LiveActive security incident?Get immediate response
CVE archive

March 2018

Browse CVE records published in March 2018, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 1325 matching CVEs · Page 16 of 27.

Unknown · CVSS Not scored

CVE-2018-18881: A Denial of Service (DOS) issue was discovered in ControlByWeb X-320M-I Web-Enabled Instrumentation-Grade D...

A Denial of Service (DOS) issue was discovered in ControlByWeb X-320M-I Web-Enabled Instrumentation-Grade Data Acquisition module 1.05 with firmware revision v1.05. An authenticated user can configure invalid network settings, stopping TCP based communications to the device. A physical factory reset is required to restore the device to an operational state.

Published Mar 17, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-18845: internal/advanced_comment_system/index.php and internal/advanced_comment_system/admin.php in Advanced Comme...

internal/advanced_comment_system/index.php and internal/advanced_comment_system/admin.php in Advanced Comment System, version 1.0, contain a reflected cross-site scripting vulnerability via ACS_path. A remote unauthenticated attacker could potentially exploit this vulnerability to supply malicious HTML or JavaScript code to a vulnerable web application, which is then reflected back to the victim and executed by the web browser. The product is discontinued.

Published Mar 17, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-18473: A hidden backdoor on PATLITE NH-FB Series devices with firmware version 1.45 or earlier, NH-FV Series devic...

A hidden backdoor on PATLITE NH-FB Series devices with firmware version 1.45 or earlier, NH-FV Series devices with firmware version 1.10 or earlier, and NBM Series devices with firmware version 1.09 or earlier allow attackers to enable an SSH daemon via the "kankichi" or "kamiyo4" password to the _secret1.htm URI. Subsequently, the default password of root for the root account allows an attacker to conduct remote code execution and as a result take over the system.

Published Mar 19, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-18435: KioWare Server version 4.9.6 and older installs by default to "C:\kioware_com" with weak folder permissions...

KioWare Server version 4.9.6 and older installs by default to "C:\kioware_com" with weak folder permissions granting any user full permission "Everyone: (F)" to the contents of the directory and it's sub-folders. In addition, the program installs a service called "KWSService" which runs as "Localsystem", this will allow any user to escalate privileges to "NT AUTHORITY\SYSTEM" by substituting the service's binary with a malicious one.

Published Mar 17, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-18255: An issue was discovered in CapMon Access Manager 5.4.1.1005.

An issue was discovered in CapMon Access Manager 5.4.1.1005. The client applications of AccessManagerCoreService.exe communicate with this server through named pipes. A user can initiate communication with the server by creating a named pipe and sending commands to achieve elevated privileges.

Published Mar 15, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-18253: An issue was discovered in CapMon Access Manager 5.4.1.1005.

An issue was discovered in CapMon Access Manager 5.4.1.1005. CALRunElevated.exe attempts to enforce access control by adding an unprivileged user to the local Administrators group for a very short time to execute a single command. However, the user is left in that group if the command crashes, and there is also a race condition in all cases.

Published Mar 15, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-18254: An issue was discovered in CapMon Access Manager 5.4.1.1005.

An issue was discovered in CapMon Access Manager 5.4.1.1005. An unprivileged user can read the cal_whitelist table in the Custom App Launcher (CAL) database, and potentially gain privileges by placing a Trojan horse program at an app pathname.

Published Mar 15, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-17944: On certain Lexmark devices that communicate with an LDAP or SMTP server, a malicious administrator can disc...

On certain Lexmark devices that communicate with an LDAP or SMTP server, a malicious administrator can discover LDAP or SMTP credentials by changing that server's hostname to one that they control, and then capturing the credentials that are sent there. This occurs because stored credentials are not automatically deleted upon that type of hostname change.

Published Mar 12, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-17167: PrinterOn Enterprise 4.1.4 suffers from multiple authenticated stored XSS vulnerabilities via the (1) "Mach...

PrinterOn Enterprise 4.1.4 suffers from multiple authenticated stored XSS vulnerabilities via the (1) "Machine Host Name" or "Server Serial Number" field in the clustering configuration, (2) "name" field in the Edit Group configuration, (3) "Rule Name" field in the Access Control configuration, (4) "Service Name" in the Service Configuration, or (5) First Name or Last Name field in the Edit Account configuration.

Published Mar 20, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-17058: An issue was discovered in JABA XPress Online Shop through 2018-09-14.

An issue was discovered in JABA XPress Online Shop through 2018-09-14. It contains an arbitrary file upload vulnerability in the picture-upload feature of ProductEdit.aspx. An authenticated attacker may bypass the frontend filename validation and upload an arbitrary file via FileUploader.aspx.cs in FileUploader.aspx by using empty w and h parameters. This file may contain arbitrary aspx code that may be executed by accessing /Jec/ProductImages/<number>/<filename>. Accessing the file once uploaded does not require authentication.

Published Mar 2, 2020 · Updated Aug 5, 2024

High · CVSS 7.8

CVE-2018-16858: It was found that libreoffice before versions 6.0.7 and 6.1.3 was vulnerable to a directory traversal attac...

It was found that libreoffice before versions 6.0.7 and 6.1.3 was vulnerable to a directory traversal attack which could be used to execute arbitrary macros bundled with a document. An attacker could craft a document, which when opened by LibreOffice, would execute a Python method from a script in any arbitrary file system location, specified relative to the LibreOffice install location.

Published Mar 25, 2019 · Updated Aug 5, 2024

Medium · CVSS 5.5

CVE-2018-16856: In a default Red Hat Openstack Platform Director installation, openstack-octavia before versions openstack-...

In a default Red Hat Openstack Platform Director installation, openstack-octavia before versions openstack-octavia 2.0.2-5 and openstack-octavia-3.0.1-0.20181009115732 creates log files that are readable by all users. Sensitive information such as private keys can appear in these log files allowing for information exposure.

Published Mar 26, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-16563: A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions <...

A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.35), Firmware variant MODBUS TCP for EN100 Ethernet module (All versions), Firmware variant DNP3 TCP for EN100 Ethernet module (All versions), Firmware variant IEC104 for EN100 Ethernet module (All versions), Firmware variant Profinet IO for EN100 Ethernet module (All versions), SIPROTEC 5 relays with CPU variants CP300 and CP100 and the respective Ethernet communication modules (All versions < V7.82), SIPROTEC 5 relays with CPU variants CP200 and the respective Ethernet communication modules (All versions < V7.58). Specially crafted packets to port 102/tcp could cause a denial-of-service condition in the affected products. A manual restart is required to recover the EN100 module functionality of the affected devices. Successful exploitation requires an attacker with network access to send multiple packets to the affected products or modules. As a precondition the IEC 61850-MMS communication needs to be activated on the affected products or modules. No user interaction or privileges are required to exploit the vulnerability. The vulnerability could allow causing a Denial-of-Service condition of the network functionality of the device, compromising the availability of the system. At the time of advisory publication no public exploitation of this security vulnerability was known.

Published Mar 21, 2019 · Updated Aug 5, 2024