VYPR

CVEs

101,990 total · page 1765 of 2,040

  • CVE-2018-12565HigJun 19, 2018
    risk 0.57cvss 8.8epss 0.02

    An issue was discovered in Linaro LAVA before 2018.5.post1. Because of use of yaml.load() instead of yaml.safe_load() when parsing user data, remote code execution can occur.

  • CVE-2018-12561HigJun 19, 2018
    risk 0.00cvss 8.8epss 0.01

    An issue was discovered in the cantata-mounter D-Bus service in Cantata through 2.3.1. A regular user can inject additional mount options such as file_mode= by manipulating (for example) the domain parameter of the samba URL.

  • CVE-2018-12559HigJun 19, 2018
    risk 0.00cvss 8.8epss 0.02

    An issue was discovered in the cantata-mounter D-Bus service in Cantata through 2.3.1. The mount target path check in mounter.cpp `mpOk()` is insufficient. A regular user can consequently mount a CIFS filesystem anywhere (e.g., outside of the /home directory tree) by passing…

  • CVE-2018-9028HigJun 18, 2018
    risk 0.49cvss 7.5epss 0.01

    Weak cryptography used for passwords in CA Privileged Access Manager 2.x reduces the complexity for password cracking.

  • CVE-2018-9026HigJun 18, 2018
    risk 0.49cvss 7.5epss 0.01

    A session fixation vulnerability in CA Privileged Access Manager 2.x allows remote attackers to hijack user sessions with a specially crafted request.

  • CVE-2018-9025HigJun 18, 2018
    risk 0.49cvss 7.5epss 0.01

    An input validation vulnerability in CA Privileged Access Manager 2.x allows remote attackers to poison log files with specially crafted input.

  • CVE-2018-9023HigJun 18, 2018
    risk 0.57cvss 8.8epss 0.02

    An input validation vulnerability in CA Privileged Access Manager 2.x allows unprivileged users to execute arbitrary commands by passing specially crafted arguments to the update_crld script.

  • CVE-2018-1333HigJun 18, 2018
    risk 0.50cvss 7.5epss 0.17

    By specially crafting HTTP/2 requests, workers would be allocated 60 seconds longer than necessary, leading to worker exhaustion and a denial of service. Fixed in Apache HTTP Server 2.4.34 (Affected 2.4.18-2.4.30,2.4.33).

  • CVE-2018-1153HigJun 18, 2018
    risk 0.48cvss 7.4epss 0.00

    Burp Suite Community Edition 1.7.32 and 1.7.33 fail to validate the server certificate in a couple of HTTPS requests which allows a man in the middle to modify or view traffic.

  • CVE-2018-1060HigJun 18, 2018
    risk 0.42cvss 7.5epss 0.05

    python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in pop3lib's apop() method. An attacker could use this flaw to cause denial of service.

  • CVE-2018-12029HigJun 17, 2018
    risk 0.46cvss 7.0epss 0.00

    A race condition in the nginx module in Phusion Passenger 3.x through 5.x before 5.3.2 allows local escalation of privileges when a non-standard passenger_instance_registry_dir with insufficiently strict permissions is configured. Replacing a file with a symlink after the file…

  • CVE-2018-12028HigJun 17, 2018
    risk 0.44cvss 7.8epss 0.01

    An Incorrect Access Control vulnerability in SpawningKit in Phusion Passenger 5.3.x before 5.3.2 allows a Passenger-managed malicious application, upon spawning a child process, to report an arbitrary different PID back to Passenger's process manager. If the malicious…

  • CVE-2018-12027HigJun 17, 2018
    risk 0.57cvss 8.8epss 0.01

    An Insecure Permissions vulnerability in SpawningKit in Phusion Passenger 5.3.x before 5.3.2 causes information disclosure in the following situation: given a Passenger-spawned application process that reports that it listens on a certain Unix domain socket, if any of the parent…

  • CVE-2018-12335HigJun 17, 2018
    risk 0.47cvss 7.3epss 0.00

    Incorrect access control in ECOS System Management Appliance (aka SMA) 5.2.68 allows a user to compromise authentication keys, and access and manipulate security relevant configurations, via unrestricted database access during Easy Enrollment.

  • CVE-2018-12334HigJun 17, 2018
    risk 0.49cvss 7.5epss 0.01

    Protection Mechanism Failure in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows an attacker to compromise authentication and encryption keys via a virtualization attack.

  • CVE-2018-12333HigJun 17, 2018
    risk 0.53cvss 8.1epss 0.00

    Insufficient Verification of Data Authenticity vulnerability in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows an attacker to manipulate security relevant configurations and execute malicious code.

