CVE-2018-7000 to CVE-2018-7999
184 CVEs with public proof-of-concept exploits.
- CVE-2018-70321 PoCwebcheckout in myrepos through 1.20171231 does not sanitize URLs that are passed to git clone, allowing a malicious website operator or a…
- CVE-2018-70721 PoCA remote bypass of security restrictions vulnerability was identified in HPE Moonshot Provisioning Manager prior to v1.24.
- CVE-2018-70731 PoCA local arbitrary file modification vulnerability was identified in HPE Moonshot Provisioning Manager prior to v1.24.
- CVE-2018-70811 PoCA remote code execution vulnerability is present in network-listening components in some versions of ArubaOS. An attacker with the ability…
- CVE-2018-71051 PoCA security vulnerability in HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers prior to v1.35, HPE Integrated Lights-Out 4 (iLO 4)…
- CVE-2018-71712 PoCsDirectory traversal vulnerability in Twonky Server 7.0.11 through 8.5 allows remote attackers to share the contents of arbitrary…
- CVE-2018-71761 PoCFrontAccounting 2.4.3 suffers from a CSRF flaw, which leads to adding a user account via admin/users.php (aka the "add user" feature of…
- CVE-2018-71771 PoCSQL Injection exists in the Saxum Numerology 3.0.4 component for Joomla! via the publicid parameter.
- CVE-2018-71781 PoCSQL Injection exists in the Saxum Picker 3.2.10 component for Joomla! via the publicid parameter.
- CVE-2018-71791 PoCSQL Injection exists in the SquadManagement 1.0.3 component for Joomla! via the id parameter.
- CVE-2018-71801 PoCSQL Injection exists in the Saxum Astro 4.0.14 component for Joomla! via the publicid parameter.
- CVE-2018-71821 PoCThe ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-of-bounds read)…
- CVE-2018-71871 PoCThe "go get" implementation in Go 1.9.4, when the -insecure command-line option is used, does not validate the import path (get/vcs.go…
- CVE-2018-71922 PoCsCross-site scripting (XSS) vulnerability in /ajax.php/form/help-topic in Enhancesoft osTicket before 1.10.2 allows remote attackers to…
- CVE-2018-71932 PoCsCross-site scripting (XSS) vulnerability in /scp/directory.php in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject…
- CVE-2018-71941 PoCInteger format vulnerability in the ticket number generator in Enhancesoft osTicket before 1.10.2 allows remote attackers to cause a…
- CVE-2018-71951 PoCEnhancesoft osTicket before 1.10.2 allows remote attackers to reset arbitrary passwords (when an associated e-mail address is known) by…
- CVE-2018-71962 PoCsCross-site scripting (XSS) vulnerability in /scp/index.php in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject…
- CVE-2018-71971 PoCAn issue was discovered in Pluck through 4.7.4. A stored cross-site scripting (XSS) vulnerability allows remote unauthenticated users to…
- CVE-2018-71981 PoCOctober CMS through 1.0.431 allows XSS by entering HTML on the Add Posts page.
