CVE-2018-19000 to CVE-2018-19999
273 CVEs with public proof-of-concept exploits.
- CVE-2018-190371 PoCOn Virgin Media wireless router 3.0 hub devices, the web interface is vulnerable to denial of service. When POST requests are sent and…
- CVE-2018-190401 PoCThe Media File Manager plugin 1.4.2 for WordPress allows directory listing via a ../ directory traversal in the dir parameter of an…
- CVE-2018-190411 PoCThe Media File Manager plugin 1.4.2 for WordPress allows XSS via the dir parameter of an mrelocator_getdir action to the…
- CVE-2018-190421 PoCThe Media File Manager plugin 1.4.2 for WordPress allows arbitrary file movement via a ../ directory traversal in the dir_from and dir_to…
- CVE-2018-190431 PoCThe Media File Manager plugin 1.4.2 for WordPress allows arbitrary file renaming (specifying a "from" and "to" filename) via a ../…
- CVE-2018-190471 PoCmPDF through 7.1.6, if deployed as a web application that accepts arbitrary HTML, allows SSRF, as demonstrated by a '<img…
- CVE-2018-190481 PoCSimditor through 2.3.21 allows DOM XSS via an onload attribute within a malformed SVG element.
- CVE-2018-190521 PoCAn issue was discovered in mod_alias_physical_handler in mod_alias.c in lighttpd before 1.4.50. There is potential ../ path traversal of a…
- CVE-2018-190581 PoCAn issue was discovered in Poppler 0.71.0. There is a reachable abort in Object.h, will lead to denial of service because EmbFile::save2…
- CVE-2018-190591 PoCAn issue was discovered in Poppler 0.71.0. There is a out-of-bounds read in EmbFile::save2 in FileSpec.cc, will lead to denial of service,…
- CVE-2018-190631 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190641 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190651 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190661 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190671 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190681 PoCAn issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The…
- CVE-2018-190691 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190701 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190711 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190721 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190731 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190741 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190751 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190761 PoCAn issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with…
- CVE-2018-190771 PoCAn issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. RtspServer allows…
- CVE-2018-190781 PoCAn issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The response to an…
- CVE-2018-190791 PoCAn issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF…
- CVE-2018-190801 PoCAn issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF…
- CVE-2018-190811 PoCAn issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF…
- CVE-2018-190821 PoCAn issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF…
- CVE-2018-190921 PoCAn issue was discovered in YzmCMS v5.2. It has XSS via a search/index/archives/pubtime/ query string, as demonstrated by the…
- CVE-2018-191051 PoCLibreCAD 2.1.3 allows remote attackers to cause a denial of service (0x89C04589 write access violation and application crash) or possibly…
- CVE-2018-191131 PoCThe Pronestor PNHM (aka Health Monitoring or HealthMonitor) add-in before 8.1.13.0 for Outlook has "BUILTIN\Users:(I)(F)" permissions for…
- CVE-2018-191251 PoCPrestaShop 1.6.x before 1.6.1.23 and 1.7.x before 1.7.4.4 allows remote attackers to delete an image directory.
- CVE-2018-191262 PoCsPrestaShop 1.6.x before 1.6.1.23 and 1.7.x before 1.7.4.4 allows remote attackers to execute arbitrary code via a file upload.
- CVE-2018-191274 PoCsA code injection vulnerability in /type.php in PHPCMS 2008 allows attackers to write arbitrary content to a website cache file with a…
- CVE-2018-191301 PoCIn Libav 12.3, there is an invalid memory access in vc1_decode_frame in libavcodec/vc1dec.c that allows attackers to cause a…
- CVE-2018-191311 PoCSquid before 4.4 has XSS via a crafted X.509 certificate during HTTP(S) error page generation for certificate errors.
- CVE-2018-191352 PoCsClipperCMS 1.3.3 does not have CSRF protection on its kcfinder file upload (enabled by default). This can be used by an attacker to…
- CVE-2018-191362 PoCsDomainMOD through 4.11.01 has XSS via the assets/edit/registrar-account.php raid parameter.
- CVE-2018-191371 PoCDomainMOD through 4.11.01 has XSS via the assets/edit/ip-address.php ipid parameter.
- CVE-2018-191381 PoCWSTMart 2.0.7 has CSRF via the index.php/admin/staffs/add.html URI.
- CVE-2018-191391 PoCAn issue has been found in JasPer 2.0.14. There is a memory leak in jas_malloc.c when called from jpc_unk_getparms in jpc_cs.c.
- CVE-2018-191451 PoCAn issue was discovered in S-CMS v1.5. There is an XSS vulnerability in search.php via the keyword parameter.
