CVE-2018-3000 to CVE-2018-3999
191 CVEs with public proof-of-concept exploits.
- CVE-2018-30041 PoCVulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12.1.0.2,12.2.0.1 and…
- CVE-2018-31491 PoCVulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). Supported versions that are…
- CVE-2018-31671 PoCVulnerability in the Application Management Pack for Oracle E-Business Suite component of Oracle E-Business Suite (subcomponent: User…
- CVE-2018-31915 PoCsVulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). Supported versions…
- CVE-2018-32381 PoCVulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Advanced UI). The supported version that…
- CVE-2018-32454 PoCsVulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). Supported versions…
- CVE-2018-32523 PoCsVulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). Supported versions…
- CVE-2018-32953 PoCsVulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). The supported version that is affected…
- CVE-2018-36082 PoCsA vulnerability in Trend Micro Maximum Security's (Consumer) 2018 (versions 12.0.1191 and below) User-Mode Hooking (UMH) driver could…
- CVE-2018-36091 PoCA vulnerability in the Trend Micro InterScan Messaging Security Virtual Appliance 9.0 and 9.1 management portal could allow an…
- CVE-2018-36202 PoCsSystems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information…
- CVE-2018-36396 PoCsSystems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior…
- CVE-2018-36461 PoCSystems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information…
- CVE-2018-37111 PoCFastify node module before 0.38.0 is vulnerable to a denial-of-service attack by sending a request with "Content-Type: application/json"…
- CVE-2018-37121 PoCserve node module before 6.4.9 suffers from a Path Traversal vulnerability due to not handling %2e (.) and %2f (/) and allowing them in…
- CVE-2018-37132 PoCsangular-http-server node module suffers from a Path Traversal vulnerability due to lack of validation of possibleFilename, which allows a…
- CVE-2018-37142 PoCsnode-srv node module suffers from a Path Traversal vulnerability due to lack of validation of url, which allows a malicious user to read…
- CVE-2018-37151 PoCglance node module before 3.0.4 suffers from a Path Traversal vulnerability due to lack of validation of path passed to it, which allows a…
- CVE-2018-37161 PoCsimplehttpserver node module suffers from a Cross-Site Scripting vulnerability to a lack of validation of file names.
- CVE-2018-37172 PoCsconnect node module before 2.14.0 suffers from a Cross-Site Scripting (XSS) vulnerability due to a lack of validation of file in…
- CVE-2018-37182 PoCsserve node module suffers from Improper Handling of URL Encoding by permitting access to ignored files if a filename is URL encoded.
- CVE-2018-37192 PoCsmixin-deep node module before 1.3.1 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability, which allows a malicious…
- CVE-2018-37201 PoCassign-deep node module before 0.4.7 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability, which allows a malicious…
- CVE-2018-37212 PoCslodash node module before 4.17.5 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability via defaultsDeep, merge, and…
- CVE-2018-37222 PoCsmerge-deep node module before 3.0.1 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability, which allows a malicious…
- CVE-2018-37231 PoCdefaults-deep node module before 0.2.4 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability, which allows a…
- CVE-2018-37241 PoCgeneral-file-server node module suffers from a Path Traversal vulnerability due to lack of validation of currpath, which allows a…
- CVE-2018-37252 PoCshekto node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to read…
- CVE-2018-37262 PoCscrud-file-server node module before 0.8.0 suffers from a Cross-Site Scripting vulnerability to a lack of validation of file names.