- CVE-2018-72032 PoCsCross-site scripting (XSS) vulnerability in Twonky Server 7.0.11 through 8.5 allows remote attackers to inject arbitrary web script or…
- CVE-2018-72091 PoCAn issue was discovered in iDashboards 9.6b. It allows remote attackers to obtain sensitive information via a direct request for the…
- CVE-2018-72101 PoCAn issue was discovered in iDashboards 9.6b. It allows remote attackers to obtain sensitive information via a direct request for the…
- CVE-2018-72112 PoCsAn issue was discovered in iDashboards 9.6b. The SSO implementation is affected by a weak obfuscation library, allowing man-in-the-middle…
- CVE-2018-72163 PoCsCross-site request forgery (CSRF) vulnerability in esop/toolkit/profile/regData.do in Bravo Tejari Procurement Portal allows remote…
- CVE-2018-72191 PoCapplication/admin/controller/Admin.php in NoneCms 1.3.0 has CSRF, as demonstrated by changing an admin password or adding an account via a…
- CVE-2018-72492 PoCsAn issue was discovered in secdrv.sys as shipped in Microsoft Windows Vista, Windows 7, Windows 8, and Windows 8.1 before KB3086255, and…
- CVE-2018-72502 PoCsAn issue was discovered in secdrv.sys as shipped in Microsoft Windows Vista, Windows 7, Windows 8, and Windows 8.1 before KB3086255, and…
- CVE-2018-72512 PoCsAn issue was discovered in config/error.php in Anchor 0.12.3. The error log is exposed at an errors.log URI, and contains MySQL…
- CVE-2018-72531 PoCThe ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service…
- CVE-2018-72541 PoCThe ParseCaffHeaderConfig function of the cli/caff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (global…
- CVE-2018-72641 PoCThe Pictview image processing library embedded in the ActivePDF toolkit through 2018.1.0.18321 is prone to multiple out of bounds write…
- CVE-2018-72732 PoCsIn the Linux kernel through 4.15.4, the floppy driver reveals the addresses of kernel functions and global variables using printk calls…
- CVE-2018-72821 PoCThe username parameter of the TITool PrintMonitor solution during the login request is vulnerable to and/or time-based blind SQLi.
- CVE-2018-72842 PoCsA Buffer Overflow issue was discovered in Asterisk through 13.19.1, 14.x through 14.7.5, and 15.x through 15.2.1, and Certified Asterisk…
- CVE-2018-72861 PoCAn issue was discovered in Asterisk through 13.19.1, 14.x through 14.7.5, and 15.x through 15.2.1, and Certified Asterisk through…
- CVE-2018-72891 PoCAn issue was discovered in armadito-windows-driver/src/communication.c in Armadito 0.12.7.2. Malware with filenames containing pure UTF-16…
- CVE-2018-72971 PoCRemote Code Execution in the TCL script interpreter in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows remote attackers to obtain…
- CVE-2018-73001 PoCDirectory Traversal / Arbitrary File Write / Remote Code Execution in the User.setLanguage method in eQ-3 AG Homematic CCU2 2.29.2 and…
- CVE-2018-73021 PoCTiki 17.1 allows upload of a .PNG file that actually has SVG content, leading to XSS.
- CVE-2018-73031 PoCThe Calendar component in Tiki 17.1 allows HTML injection.
- CVE-2018-73041 PoCTiki 17.1 does not validate user input for special characters; consequently, a CSV Injection attack can open a CMD.EXE or Calculator…
- CVE-2018-73051 PoCMyBB 1.8.14 is not checking for a valid CSRF token, leading to arbitrary deletion of user accounts.
- CVE-2018-73122 PoCsSQL Injection exists in the Alexandria Book Library 3.1.2 component for Joomla! via the letter parameter.
- CVE-2018-73131 PoCSQL Injection exists in the CW Tags 2.0.6 component for Joomla! via the searchtext array parameter.
- CVE-2018-73145 PoCsSQL Injection exists in the PrayerCenter 3.0.2 component for Joomla! via the sessionid parameter, a different vulnerability than…
- CVE-2018-73152 PoCsSQL Injection exists in the Ek Rishta 2.9 component for Joomla! via the gender, age1, age2, religion, mothertounge, caste, or country…
- CVE-2018-73162 PoCsArbitrary File Upload exists in the Proclaim 9.1.1 component for Joomla! via a mediafileform action.
- CVE-2018-73172 PoCsBackup Download exists in the Proclaim 9.1.1 component for Joomla! via a direct request for a .sql file under backup/.