- CVE-2018-191501 PoCMemory corruption in PDMODELProvidePDModelHFT in pdmodel.dll in pdfforge PDF Architect 6 allows remote attackers to cause a denial of…
- CVE-2018-191781 PoCIn JEESNS 1.3, com/lxinet/jeesns/core/utils/XssHttpServletRequestWrapper.java allows stored XSS via an HTML EMBED element, a different…
- CVE-2018-191801 PoCstatics/app/index/controller/Install.php in YUNUCMS 1.1.5 (if install.lock is not present) allows remote attackers to execute arbitrary…
- CVE-2018-191811 PoCstatics/ueditor/php/vendor/Local.class.php in YUNUCMS 1.1.5 allows arbitrary file deletion via the…
- CVE-2018-191861 PoCThe Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via the route.php paymentMethod parameter.
- CVE-2018-191871 PoCThe Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via an arbitrary parameter name or value that is…
- CVE-2018-191881 PoCThe Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via the success.php fort_id parameter.
- CVE-2018-191891 PoCThe Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via an arbitrary parameter name or value that is…
- CVE-2018-191901 PoCThe Amazon PAYFORT payfort-php-SDK payment gateway SDK through 2018-04-26 has XSS via the error.php error_msg parameter.
- CVE-2018-191911 PoCWebmin 1.890 has XSS via /config.cgi?webmin, the /shell/index.cgi history parameter, /shell/index.cgi?stripped=1, or the…
- CVE-2018-191921 PoCAn issue was discovered in XiaoCms 20141229. admin/index.php?c=content&a=add&catid=3 has CSRF, as demonstrated by entering news via the…
- CVE-2018-191961 PoCAn issue was discovered in XiaoCms 20141229. It allows remote attackers to execute arbitrary code by using the type parameter to bypass…
- CVE-2018-192078 PoCsThe Van Ons WP GDPR Compliance (aka wp-gdpr-compliance) plugin before 1.4.3 for WordPress allows remote attackers to execute arbitrary…
- CVE-2018-192081 PoCIn libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTable in WP6ContentListener.cpp that will…
- CVE-2018-192101 PoCIn LibTIFF 4.0.9, there is a NULL pointer dereference in the TIFFWriteDirectorySec function in tif_dirwrite.c that will lead to a denial…
- CVE-2018-192111 PoCIn ncurses 6.1, there is a NULL pointer dereference at function _nc_parse_entry in parse_entry.c that will lead to a denial of service…
- CVE-2018-192131 PoCNetwide Assembler (NASM) through 2.14rc16 has memory leaks that may lead to DoS, related to nasm_malloc in nasmlib/malloc.c.
- CVE-2018-192141 PoCNetwide Assembler (NASM) 2.14rc15 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for insufficient input.
- CVE-2018-192151 PoCNetwide Assembler (NASM) 2.14rc16 has a heap-based buffer over-read in expand_mmac_params in asm/preproc.c for the special cases of the %…
- CVE-2018-192171 PoCIn ncurses, possibly a 6.x version, there is a NULL pointer dereference at the function _nc_name_match that will lead to a denial of…
- CVE-2018-192201 PoCAn issue was discovered in LAOBANCMS 2.0. It allows remote attackers to execute arbitrary PHP code via the host parameter to the install/…
- CVE-2018-192211 PoCAn issue was discovered in LAOBANCMS 2.0. It allows SQL Injection via the admin/login.php guanliyuan parameter.
- CVE-2018-192221 PoCAn issue was discovered in LAOBANCMS 2.0. It allows a /install/mysql_hy.php?riqi=0&i=0 attack to reset the admin password, even if…
- CVE-2018-192231 PoCAn issue was discovered in LAOBANCMS 2.0. It allows XSS via the first input field to the admin/type.php?id=1 URI.
- CVE-2018-192241 PoCAn issue was discovered in LAOBANCMS 2.0. /admin/login.php allows spoofing of the id and guanliyuan cookies.
- CVE-2018-192251 PoCAn issue was discovered in LAOBANCMS 2.0. admin/mima.php has CSRF.
- CVE-2018-192261 PoCAn issue was discovered in LAOBANCMS 2.0. It allows remote attackers to list .txt files via a direct request for the /data/0/admin.txt URI.
- CVE-2018-192271 PoCAn issue was discovered in LAOBANCMS 2.0. It allows XSS via the admin/liuyan.php neirong[] parameter.
- CVE-2018-192281 PoCAn issue was discovered in LAOBANCMS 2.0. It allows arbitrary file deletion via ../ directory traversal in the admin/pic.php del…
- CVE-2018-192291 PoCAn issue was discovered in LAOBANCMS 2.0. It allows XSS via the admin/art.php?typeid=1 biaoti parameter.
