- CVE-2018-162161 PoCA command injection (missing input validation, escaping) in the monitoring or memory status web interface in AudioCodes 405HD (firmware…
- CVE-2018-162191 PoCA missing password verification in the web interface in AudioCodes 405HD VoIP phone with firmware 2.2.12 allows an remote attacker (in the…
- CVE-2018-162331 PoCMiniCMS V1.10 has XSS via the mc-admin/post-edit.php tags parameter.
- CVE-2018-162471 PoCYzmCMS 5.1 has XSS via the admin/system_manage/user_config_add.html title parameter.
- CVE-2018-162522 PoCsFsPro Labs Event Log Explorer 4.6.1.2115 has ".elx" FileType XML External Entity Injection.
- CVE-2018-162531 PoCIn sig_verify() in x509.c in axTLS version 2.1.3 and before, the PKCS#1 v1.5 signature verification does not properly verify the ASN.1…
- CVE-2018-162561 PoCThere is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via Add Filtering Options(Add Rule). NOTE: The vendor states…
- CVE-2018-162691 PoCThe wnoti system service in Samsung Galaxy Gear series allows an unprivileged process to take over the internal notification message data,…
- CVE-2018-162701 PoCSamsung Galaxy Gear series before build RE2 includes the hcidump utility with no privilege or permission restriction. This allows an…
- CVE-2018-162711 PoCThe wemail_consumer_service (from the built-in application wemail) in Samsung Galaxy Gear series allows an unprivileged process to…
- CVE-2018-162721 PoCThe wpa_supplicant system service in Samsung Galaxy Gear series allows an unprivileged process to fully control the Wi-Fi interface, due…
- CVE-2018-162821 PoCA command injection vulnerability in the web server functionality of Moxa EDR-810 V4.2 build 18041013 allows remote attackers to execute…
- CVE-2018-162836 PoCsThe Wechat Broadcast plugin 1.2.0 and earlier for WordPress allows Directory Traversal via the Image.php url parameter.
- CVE-2018-162851 PoCThe UserPro plugin through 4.9.23 for WordPress allows XSS via the shortcode parameter in a userpro_shortcode_template action to…
- CVE-2018-162882 PoCsLG SuperSign CMS allows reading of arbitrary files via signEzUI/playlist/edit/upload/..%2f URIs.
- CVE-2018-162994 PoCsThe Localize My Post plugin 1.0 for WordPress allows Directory Traversal via the ajax/include.php file parameter.
- CVE-2018-163021 PoCMediaComm Zip-n-Go before 4.95 has a Buffer Overflow via a crafted file.
- CVE-2018-163031 PoCPDF-XChange Editor through 7.0.326.1 allows remote attackers to cause a denial of service (resource consumption) via a crafted x:xmpmeta…
- CVE-2018-163071 PoCAn "Out-of-band resource load" issue was discovered on Xiaomi MIWiFi Xiaomi_55DD Version 2.8.50 devices. It is possible to induce the…
- CVE-2018-163082 PoCsThe Ninja Forms plugin before 3.3.14.1 for WordPress allows CSV injection.
- CVE-2018-163101 PoCTechnicolor TG588V V2 devices allow remote attackers to cause a denial of service (networking outage) via a flood of random MAC addresses,…
- CVE-2018-163131 PoCBludit 2.3.4 allows XSS via a user name.
- CVE-2018-163151 PoCIn waimai Super Cms 20150505, there is a CSRF vulnerability that can change the configuration via admin.php?m=Config&a=add.
- CVE-2018-163232 PoCsReadXBMImage in coders/xbm.c in ImageMagick before 7.0.8-9 leaves data uninitialized when processing an XBM file that has a negative pixel…
- CVE-2018-163242 PoCsIn IceWarp Server 12.0.3.1 and before, there is XSS in the /webmail/ username field.
- CVE-2018-163301 PoCPandao Editor.md 1.5.0 allows XSS via crafted attributes of an invalid IMG element.