- CVE-2018-37271 PoC626 node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to read…
- CVE-2018-37283 PoCshoek node module before 4.2.0 and 5.0.x before 5.0.3 suffers from a Modification of Assumed-Immutable Data (MAID) vulnerability via…
- CVE-2018-37291 PoClocalhost-now node module suffers from a Path Traversal vulnerability due to lack of validation of file, which allows a malicious user to…
- CVE-2018-37301 PoCmcstatic node module suffers from a Path Traversal vulnerability due to lack of validation of filePath, which allows a malicious user to…
- CVE-2018-37312 PoCspublic node module suffers from a Path Traversal vulnerability due to lack of validation of filePath, which allows a malicious user to…
- CVE-2018-37322 PoCsresolve-path node module before 1.4.0 suffers from a Path Traversal vulnerability due to lack of validation of paths with certain special…
- CVE-2018-37332 PoCscrud-file-server node module before 0.9.0 suffers from a Path Traversal vulnerability due to incorrect validation of url, which allows a…
- CVE-2018-37341 PoCstattic node module suffers from a Path Traversal vulnerability due to lack of validation of path, which allows a malicious user to read…
- CVE-2018-37371 PoCsshpk is vulnerable to ReDoS when parsing crafted invalid public keys.
- CVE-2018-37382 PoCsprotobufjs is vulnerable to ReDoS when parsing crafted invalid .proto files.
- CVE-2018-37432 PoCsOpen redirect in hekto <=0.2.3 when target domain name is used as html filename on server.
- CVE-2018-37441 PoCThe html-pages node module contains a path traversal vulnerabilities that allows an attacker to read any file from the server with cURL.
- CVE-2018-37451 PoCatob 2.0.3 and earlier allocates uninitialized Buffers when number is passed in input on Node.js 4.x and below.
- CVE-2018-37462 PoCsThe pdfinfojs NPM module versions <= 0.3.6 has a command injection vulnerability that allows an attacker to execute arbitrary commands on…
- CVE-2018-37472 PoCsThe public node module versions <= 1.0.3 allows to embed HTML in file names, which (in certain conditions) might lead to execute malicious…
- CVE-2018-37481 PoCThere is a Stored XSS vulnerability in the glance node module versions <= 3.0.5. File name, which contains malicious HTML (eg. embedded…
- CVE-2018-37491 PoCThe utilities function in all versions < 1.0.1 of the deap node module can be tricked into modifying the prototype of Object when the…
- CVE-2018-37502 PoCsThe utilities function in all versions <= 0.5.0 of the deep-extend node module can be tricked into modifying the prototype of Object when…
- CVE-2018-37512 PoCsThe utilities function in all versions <= 0.3.0 of the merge-recursive node module can be tricked into modifying the prototype of Object…
- CVE-2018-37522 PoCsThe utilities function in all versions <= 1.0.0 of the merge-options node module can be tricked into modifying the prototype of Object…
- CVE-2018-37531 PoCThe utilities function in all versions <= 1.0.0 of the merge-objects node module can be tricked into modifying the prototype of Object…
- CVE-2018-37541 PoCNode.js third-party module query-mysql versions 0.0.0, 0.0.1, and 0.0.2 are vulnerable to an SQL injection vulnerability due to lack of…
- CVE-2018-37551 PoCXSS in sexstatic <=0.6.2 causes HTML injection in directory name(s) leads to Stored XSS when malicious file is embed with <iframe> element…
- CVE-2018-37572 PoCsCommand injection exists in pdf-image v2.0.0 due to an unescaped string parameter.
- CVE-2018-37581 PoCUnrestricted file upload (RCE) in express-cart module before 1.1.7 allows a privileged user to gain access in the hosting machine.
- CVE-2018-37607 PoCsThere is an information leak vulnerability in Sprockets. Versions Affected: 4.0.0.beta7 and lower, 3.7.1 and lower, 2.12.4 and lower.…
- CVE-2018-37661 PoCPath traversal in buttle module versions <= 0.2.0 allows to read any file in the server.
- CVE-2018-37671 PoC`memjs` versions <= 1.1.0 allocates and stores buffers on typed input, resulting in DoS and uninitialized memory usage.
- CVE-2018-37691 PoCruby-grape ruby gem suffers from a cross-site scripting (XSS) vulnerability via "format" parameter.
