Unknown · CVSS Not scored
Open-AudIT Professional 2.1 allows XSS via the Name or Description field on the Credentials screen.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
dsmall v20180320 has XSS via a crafted street address to public/index.php/home/memberaddress/index.html, which is mishandled at public/index.php/home/memberaddress/edit/address_id/2.html.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips allow Platform Security Processor (PSP) privilege escalation.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in firmware, aka CHIMERA-FW.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In 2345 Security Guard 3.6, the driver file (2345DumpBlock.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x00222040.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
screenresolution-mechanism in screen-resolution-extra 0.17.2 does not properly use the PolicyKit D-Bus API, which allows local users to bypass intended access restrictions by leveraging a race condition via a setuid or pkexec process that is mishandled in a PolicyKitService._check_permission call.
Published Mar 28, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The AMD Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-1.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read in the function tokenize in asm/preproc.c, related to an unterminated string.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In 2345 Security Guard 3.6, the driver file (2345DumpBlock.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x00222044.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The AMD EPYC Server processor chips have insufficient access control for protected memory regions, aka FALLOUT-1, FALLOUT-2, and FALLOUT-3.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Z-BlogPHP 1.5.1 Zero has CSRF in plugin_edit.php, resulting in the ability to execute arbitrary PHP code.
Published Mar 31, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In LibTIFF 4.0.9, a heap-based buffer overflow occurs in the function LZWDecodeCompat in tif_lzw.c via a crafted TIFF file, as demonstrated by tiff2ps.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in the ASIC, aka CHIMERA-HW.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Windows Master (aka Windows Optimization Master) 7.99.13.604, the driver file (WoptiHWDetect.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0xf1002000.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Netwide Assembler (NASM) 2.13.02rc2 has a stack-based buffer under-read in the function ieee_shr in asm/float.c via a large shift value.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Netwide Assembler (NASM) 2.13.02rc2 has a buffer over-read in the parse_line function in asm/parser.c via uncontrolled access to nasm_reg_flags.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In 2345 Security Guard 3.6, the driver file (2345BdPcSafe.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x00222108.
Published Mar 22, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In radare2 2.4.0, there is a heap-based buffer over-read in the dalvik_op function of anal_dalvik.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted dex file.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A Buffer Overflow issue was discovered in Kamailio before 4.4.7, 5.0.x before 5.0.6, and 5.1.x before 5.1.2. A specially crafted REGISTER message with a malformed branch or From tag triggers an off-by-one heap-based buffer overflow in the tmx_check_pretran function in modules/tmx/tmx_pretran.c.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In radare2 2.4.0, there is a heap-based buffer over-read in the get_ivar_list_t function of mach0_classes.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted Mach-O file.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site scripting (XSS) vulnerability in the gallery function in Alkacon OpenCMS 10.5.3 allows remote attackers to inject arbitrary web script or HTML via a malicious SVG image.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
elfutils 0.170 has a buffer over-read in the ebl_dynamic_tag_name function of libebl/ebldynamictagname.c because SYMTAB_SHNDX is unsupported.
Published Mar 18, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
enhavo 0.4.0 has XSS via a user-group that contains executable JavaScript code in the user-group name. The XSS attack launches when a victim visits the admin user group page.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Zoho ManageEngine Desktop Central version 9.1.0 build 91099 has multiple XSS issues that were fixed in build 92026.
Published Mar 15, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Check Point ZoneAlarm version 15.3.064.17729 and below expose a WCF service that can allow a local low privileged user to execute arbitrary code as SYSTEM.
Published Mar 1, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
windrvr1260.sys in Jungo DriverWizard WinDriver 12.6.0 allows attackers to cause a denial of service (BSOD) via a crafted .exe file.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In libming 0.4.8, there is a use-after-free in the decompileArithmeticOp function of decompile.c. Remote attackers could use this vulnerability to cause a denial-of-service via a crafted swf file.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
ServiceNow ITSM 2016-06-02 has XSS via the First Name or Last Name field of My Profile (aka navpage.do), or the Search bar of My Portal (aka search_results.do).
Published Mar 15, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
modules/bamegamenu/ajax_phpcode.php in the Responsive Mega Menu (Horizontal+Vertical+Dropdown) Pro module 1.0.32 for PrestaShop 1.5.5.0 through 1.7.2.5 allows remote attackers to execute arbitrary PHP code via the code parameter.
Published Mar 28, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Incorrect buffer length handling in the ncp_read_kernel function in fs/ncpfs/ncplib_kernel.c in the Linux kernel through 4.15.11, and in drivers/staging/ncpfs/ncplib_kernel.c in the Linux kernel 4.16-rc through 4.16-rc6, could be exploited by malicious NCPFS servers to crash the kernel or execute code.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Yxcms building system (compatible cell phone) v1.4.7 has XSS via the content parameter to protected\apps\default\view\default\extend_guestbook.php or protected\apps\default\view\mobile\extend_guestbook.php in an index.php?r=default/column/index&col=guestbook request.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Eval injection in yzmphp/core/function/global.func.php in YzmCMS v3.7.1 allows remote attackers to achieve arbitrary code execution via PHP code in the POST data of an index.php?m=member&c=member_content&a=init request.
