CVE-2018-9000 to CVE-2018-9999
132 CVEs with public proof-of-concept exploits.
- CVE-2018-90001 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_x86.sys) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-90011 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90021 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90031 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_x86.sys) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-90041 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_x86.sys) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-90051 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90061 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90071 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_x86.sys) allows local users to cause a denial of service (BSOD) or…
- CVE-2018-90091 PoCIn libming 0.4.8, there is a use-after-free in the decompileJUMP function of the decompile.c file.
- CVE-2018-90101 PoCIntelbras TELEFONE IP TIP200/200 LITE 60.0.75.29 devices allow remote authenticated admins to read arbitrary files via the…
- CVE-2018-90151 PoCdsmall v20180320 allows XSS via the public/index.php/home/predeposit/index.html pdr_sn parameter (aka the CMS search box).
- CVE-2018-90161 PoCdsmall v20180320 allows XSS via the main page search box at the public/index.php/home URI.
- CVE-2018-90171 PoCdsmall v20180320 allows XSS via the member search box at the public/index.php/home/membersnsfriend/findlist.html URI.
- CVE-2018-90181 PoCIn GraphicsMagick 1.3.28, there is a divide-by-zero in the ReadMNGImage function of coders/png.c. Remote attackers could leverage this…
- CVE-2018-90201 PoCThe Events Manager plugin before 5.8.1.2 for WordPress allows XSS via the events-manager.js mapTitle parameter in the Google Maps miniature.
- CVE-2018-90212 PoCsAn authentication bypass vulnerability in CA Privileged Access Manager 2.8.2 and earlier allows remote attackers to execute arbitrary…
- CVE-2018-90222 PoCsAn authentication bypass vulnerability in CA Privileged Access Manager 2.8.2 and earlier allows remote attackers to execute arbitrary code…
- CVE-2018-90321 PoCAn authentication bypass vulnerability on D-Link DIR-850L Wireless AC1200 Dual Band Gigabit Cloud Router (Hardware Version : A1, B1;…
- CVE-2018-90341 PoCCross-site scripting (XSS) vulnerability in lib/interface.php of the Relevanssi plugin 4.0.4 for WordPress allows remote attackers to…
- CVE-2018-90351 PoCCSV Injection vulnerability in ExportToCsvUtf8.php of the Contact Form 7 to Database Extension plugin 2.10.32 for WordPress allows remote…
- CVE-2018-90371 PoCMonstra CMS 3.0.4 allows remote code execution via an upload_file request for a .zip file, which is automatically extracted and may…
- CVE-2018-90381 PoCMonstra CMS 3.0.4 allows remote attackers to delete files via an admin/index.php?id=filesmanager&delete_dir=./&path=uploads/ request.
- CVE-2018-90401 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90411 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90421 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90431 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90441 PoCIn Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD)…
- CVE-2018-90451 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90461 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90471 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90481 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90491 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90501 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90511 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90521 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90531 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90541 PoCIn Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial…
- CVE-2018-90551 PoCJasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_firstone in libjasper/jpc/jpc_math.c.
- CVE-2018-90561 PoCSystems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local…
- CVE-2018-90581 PoCIn Long Range Zip (aka lrzip) 0.631, there is an infinite loop in the runzip_fd function of runzip.c. Remote attackers could leverage this…
- CVE-2018-90594 PoCsStack-based buffer overflow in Easy File Sharing (EFS) Web Server 7.2 allows remote attackers to execute arbitrary code via a malicious…
- CVE-2018-90751 PoCIomega and LenovoEMC NAS Web UI Vulnerabilities
- CVE-2018-90922 PoCsThere is a CSRF vulnerability in mc-admin/conf.php in MiniCMS 1.10 that can change the administrator account password.
- CVE-2018-91061 PoCCSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcySMS extension before 3.5.1 for…
- CVE-2018-91071 PoCCSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcyMailing extension before 5.9.6…
- CVE-2018-91131 PoCCenters for Disease Control and Prevention MicrobeTRACE 0.1.12 allows remote attackers to execute arbitrary code, related to code…
- CVE-2018-91152 PoCsSystematic SitaWare 6.4 SP2 does not validate input from other sources sufficiently. e.g., information utilizing the NVG interface. An…
- CVE-2018-91183 PoCsexports/download.php in the 99 Robots WP Background Takeover Advertisements plugin before 4.1.5 for WordPress has Directory Traversal via…
- CVE-2018-91202 PoCsIn Crea8social 2018.2, there is Stored Cross-Site Scripting via a post.
