VYPR

CVEs

102,253 total · page 1729 of 2,046

  • CVE-2018-17104HigSep 16, 2018
    risk 0.00cvss 8.8epss 0.01

    An issue was discovered in Microweber 1.0.7. There is a CSRF attack (against the admin user) that can add an administrative account via api/save_user.

  • CVE-2018-17103HigSep 16, 2018
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in GetSimple CMS v3.3.13. There is a CSRF vulnerability that can change the administrator's password via admin/settings.php. NOTE: The vendor reported that the PoC was sending a value for the nonce parameter

  • CVE-2018-17102HigSep 16, 2018
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in QuickAppsCMS (aka QACMS) through 2.0.0-beta2. A CSRF vulnerability can change the administrator password via the user/me URI.

  • CVE-2018-17101HigSep 16, 2018
    risk 0.57cvss 8.8epss 0.03

    An issue was discovered in LibTIFF 4.0.9. There are two out-of-bounds writes in cpTags in tools/tiff2bw.c and tools/pal2rgb.c, which can cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image file.

  • CVE-2018-17100HigSep 16, 2018
    risk 0.57cvss 8.8epss 0.02

    An issue was discovered in LibTIFF 4.0.9. There is a int32 overflow in multiply_ms in tools/ppm2tiff.c, which can cause a denial of service (crash) or possibly have unspecified other impact via a crafted image file.

  • CVE-2018-17098HigSep 16, 2018
    risk 0.57cvss 8.8epss 0.03

    The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly have unspecified other impact, as demonstrated by SoundStretch.

  • CVE-2018-17097HigSep 16, 2018
    risk 0.57cvss 8.8epss 0.03

    The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact, as demonstrated by SoundStretch.

  • CVE-2018-17095HigSep 16, 2018
    risk 0.58cvss 8.8epss 0.05

    An issue has been discovered in mpruett Audio File Library (aka audiofile) 0.3.6, 0.3.5, 0.3.4, 0.3.3, 0.3.2, 0.3.1, 0.3.0. A heap-based buffer overflow in Expand3To4Module::run has occurred when running sfconvert.

  • CVE-2018-17088HigSep 16, 2018
    risk 0.51cvss 7.8epss 0.02

    The ProcessGpsInfo function of the gpsinfo.c file of jhead 3.00 may allow a remote attacker to cause a denial-of-service attack or unspecified other impact via a malicious JPEG file, because there is an integer overflow during a check for whether a location exceeds the EXIF data…

  • CVE-2018-17076HigSep 16, 2018
    risk 0.57cvss 8.8epss 0.01

    GPP through 2.25 will try to use more memory space than is available on the stack, leading to a segmentation fault or possibly unspecified other impact via a crafted file.

  • CVE-2018-17075HigSep 16, 2018
    risk 0.42cvss 7.5epss 0.03

    The html package (aka x/net/html) before 2018-07-13 in Go mishandles "in frameset" insertion mode, leading to a "panic: runtime error" for html.Parse of , , or . This is related to HTMLTreeBuilder.cpp in WebKit.

  • CVE-2018-17073HigSep 16, 2018
    risk 0.49cvss 7.5epss 0.01

    wernsey/bitmap before 2018-08-18 allows a NULL pointer dereference via a 4-bit image.

  • CVE-2018-16554HigSep 16, 2018
    risk 0.51cvss 7.8epss 0.02

    The ProcessGpsInfo function of the gpsinfo.c file of jhead 3.00 may allow a remote attacker to cause a denial-of-service attack or unspecified other impact via a malicious JPEG file, because of inconsistency between float and double in a sprintf format string during TAG_GPS_ALT…

  • CVE-2018-16706HigSep 14, 2018
    risk 0.51cvss 7.5epss 0.22

    LG SuperSign CMS allows TVs to be rebooted remotely without authentication via a direct HTTP request to /qsr_server/device/reboot on port 9080.

  • CVE-2018-16288HigSep 14, 2018
    risk 0.62cvss 8.6epss 0.36

    LG SuperSign CMS allows reading of arbitrary files via signEzUI/playlist/edit/upload/..%2f URIs.