  • CVE-2018-12331HigJun 17, 2018
    risk 0.48cvss 7.4epss 0.01

    Authentication Bypass by Spoofing vulnerability in ECOS System Management Appliance (aka SMA) 5.2.68 allows a man-in-the-middle attacker to compromise authentication keys and configurations via IP spoofing during "Easy Enrollment."

  • CVE-2018-12330HigJun 17, 2018
    risk 0.53cvss 8.1epss 0.01

    Protection Mechanism Failure in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows an attacker to compromise authentication and encryption keys via compromised firmware.

  • CVE-2018-12326HigJun 17, 2018
    risk 0.03cvss 8.4epss 0.03

    Buffer overflow in redis-cli of Redis before 4.0.10 and 5.x before 5.0 RC3 allows an attacker to achieve code execution and escalate to higher privileges via a crafted command line. NOTE: It is unclear whether there are any common situations in which redis-cli is used with, for…

  • CVE-2018-12454HigJun 17, 2018
    risk 0.49cvss 7.5epss 0.01

    The _addguess function of a simplelottery smart contract implementation for 1000 Guess, an Ethereum gambling game, generates a random value with publicly readable variables such as the current block information and a private variable (which can be read with a getStorageAt call).…

  • CVE-2018-12453HigJun 16, 2018
    risk 0.05cvss 7.5epss 0.24

    Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which the key is not a stream.

  • CVE-2018-12504HigJun 16, 2018
    risk 0.49cvss 7.5epss 0.02

    tinyexr 0.9.5 has an assertion failure in ComputeChannelLayout in tinyexr.h.

  • CVE-2018-9859HigJun 16, 2018
    risk 0.53cvss 8.1epss 0.01

    The path of Whale update service was unquoted in NAVER Whale before 1.0.40.7. This vulnerability can be used for persistent privilege escalation if it's available to create an executable file with System privilege by other vulnerable applications.

  • CVE-2018-6497HigJun 16, 2018
    risk 0.57cvss 8.8epss 0.01

    Remote Cross-site Request forgery (CSRF) potential has been identified in UCMBD Server version DDM Content Pack V 10.20, 10.21, 10.22, 10.22 CUP7, 10.30, 10.31, 10.32, 10.33, 10.33 CUP2, 11.0 and CMS Server version 2018.05 BACKGROUND which could allow for remote unsafe…

  • CVE-2018-6496HigJun 16, 2018
    risk 0.57cvss 8.8epss 0.01

    Remote Cross-site Request forgery (CSRF) potential has been identified in UCMBD Browser version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15, 4.15.1 which could allow for remote unsafe deserialization and cross-site request forgery (CSRF).

  • CVE-2018-5752HigJun 16, 2018
    risk 0.61cvss 8.8epss 0.08

    The backend component in Open-Xchange OX App Suite before 7.6.3-rev36, 7.8.x before 7.8.2-rev39, 7.8.3 before 7.8.3-rev44, and 7.8.4 before 7.8.4-rev22 allows remote attackers to conduct server-side request forgery (SSRF) attacks via vectors involving non-decimal representations…

  • CVE-2018-11222HigJun 16, 2018
    risk 0.49cvss 7.5epss 0.07

    Local File Inclusion (LFI) in Artica Pandora FMS through version 7.23 allows an attacker to call any php file via the /pandora_console/ajax.php ajax endpoint.

  • CVE-2018-5863HigJun 15, 2018
    risk 0.51cvss 7.8epss 0.00

    If userspace provides a too-large WPA RSN IE length in wlan_hdd_cfg80211_set_ie(), a buffer overflow occurs in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

  • CVE-2018-12492HigJun 15, 2018
    risk 0.49cvss 7.5epss 0.01

    PHPOK 4.9.032 has an arbitrary file deletion vulnerability in the delfile_f function in framework/admin/tpl_control.php.

  • CVE-2018-12035HigJun 15, 2018
    risk 0.51cvss 7.8epss 0.01

    In YARA 3.7.1 and prior, parsing a specially crafted compiled rule file can cause an out of bounds write vulnerability in yr_execute_code in libyara/exec.c.

  • CVE-2018-12034HigJun 15, 2018
    risk 0.51cvss 7.8epss 0.01

    In YARA 3.7.1 and prior, parsing a specially crafted compiled rule file can cause an out of bounds read vulnerability in yr_execute_code in libyara/exec.c.