- CVE-2018-192321 PoCThe web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows…
- CVE-2018-192441 PoCAn XML External Entity (XXE) vulnerability exists in the Charles 4.2.7 import/export setup option. If a user imports a "Charles…
- CVE-2018-192463 PoCsPHP-Proxy 5.1.0 allows remote attackers to read local files if the default "pre-installed version" (intended for users who lack shell…
- CVE-2018-192481 PoCThe web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows…
- CVE-2018-192766 PoCsOpenMRS before 2.24.0 is affected by an Insecure Object Deserialization vulnerability that allows an unauthenticated user to execute…
- CVE-2018-192771 PoCsecurityScan() in PHPOffice PhpSpreadsheet through 1.5.0 allows a bypass of protection mechanisms for XXE via UTF-7 encoding in a .xlsx file
- CVE-2018-192781 PoCBuffer overflow in DNS SRV and NAPTR lookups in Digium Asterisk 15.x before 15.6.2 and 16.x before 16.0.1 allows remote attackers to crash…
- CVE-2018-192872 PoCsXSS in the Ninja Forms plugin before 3.3.18 for WordPress allows Remote Attackers to execute JavaScript via the…
- CVE-2018-192891 PoCAn issue was discovered in Valine v1.3.3. It allows HTML injection, which can be exploited for JavaScript execution via an EMBED element…
- CVE-2018-192902 PoCsIn modules/HELPBOT_MODULE in Budabot 0.6 through 4.0, lax syntax validation allows remote attackers to perform a command injection attack…
- CVE-2018-192911 PoCAn issue was discovered in DiliCMS 2.4.0. There is a CSRF vulnerability that can delete a user or group via an admin/index.php/user/del/1…
- CVE-2018-193001 PoCOn D-Link DAP-1530 (A1) before firmware version 1.06b01, DAP-1610 (A1) before firmware version 1.06b01, DWR-111 (A1) before firmware…
- CVE-2018-193204 PoCsKEVThe GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before…
- CVE-2018-193212 PoCsKEVThe GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING…
- CVE-2018-193221 PoCKEVThe GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING…
- CVE-2018-193234 PoCsKEVThe GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before…
- CVE-2018-193261 PoCZyxel VMG1312-B10D devices before 5.13(AAXA.8)C0 allow ../ Directory Traversal, as demonstrated by reading /etc/passwd.
- CVE-2018-193281 PoCLAOBANCMS 2.0 allows install/mysql_hy.php?riqi=../ Directory Traversal.
- CVE-2018-193311 PoCAn issue was discovered in S-CMS v1.5. There is a SQL injection vulnerability in search.php via the keyword parameter.
- CVE-2018-193321 PoCAn issue was discovered in S-CMS v1.5. There is a CSRF vulnerability that can add a new user via the admin/ajax.php?type=member&action=add…
- CVE-2018-193331 PoCpkg/sentry/kernel/shm/shm.go in Google gVisor before 2018-11-01 allows attackers to overwrite memory locations in processes running as…
- CVE-2018-193341 PoCGoogle Monorail before 2018-05-04 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and…
- CVE-2018-193351 PoCGoogle Monorail before 2018-06-07 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and…
- CVE-2018-193532 PoCsThe ansilove_ansi function in loaders/ansi.c in libansilove 1.0.0 allows remote attackers to cause a denial of service (out-of-bounds read…
- CVE-2018-193571 PoCXMPlay 3.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted…
- CVE-2018-193583 PoCsGNOME Keyring through 3.28.2 allows local users to retrieve login credentials via a Secret Service API call and the D-Bus interface if the…
- CVE-2018-193591 PoCGitLab Community and Enterprise Edition 8.9 and later and before 11.5.0-rc12, 11.4.6, and 11.3.10 has Incorrect Access Control.
- CVE-2018-193651 PoCThe REST API in Wowza Streaming Engine 4.7.4.01 allows traversal of the directory structure and retrieval of a file via a remote,…
- CVE-2018-193672 PoCsPortainer through 1.19.2 provides an API endpoint (/api/users/admin/check) to verify that the admin user is already created. This API…
- CVE-2018-193701 PoCA Race condition vulnerability in unzip_file in admin/import/class-import-settings.php in the Yoast SEO (wordpress-seo) plugin before…
- CVE-2018-193712 PoCsThe SaveUserSettings service in Content Manager in SDL Web 8.5.0 has an XXE Vulnerability that allows reading sensitive files from the…
- CVE-2018-193741 PoCZoho ManageEngine ADManager Plus 6.6 Build 6657 allows local users to gain privileges (after a reboot) by placing a Trojan horse file into…
- CVE-2018-193761 PoCAn issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that allows attackers to delete a log file via the…
- CVE-2018-193862 PoCsSolarWinds Database Performance Analyzer 11.1.457 contains an instance of Reflected XSS in its idcStateError component, where the page…
- CVE-2018-194041 PoCIn YXcms 1.4.7, protected/apps/appmanage/controller/indexController.php allow remote authenticated Administrators to execute any PHP code…
- CVE-2018-194102 PoCsKEVPRTG Network Monitor before 18.2.40.1683 allows remote unauthenticated attackers to create users with read-write privileges (including…
- CVE-2018-194141 PoCMultiple cross-site scripting (XSS) vulnerabilities in Plikli CMS 4.0.0 allow remote attackers to inject arbitrary web script or HTML via…
- CVE-2018-194161 PoCAn issue was discovered in sysstat 12.1.1. The remap_struct function in sa_common.c has an out-of-bounds read during a memmove call, as…
- CVE-2018-194226 PoCs/panel/uploads in Subrion CMS 4.2.1 allows remote attackers to execute arbitrary PHP code via a .pht or .phar file, because the .htaccess…
- CVE-2018-194233 PoCsCodiad 2.8.4 allows remote authenticated administrators to execute arbitrary code by uploading an executable file.