  • CVE-2018-12585HigSep 14, 2018
    risk 0.53cvss 8.2epss 0.02

    An XXE vulnerability in the OPC UA Java and .NET Legacy Stack can allow remote attackers to trigger a denial of service.

  • CVE-2018-12086HigSep 14, 2018
    risk 0.50cvss 7.5epss 0.12

    Buffer overflow in OPC UA applications allows remote attackers to trigger a stack overflow with carefully structured requests.

  • CVE-2018-10814HigSep 14, 2018
    risk 0.54cvss 7.8epss 0.01

    Synametrics SynaMan 4.0 build 1488 uses cleartext password storage for SMTP credentials.

  • CVE-2018-14638HigSep 14, 2018
    risk 0.49cvss 7.5epss 0.03

    A flaw was found in 389-ds-base before version 1.3.8.4-13. The process ns-slapd crashes in delete_passwdPolicy function when persistent search connections are terminated unexpectedly leading to remote denial of service.

  • CVE-2018-17045HigSep 14, 2018
    risk 0.57cvss 8.8epss 0.00

    An issue was discovered in CMS MaeloStore V.1.5.0. There is a CSRF vulnerability that can change the administrator password via admin/modul/users/aksi_users.php?act=update.

  • CVE-2018-17043HigSep 14, 2018
    risk 0.51cvss 7.8epss 0.01

    An issue has been found in doc2txt through 2014-03-19. It is a heap-based buffer overflow in the function Storage::init in Storage.cpp, called from parse_doc in parse_doc.cpp.

  • CVE-2018-17037HigSep 14, 2018
    risk 0.57cvss 8.8epss 0.01

    user/editpost.php in UCMS 1.4.6 mishandles levels, which allows escalation from the normal user level of 1 to the superuser level of 3.

  • CVE-2018-17030HigSep 14, 2018
    risk 0.49cvss 7.5epss 0.02

    BigTree CMS 4.2.23 allows remote authenticated users, if possessing privileges to set hooks, to execute arbitrary code via /core/admin/auto-modules/forms/process.php.

  • CVE-2018-17023HigSep 13, 2018
    risk 0.57cvss 8.8epss 0.01

    Cross-site request forgery (CSRF) vulnerability on ASUS GT-AC5300 routers with firmware through 3.0.0.4.384_32738 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via a request to start_apply.htm.

  • CVE-2018-17022HigSep 13, 2018
    risk 0.47cvss 7.2epss 0.02

    Stack-based buffer overflow on the ASUS GT-AC5300 router through 3.0.0.4.384_32738 allows remote attackers to cause a denial of service (device crash) or possibly have unspecified other impact by setting a long sh_path0 value and then sending an…

  • CVE-2018-17020HigSep 13, 2018
    risk 0.49cvss 7.5epss 0.02

    ASUS GT-AC5300 devices with firmware through 3.0.0.4.384_32738 allow remote attackers to cause a denial of service via a single "GET / HTTP/1.1\r\n" line.

  • CVE-2018-17019HigSep 13, 2018
    risk 0.00cvss 7.5epss 0.01

    In Bro through 2.5.5, there is a DoS in IRC protocol names command parsing in analyzer/protocol/irc/IRC.cc.

  • CVE-2018-1330HigSep 13, 2018
    risk 0.49cvss 7.5epss 0.04

    When parsing a malformed JSON payload, libprocess in Apache Mesos versions 1.4.0 to 1.5.0 might crash due to an uncaught exception. Parsing chunked HTTP requests with trailers can lead to a libprocess crash too because of the mistakenly planted assertion. A malicious actor can…

  • CVE-2018-10637HigSep 13, 2018
    risk 0.51cvss 7.8epss 0.02

    A maliciously crafted project file may cause a buffer overflow, which may allow the attacker to execute arbitrary code that affects Fuji Electric V-Server Lite 4.0.3.0 and prior.

  • CVE-2018-16796HigSep 13, 2018
    risk 0.57cvss 8.8epss 0.03

    HiScout GRC Suite before 3.1.5 allows Unrestricted Upload of Files with Dangerous Types.

  • CVE-2018-16745HigSep 13, 2018
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in mgetty before 1.2.1. In fax_notify_mail() in faxrec.c, the mail_to parameter is not sanitized. It could allow a buffer overflow if long untrusted input can reach it.