- CVE-2018-73182 PoCsSQL Injection exists in the CheckList 1.1.1 component for Joomla! via the title_search, tag_search, name_search, description_search, or…
- CVE-2018-73192 PoCsSQL Injection exists in the OS Property Real Estate 3.12.7 component for Joomla! via the cooling_system1, heating_system1, or laundry…
- CVE-2018-73401 PoCMultiple SAML libraries may allow authentication bypass via incorrect XML canonicalization and DOM traversal
- CVE-2018-73551 PoCAll versions up to V1.0.0B05 of ZTE MF65 and all versions up to V1.0.0B02 of ZTE MF65M1 are impacted by cross-site scripting…
- CVE-2018-73571 PoCZTE ZXHN H168N product with versions V2.2.0_PK1.2T5, V2.2.0_PK1.2T2, V2.2.0_PK11T7 and V2.2.0_PK11T have an improper access control…
- CVE-2018-73581 PoCZTE ZXHN H168N product with versions V2.2.0_PK1.2T5, V2.2.0_PK1.2T2, V2.2.0_PK11T7 and V2.2.0_PK11T have an improper change control…
- CVE-2018-73641 PoCAll versions up to ZXINOS-RESV1.01.43 of the ZTE ZXIN10 product European region are impacted by improper access control vulnerability. Due…
- CVE-2018-74226 PoCsA Local File Inclusion vulnerability in the Site Editor plugin through 1.1.1 for WordPress allows remote attackers to retrieve arbitrary…
- CVE-2018-74341 PoCzzcms 8.2 allows remote attackers to discover the full path via a direct request to 3/qq_connect2.0/API/class/ErrorCase.class.php or…
- CVE-2018-74351 PoCAn issue was discovered in FreeXL before 1.0.5. There is a heap-based buffer over-read in the freexl::destroy_cell function.
- CVE-2018-74361 PoCAn issue was discovered in FreeXL before 1.0.5. There is a heap-based buffer over-read in a pointer dereference of the parse_SST function.
- CVE-2018-74371 PoCAn issue was discovered in FreeXL before 1.0.5. There is a heap-based buffer over-read in a memcpy call of the parse_SST function.
- CVE-2018-74381 PoCAn issue was discovered in FreeXL before 1.0.5. There is a heap-based buffer over-read in the parse_unicode_string function.
- CVE-2018-74391 PoCAn issue was discovered in FreeXL before 1.0.5. There is a heap-based buffer over-read in the function read_mini_biff_next_record.
- CVE-2018-74453 PoCsKEVA buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages. Remote attackers with…
- CVE-2018-74483 PoCsRemote code execution vulnerability in /cmsms-2.1.6-install.php/index.php in CMS Made Simple version 2.1.6 allows remote attackers to…
- CVE-2018-74493 PoCsSEGGER FTP Server for Windows before 3.22a allows remote attackers to cause a denial of service (daemon crash) via an invalid LIST, STOR,…
- CVE-2018-74521 PoCA NULL pointer dereference in JPXStream::fillReadBuf in JPXStream.cc in xpdf 4.00 allows attackers to launch denial of service via a…
- CVE-2018-74562 PoCsA NULL Pointer Dereference occurs in the function TIFFPrintDirectory in tif_print.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7,…
- CVE-2018-74651 PoCAn XSS issue was discovered in VirtueMart before 3.2.14. All the textareas in the backend of the plugin can be closed by simply adding…
- CVE-2018-74662 PoCsinstall/installNewDB.php in TestLink through 1.9.16 allows remote attackers to conduct injection attacks by leveraging control over DB…
- CVE-2018-74671 PoCAxxonSoft Axxon Next has Directory Traversal via an initial /css//..%2f substring in a URI.
- CVE-2018-74691 PoCPHP Scripts Mall Entrepreneur Job Portal Script 2.0.9 has XSS via the p_name (aka Edit Category Name) field to…
- CVE-2018-74701 PoCAn issue was discovered in ImageMagick 7.0.7-22 Q16. The IsWEBPImageLossless function in coders/webp.c allows attackers to cause a denial…
- CVE-2018-74742 PoCsAn issue was discovered in Textpattern CMS 4.6.2 and earlier. It is possible to inject SQL code in the variable "qty" on the page index.php.