- CVE-2018-194321 PoCAn issue was discovered in libsndfile 1.0.28. There is a NULL pointer dereference in the function sf_write_int in sndfile.c, which will…
- CVE-2018-194393 PoCsXSS exists in the Administration Console in Oracle Secure Global Desktop 4.4 20080807152602 (but was fixed in later versions including…
- CVE-2018-194421 PoCA Buffer Overflow in Network::AuthenticationClient::VerifySignature in /bin/astro in Neato Botvac Connected 2.2.0 allows a remote attacker…
- CVE-2018-194571 PoCLogicspice FAQ Script 2.9.7 allows uploading arbitrary files, which leads to remote command execution via admin/faqs/faqimages with a .php…
- CVE-2018-194583 PoCsIn PHP Proxy 3.0.3, any user can read files from the server without authentication due to an index.php?q=file:/// LFI URI, a different…
- CVE-2018-194591 PoCAdult Filter 1.0 has a Buffer Overflow via a crafted Black Domain List file.
- CVE-2018-194611 PoCadmin\db\DoSql.php in EmpireCMS through 7.5 allows XSS via crafted SQL syntax to admin/admin.php.
- CVE-2018-194621 PoCadmin\db\DoSql.php in EmpireCMS through 7.5 allows remote attackers to execute arbitrary PHP code via SQL injection that uses a .php…
- CVE-2018-194661 PoCA vulnerability was found in Portainer before 1.20.0. Portainer stores LDAP credentials, corresponding to a master password, in cleartext…
- CVE-2018-194691 PoCArticleCMS through 2017-02-19 has XSS via the /update_personal_infomation realname or email parameter.
- CVE-2018-194751 PoCpsi/zdevice2.c in Artifex Ghostscript before 9.26 allows remote attackers to bypass intended access restrictions because available stack…
- CVE-2018-194873 PoCsThe WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_employer_ajax_profile() function…
- CVE-2018-194883 PoCsThe WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_reset_pass() function through the…
- CVE-2018-194982 PoCsThe Simplenia Pages plugin 2.6.0 for Atlassian Bitbucket Server has XSS.
- CVE-2018-195022 PoCsAn issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.1. There was a heap-based buffer overflow in the function…
- CVE-2018-195032 PoCsAn issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.1. There was a stack-based buffer overflow in the function…
- CVE-2018-195042 PoCsAn issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.1. There is a NULL pointer dereference in ifilter_bank() in…
- CVE-2018-195091 PoCwg7.php in Webgalamb 7.0 makes opportunistic calls to htmlspecialchars() instead of using a templating engine with proper contextual…
- CVE-2018-195101 PoCsubscriber.php in Webgalamb through 7.0 is vulnerable to SQL injection via the Client-IP HTTP request header.