- CVE-2018-37702 PoCsA path traversal exists in markdown-pdf version <9.0.0 that allows a user to insert a malicious html code that can result in reading the…
- CVE-2018-37711 PoCAn XSS in statics-server <= 0.0.9 can be used via injected iframe in the filename when statics-server displays directory index in the…
- CVE-2018-37722 PoCsConcatenating unsanitized user input in the `whereis` npm module < 0.4.1 allowed an attacker to execute arbitrary commands. The `whereis`…
- CVE-2018-37731 PoCThere is a stored Cross-Site Scripting vulnerability in Open Graph meta properties read by the `metascrape` npm module <= 3.9.2.
- CVE-2018-37791 PoCactive-support ruby gem 5.2.0 could allow a remote attacker to execute arbitrary code on the system, caused by containing a malicious…
- CVE-2018-37832 PoCsA privilege escalation detected in flintcms versions <= 1.1.9 allows account takeover due to blind MongoDB injection in password reset.
- CVE-2018-37841 PoCA code injection in cryo 0.0.6 allows an attacker to arbitrarily execute code due to insecure implementation of deserialization.
- CVE-2018-37851 PoCA command injection in git-dummy-commit v1.3.0 allows os level commands to be executed due to an unescaped parameter.
- CVE-2018-37863 PoCsA command injection vulnerability in egg-scripts <v2.8.1 allows arbitrary shell command execution through a maliciously crafted command…
- CVE-2018-37871 PoCPath traversal in simplehttpserver <v0.2.1 allows listing any file on the server.
- CVE-2018-38091 PoCInformation exposure through directory listings in serve 6.5.3 allows directory listing and file access even when they have been set to be…
- CVE-2018-38106 PoCsAuthentication Bypass vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated…
- CVE-2018-38113 PoCsSQL Injection vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackers to…
- CVE-2018-38141 PoCCraft CMS 2.6.3000 allows remote attackers to execute arbitrary PHP code by using the "Assets->Upload files" screen and then the "Replace…
- CVE-2018-38151 PoCThe "XML Interface to Messaging, Scheduling, and Signaling" (XIMSS) protocol implementation in CommuniGate Pro (CGP) 6.2 suffers from a…
- CVE-2018-38331 PoCAn exploitable firmware downgrade vulnerability exists in Insteon Hub running firmware version 1013. The firmware upgrade functionality,…
- CVE-2018-38361 PoCAn exploitable command injection vulnerability exists in the gplotMakeOutput function of Leptonica 1.74.4. A specially crafted gplot…
- CVE-2018-38391 PoCAn exploitable code execution vulnerability exists in the XCF image rendering functionality of Simple DirectMedia Layer SDL2_image-2.0.2.…
- CVE-2018-38401 PoCA denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x67). The vulnerability is present in the…
- CVE-2018-38411 PoCA denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x69). The vulnerability is present in the…
- CVE-2018-38471 PoCMultiple exploitable buffer overflow vulnerabilities exist in image parsing functionality of the CFITSIO library version 3.42. Specially…
- CVE-2018-38521 PoCAn exploitable denial of service vulnerability exists in the Ocularis Recorder functionality of Ocularis 5.5.0.242. A specially crafted…
- CVE-2018-38531 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software Foxit PDF Reader version 9.0.1.1049. A…
- CVE-2018-38551 PoCIn Hyland Perceptive Document Filters 11.4.0.2647 - x86/x64 Windows/Linux, a crafted OpenDocument document can lead to a SkCanvas object…
- CVE-2018-38561 PoCAn exploitable vulnerability exists in the smart cameras RTSP configuration of the Samsung SmartThings Hub STH-ETH-250 - Firmware version…
- CVE-2018-38571 PoCAn exploitable heap overflow exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted TIFF image…
- CVE-2018-38581 PoCAn exploitable heap overflow exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted TIFF image…
- CVE-2018-38591 PoCAn exploitable out-of-bounds write exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted TIFF image…
- CVE-2018-38601 PoCAn exploitable out-of-bounds write exists in the TIFF parsing functionality of Canvas Draw version 4.0.0. A specially crafted TIFF image…
- CVE-2018-38611 PoCA specially crafted TIFF image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker…