Published Mar 18, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Wampserver before 3.1.3 has CSRF in add_vhost.php.
Published Mar 25, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
joyplus-cms 1.6.0 has XSS in manager/admin_ajax.php?action=save&tab={pre}vod_type via the t_name parameter.
Published Mar 18, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In radare2 2.4.0, there is a heap-based buffer over-read in the r_asm_disassemble function of asm.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted dex file.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Jupyter Notebook before 5.4.1, a maliciously forged notebook file can bypass sanitization to execute JavaScript in the notebook context. Specifically, invalid HTML is 'fixed' by jQuery after sanitization, making it dangerous.
Published Mar 18, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site request forgery (CSRF) vulnerability in system/workplace/admin/accounts/user_role.jsp in OpenCMS 10.5.3 allows remote attackers to hijack the authentication of administrative users for requests that perform privilege escalation. Note: It is argued that OpenCMS allows only registered users to upload different kind of content artifacts (SVG, .doc, .docx). The uploaded content is stored in the CMS content repository "as is". In case of scripts inside an SVG, this may or may not be "malicious", there is no way of knowing if the uploaded SVG contains the script for a reason. To exploit the "issue", a user must have an account in the CMS as a content manager
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site request forgery (CSRF) vulnerability in the Mailer Plugin 1.20 for Jenkins 2.111 allows remote authenticated users to send unauthorized mail as an arbitrary user via a /descriptorByName/hudson.tasks.Mailer/sendTestMail request.
Published Mar 27, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A directory traversal flaw in SquirrelMail 1.4.22 allows an authenticated attacker to exfiltrate (or potentially delete) files from the hosting server, related to ../ in the att_local_name field in Deliver.class.php.
Published Mar 17, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Physical path Leakage exists in Western Bridge Cobub Razor 0.8.0 via generate.php, controllers/getConfigTest.php, controllers/getUpdateTest.php, controllers/postclientdataTest.php, controllers/posterrorTest.php, controllers/posteventTest.php, controllers/posttagTest.php, controllers/postusinglogTest.php, fixtures/Controller_fixt.php, fixtures/Controller_fixt2.php, fixtures/view_fixt2.php, libs/ipTest.php, or models/commonDbfix.php in tests/.
Published Mar 18, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In 2345 Security Guard 3.6, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x00222018.
Published Mar 18, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
SQL injection vulnerability in the management interface in ePortal Manager allows remote attackers to execute arbitrary SQL commands via unspecified parameters.
Published Mar 26, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
WriteEPTImage in coders/ept.c in ImageMagick 7.0.7-25 Q16 allows remote attackers to cause a denial of service (MagickCore/memory.c double free and application crash) or possibly have unspecified other impact via a crafted file.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In SQLite through 3.22.0, databases whose schema is corrupted using a CREATE TABLE AS statement could cause a NULL pointer dereference, related to build.c and prepare.c.
Published Mar 17, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In libming 0.4.8, these is a use-after-free in the function decompileCALLFUNCTION of decompile.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted swf file.
Published Mar 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The libevt_record_values_read_event() function in libevt_record_values.c in libevt before 2018-03-17 does not properly check for out-of-bounds values of user SID data size, strings size, or data size. NOTE: the vendor has disputed this as described in libyal/libevt issue 5 on GitHub
Published Mar 18, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Bookme Control Panel 2.0 Application is vulnerable to stored XSS within the Customers "Book Me" function. Within the Name and Note (aka custName and custNote) sections of the Customers screen, the application does not sanitize user-supplied input and renders injected JavaScript code to the user's browser.
Published Mar 17, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Roland Gruber Softwareentwicklung LDAP Account Manager before 6.3 has XSS via the dn parameter to the templates/3rdParty/pla/htdocs/cmd.php URI or the template parameter to the templates/3rdParty/pla/htdocs/cmd.php?cmd=rename_form URI.
Published Mar 27, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in Square 9 GlobalForms 6.2.x. A Time Based SQL injection vulnerability in the "match" parameter allows remote authenticated attackers to execute arbitrary SQL commands. It is possible to upgrade access to full server compromise via xp_cmdshell. In some cases, the authentication requirement for the attack can be met by sending the default admin credentials.
Published Mar 28, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
protected\apps\member\controller\shopcarController.php in Yxcms building system (compatible cell phone) v1.4.7 has a logic flaw allowing attackers to modify a price, before form submission, by observing data in a packet capture.
Published Mar 19, 2018 · Updated Aug 5, 2024