- CVE-2018-74751 PoCCross-site scripting (XSS) vulnerability for webdav/ticket/ URIs in IceWarp Mail Server 12.0.3 allows remote attackers to inject arbitrary…
- CVE-2018-74772 PoCsSQL Injection exists in PHP Scripts Mall School Management Script 3.0.4 via the Username and Password fields to…
- CVE-2018-74791 PoCYzmCMS 3.6 allows remote attackers to discover the full path via a direct request to application/install/templates/s1.php.
- CVE-2018-74821 PoCThe K2 component 2.8.0 for Joomla! has Incorrect Access Control with directory traversal, allowing an attacker to download arbitrary…
- CVE-2018-74871 PoCThere is a heap-based buffer overflow in the LoadPCX function of in_pcx.cpp in sam2p 0.49.4. A Crafted input will lead to a denial of…
- CVE-2018-74891 PoCFasterXML jackson-databind before 2.7.9.3, 2.8.x before 2.8.11.1 and 2.9.x before 2.9.5 allows unauthenticated remote code execution…
- CVE-2018-74906 PoCsuWSGI before 2.0.17 mishandles a DOCUMENT_ROOT check during use of the --php-docroot option, allowing directory traversal.
- CVE-2018-75382 PoCsA SQL injection vulnerability in the tracker functionality of Enalean Tuleap software engineering platform before 9.18 allows attackers to…
- CVE-2018-75431 PoCCross-site scripting (XSS) vulnerability in installer/build/view.step4.php of the SnapCreek Duplicator plugin 1.2.32 for WordPress allows…
- CVE-2018-75441 PoCA cross-protocol scripting issue was discovered in the management interface in OpenVPN through 2.4.5. When this interface is enabled over…
- CVE-2018-75511 PoCThere is an invalid free in MiniPS::delete0 in minips.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to…
- CVE-2018-75521 PoCThere is an invalid free in Mapping::DoubleHash::clear in mapping.cpp that leads to a Segmentation fault in sam2p 0.49.4. A crafted input…
- CVE-2018-75531 PoCThere is a heap-based buffer overflow in the pcxLoadRaster function of in_pcx.cpp in sam2p 0.49.4. A crafted input will lead to a denial…
- CVE-2018-75541 PoCThere is an invalid free in ReadImage in input-bmp.ci that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a…
- CVE-2018-75601 PoCindex.js in the Anton Myshenin aws-lambda-multipart-parser NPM package before 0.1.2 has a Regular Expression Denial of Service (ReDoS)…
- CVE-2018-75611 PoCStack-based Buffer Overflow in httpd on Tenda AC9 devices V15.03.05.14_EN allows remote attackers to cause a denial of service or possibly…
- CVE-2018-75671 PoCIn the Admin Package Manager in Open Ticket Request System (OTRS) 5.0.0 through 5.0.24 and 6.0.0 through 6.0.1, authenticated admins are…
- CVE-2018-75681 PoCThe parse_die function in dwarf1.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows…
- CVE-2018-75691 PoCdwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a…
- CVE-2018-75733 PoCsAn issue was discovered in FTPShell Client 6.7. A remote FTP server can send 400 characters of 'F' in conjunction with the FTP 220…
- CVE-2018-75803 PoCsPhilips Hue is vulnerable to a Denial of Service attack. Sending a SYN flood on port tcp/80 will freeze Philips Hue's hub and it will stop…
- CVE-2018-75812 PoCs\ProgramData\WebLog Expert\WebServer\WebServer.cfg in WebLog Expert Web Server Enterprise 9.4 has weak permissions (BUILTIN\Users:(ID)C),…
- CVE-2018-75823 PoCsWebLog Expert Web Server Enterprise 9.4 allows Remote Denial Of Service (daemon crash) via a long HTTP Accept Header to TCP port 9991.
- CVE-2018-75831 PoCProxy.exe in DualDesk 20 allows Remote Denial Of Service (daemon crash) via a long string to TCP port 5500.