- CVE-2018-38621 PoCA specially crafted TIFF image processed via the application can lead to an out-of-bounds write, overwriting
- CVE-2018-38631 PoCOn Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extracts fields from a…
- CVE-2018-38641 PoCAn exploitable buffer overflow vulnerability exists in the Samsung WifiScan handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38651 PoCAn exploitable buffer overflow vulnerability exists in the Samsung WifiScan handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38661 PoCAn exploitable buffer overflow vulnerability exists in the samsungWifiScan handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38671 PoCAn exploitable stack-based buffer overflow vulnerability exists in the samsungWifiScan callback notification of video-core's HTTP server…
- CVE-2018-38701 PoCAn exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0. A specially crafted PCX image…
- CVE-2018-38711 PoCAn exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0. A specially crafted PCX image…
- CVE-2018-38721 PoCAn exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38731 PoCAn exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38741 PoCAn exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38751 PoCAn exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38761 PoCAn exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38771 PoCAn exploitable buffer overflow vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38781 PoCMultiple exploitable buffer overflow vulnerabilities exist in the credentials handler of video-core's HTTP server of Samsung SmartThings…
- CVE-2018-38791 PoCAn exploitable JSON injection vulnerability exists in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-38801 PoCAn exploitable stack-based buffer overflow vulnerability exists in the database 'find-by-cameraId' functionality of video-core's HTTP…
- CVE-2018-38821 PoCAn exploitable SQL injection vulnerability exists in the authenticated part of ERPNext v10.1.6. Specially crafted web requests can cause…
- CVE-2018-38831 PoCAn exploitable SQL injection vulnerability exists in the authenticated part of ERPNext v10.1.6. Specially crafted web requests can cause…
- CVE-2018-38841 PoCAn exploitable SQL injection vulnerability exists in the authenticated part of ERPNext v10.1.6. Specially crafted web requests can cause…
- CVE-2018-38851 PoCAn exploitable SQL injection vulnerability exists in the authenticated part of ERPNext v10.1.6. Specially crafted web requests can cause…
- CVE-2018-38861 PoCA memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.53. A specially crafted PCX image…
- CVE-2018-38871 PoCA memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.53. A specially crafted PCX image…
- CVE-2018-38881 PoCA memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.53. A specially crafted PCX image…
- CVE-2018-38891 PoCA specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker…
- CVE-2018-38931 PoCAn exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings…
- CVE-2018-38941 PoCAn exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings…
- CVE-2018-38951 PoCAn exploitable buffer overflow vulnerability exists in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings…
- CVE-2018-38961 PoCAn exploitable buffer overflow vulnerabilities exist in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings…
- CVE-2018-38971 PoCAn exploitable buffer overflow vulnerabilities exist in the /cameras/XXXX/clips handler of video-core's HTTP server of Samsung SmartThings…
- CVE-2018-39021 PoCAn exploitable buffer overflow vulnerability exists in the camera "replace" feature of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-39031 PoCOn Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extracts fields from a…
- CVE-2018-39041 PoCAn exploitable buffer overflow vulnerability exists in the camera 'update' feature of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-39051 PoCAn exploitable buffer overflow vulnerability exists in the camera "create" feature of video-core's HTTP server of Samsung SmartThings Hub…
- CVE-2018-39061 PoCAn exploitable stack-based buffer overflow vulnerability exists in the retrieval of a database field in video-core's HTTP server of…
- CVE-2018-39071 PoCAn exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware…