- CVE-2018-195111 PoCwg7.php in Webgalamb 7.0 lacks security measures to prevent CSRF attacks, as demonstrated by wg7.php?options=1 to change the administrator…
- CVE-2018-195121 PoCIn Webgalamb through 7.0, a system/ajax.php "wgmfile restore" directory traversal vulnerability could lead to arbitrary code execution by…
- CVE-2018-195131 PoCIn Webgalamb through 7.0, log files are exposed to the internet with predictable files/logs/sql_error_log/YYYY-MM-DD-sql_error_log.log…
- CVE-2018-195141 PoCIn Webgalamb through 7.0, an arbitrary code execution vulnerability could be exploited remotely without authentication. Exploitation…
- CVE-2018-195151 PoCIn Webgalamb through 7.0, system/ajax.php functionality is supposed to be available only to the administrator. However, by using one of…
- CVE-2018-195171 PoCAn issue was discovered in sysstat 12.1.1. The remap_struct function in sa_common.c has an out-of-bounds read during a memset call, as…
- CVE-2018-1951810 PoCsUniversity of Washington IMAP Toolkit 2007f on UNIX, as used in imap_open() in PHP and other products, launches an rsh command (by means…
- CVE-2018-195244 PoCsAn issue was discovered on Shenzhen Skyworth DT741 Converged Intelligent Terminal (G/EPON+IPTV) SDOTBGN1, DT721-cb SDOTBGN1, and DT741-cb…
- CVE-2018-195253 PoCsAn issue was discovered on Systrome ISG-600C, ISG-600H, and ISG-800W 1.1-R2.1_TRUNK-20180914.bin devices. There is CSRF via…
- CVE-2018-195301 PoCHTTL (aka Hyper-Text Template Language) through 1.0.11 allows remote command execution because the decodeXml function uses XStream…
- CVE-2018-195311 PoCHTTL (aka Hyper-Text Template Language) through 1.0.11 allows remote command execution because the decodeXml function uses…
- CVE-2018-195322 PoCsA NULL pointer dereference vulnerability exists in the function PdfTranslator::setTarget() in pdftranslator.cpp of PoDoFo 0.9.6, while…
- CVE-2018-195351 PoCIn Exiv2 0.26 and previous versions, PngChunk::readRawProfile in pngchunk_int.cpp may cause a denial of service (application crash due to…
- CVE-2018-195371 PoCTP-Link Archer C5 devices through V2_160201_US allow remote command execution via shell metacharacters on the wan_dyn_hostname line of a…
- CVE-2018-195501 PoCInterspire Email Marketer through 6.1.6 allows arbitrary file upload via a surveys_submit.php "create survey and submit survey" operation,…
- CVE-2018-195641 PoCStored XSS was discovered in the Easy Testimonials plugin 3.2 for WordPress. Three wp-admin/post.php parameters (_ikcf_client and…
- CVE-2018-195716 PoCsGitLab CE/EE, versions 8.18 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an SSRF vulnerability…
- CVE-2018-195841 PoCGitLab EE, versions 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, is vulnerable to an insecure direct object reference…
- CVE-2018-195855 PoCsGitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x before 11.5.1 have CRLF Injection in Project…
- CVE-2018-195881 PoCAlarm.com ADC-V522IR 0100b9 devices have Incorrect Access Control.
- CVE-2018-195911 PoCIn the GNU C Library (aka glibc or libc6) through 2.28, attempting to resolve a crafted hostname via getaddrinfo() leads to the allocation…
- CVE-2018-195921 PoCThe "CLink4Service" service is installed with Corsair Link 4.9.7.35 with insecure permissions by default. This allows unprivileged users…
- CVE-2018-196001 PoCRhymix CMS 1.9.8.1 allows XSS via an index.php?module=admin&act=dispModuleAdminFileBox SVG upload.
- CVE-2018-196071 PoCExiv2::isoSpeed in easyaccess.cpp in Exiv2 v0.27-RC2 allows remote attackers to cause a denial of service (NULL pointer dereference and…
- CVE-2018-196091 PoCShowDoc 2.4.1 allows remote attackers to obtain sensitive information by navigating with a modified page_id, as demonstrated by reading…
- CVE-2018-196152 PoCsRockwell Automation Allen-Bradley PowerMonitor 1000 all versions. A remote attacker could inject arbitrary code into a targeted userâs…
- CVE-2018-196161 PoCAn issue was discovered in Rockwell Automation Allen-Bradley PowerMonitor 1000. An unauthenticated user can add/edit/remove administrators…
- CVE-2018-196201 PoCShowDoc 2.4.1 allows remote attackers to edit other users' notes by navigating with a modified page_id.
- CVE-2018-196211 PoCserver/index.php?s=/api/teamMember/save in ShowDoc 2.4.2 has a CSRF that can add members to a team.