- CVE-2018-91212 PoCsIn Crea8social 2018.2, there is Stored Cross-Site Scripting via a post comment.
- CVE-2018-91222 PoCsIn Crea8social 2018.2, there is Reflected Cross-Site Scripting via the term parameter to the /search URI.
- CVE-2018-91231 PoCIn Crea8social 2018.2, there is Stored Cross-Site Scripting via a User Profile.
- CVE-2018-91263 PoCsThe DNNArticle module 11 for DNN (formerly DotNetNuke) allows remote attackers to read the web.config file, and consequently discover…
- CVE-2018-91283 PoCsDVD X Player Standard 5.5.3.9 has a Buffer Overflow via a crafted .plf file, a related issue to CVE-2007-3068.
- CVE-2018-91321 PoClibming 0.4.8 has a NULL pointer dereference in the getInt function of the decompile.c file. Remote attackers could leverage this…
- CVE-2018-91331 PoCImageMagick 7.0.7-26 Q16 has excessive iteration in the DecodeLabImage and EncodeLabImage functions (coders/tiff.c), which results in a…
- CVE-2018-91351 PoCIn ImageMagick 7.0.7-24 Q16, there is a heap-based buffer over-read in IsWEBPImageLossless in coders/webp.c.
- CVE-2018-91361 PoCwindrvr1260.sys in Jungo DriverWizard WinDriver 12.6.0 allows attackers to cause a denial of service (BSOD) via a crafted .exe file, a…
- CVE-2018-91371 PoCOpen-AudIT before 2.2 has CSV Injection.
- CVE-2018-91441 PoCIn Exiv2 0.26, there is an out-of-bounds read in Exiv2::Internal::binaryToString in image.cpp. It could result in denial of service or…
- CVE-2018-91451 PoCIn the DataBuf class in include/exiv2/types.hpp in Exiv2 0.26, an issue exists in the constructor with an initial buffer size. A large…
- CVE-2018-91481 PoCWestern Digital WD My Cloud v04.05.00-320 devices embed the session token (aka PHPSESSID) in filenames, which makes it easier for…
- CVE-2018-91491 PoCThe Zyxel Multy X (AC3000 Tri-Band WiFi System) device doesn't use a suitable mechanism to protect the UART. After an attacker dismantles…
- CVE-2018-91552 PoCsCross-site scripting (XSS) vulnerability in Open-AudIT Professional 2.1.1 allows remote attackers to inject arbitrary web script or HTML…
- CVE-2018-91561 PoCAn issue was discovered on AXIS P1354 (IP camera) Firmware version 5.90.1.1 devices. The upload web page doesn't verify the file type, and…
- CVE-2018-91581 PoCAn issue was discovered on AXIS M1033-W (IP camera) Firmware version 5.40.5.1 devices. They don't employ a suitable mechanism to prevent a…
- CVE-2018-91591 PoCIn Spark before 2.7.2, a remote attacker can read unintended static files via various representations of absolute or relative pathnames,…
- CVE-2018-91603 PoCsSickRage before v2018.03.09-1 includes cleartext credentials in HTTP responses.
- CVE-2018-91612 PoCsPrisma Industriale Checkweigher PrismaWEB 1.21 allows remote attackers to discover the hardcoded prisma password for the prismaweb account…
- CVE-2018-91621 PoCContec Smart Home 4.15 devices do not require authentication for new_user.php, edit_user.php, delete_user.php, and user.php, as…
- CVE-2018-91631 PoCA stored Cross-site scripting (XSS) vulnerability in Zoho ManageEngine Recovery Manager Plus before 5.3 (Build 5350) allows remote…
- CVE-2018-91721 PoCThe Iptanus WordPress File Upload plugin before 4.3.3 for WordPress mishandles shortcode attributes.