- CVE-2018-163311 PoCadmin.php?s=/Admin/doedit in DamiCMS v6.0.0 allows CSRF to change the administrator account's password.
- CVE-2018-163331 PoCAn issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18…
- CVE-2018-163341 PoCAn issue was discovered on Tenda AC9 V15.03.05.19(6318)_CN and AC10 V15.03.06.23_CN devices. The mac parameter in a POST request is used…
- CVE-2018-163371 PoCAn issue was discovered in Cscms V4.1.8. There is a CSRF vulnerability that can modify a website's basic configuration via…
- CVE-2018-163381 PoCAn issue was discovered in AuraCMS 2.3. There is a CSRF vulnerability that can change the administrator's password via admin.php?mod=users…
- CVE-2018-163391 PoCAn issue was discovered in EmpireCMS 7.0. There is a CSRF vulnerability that can add administrators via…
- CVE-2018-163431 PoCSeaCMS 6.61 allows remote attackers to execute arbitrary code because parseIf() in include/main.class.php does not block use of $GLOBALS.
- CVE-2018-163451 PoCAn issue was discovered in EasyCMS 1.5. There is a CSRF vulnerability that can update the admin password via…
- CVE-2018-163461 PoCChemCMS 1.0.6 has XSS via the "setting -> website information" field.
- CVE-2018-163481 PoCSeaCMS V6.61 has XSS via the admin_video.php v_content parameter, related to the site name.
- CVE-2018-163491 PoCWUZHI CMS 4.1.0 has XSS via the index.php?m=link&f=index&v=add form[remark] parameter.
- CVE-2018-163501 PoCWUZHI CMS 4.1.0 has XSS via the index.php?m=core&f=set&v=basic form[statcode] parameter.
- CVE-2018-163611 PoCAn issue was discovered in BTITeam XBTIT 2.5.4. news.php allows XSS via the id parameter.
- CVE-2018-163632 PoCsThe mndpsingh287 File Manager plugin V2.9 for WordPress has XSS via the lang parameter in a wp-admin/admin.php?page=wp_file_manager…
- CVE-2018-163641 PoCA serialization vulnerability in Zoho ManageEngine Applications Manager before build 13740 allows for remote code execution on Windows via…
- CVE-2018-163681 PoCSplashXPath::strokeAdjust in splash/SplashXPath.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (heap-based buffer…
- CVE-2018-163691 PoCXRef::fetch in XRef.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (stack consumption) via a crafted pdf file,…
- CVE-2018-163701 PoCIn PESCMS Team 2.2.1, attackers may upload and execute arbitrary PHP code through /Public/?g=Team&m=Setting&a=upgrade by placing a .php…
- CVE-2018-163731 PoCFrog CMS 0.9.5 has an Upload vulnerability that can create files via /admin/?/plugin/file_manager/save.
- CVE-2018-163811 PoCe107 2.1.8 has XSS via the e107_admin/users.php?mode=main&action=list user_loginname parameter.
- CVE-2018-163822 PoCsNetwide Assembler (NASM) 2.14rc15 has a buffer over-read in x86/regflags.c.
- CVE-2018-163852 PoCsThinkPHP before 5.1.23 allows SQL Injection via the public/index/index/test/index query string.
- CVE-2018-163871 PoCAn issue was discovered in Elefant CMS before 2.0.5. There is a CSRF vulnerability that can add an account via user/add.
- CVE-2018-164121 PoCImageMagick 7.0.8-11 Q16 has a heap-based buffer over-read in the coders/psd.c ParseImageResourceBlocks function.
- CVE-2018-164131 PoCImageMagick 7.0.8-11 Q16 has a heap-based buffer over-read in the MagickCore/quantum-private.h PushShortPixel function when called from…
- CVE-2018-164161 PoCCross-site request forgery (CSRF) vulnerability in my_profile/edit?inline= in FUEL CMS 1.4 allows remote attackers to change the…
- CVE-2018-164311 PoCadmin/admin/adminsave.html in YFCMF v3.0 allows CSRF to add an administrator account.
