VYPR

CVEs

101,972 total · page 1824 of 2,040

  • CVE-2018-6768HigFeb 6, 2018
    risk 0.51cvss 7.8epss 0.00

    In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008090.

  • CVE-2018-6767HigFeb 6, 2018
    risk 0.00cvss 7.8epss 0.03

    A stack-based buffer over-read in the ParseRiffHeaderConfig function of cli/riff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service attack or possibly have unspecified other impact via a maliciously crafted RF64 file.

  • CVE-2018-5457HigFeb 6, 2018
    risk 0.46cvss 7.0epss 0.00

    A uncontrolled search path element issue was discovered in Vyaire Medical CareFusion Upgrade Utility used with Windows XP systems, Versions 2.0.2.2 and prior versions. A successful exploit of this vulnerability requires the local user to install a crafted DLL on the target…

  • CVE-2018-4878HigKEVFeb 6, 2018
    risk 0.79cvss 7.8epss 0.90

    A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Primetime SDK related to media player handling of listener objects. A successful attack can lead to arbitrary code execution. This…

  • CVE-2018-1299HigFeb 6, 2018
    risk 0.49cvss 7.5epss 0.03

    In Apache Allura before 1.8.0, unauthenticated attackers may retrieve arbitrary files through the Allura web application. Some webservers used with Allura, such as Nginx, Apache/mod_wsgi or paster may prevent the attack from succeeding. Others, such as gunicorn do not prevent it…

  • CVE-2016-3952HigFeb 6, 2018
    risk 0.44cvss 7.8epss 0.01

    web2py before 2.14.1, when using the standalone version, allows remote attackers to obtain environment variable values via a direct request to examples/template_examples/beautify. NOTE: this issue can be leveraged by remote attackers to gain administrative access.

  • CVE-2018-6389HigFeb 6, 2018
    risk 0.58cvss 7.5epss 0.73

    In WordPress through 4.9.2, unauthenticated attackers can cause a denial of service (resource consumption) by using the large list of registered .js files (from wp-includes/script-loader.php) to construct a series of requests to load every file many times.

  • CVE-2017-6201HigFeb 6, 2018
    risk 0.00cvss 8.1epss 0.02

    A Server Side Request Forgery vulnerability exists in the install app process in Sandstorm before build 0.203. A remote attacker may exploit this issue by providing a URL. It could bypass access control such as firewalls that prevent the attackers from accessing the URLs…

  • CVE-2017-17996HigFeb 6, 2018
    risk 0.58cvss 8.8epss 0.05

    A buffer overflow vulnerability in "Add command" functionality exists in Flexense SyncBreeze Enterprise <= 10.3.14. The vulnerability can be triggered by an authenticated attacker who submits more than 5000 characters as the command name. It will cause termination of the…

  • CVE-2014-5282HigFeb 6, 2018
    risk 0.53cvss 8.1epss 0.01

    Docker before 1.3 does not properly validate image IDs, which allows remote attackers to redirect to another image through the loading of untrusted images via 'docker load'.

  • CVE-2014-5280HigFeb 6, 2018
    risk 0.57cvss 8.8epss 0.01

    boot2docker 1.2 and earlier allows attackers to conduct cross-site request forgery (CSRF) attacks by leveraging Docker daemons enabling TCP connections without TLS authentication.

  • CVE-2014-5279HigFeb 6, 2018
    risk 0.57cvss 8.8epss 0.03

    The Docker daemon managed by boot2docker 1.2 and earlier improperly enables unauthenticated TCP connections by default, which makes it easier for remote attackers to gain privileges or execute arbitrary code from children containers.

  • CVE-2018-6290HigFeb 6, 2018
    risk 0.51cvss 7.8epss 0.00

    Local Privilege Escalation in Kaspersky Secure Mail Gateway version 1.1.

  • CVE-2018-6288HigFeb 6, 2018
    risk 0.57cvss 8.8epss 0.01

    Cross-site Request Forgery leading to Administrative account takeover in Kaspersky Secure Mail Gateway version 1.1.

  • CVE-2018-6467HigFeb 6, 2018
    risk 0.57cvss 8.8epss 0.01

    The flickrRSS plugin 5.3.1 for WordPress has CSRF via wp-admin/options-general.php.