- CVE-2018-75841 PoCIn PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and 7.2.x through 7.2.2, there is a stack-based buffer under-read while…
- CVE-2018-760069 PoCsKEVDrupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote attackers to execute arbitrary code because…
- CVE-2018-760212 PoCsKEVDrupal core - Highly critical - Remote Code Execution - SA-CORE-2018-004
- CVE-2018-76341 PoCAn issue was discovered in Enalean Tuleap 9.17. Lack of CSRF attack mitigation while changing an e-mail address makes it possible to abuse…
- CVE-2018-76501 PoCPHP Scripts Mall Hot Scripts Clone:Script Classified Version 3.1 Application is vulnerable to stored XSS within the "Add New" function for…
- CVE-2018-76511 PoCindex.js in the ssri module before 5.2.2 for Node.js is prone to a regular expression denial of service vulnerability in strict mode…
- CVE-2018-76533 PoCsIn YzmCMS 3.6, index.php has XSS via the a, c, or m parameter.
- CVE-2018-76582 PoCsNTSServerSvc.exe in the server in Softros Network Time System 2.3.4 allows remote attackers to cause a denial of service (daemon crash) by…
- CVE-2018-76591 PoCIn OpenText Documentum D2 Webtop v4.6.0030 build 059, a Stored Cross-Site Scripting Vulnerability could potentially be exploited by…
- CVE-2018-76601 PoCIn OpenText Documentum D2 Webtop v4.6.0030 build 059, a Reflected Cross-Site Scripting Vulnerability could potentially be exploited by…
- CVE-2018-76611 PoCPapenmeier WiFi Baby Monitor Free & Lite before 2.02.2 allows remote attackers to obtain audio data via certain requests to TCP ports 8258…
- CVE-2018-76623 PoCsCouch through 2.0 allows remote attackers to discover the full path via a direct request to includes/mysql2i/mysql2i.func.php or…
- CVE-2018-76641 PoCAn issue was discovered in ClipBucket before 4.0.0 Release 4902. Any OS commands can be injected via shell metacharacters in the file_name…
- CVE-2018-76654 PoCsAn issue was discovered in ClipBucket before 4.0.0 Release 4902. A malicious file can be uploaded via the name parameter to…
- CVE-2018-76661 PoCAn issue was discovered in ClipBucket before 4.0.0 Release 4902. SQL injection vulnerabilities exist in the actions/vote_channel.php…
- CVE-2018-76672 PoCsAdminer through 4.3.1 has SSRF via the server parameter.
- CVE-2018-76681 PoCTestLink through 1.9.16 allows remote attackers to read arbitrary attachments via a modified ID field to…
- CVE-2018-76692 PoCsAn issue was discovered in Sitecore Sitecore.NET 8.1 rev. 151207 Hotfix 141178-1 and above. The 'Log Viewer' application is vulnerable to…
- CVE-2018-76902 PoCsMFSBGN03835 rev.1 - Fortify Software Security Center (SSC), Remote Unauthorized Access
- CVE-2018-76912 PoCsMFSBGN03835 rev.1 - Fortify Software Security Center (SSC), Remote Unauthorized Access
- CVE-2018-77003 PoCsDedeCMS 5.7 has CSRF with an impact of arbitrary code execution, because the partcode parameter in a tag_test_action.php request can…
- CVE-2018-77012 PoCsMultiple cross-site request forgery (CSRF) vulnerabilities in SecurEnvoy SecurMail before 9.2.501 allow remote attackers to hijack the…
- CVE-2018-77021 PoCSecurEnvoy SecurMail before 9.2.501 allows remote attackers to spoof transmission of arbitrary e-mail messages, resend e-mail messages to…
- CVE-2018-77032 PoCsCross-site scripting (XSS) vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote attackers to inject arbitrary web script or…
- CVE-2018-77042 PoCsSecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read arbitrary e-mail messages via the option1 parameter in a…
- CVE-2018-77052 PoCsDirectory traversal vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read e-mail messages to…
- CVE-2018-77062 PoCsDirectory traversal vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote authenticated users to read arbitrary e-mail…
- CVE-2018-77072 PoCsCross-site scripting (XSS) vulnerability in SecurEnvoy SecurMail before 9.2.501 allows remote attackers to inject arbitrary web script or…
- CVE-2018-77192 PoCsAcrolinx Server before 5.2.5 on Windows allows Directory Traversal.