- CVE-2018-39081 PoCAn exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung SmartThings Hub STH-ETH-250-Firmware…
- CVE-2018-39091 PoCAn exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware…
- CVE-2018-39101 PoCAn exploitable code execution vulnerability exists in the cloud OTA setup functionality of Yi Home Camera 27US 1.8.7.0D. A specially…
- CVE-2018-39111 PoCAn exploitable HTTP header injection vulnerability exists in the remote servers of Samsung SmartThings Hub STH-ETH-250 - Firmware version…
- CVE-2018-39131 PoCAn exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in the video-core HTTP server of the…
- CVE-2018-39141 PoCAn exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in the video-core HTTP server of the…
- CVE-2018-39151 PoCAn exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in the video-core HTTP server of the…
- CVE-2018-39161 PoCAn exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in the video-core HTTP server of the…
- CVE-2018-39181 PoCAn exploitable vulnerability exists in the remote servers of Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The hubCore…
- CVE-2018-39191 PoCAn exploitable stack-based buffer overflow vulnerability exists in the retrieval of database fields in video-core's HTTP server of Samsung…
- CVE-2018-39211 PoCA memory corruption vulnerability exists in the PSD-parsing functionality of Computerinsel Photoline 20.54. A specially crafted PSD image…
- CVE-2018-39221 PoCA memory corruption vulnerability exists in the ANI-parsing functionality of Computerinsel Photoline 20.54. A specially crafted ANI image…
- CVE-2018-39241 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.5096. A…
- CVE-2018-39261 PoCAn exploitable integer underflow vulnerability exists in the ZigBee firmware update routine of the hubCore binary of the Samsung…
- CVE-2018-39271 PoCAn exploitable information disclosure vulnerability exists in the crash handler of the hubCore binary of the Samsung SmartThings Hub…
- CVE-2018-39341 PoCAn exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially…
- CVE-2018-39371 PoCAn exploitable command injection vulnerability exists in the measurementBitrateExec functionality of Sony IPELA E Series Network Camera G5…
- CVE-2018-39391 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.1.0.5096. A…
- CVE-2018-39401 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.1.0.5096. A…
- CVE-2018-39411 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A…
- CVE-2018-39421 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.1.0.5096. A…
- CVE-2018-39451 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A…
- CVE-2018-39461 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader version 9.1.0.5096. A specially…
- CVE-2018-39471 PoCAn exploitable information disclosure vulnerability exists in the phone-to-camera communications of Yi Home Camera 27US 1.8.7.0D. An…
- CVE-2018-39481 PoCAn exploitable denial-of-service vulnerability exists in the URI-parsing functionality of the TP-Link TL-R600VPN HTTP server. A specially…
- CVE-2018-39491 PoCAn exploitable information disclosure vulnerability exists in the HTTP server functionality of the TP-Link TL-R600VPN. A specially crafted…
- CVE-2018-39501 PoCAn exploitable remote code execution vulnerability exists in the ping and tracert functionality of the TP-Link TL-R600VPN HWv3 FRNv1.3.0…
- CVE-2018-39511 PoCAn exploitable remote code execution vulnerability exists in the HTTP header-parsing function of the TP-Link TL-R600VPN HTTP Server. A…
- CVE-2018-39521 PoCAn exploitable code execution vulnerability exists in the connect functionality of NordVPN 6.14.28.0. A specially crafted configuration…
- CVE-2018-39532 PoCsDevices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are…
- CVE-2018-39541 PoCDevices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are…
- CVE-2018-39551 PoCAn exploitable operating system command injection exists in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and…
- CVE-2018-39631 PoCAn exploitable command injection vulnerability exists in the DHCP daemon configuration of the CUJO Smart Firewall. When adding a new…
- CVE-2018-39641 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A…
- CVE-2018-39651 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A…