  • CVE-2017-6279HigFeb 6, 2018
    risk 0.51cvss 7.8epss 0.00

    NVIDIA libnvmmlite_audio.so contains an elevation of privilege vulnerability when running in media server which may cause an out of bounds write and could lead to local code execution in a privileged process. This issue is rated as high. Product: Android. Version: N/A. Android:…

  • CVE-2017-6258HigFeb 6, 2018
    risk 0.51cvss 7.8epss 0.00

    NVIDIA libnvmmlite_audio.so contains an elevation of privilege vulnerability when running in media server which may cause an out of bounds write and could lead to local code execution in a privileged process. This issue is rated as high. Product: Android. Version: N/A. Android:…

  • CVE-2018-6654HigFeb 6, 2018
    risk 0.57cvss 8.8epss 0.01

    The Grammarly extension before 2018-02-02 for Chrome allows remote attackers to discover authentication tokens via an 'action: "user"' request to iframe.gr_-ifr, because the exposure of these tokens is not restricted to any specific web site.

  • CVE-2018-6569HigFeb 6, 2018
    risk 0.57cvss 8.8epss 0.02

    West Wind Web Server 6.x does not require authentication for /ADMIN.ASP.

  • CVE-2018-6651HigFeb 5, 2018
    risk 0.57cvss 8.8epss 0.02

    In the uncurl_ws_accept function in uncurl.c in uncurl before 0.07, as used in Parsec before 140-3, insufficient Origin header validation (accepting an arbitrary substring match) for WebSocket API requests allows remote attackers to bypass intended access restrictions. In…

  • CVE-2018-6610HigFeb 5, 2018
    risk 0.52cvss 7.5epss 0.08

    Information Leakage exists in the jLike 1.0 component for Joomla! via a task=getUserByCommentId request.

  • CVE-2018-6635HigFeb 5, 2018
    risk 0.49cvss 7.5epss 0.01

    System Manager in Avaya Aura before 7.1.2 does not properly use SSL in conjunction with authentication, which allows remote attackers to bypass intended Remote Method Invocation (RMI) restrictions, aka SMGR-26896.

  • CVE-2018-6633HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000038.

  • CVE-2018-6632HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000110.

  • CVE-2018-6631HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110009.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000170.

  • CVE-2018-6630HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8000014c.

  • CVE-2018-6629HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000118.

  • CVE-2018-6628HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8000010c.

  • CVE-2018-6627HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In WatchDog Anti-Malware 2.74.186.150, the driver file (ZAMGUARD32.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80002054.

  • CVE-2018-6626HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In Micropoint proactive defense software 2.0.20266.0146, the driver file (mp110005.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80000035.

  • CVE-2018-6625HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.00

    In WatchDog Anti-Malware 2.74.186.150, the driver file (ZAMGUARD32.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x80002010.

  • CVE-2017-9414HigFeb 5, 2018
    risk 0.61cvss 8.8epss 0.15

    Cross-site request forgery (CSRF) vulnerability in the Subscribe to Podcast feature in Subsonic 6.1.1 allows remote attackers to hijack the authentication of unspecified victims for requests that conduct cross-site scripting (XSS) attacks or possibly have unspecified other…

  • CVE-2015-4179HigFeb 5, 2018
    risk 0.57cvss 8.8epss 0.01

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Codestyling Localization plugin 1.99.30 and earlier for Wordpress.

  • CVE-2015-1418HigFeb 5, 2018
    risk 0.44cvss 7.8epss 0.04

    The do_ed_script function in pch.c in GNU patch through 2.7.6, and patch in FreeBSD 10.1 before 10.1-RELEASE-p17, 10.2 before 10.2-BETA2-p3, 10.2-RC1 before 10.2-RC1-p2, and 0.2-RC2 before 10.2-RC2-p1, allows remote attackers to execute arbitrary commands via a crafted patch…

  • CVE-2015-1416HigFeb 5, 2018
    risk 0.44cvss 7.8epss 0.03

    Larry Wall's patch; patch in FreeBSD 10.2-RC1 before 10.2-RC1-p1, 10.2 before 10.2-BETA2-p2, and 10.1 before 10.1-RELEASE-p16; Bitrig; GNU patch before 2.2.5; and possibly other patch variants allow remote attackers to execute arbitrary shell commands via a crafted patch file.