- CVE-2018-164381 PoCAn issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in H5L_extern_query at H5Lexternal.c.
- CVE-2018-164471 PoCFrog CMS 0.9.5 has admin/?/user/edit/1 CSRF.
- CVE-2018-164491 PoCOneThink 1.1.141212 allows CSRF for adding a page via admin.php?s=/Channel/add.html, adding a blog via admin.php?s=/Article/update.html,…
- CVE-2018-164591 PoCAn unescaped payload in exceljs <v1.6 allows a possible XSS via cell value when worksheet is displayed in browser.
- CVE-2018-164602 PoCsA command Injection in ps package versions <1.0.0 for Node.js allowed arbitrary commands to be executed when attacker controls the PID.
- CVE-2018-164612 PoCsA command injection vulnerability in libnmapp package for versions <0.4.16 allows arbitrary commands to be executed via arguments to the…
- CVE-2018-164622 PoCsA command injection vulnerability in the apex-publish-static-files npm module version <2.0.1 which allows arbitrary shell command…
- CVE-2018-164671 PoCA missing check in Nextcloud Server prior to 14.0.0 could give unauthorized access to the previews of single file password protected shares.
- CVE-2018-164691 PoCThe merge.recursive function in the merge package <1.2.1 can be tricked into adding or modifying properties of the Object prototype. These…
- CVE-2018-164721 PoCA prototype pollution attack in cached-path-relative versions <=1.0.1 allows an attacker to inject properties on Object.prototype which…
- CVE-2018-164731 PoCA path traversal in takeapeek module versions <=0.2.2 allows an attacker to list directory and files.
- CVE-2018-164741 PoCA stored xss in tianma-static module versions <=1.0.4 allows an attacker to execute arbitrary javascript.
- CVE-2018-164751 PoCA Path Traversal in Knightjs versions <= 0.0.1 allows an attacker to read content of arbitrary files on a remote server.
- CVE-2018-164781 PoCA Path Traversal in simplehttpserver versions <=0.2.1 allows to list any file in another folder of web root.
- CVE-2018-164792 PoCsPath traversal vulnerability in http-live-simulator <1.0.7 causes unauthorized access to arbitrary files on disk by appending extra…
- CVE-2018-164802 PoCsA XSS vulnerability was found in module public <0.1.4 that allows malicious Javascript code to run in the browser, due to the absence of…
- CVE-2018-164811 PoCA XSS vulnerability was found in html-page <=2.1.1 that allows malicious Javascript code to be executed in the user's browser due to the…
- CVE-2018-164831 PoCA deficiency in the access control in module express-cart <=1.1.5 allows unprivileged users to add new users to the application as…
- CVE-2018-164842 PoCsA XSS vulnerability was found in module m-server <1.4.2 that allows malicious Javascript code or HTML to be executed, due to the lack of…
- CVE-2018-164852 PoCsPath Traversal vulnerability in module m-server <1.4.1 allows malicious user to access unauthorized content of any file in the directory…
- CVE-2018-164861 PoCA prototype pollution vulnerability was found in defaults-deep <=0.2.4 that would allow a malicious user to inject properties onto…
- CVE-2018-164875 PoCsA prototype pollution vulnerability was found in lodash <4.17.11 where the functions merge, mergeWith, and defaultsDeep can be tricked…
- CVE-2018-164892 PoCsA prototype pollution vulnerability was found in just-extend <4.0.0 that allows attack to inject properties onto Object.prototype through…
- CVE-2018-164902 PoCsA prototype pollution vulnerability was found in module mpath <0.5.1 that allows an attacker to inject arbitrary properties onto…
- CVE-2018-164912 PoCsA prototype pollution vulnerability was found in node.extend <1.1.7, ~<2.0.1 that allows an attacker to inject arbitrary properties onto…
- CVE-2018-164923 PoCsA prototype pollution vulnerability was found in module extend <2.0.2, ~<3.0.2 that allows an attacker to inject arbitrary properties onto…
- CVE-2018-164931 PoCA path traversal vulnerability was found in module static-resource-server 1.7.2 that allows unauthorized read access to any file on the…
- CVE-2018-1650910 PoCsAn issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of…
- CVE-2018-165175 PoCsasm/labels.c in Netwide Assembler (NASM) is prone to NULL Pointer Dereference, which allows the attacker to cause a denial of service via…
- CVE-2018-165193 PoCsCOYO 9.0.8, 10.0.11 and 12.0.4 has cross-site scripting (XSS) via URLs used by "iFrame" widgets.