- CVE-2018-91731 PoCCross-site scripting (XSS) vulnerability in admin/template/js/uploadify/uploadify.swf in GetSimple CMS 3.3.13 allows remote attackers to…
- CVE-2018-91751 PoCDedeCMS 5.7 allows remote attackers to execute arbitrary PHP code via the egroup parameter to uploads/dede/stepselect_main.php because…
- CVE-2018-91831 PoCThe Joom Sky JS Jobs extension before 1.2.1 for Joomla! has XSS.
- CVE-2018-92052 PoCsVulnerability in avatar_uploader v7.x-1.0-beta8 , The code in view.php doesn't verify users or sanitize the file path.
- CVE-2018-920612 PoCsUnauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0
- CVE-2018-92071 PoCArbitrary file upload in jQuery Upload File <= 4.0.2
- CVE-2018-92081 PoCUnauthenticated arbitrary file upload vulnerability in jQuery Picture Cut <= v1.1Beta
- CVE-2018-92331 PoCSophos Endpoint Protection 10.7 uses an unsalted SHA-1 hash for password storage in %PROGRAMDATA%\Sophos\Sophos…
- CVE-2018-92352 PoCsiScripts SonicBB 1.0 has Reflected Cross-Site Scripting via the query parameter to search.php.
- CVE-2018-92362 PoCsiScripts EasyCreate 3.2.1 has Stored Cross-Site Scripting in the "Site title" field.
- CVE-2018-92372 PoCsiScripts EasyCreate 3.2.1 has Stored Cross-Site Scripting in the "Site Description" field.
- CVE-2018-92382 PoCsproberv.php in Yahei-PHP Proberv 0.4.7 has XSS via the funName parameter.
- CVE-2018-92431 PoCGitLab Community and Enterprise Editions version 8.4 up to 10.4 are vulnerable to XSS because a lack of input validation in the merge…
- CVE-2018-92441 PoCGitLab Community and Enterprise Editions version 9.2 up to 10.4 are vulnerable to XSS because a lack of input validation in the milestones…
- CVE-2018-92451 PoCThe Ericsson-LG iPECS NMS A.1Ac login portal has a SQL injection vulnerability in the User ID and password fields that allows users to…
- CVE-2018-92481 PoCFiberHome VDSL2 Modem HG 150-UB devices allow authentication bypass via a "Cookie: Name=0admin" header.
- CVE-2018-92511 PoCThe xz_decomp function in xzlib.c in libxml2 2.9.8, if --with-lzma is used, allows remote attackers to cause a denial of service (infinite…
- CVE-2018-92521 PoCJasPer 2.0.14 allows denial of service via a reachable assertion in the function jpc_abstorelstepsize in libjasper/jpc/jpc_enc.c.
- CVE-2018-92591 PoCIn Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the MP4 dissector could crash. This was addressed in epan/dissectors/file-mp4.c by…
- CVE-2018-927610 PoCsKEVAn issue was discovered in PRTG Network Monitor before 18.2.39. An attacker who has access to the PRTG System Administrator web console…
- CVE-2018-92821 PoCAn XSS issue was discovered in Subsonic Media Server 6.1.1. The podcast subscription form is affected by a stored XSS vulnerability in the…
- CVE-2018-92831 PoCAn XSS issue was discovered in CremeCRM 1.6.12. It is affected by 10 stored Cross-Site Scripting (XSS) vulnerabilities in the firstname,…
- CVE-2018-93021 PoCSSRF (Server Side Request Forgery) in /assets/lib/fuc.js.php in Cockpit 0.4.4 through 0.5.5 allows remote attackers to read arbitrary…
- CVE-2018-93031 PoCIn Exiv2 0.26, an assertion failure in BigTiffImage::readData in bigtiffimage.cpp results in an abort.
- CVE-2018-93042 PoCsIn Exiv2 0.26, a divide by zero in BigTiffImage::printIFD in bigtiffimage.cpp could result in denial of service.
- CVE-2018-93052 PoCsIn Exiv2 0.26, an out-of-bounds read in IptcData::printStructure in iptc.c could result in a crash or information leak, related to the "==…
- CVE-2018-93071 PoCdsmall v20180320 allows XSS via the pdr_sn parameter to public/index.php/home/predeposit/index.html.
- CVE-2018-93091 PoCAn issue was discovered in zzcms 8.2. It allows SQL injection via the id parameter in a dl/dl_sendsms.php request.