  • CVE-2018-6461HigFeb 5, 2018
    risk 0.51cvss 7.8epss 0.02

    March Hare WINCVS before 2.8.01 build 6610, and CVS Suite before 2009R2 build 6610, contains an Insecure Library Loading vulnerability in the wincvs2.exe or wincvs.exe file, which may allow local users to gain privileges via a Trojan horse Python or TCL DLL file in the current…

  • CVE-2018-5797HigFeb 5, 2018
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is an Smint_encrypt Hardcoded AES Key that can be used for packet decryption (obtaining cleartext credentials) by an attacker who has access to a wired port.

  • CVE-2018-5796HigFeb 5, 2018
    risk 0.47cvss 7.2epss 0.01

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Hidden Root Shell by entering the administrator password in conjunction with the 'service start-shell' CLI command.

  • CVE-2018-5789HigFeb 5, 2018
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated XML Entity Expansion Denial of Service on the WiNG Access Point / Controller via crafted XML entities to the Web User Interface.

  • CVE-2018-5788HigFeb 5, 2018
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated Denial of Service in the RIM (Radio Interface Module) process running on the WiNG Access Point via crafted packets.

  • CVE-2018-5787HigFeb 5, 2018
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated Stack Overflow in the RIM (Radio Interface Module) process running on the WiNG Access Point via crafted packets.

  • CVE-2018-6188HigFeb 5, 2018
    risk 0.42cvss 7.5epss 0.05

    django.contrib.auth.forms.AuthenticationForm in Django 2.0 before 2.0.2, and 1.11.8 and 1.11.9, allows remote attackers to obtain potentially sensitive information by leveraging data exposure from the confirm_login_allowed() method, as demonstrated by discovering whether a user…

  • CVE-2017-15536HigFeb 5, 2018
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in Cloudera Data Science Workbench (CDSW) 1.x before 1.2.0. Several web application vulnerabilities allow malicious authenticated users of CDSW to escalate privileges in CDSW. CDSW users can exploit these vulnerabilities in combination to gain root access…

  • CVE-2018-6611HigFeb 4, 2018
    risk 0.00cvss 8.8epss 0.01

    soundlib/Load_stp.cpp in OpenMPT through 1.27.04.00, and libopenmpt before 0.3.6, has an out-of-bounds read via a malformed STP file.

  • CVE-2018-6606HigFeb 4, 2018
    risk 0.54cvss 7.8epss 0.01

    An issue was discovered in MalwareFox AntiMalware 2.74.0.150. Improper access control in zam32.sys and zam64.sys allows a non-privileged process to register itself with the driver by sending IOCTL 0x80002010 and then using IOCTL 0x8000204C to \\.\ZemanaAntiMalware to elevate…

  • CVE-2018-6593HigFeb 3, 2018
    risk 0.54cvss 7.8epss 0.01

    An issue was discovered in MalwareFox AntiMalware 2.74.0.150. Improper access control in zam32.sys and zam64.sys allows a non-privileged process to register itself with the driver by connecting to the filter communication port and then using IOCTL 0x8000204C to…

  • CVE-2018-6594HigFeb 3, 2018
    risk 0.49cvss 7.5epss 0.02

    lib/Crypto/PublicKey/ElGamal.py in PyCrypto through 2.6.1 generates weak ElGamal key parameters, which allows attackers to obtain sensitive information by reading ciphertext data (i.e., it does not have semantic security in face of a ciphertext-only attack). The Decisional…

  • CVE-2017-18123HigFeb 3, 2018
    risk 0.00cvss 8.6epss 0.03

    The call parameter of /lib/exe/ajax.php in DokuWiki through 2017-02-19e does not properly encode user input, which leads to a reflected file download vulnerability, and allows remote attackers to run arbitrary programs.

  • CVE-2015-2186HigFeb 3, 2018
    risk 0.49cvss 7.5epss 0.01

    The Ansible edxapp role in the Configuration Repo in edX allows remote websites to spoof edX accounts by leveraging use of the string literal "False" instead of a boolean False for the CORS_ORIGIN_ALLOW_ALL setting. Note: this vulnerability was fixed on 2015-03-06, but the…

  • CVE-2009-5144HigFeb 3, 2018
    risk 0.49cvss 7.5epss 0.01

    mod-gnutls does not validate client certificates when "GnuTLSClientVerify require" is set in a directory context, which allows remote attackers to spoof clients via a crafted certificate.