- CVE-2018-196241 PoCIn Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the PVFS dissector could crash. This was addressed in epan/dissectors/packet-pvfs2.c by…
- CVE-2018-196272 PoCsIn Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the IxVeriWave file parser could crash. This was addressed in wiretap/vwr.c by adjusting…
- CVE-2018-196281 PoCIn Wireshark 2.6.0 to 2.6.4, the ZigBee ZCL dissector could crash. This was addressed in epan/dissectors/packet-zbee-zcl-lighting.c by…
- CVE-2018-196292 PoCsA Denial of Service vulnerability in the ImageNow Server service in Hyland Perceptive Content Server before 7.1.5 allows an attacker to…
- CVE-2018-196461 PoCThe Python CGI scripts in PWS in Imperva SecureSphere 13.0.10, 13.1.10, and 13.2.10 allow remote attackers to execute arbitrary OS…
- CVE-2018-196492 PoCsXSS exists in InfoVista VistaPortal SE Version 5.1 (build 51029). VPortal/mgtconsole/RolePermissions.jsp has reflected XSS via the…
- CVE-2018-196501 PoCLocal attackers can trigger a stack-based buffer overflow on vulnerable installations of Antiy-AVL ATool security management v1.0.0.22. An…
- CVE-2018-196552 PoCsA stack-based buffer overflow in the find_green() function of dcraw through 9.28, as used in ufraw-batch and many other products, may…
- CVE-2018-196592 PoCsAn exploitable authenticated command-injection vulnerability exists in the web server functionality of Moxa NPort W2x50A products with…
- CVE-2018-196602 PoCsAn exploitable authenticated command-injection vulnerability exists in the web server functionality of Moxa NPort W2x50A products with…
- CVE-2018-196611 PoCAn issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2ulaw_array in ulaw.c that will lead to a…
- CVE-2018-196621 PoCAn issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2alaw_array in alaw.c that will lead to a…
- CVE-2018-196661 PoCThe agent in OSSEC through 3.1.0 on Windows allows local users to gain NT AUTHORITY\SYSTEM access via Directory Traversal by leveraging…
- CVE-2018-196931 PoCAn issue was discovered in tp5cms through 2017-05-25. admin.php/system/set.html has XSS via the title parameter.
- CVE-2018-196942 PoCsHMS Industrial Networks Netbiter WS100 3.30.5 devices and previous have reflected XSS in the login form.
- CVE-2018-197493 PoCsDomainMOD through 4.11.01 has XSS via the assets/add/account-owner.php Owner name field.
- CVE-2018-197502 PoCsDomainMOD through 4.11.01 has XSS via the admin/domain-fields/ notes field in an Add Custom Field action for Custom Domain Fields.
- CVE-2018-197513 PoCsDomainMOD through 4.11.01 has XSS via the admin/ssl-fields/add.php notes field for Custom SSL Fields.
- CVE-2018-197523 PoCsDomainMOD through 4.11.01 has XSS via the assets/add/registrar.php notes field for the Registrar.
- CVE-2018-197533 PoCsTarantella Enterprise before 3.11 allows Directory Traversal.
- CVE-2018-197542 PoCsTarantella Enterprise before 3.11 allows bypassing Access Control.
- CVE-2018-197551 PoCThere is an illegal address access at asm/preproc.c (function: is_mmacro) in Netwide Assembler (NASM) 2.14rc16 that will cause a denial of…
- CVE-2018-197561 PoCThere is a heap-based buffer over-read at stb_image.h (function: stbi__tga_load) in libsixel 1.8.2 that will cause a denial of service.
- CVE-2018-197571 PoCThere is a NULL pointer dereference at function sixel_helper_set_additional_message (status.c) in libsixel 1.8.2 that will cause a denial…
- CVE-2018-197581 PoCThere is a heap-based buffer over-read at wav.c in wav_write_header in libsndfile 1.0.28 that will cause a denial of service.
- CVE-2018-197591 PoCThere is a heap-based buffer over-read at stb_image_write.h (function: stbi_write_png_to_mem) in libsixel 1.8.2 that will cause a denial…
- CVE-2018-197611 PoCThere is an illegal address access at fromsixel.c (function: sixel_decode_raw_impl) in libsixel 1.8.2 that will cause a denial of service.
- CVE-2018-197621 PoCThere is a heap-based buffer overflow at fromsixel.c (function: image_buffer_resize) in libsixel 1.8.2 that will cause a denial of service…
- CVE-2018-197631 PoCThere is a heap-based buffer over-read at writer.c (function: write_png_to_file) in libsixel 1.8.2 that will cause a denial of service.
- CVE-2018-197652 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentPresentSpace.jsp" has reflected…
- CVE-2018-197662 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "GroupRessourceAdmin.jsp" has reflected XSS…
- CVE-2018-197672 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "PresentSpace.jsp" has reflected XSS via the…
- CVE-2018-197682 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "SubPagePackages.jsp" has reflected XSS via…
- CVE-2018-197692 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "UserProperties.jsp" has reflected XSS via the…
- CVE-2018-197702 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "Users.jsp" has reflected XSS via the…
- CVE-2018-197712 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentPool.jsp" has reflected XSS via…
- CVE-2018-197722 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentPresentSpace.jsp" has reflected…
- CVE-2018-197732 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentUser.jsp" has reflected XSS via…
- CVE-2018-197742 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "PresentSpace.jsp" has reflected XSS via the…
- CVE-2018-197752 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "Variables.jsp" has reflected XSS via the…
- CVE-2018-197771 PoCIn Artifex MuPDF 1.14.0, there is an infinite loop in the function svg_dev_end_tile in fitz/svg-device.c, as demonstrated by mutool.