- CVE-2018-77201 PoCA cross-site request forgery (CSRF) vulnerability exists in Western Bridge Cobub Razor 0.7.2 via /index.php?/user/createNewUser/,…
- CVE-2018-77251 PoCAn issue was discovered in ZZIPlib 0.13.68. An invalid memory address dereference was discovered in zzip_disk_fread in mmapped.c. The…
- CVE-2018-77261 PoCAn issue was discovered in ZZIPlib 0.13.68. There is a bus error caused by the __zzip_parse_root_directory function of zip.c. Attackers…
- CVE-2018-77271 PoCAn issue was discovered in ZZIPlib 0.13.68. There is a memory leak triggered in the function zzip_mem_disk_new in memdisk.c, which will…
- CVE-2018-77281 PoCAn issue was discovered in Exempi through 2.4.4. XMPFiles/source/FileHandlers/TIFF_Handler.cpp mishandles a case of a zero length, leading…
- CVE-2018-77291 PoCAn issue was discovered in Exempi through 2.4.4. There is a stack-based buffer over-read in the PostScript_MetaHandler::ParsePSFile()…
- CVE-2018-77301 PoCAn issue was discovered in Exempi through 2.4.4. A certain case of a 0xffffffff length is mishandled in…
- CVE-2018-77311 PoCAn issue was discovered in Exempi through 2.4.4. XMPFiles/source/FormatSupport/WEBP_Support.cpp does not check whether a bitstream has a…
- CVE-2018-77362 PoCsIn Z-BlogPHP 1.5.1.1740, cmd.php has XSS via the ZC_BLOG_SUBNAME parameter or ZC_UPLOAD_FILETYPE parameter. NOTE: the software maintainer…
- CVE-2018-77372 PoCsIn Z-BlogPHP 1.5.1.1740, there is Web Site physical path leakage, as demonstrated by admin_footer.php or admin_footer.php. NOTE: the…
- CVE-2018-77393 PoCsantsle antman before 0.9.1a allows remote attackers to bypass authentication via invalid characters in the username and password…
- CVE-2018-77451 PoCAn issue was discovered in Western Bridge Cobub Razor 0.7.2. Authentication is not required for…
- CVE-2018-77461 PoCAn issue was discovered in Western Bridge Cobub Razor 0.7.2. Authentication is not required for /index.php?/manage/channel/modifychannel.…
- CVE-2018-77472 PoCsMultiple cross-site scripting (XSS) vulnerabilities in the Caldera Forms plugin before 1.6.0-rc.1 for WordPress allow remote attackers to…
- CVE-2018-77503 PoCstransport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.18.5, 2.0.x before 2.0.8, 2.1.x before 2.1.5,…
- CVE-2018-77562 PoCsRunExeFile.exe in the installer for DEWESoft X3 SP1 (64-bit) devices does not require authentication for sessions on TCP port 1999, which…
- CVE-2018-77651 PoCThe vulnerability exists within processing of track_import_export.php in Schneider Electric U.motion Builder software versions prior to…
- CVE-2018-77771 PoCThe vulnerability is due to insufficient handling of update_file request parameter on update_module.php in Schneider Electric U.motion…
- CVE-2018-78011 PoCA Code Injection vulnerability exists in EVLink Parking, v3.2.0-12_v1 and earlier, which could enable access with maximum privileges when…
- CVE-2018-78091 PoCAn Unverified Password Change vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200…
- CVE-2018-78101 PoCAn Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists in the embedded web servers…
- CVE-2018-78111 PoCAn Unverified Password Change vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200…
- CVE-2018-78301 PoCImproper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability exists in the embedded web servers in…
- CVE-2018-78311 PoCAn Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability exists in the embedded web servers in all…
- CVE-2018-78414 PoCsKEVA SQL Injection (CWE-89) vulnerability exists in U.motion Builder software version 1.3.4 which could cause unwanted code execution when an…
- CVE-2018-78422 PoCsA CWE-290: Authentication Bypass by Spoofing vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and…
- CVE-2018-78432 PoCsA CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2018-78442 PoCsA CWE-200: Information Exposure vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon…