  • CVE-2018-5857HigJun 15, 2018
    risk 0.51cvss 7.8epss 0.00

    In the WCD CPE codec, a Use After Free condition can occur in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

  • CVE-2018-5854HigJun 15, 2018
    risk 0.51cvss 7.8epss 0.00

    A stack-based buffer overflow can occur in fastboot from all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

  • CVE-2018-1460HigJun 15, 2018
    risk 0.55cvss 8.4epss 0.01

    IBM Netezza Platform Software (IBM PureData System for Analytics 1.0.0) could allow a local user to modify a world writable file, which could be used to execute commands as root. IBM X-Force ID: 140211.

  • CVE-2018-12457HigJun 15, 2018
    risk 0.50cvss 8.8epss 0.02

    expressCart before 1.1.6 allows remote attackers to create an admin user via a /admin/setup Referer header.

  • CVE-2018-12447HigJun 15, 2018
    risk 0.58cvss 8.8epss 0.04

    The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.8 and other products, has an integer overflow that leads to a heap-based buffer overflow and remote code execution.

  • CVE-2018-6516HigJun 14, 2018
    risk 0.51cvss 7.8epss 0.01

    On Windows only, with a specifically crafted configuration file an attacker could get Puppet PE client tools (aka pe-client-tools) 16.4.x prior to 16.4.6, 17.3.x prior to 17.3.6, and 18.1.x prior to 18.1.2 to load arbitrary code with privilege escalation.

  • CVE-2018-12423HigJun 14, 2018
    risk 0.49cvss 7.5epss 0.02

    In Synapse before 0.31.2, unauthorised users can hijack rooms when there is no m.room.power_levels event in force.

  • CVE-2018-12420HigJun 14, 2018
    risk 0.00cvss 7.5epss 0.01

    IceHrm before 23.0.1.OS has a risky usage of a hashed password in a request.

  • CVE-2018-8819HigJun 14, 2018
    risk 0.49cvss 7.5epss 0.03

    An XXE issue was discovered in Automated Logic Corporation (ALC) WebCTRL Versions 6.0, 6.1 and 6.5. An unauthenticated attacker could enter malicious input to WebCTRL and a weakly configured XML parser will allow the application to disclose full file contents from the underlying…

  • CVE-2017-12070HigJun 14, 2018
    risk 0.57cvss 8.8epss 0.01

    Unsigned versions of the DLLs distributed by the OPC Foundation may be replaced with malicious code.

  • CVE-2018-12114HigJun 14, 2018
    risk 0.60cvss 8.8epss 0.03

    Maccms 10 allows CSRF via admin.php/admin/admin/info.html to add user accounts.

  • CVE-2018-4833HigJun 14, 2018
    risk 0.57cvss 8.8epss 0.01

    A vulnerability has been identified in RFID 181EIP (All versions), RUGGEDCOM Win (V4.4, V4.5, V5.0, and V5.1), SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.3), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) (All versions < V5.4.1),…

  • CVE-2017-17309HigJun 14, 2018
    risk 0.49cvss 7.5epss 0.07

    Huawei HG255s-10 V100R001C163B025SP02 has a path traversal vulnerability due to insufficient validation of the received HTTP requests, a remote attacker may access the local files on the device without authentication.

  • CVE-2017-17173HigJun 14, 2018
    risk 0.51cvss 7.8epss 0.01

    Due to insufficient parameters verification GPU driver of Mate 9 Pro Huawei smart phones with the versions before LON-AL00B 8.0.0.356(C00) has an arbitrary memory free vulnerability. An attacker can tricks a user into installing a malicious application on the smart phone, and…

  • CVE-2017-17172HigJun 14, 2018
    risk 0.47cvss 7.3epss 0.00

    Huawei smart phones LYO-L21 with software LYO-L21C479B107, LYO-L21C479B107 have a privilege escalation vulnerability. An authenticated, local attacker can crafts malformed packets after tricking a user to install a malicious application and exploit this vulnerability when in the…

  • CVE-2018-8267HigJun 14, 2018
    risk 0.50cvss 7.5epss 0.15

    A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is…

  • CVE-2018-8251HigJun 14, 2018
    risk 0.49cvss 7.5epss 0.07

    A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka "Media Foundation Memory Corruption Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server…

  • CVE-2018-8249HigJun 14, 2018
    risk 0.50cvss 7.5epss 0.13

    A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This affects Internet Explorer 11. This CVE ID is unique from CVE-2018-0978.

  • CVE-2018-8248HigJun 14, 2018
    risk 0.52cvss 7.8epss 0.20

    A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft Excel Remote Code Execution Vulnerability." This affects Microsoft Office.