- CVE-2018-197823 PoCsMultiple cross-site scripting (XSS) vulnerabilities in GET requests in FreshRSS 1.11.1 allow remote attackers to inject arbitrary web…
- CVE-2018-197832 PoCsKentix MultiSensor-LAN 5.63.00 devices and previous allow Authentication Bypass via an Alternate Path or Channel.
- CVE-2018-197884 PoCsA flaw was found in PolicyKit (aka polkit) 0.115 that allows a user with a uid greater than INT_MAX to successfully execute any systemctl…
- CVE-2018-197911 PoCThe server in LiteSpeed OpenLiteSpeed before 1.5.0 RC6 does not correctly handle requests for byte sequences, allowing an attacker to…
- CVE-2018-197921 PoCThe server in LiteSpeed OpenLiteSpeed before 1.5.0 RC6 allows local users to cause a denial of service (buffer overflow) or possibly have…
- CVE-2018-197941 PoCCross-site scripting (XSS) vulnerability in UiV2Public.index in Internet2 Grouper 2.2 and 2.3 allows remote attackers to inject arbitrary…
- CVE-2018-197981 PoCFleetco Fleet Maintenance Management (FMM) 1.2 and earlier allows uploading an arbitrary ".php" file with the application/x-php…
- CVE-2018-197993 PoCsDolibarr ERP/CRM through 8.0.3 has /exports/export.php?datatoexport= XSS.
- CVE-2018-198092 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/GroupCopy.jsp" has…
- CVE-2018-198102 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/GroupMove.jsp" has…
- CVE-2018-198112 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Import.jsp" has reflected…
- CVE-2018-198122 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SubFolderPackages.jsp"…
- CVE-2018-198132 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Subscribers.jsp" has…
- CVE-2018-198142 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Subscriptions.jsp" has…
- CVE-2018-198152 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/UserPopupAddNewProp.jsp"…
- CVE-2018-198162 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page…
- CVE-2018-198172 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page…
- CVE-2018-198182 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Contacts.jsp" has…
- CVE-2018-198192 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Rights.jsp" has reflected…
- CVE-2018-198202 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Roles.jsp" has reflected…
- CVE-2018-198212 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SecurityPolicies.jsp" has…
- CVE-2018-198222 PoCsCross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SharedCriteria.jsp" has…
- CVE-2018-198281 PoCArtica Integria IMS 5.0.83 has XSS via the search_string parameter.
- CVE-2018-198291 PoCArtica Integria IMS 5.0.83 has CSRF in godmode/usuarios/lista_usuarios, resulting in the ability to delete an arbitrary user when the ID…
- CVE-2018-198561 PoCGitLab CE/EE before 11.3.12, 11.4.x before 11.4.10, and 11.5.x before 11.5.3 allows Directory Traversal in Templates API.
- CVE-2018-198581 PoCPrinceXML, versions 10 and below, is vulnerable to XXE due to the lack of protection against external entities. If an attacker passes HTML…
- CVE-2018-198591 PoCOpenRefine before 3.2 beta allows directory traversal via a relative pathname in a ZIP archive.
- CVE-2018-198614 PoCsBuffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP HEAD request. NOTE: this…
- CVE-2018-198624 PoCsBuffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP POST request. NOTE: this…
- CVE-2018-198641 PoCNUUO NVRmini2 Network Video Recorder firmware through 3.9.1 allows remote attackers to execute arbitrary code or cause a denial of service…
- CVE-2018-198772 PoCslogin.php in Adiscon LogAnalyzer before 4.1.7 has XSS via the Login Button Referer field.
- CVE-2018-198791 PoCAn issue was discovered in /cgi-bin/luci on Teltonika RTU9XX (e.g., RUT950) R_31.04.89 before R_00.05.00.5 devices. The authentication…
- CVE-2018-198811 PoCIn Artifex MuPDF 1.14.0, svg/svg-run.c allows remote attackers to cause a denial of service (recursive calls followed by a fitz/xml.c…
- CVE-2018-198821 PoCIn Artifex MuPDF 1.14.0, the svg_run_image function in svg/svg-run.c allows remote attackers to cause a denial of service (href_att NULL…
- CVE-2018-198861 PoCAn invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC)…
- CVE-2018-198871 PoCAn invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC)…
- CVE-2018-198881 PoCAn invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC)…
- CVE-2018-198891 PoCAn invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC)…
- CVE-2018-198901 PoCAn invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC)…
- CVE-2018-198911 PoCAn invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC)…
- CVE-2018-198921 PoCDomainMOD through 4.11.01 has XSS via the admin/dw/add-server.php DisplayName, HostName, or UserName field.