- CVE-2018-165291 PoCA password reset vulnerability has been discovered in Forcepoint Email Security 8.5.x. The password reset URL can be used after the…
- CVE-2018-165481 PoCAn issue was discovered in ZZIPlib through 0.13.69. There is a memory leak triggered in the function __zzip_parse_root_directory in zip.c,…
- CVE-2018-165491 PoCHScripts PHP File Browser Script v1.0 allows Directory Traversal via the index.php path parameter.
- CVE-2018-165521 PoCMicroPyramid Django-CRM 0.2 allows CSRF for /users/create/, /users/##/edit/, and /accounts/##/delete/ URIs.
- CVE-2018-165541 PoCThe ProcessGpsInfo function of the gpsinfo.c file of jhead 3.00 may allow a remote attacker to cause a denial-of-service attack or…
- CVE-2018-165901 PoCFURUNO FELCOM 250 and 500 devices use only client-side JavaScript in login.js for authentication.
- CVE-2018-165911 PoCFURUNO FELCOM 250 and 500 devices allow unauthenticated users to change the password for the Admin, Log and Service accounts, as well as…
- CVE-2018-166051 PoCD-Link DIR-600M devices allow XSS via the Hostname and Username fields in the Dynamic DNS Configuration page.
- CVE-2018-166062 PoCsIn ProConf before 6.1, an Insecure Direct Object Reference (IDOR) allows any author to view and grab all submitted papers (Title and…
- CVE-2018-166071 PoCCross-site scripting (XSS) vulnerability in the Orgs Page in Open-AudIT Professional edition in 2.2.7 allows remote attackers to inject…
- CVE-2018-166211 PoCSonatype Nexus Repository Manager before 3.14 allows Java Expression Language Injection.
- CVE-2018-166221 PoCMultiple cross-site scripting (XSS) vulnerabilities in /api/content/addOne in DoraCMS v2.0.3 allow remote attackers to inject arbitrary…
- CVE-2018-166291 PoCpanel/uploads/#elf_l1_XA in Subrion CMS v4.2.1 allows XSS via an SVG file with JavaScript in a SCRIPT element.
- CVE-2018-166361 PoCNucleus CMS 3.70 allows HTML Injection via the index.php body parameter.
- CVE-2018-166462 PoCsIn Poppler 0.68.0, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacker can…
- CVE-2018-166471 PoCIn Artifex MuPDF 1.13.0, the pdf_get_xref_entry function in pdf/pdf-xref.c allows remote attackers to cause a denial of service…
- CVE-2018-166481 PoCIn Artifex MuPDF 1.13.0, the fz_append_byte function in fitz/buffer.c allows remote attackers to cause a denial of service (segmentation…
- CVE-2018-166531 PoCrejucms 2.1 has XSS via the ucenter/cms_user_add.php u_name parameter.