  • CVE-2018-16744HigSep 13, 2018
    risk 0.51cvss 7.8epss 0.01

    An issue was discovered in mgetty before 1.2.1. In fax_notify_mail() in faxrec.c, the mail_to parameter is not sanitized. It could allow for command injection if untrusted input can reach it, because popen is used.

  • CVE-2018-16743HigSep 13, 2018
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in mgetty before 1.2.1. In contrib/next-login/login.c, the command-line parameter username is passed unsanitized to strcpy(), which can cause a stack-based buffer overflow.

  • CVE-2018-16742HigSep 13, 2018
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in mgetty before 1.2.1. In contrib/scrts.c, a stack-based buffer overflow can be triggered via a command-line parameter.

  • CVE-2018-16741HigSep 13, 2018
    risk 0.51cvss 7.8epss 0.01

    An issue was discovered in mgetty before 1.2.1. In fax/faxq-helper.c, the function do_activate() does not properly sanitize shell metacharacters to prevent command injection. It is possible to use the ||, &&, or > characters within a file created by the "faxq-helper activate…

  • CVE-2018-16987HigSep 13, 2018
    risk 0.47cvss 7.2epss 0.01

    Squash TM through 1.18.0 presents the cleartext passwords of external services in the administration panel, as demonstrated by a ta-server-password field in the HTML source code.

  • CVE-2018-5549HigSep 13, 2018
    risk 0.49cvss 7.5epss 0.02

    On BIG-IP APM 11.6.0-11.6.3.1, 12.1.0-12.1.3.3, 13.0.0, and 13.1.0-13.1.0.3, APMD may core when processing SAML Assertion or response containing certain elements.

  • CVE-2018-5545HigSep 13, 2018
    risk 0.57cvss 8.8epss 0.02

    On F5 WebSafe Alert Server 1.0.0-4.2.6, a malicious, authenticated user can execute code on the alert server by using a maliciously crafted payload.

  • CVE-2018-16985HigSep 13, 2018
    risk 0.49cvss 7.5epss 0.01

    In Lizard (formerly LZ5) 2.0, use of an invalid memory address was discovered in LZ5_compress_continue in lz5_compress.c, related to LZ5_compress_fastSmall and MEM_read32. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.

  • CVE-2018-8475HigSep 13, 2018
    risk 0.58cvss 8.8epss 0.15

    A remote code execution vulnerability exists when Windows does not properly handle specially crafted image files, aka "Windows Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows…

  • CVE-2018-8474HigSep 13, 2018
    risk 0.55cvss 7.5epss 0.38

    A security feature bypass vulnerability exists when Lync for Mac 2011 fails to properly sanitize specially crafted messages, aka "Lync for Mac 2011 Security Feature Bypass Vulnerability." This affects Microsoft Lync.

  • CVE-2018-8469HigSep 13, 2018
    risk 0.52cvss 7.4epss 0.15

    An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser, aka "Microsoft Edge Elevation of Privilege Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-8463.

  • CVE-2018-8467HigSep 13, 2018
    risk 0.02cvss 7.5epss 0.69

    A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8367,…

  • CVE-2018-8466HigSep 13, 2018
    risk 0.02cvss 7.5epss 0.69

    A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8367,…

  • CVE-2018-8465HigSep 13, 2018
    risk 0.43cvss 7.5epss 0.15

    A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8367,…

  • CVE-2018-8464HigSep 13, 2018
    risk 0.52cvss 7.5epss 0.43

    An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "Microsoft Edge PDF Remote Code Execution Vulnerability." This affects Microsoft Edge.

  • CVE-2018-8463HigSep 13, 2018
    risk 0.52cvss 7.4epss 0.15

    An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser, aka "Microsoft Edge Elevation of Privilege Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-8469.

  • CVE-2018-8462HigSep 13, 2018
    risk 0.51cvss 7.8epss 0.01

    An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX Graphics Kernel Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.

  • CVE-2018-8461HigSep 13, 2018
    risk 0.50cvss 7.5epss 0.13

    A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This affects Internet Explorer 11. This CVE ID is unique from CVE-2018-8447.

  • CVE-2018-8459HigSep 13, 2018
    risk 0.43cvss 7.5epss 0.14

    A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8354, CVE-2018-8391,…