- CVE-2018-93281 PoCPHP Scripts Mall Redbus Clone Script 3.0.6 has XSS via the ter_from or tag parameter to results.php.
- CVE-2018-93301 PoCregister.jsp in Coremail XT3.0 allows stored XSS, as demonstrated by the third form field to a URI under register/, a different…
- CVE-2018-93311 PoCAn issue was discovered in zzcms 8.2. user/adv.php allows remote attackers to delete arbitrary files via directory traversal sequences in…
- CVE-2018-93381 PoCIn ResStringPool::setTo of ResourceTypes.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to…
- CVE-2018-93583 PoCsIn gatts_process_attribute_req of gatt_sc.cc, there is a possible read of uninitialized data due to a missing bounds check. This could…
- CVE-2018-93613 PoCsIn process_l2cap_cmd of l2c_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote…
- CVE-2018-93751 PoCIn multiple functions of UserDictionaryProvider.java, there is a possible way to add and delete words in the user dictionary due to a…
- CVE-2018-94111 PoCIn decrypt of ClearKeyCasPlugin.cpp there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote…
- CVE-2018-94451 PoCIn readMetadata of Utils.cpp, there is a possible path traversal bug due to a confused deputy. This could lead to local escalation of…
- CVE-2018-94681 PoCIn query of DownloadManager.java, there is a possible read/write of arbitrary files due to a permissions bypass. This could lead to local…
- CVE-2018-94881 PoCIn the SELinux permissions of crash_dump.te, there is a permissions bypass due to a missing restriction. This could lead to a local…
- CVE-2018-94931 PoCIn the content provider of the download manager, there is a possible SQL injection due to improper input validation. This could lead to…
- CVE-2018-94991 PoCIn readVector of iCrypto.cpp, there is a possible invalid read due to uninitialized data. This could lead to local information disclosure…
- CVE-2018-95151 PoCIn sdcardfs_create and sdcardfs_mkdir of inode.c, there is a possible memory corruption due to improper locking. This could lead to local…
- CVE-2018-95391 PoCIn the ClearKey CAS descrambler, there is a possible use after free due to a race condition. This could lead to local escalation of…
- CVE-2018-98425 PoCsCyberArk Password Vault before 9.7 allows remote attackers to obtain sensitive information from process memory by replaying a logon message.
- CVE-2018-98433 PoCsThe REST API in CyberArk Password Vault Web Access before 9.9.5 and 10.x before 10.1 allows remote attackers to execute arbitrary code via…
- CVE-2018-98441 PoCThe Iptanus WordPress File Upload plugin before 4.3.4 for WordPress mishandles Settings attributes, leading to XSS.
- CVE-2018-98451 PoCEtherpad Lite before 1.6.4 is exploitable for admin access.
- CVE-2018-98561 PoCKotti before 1.3.2 and 2.x before 2.0.0b2 has CSRF in the local roles implementation, as demonstrated by triggering a permission change…
- CVE-2018-98572 PoCsPHP Scripts Mall Match Clone Script 1.0.4 has XSS via the search field to searchbyid.php (aka the "View Search By Id" screen).
- CVE-2018-98642 PoCsThe WP Live Chat Support plugin before 8.0.06 for WordPress has stored XSS via the Name field.
- CVE-2018-99181 PoClibqpdf.a in QPDF through 8.0.2 mishandles certain "expected dictionary key but found non-name object" cases, allowing remote attackers to…
- CVE-2018-99262 PoCsAn issue was discovered in WUZHI CMS 4.1.0. There is a CSRF vulnerability that can add an admin account via index.php?m=core&f=power&v=add.
- CVE-2018-99271 PoCAn issue was discovered in WUZHI CMS 4.1.0. There is a CSRF vulnerability that can add a user account via index.php?m=member&f=index&v=add.
- CVE-2018-99485 PoCsThis vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User…
- CVE-2018-99502 PoCsThis vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User…
- CVE-2018-99512 PoCsThis vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User…
- CVE-2018-99586 PoCsThis vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049. User…
- CVE-2018-99851 PoCThe front page of MetInfo 6.0 allows XSS by sending a feedback message to an administrator.
- CVE-2018-999534 PoCsTBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR Login, and MDVR…
- CVE-2018-99961 PoCAn issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++…