- CVE-2018-166591 PoCAn issue was discovered in Rausoft ID.prove 2.95. The login page allows SQL injection via Microsoft SQL Server stacked queries in the…
- CVE-2018-166602 PoCsA command injection vulnerability in PWS in Imperva SecureSphere 13.0.0.10 and 13.1.0.10 Gateway allows an attacker with authenticated…
- CVE-2018-166684 PoCsAn issue was discovered in CIRCONTROL CirCarLife before 4.3. There is internal installation path disclosure due to the lack of…
- CVE-2018-166691 PoCAn issue was discovered in CIRCONTROL Open Charge Point Protocol (OCPP) before 1.5.0, as used in CirCarLife, PowerStudio, and other…
- CVE-2018-166703 PoCsAn issue was discovered in CIRCONTROL CirCarLife before 4.3. There is PLC status disclosure due to lack of authentication for…
- CVE-2018-166714 PoCsAn issue was discovered in CIRCONTROL CirCarLife before 4.3. There is system software information disclosure due to lack of authentication…
- CVE-2018-166722 PoCsAn issue was discovered in CIRCONTROL CirCarLife before 4.3. Due to the storage of multiple sensitive information elements in a JSON…
- CVE-2018-167051 PoCFURUNO FELCOM 250 and 500 devices allow unauthenticated access to the xml/permission.xml file containing all of the system's usernames and…
- CVE-2018-167061 PoCLG SuperSign CMS allows TVs to be rebooted remotely without authentication via a direct HTTP request to /qsr_server/device/reboot on port…
- CVE-2018-167091 PoCFuji Xerox DocuCentre-V 3065, ApeosPort-VI C3371, ApeosPort-V C4475, ApeosPort-V C3375, DocuCentre-VI C2271, ApeosPort-V C5576,…
- CVE-2018-167111 PoCIObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a…
- CVE-2018-167121 PoCIObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a…
- CVE-2018-167131 PoCIObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a…
- CVE-2018-167161 PoCA path traversal vulnerability exists in viewcgi.c in the 2.0.7 through 2.2.26 legacy versions of the NCBI ToolBox, which may result in…
- CVE-2018-167191 PoCIn Jingyun Antivirus v2.4.2.39, the driver file (hookbody.sys) allows local users to cause a denial of service (BSOD) or possibly have…
- CVE-2018-167201 PoCIn Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have…
- CVE-2018-167211 PoCIn Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have…
- CVE-2018-167221 PoCIn Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have…
- CVE-2018-167231 PoCIn Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have…
- CVE-2018-167241 PoCAn issue is discovered in baijiacms V4. Blind SQL Injection exists via the order parameter in an index.php?act=index request.
- CVE-2018-167251 PoCAn issue is discovered in baijiacms V4. XSS exists via the assets/weengine/components/zclip/ZeroClipboard.swf id parameter, aka…
- CVE-2018-167361 PoCIn the rcfilters plugin 2.1.6 for Roundcube, XSS exists via the _whatfilter and _messages parameters (in the Filters section of the…
- CVE-2018-167391 PoCAn issue was discovered on certain ABUS TVIP devices. Due to a path traversal in /opt/cgi/admin/filewrite, an attacker can write to files,…
- CVE-2018-167522 PoCsLINK-NET LW-N605R devices with firmware 12.20.2.1486 allow Remote Code Execution via shell metacharacters in the HOST field of the ping…
- CVE-2018-167591 PoCThe removeXSS function in App/Common/common.php (called from App/Modules/Index/Action/SearchAction.class.php) in EasyCMS v1.4 allows XSS…
- CVE-2018-167611 PoCEventum before 3.4.0 has an open redirect vulnerability.