- CVE-2018-78452 PoCsA CWE-125: Out-of-bounds Read vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2018-78462 PoCsA CWE-501: Trust Boundary Violation vulnerability on connection to the Controller exists in all versions of the Modicon M580, Modicon…
- CVE-2018-78482 PoCsA CWE-200: Information Exposure vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon…
- CVE-2018-78492 PoCsA CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum and Modicon Premium…
- CVE-2018-78522 PoCsA CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2018-78531 PoCA CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2018-78542 PoCsA CWE-248 Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2018-78552 PoCsA CWE-248 Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2018-78562 PoCsA CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2018-78571 PoCA CWE-248: Uncaught Exception vulnerability exists in all versions of the Modicon M580, Modicon M340, Modicon Quantum, and Modicon Premium…
- CVE-2018-78661 PoCA NULL pointer dereference was discovered in newVar3 in util/decompile.c in libming 0.4.8. The vulnerability causes a segmentation fault…
- CVE-2018-78671 PoCThere is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 during a RegisterNumber sprintf. A…
- CVE-2018-78681 PoCThere is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input…
- CVE-2018-78691 PoCThere is a memory leak triggered in the function dcinit of util/decompile.c in libming 0.4.8, which will lead to a denial of service attack.
- CVE-2018-78701 PoCAn invalid memory address dereference was discovered in getString in util/decompile.c in libming 0.4.8 for CONSTANT16 data. The…
- CVE-2018-78711 PoCThere is a heap-based buffer over-read in the getName function of util/decompile.c in libming 0.4.8 for CONSTANT16 data. A crafted input…
- CVE-2018-78721 PoCAn invalid memory address dereference was discovered in the function getName in libming 0.4.8 for CONSTANT16 data. The vulnerability…
- CVE-2018-78731 PoCThere is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for INTEGER data. A Crafted input…
- CVE-2018-78741 PoCAn invalid memory address dereference was discovered in strlenext in util/decompile.c in libming 0.4.8. The vulnerability causes a…
- CVE-2018-78751 PoCThere is a heap-based buffer over-read in the getString function of util/decompile.c in libming 0.4.8 for CONSTANT8 data. A Crafted input…
- CVE-2018-78761 PoCIn libming 0.4.8, a memory exhaustion vulnerability was found in the function parseSWF_ACTIONRECORD in util/parser.c, which allows remote…
- CVE-2018-78771 PoCThere is a heap-based buffer overflow in the getString function of util/decompile.c in libming 0.4.8 for DOUBLE data. A Crafted input will…
- CVE-2018-78861 PoCAn issue was discovered in CloudMe 1.11.0. An unauthenticated local attacker that can connect to the "CloudMe Sync" client application…
- CVE-2018-78891 PoCgui2/viewer/bookmarkmanager.py in Calibre 3.18 calls cPickle.load on imported bookmark data, which allows remote attackers to execute…
- CVE-2018-78903 PoCsA remote code execution issue was discovered in Zoho ManageEngine Applications Manager before 13.6 (build 13640). The publicly accessible…
- CVE-2018-78931 PoCCMS Made Simple (CMSMS) 2.2.6 has stored XSS in admin/moduleinterface.php via the metadata parameter.
- CVE-2018-79211 PoCHuawei B315s-22 products with software of 21.318.01.00.26 have an information leak vulnerability. Unauthenticated adjacent attackers may…
- CVE-2018-79352 PoCsThere is a vulnerability in 21.328.01.00.00 version of the E5573Cs-322. Remote attackers could exploit this vulnerability to make the…
- CVE-2018-79991 PoCIn libgraphite2 in graphite2 1.3.11, a NULL pointer dereference vulnerability was found in Segment.cpp during a dumbRendering operation,…