- CVE-2018-39661 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A…
- CVE-2018-39671 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.0.5096. A…
- CVE-2018-39681 PoCAn exploitable vulnerability exists in the verified boot protection of the Das U-Boot from version 2013.07-rc1 to 2014.07-rc2. The…
- CVE-2018-39691 PoCAn exploitable vulnerability exists in the verified boot protection of the CUJO Smart Firewall. It is possible to add arbitrary shell…
- CVE-2018-39701 PoCAn exploitable memory disclosure vulnerability exists in the 0x222000 IOCTL handler functionality of Sophos HitmanPro.Alert 3.7.6.744. A…
- CVE-2018-39711 PoCAn exploitable arbitrary write vulnerability exists in the 0x2222CC IOCTL handler functionality of Sophos HitmanPro.Alert 3.7.6.744. A…
- CVE-2018-39731 PoCAn exploitable out of bounds write exists in the CAL parsing functionality of Canvas Draw version 5.0.0. A specially crafted CAL image…
- CVE-2018-39741 PoCAn exploitable local privilege elevation vulnerability exists in the file system permissions of GOG Galaxy's install directory. An…
- CVE-2018-39751 PoCAn exploitable uninitialized variable vulnerability exists in the RTF-parsing functionality of Atlantis Word Processor 3.2.6 version. A…
- CVE-2018-39761 PoCAn exploitable out-of-bounds write exists in the CALS Raster file format-parsing functionality of Canvas Draw version 5.0.0.28. A…
- CVE-2018-39771 PoCAn exploitable code execution vulnerability exists in the XCF image rendering functionality of SDL2_image-2.0.3. A specially crafted XCF…
- CVE-2018-39781 PoCAn exploitable out-of-bounds write vulnerability exists in the Word Document parser of the Atlantis Word Processor 3.0.2.3, 3.0.2.5. A…
- CVE-2018-39791 PoCA remote denial-of-service vulnerability exists in the way the Nouveau Display Driver (the default Ubuntu Nvidia display driver) handles…
- CVE-2018-39801 PoCAn exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. A specially crafted TIFF image…
- CVE-2018-39812 PoCsAn exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. An attacker can deliver a TIFF…
- CVE-2018-39821 PoCAn exploitable arbitrary write vulnerability exists in the Word document parser of the Atlantis Word Processor 3.0.2.3 and 3.0.2.5. A…
- CVE-2018-39831 PoCAn exploitable uninitialized pointer vulnerability exists in the Word document parser of the the Atlantis Word Processor. A specially…
- CVE-2018-39841 PoCAn exploitable uninitialized length vulnerability exists within the Word document-parser of the Atlantis Word Processor 3.0.2.3 and…
- CVE-2018-39851 PoCAn exploitable double free vulnerability exists in the mdnscap binary of the CUJO Smart Firewall. When parsing mDNS packets, a memory…
- CVE-2018-39861 PoCAn exploitable information disclosure vulnerability exists in the "Secret Chats" functionality of the Telegram Android messaging…
- CVE-2018-39871 PoCAn exploitable information disclosure vulnerability exists in the 'Secret Chats' functionality of Rakuten Viber on Android 9.3.0.6. The…
- CVE-2018-39881 PoCSignal Messenger for Android 4.24.8 may expose private information when using "disappearing messages." If a user uses the photo feature…
- CVE-2018-39891 PoCAn exploitable kernel memory disclosure vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKey.sys…
- CVE-2018-39901 PoCAn exploitable pool corruption vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKey.sys Version 6.40…
- CVE-2018-39911 PoCAn exploitable heap overflow vulnerability exists in the WkbProgramLow function of WibuKey Network server management, version…
- CVE-2018-39921 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader, version 9.2.0.9297. A…
- CVE-2018-39931 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.2.0.9297. A…
- CVE-2018-39941 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.2.0.9297. A…
- CVE-2018-39961 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 9.2.0.9297. A…
- CVE-2018-39971 PoCAn exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader, version 9.2.0.9297. A…
- CVE-2018-39981 PoCAn exploitable heap-based buffer overflow vulnerability exists in the Windows enhanced metafile parser of Atlantis Word Processor, version…
- CVE-2018-39991 PoCAn exploitable stack-based buffer overflow vulnerability exists in the JPEG parser of Atlantis Word Processor, version 3.2.5.0. A…