- CVE-2018-1676354 PoCsFUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This can lead to Pre-Auth…
- CVE-2018-167781 PoCCross-site scripting (XSS) vulnerability in Jenzabar v8.2.1 through 9.2.0 allows remote attackers to inject arbitrary web script or HTML…
- CVE-2018-167891 PoClibhttp/url.c in shellinabox through 2.20 has an implementation flaw in the HTTP request parsing logic. By sending a crafted…
- CVE-2018-167933 PoCsRollup 18 for Microsoft Exchange Server 2010 SP3 and previous versions has an SSRF vulnerability via the username parameter in…
- CVE-2018-167943 PoCsMicrosoft ADFS 4.0 Windows Server 2016 and previous (Active Directory Federation Services) has an SSRF vulnerability via the txtBoxEmail…
- CVE-2018-167951 PoCOpenEMR 5.0.1.3 allows Cross-Site Request Forgery (CSRF) via library/ajax and interface/super, as demonstrated by use of…
- CVE-2018-167962 PoCsHiScout GRC Suite before 3.1.5 allows Unrestricted Upload of Files with Dangerous Types.
- CVE-2018-168021 PoCAn issue was discovered in Artifex Ghostscript before 9.25. Incorrect "restoration of privilege" checking when running out of stack during…
- CVE-2018-168061 PoCA Pektron Passive Keyless Entry and Start (PKES) system, as used on the Tesla Model S and possibly other vehicles, relies on the DST40…
- CVE-2018-168191 PoCadmin/index.php in Monstra CMS 3.0.4 allows arbitrary file deletion via id=filesmanager&path=uploads/.......//./.......//./&delete_file=…
- CVE-2018-168311 PoCSmarty before 3.1.33-dev-4 allows attackers to bypass the trusted_dir protection mechanism via a file:./../ substring in an include…
- CVE-2018-168321 PoCCSRF in the anti-csrf decorator in xunfeng 0.2.0 allows an attacker to modify the configuration via a Flash file because…
- CVE-2018-168362 PoCsRubedo through 3.4.0 contains a Directory Traversal vulnerability in the theme component, allowing unauthenticated attackers to read and…
- CVE-2018-168588 PoCsIt was found that libreoffice before versions 6.0.7 and 6.1.3 was vulnerable to a directory traversal attack which could be used to…
- CVE-2018-168641 PoCAn allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in…
- CVE-2018-168655 PoCsAn allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in…
- CVE-2018-168665 PoCsAn out of bounds read was discovered in systemd-journald in the way it parses log messages that terminate with a colon ':'. A local…
- CVE-2018-168751 PoCThe crypto/x509 package of Go before 1.10.6 and 1.11.x before 1.11.3 does not limit the amount of work performed for each chain…
- CVE-2018-168901 PoClibcurl versions from 7.36.0 to before 7.64.0 is vulnerable to a heap buffer out-of-bounds read. The function handling incoming NTLM…
- CVE-2018-169462 PoCsLG LNB*, LND*, LNU*, and LNV* smart network camera devices have broken access control. Attackers are able to download /updownload/t.report…
- CVE-2018-169741 PoCAn issue was discovered in Elefant CMS before 2.0.7. There is a PHP Code Execution Vulnerability in apps/filemanager/upload/drop.php by…
- CVE-2018-169751 PoCAn issue was discovered in Elefant CMS before 2.0.7. There is a PHP Code Execution Vulnerability in /designer/add/stylesheet.php by using…
- CVE-2018-169791 PoCMonstra CMS V3.0.4 allows HTTP header injection in the plugins/captcha/crypt/cryptographp.php cfg parameter, a related issue to…
- CVE-2018-169831 PoCNoScript Classic before 5.1.8.7, as used in Tor Browser 7.x and other products, allows attackers to bypass script blocking via the…
- CVE-2018-169851 PoCIn Lizard (formerly LZ5) 2.0, use of an invalid memory address was discovered in LZ5_compress_continue in lz5_compress.c, related to…
- CVE-2018-169871 PoCSquash TM through 1.18.0 presents the cleartext passwords of external services in the administration panel, as demonstrated by a…
- CVE-2018-169991 PoCNetwide Assembler (NASM) 2.14rc15 has an invalid memory write (segmentation fault) in expand_smacro in preproc.c, which allows attackers…