- CVE-2018-198941 PoCThinkCMF X2.2.2 has SQL Injection via the functions check() and delete() in CommentadminController.class.php and is exploitable with the…
- CVE-2018-198951 PoCThinkCMF X2.2.2 has SQL Injection via the function edit_post() in NavController.class.php and is exploitable with the manager privilege…
- CVE-2018-198961 PoCThinkCMF X2.2.2 has SQL Injection via the function delete() in SlideController.class.php and is exploitable with the manager privilege via…
- CVE-2018-198971 PoCThinkCMF X2.2.2 has SQL Injection via the function _listorders() in AdminbaseController.class.php and is exploitable with the manager…
- CVE-2018-198981 PoCThinkCMF X2.2.2 has SQL Injection via the method edit_post in ArticleController.class.php and is exploitable by normal authenticated users…
- CVE-2018-199081 PoCAn issue was discovered in MISP 2.4.9x before 2.4.99. In app/Model/Event.php (the STIX 1 import code), an unescaped filename string is…
- CVE-2018-199132 PoCsDomainMOD through 4.11.01 has XSS via the assets/add/registrar-accounts.php UserName, Reseller ID, or notes field.
- CVE-2018-199143 PoCsDomainMOD through 4.11.01 has XSS via the assets/add/dns.php Profile Name or notes field.
- CVE-2018-199153 PoCsDomainMOD through 4.11.01 has XSS via the assets/edit/host.php Web Host Name or Web Host URL field.
- CVE-2018-199171 PoCMicroweber 1.0.8 has reflected cross-site scripting (XSS) vulnerabilities.
- CVE-2018-199181 PoCCuppaCMS has XSS via an SVG document uploaded to the administrator/#/component/table_manager/view/cu_views URI.
- CVE-2018-199191 PoCPixelimity 1.0 has Persistent XSS via the admin/portfolio.php data[title] parameter, as demonstrated by a crafted onload attribute of an…
- CVE-2018-199221 PoCPersistent Cross-Site Scripting (XSS) in the advancedsetup_websiteblocking.html Website Blocking page of the Actiontec C1000A router with…
- CVE-2018-199231 PoCAn issue was discovered in Sales & Company Management System (SCMS) through 2018-06-06. There is member/member_email.php?action=edit CSRF.
- CVE-2018-199241 PoCAn issue was discovered in Sales & Company Management System (SCMS) through 2018-06-06. An email address can be modified in between the…
- CVE-2018-199332 PoCsBolt CMS <3.6.2 allows XSS via text input click preview button as demonstrated by the Title field of a Configured and New Entry.
- CVE-2018-199341 PoCSolarWinds Serv-U FTP Server 15.1.6.25 has reflected cross-site scripting (XSS) in the Web management interface via URL path and HTTP POST…
- CVE-2018-199362 PoCsPrinterOn Enterprise 4.1.4 allows Arbitrary File Deletion.
- CVE-2018-199711 PoCJFrog Artifactory Pro 6.5.9 has Incorrect Access Control.
- CVE-2018-199743 PoCsIn YARA 3.8.1, bytecode in a specially crafted compiled rule can read uninitialized data from VM scratch memory in libyara/exec.c. This…
- CVE-2018-199753 PoCsIn YARA 3.8.1, bytecode in a specially crafted compiled rule can read data from any arbitrary address in memory, in libyara/exec.c.…
- CVE-2018-199763 PoCsIn YARA 3.8.1, bytecode in a specially crafted compiled rule is exposed to information about its environment, in libyara/exec.c. This is a…
- CVE-2018-199801 PoCAnker Nebula Capsule Pro NBUI_M1_V2.1.9 devices allow attackers to cause a denial of service (reboot of the underlying Android 7.1.2…
- CVE-2018-199861 PoCIn the /HNAP1/SetRouterSettings message, the RemotePort parameter is vulnerable, and the vulnerability affects D-Link DIR-818LW Rev.A…
- CVE-2018-199871 PoCD-Link DIR-822 Rev.B 202KRb06, DIR-822 Rev.C 3.10B06, DIR-860L Rev.B 2.03.B03, DIR-868L Rev.B 2.05B02, DIR-880L Rev.A…
- CVE-2018-199881 PoCIn the /HNAP1/SetClientInfoDemo message, the AudioMute and AudioEnable parameters are vulnerable, and the vulnerabilities affect D-Link…
- CVE-2018-199891 PoCIn the /HNAP1/SetQoSSettings message, the uplink parameter is vulnerable, and the vulnerability affects D-Link DIR-822 Rev.B 202KRb06 and…
- CVE-2018-199901 PoCIn the /HNAP1/SetWiFiVerifyAlpha message, the WPSPIN parameter is vulnerable, and the vulnerability affects D-Link DIR-822 B1 202KRb06…
- CVE-2018-199911 PoCVeryNginx 0.3.3 allows remote attackers to bypass the Web Application Firewall feature because there is no error handler (for get_uri_args…