CVE-2018-10176: Digital Guardian Management Console 7.1.2.0015 has a Directory Traversal issue.
Digital Guardian Management Console 7.1.2.0015 has a Directory Traversal issue.
Published Apr 20, 2018 · Updated Aug 5, 2024
Browse CVE records published in April 2018, with severity, affected products, CWE, KEV, and source-backed vulnerability context.
Showing 50 of 1687 matching CVEs · Page 22 of 34.
Digital Guardian Management Console 7.1.2.0015 has a Directory Traversal issue.
Published Apr 20, 2018 · Updated Aug 5, 2024
Digital Guardian Management Console 7.1.2.0015 allows authenticated remote code execution because of Arbitrary File Upload functionality.
Published Apr 20, 2018 · Updated Aug 5, 2024
The FromDocToPDF extension before 13.611.13.2303 for Chrome allows remote attackers to discover visited web sites via vectors involving a mostVisitedSites command.
Published Apr 17, 2018 · Updated Aug 5, 2024
An issue was discovered in GEGL through 0.3.32. The gegl_buffer_iterate_read_simple function in buffer/gegl-buffer-access.c allows remote attackers to cause a denial of service (write access violation) or possibly have unspecified other impact via a malformed PPM file, related to improper restrictions on memory allocation in the ppm_load_read_header function in operations/external/ppm-load.c.
Published Apr 14, 2018 · Updated Aug 5, 2024
The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreOffice before 5.4.6.1 and 6.x before 6.0.2.1 does not validate a customizations index, which allows remote attackers to cause a denial of service (heap-based buffer overflow with write access) or possibly have unspecified other impact via a crafted document that contains a certain Microsoft Word record.
Published Apr 15, 2018 · Updated Aug 5, 2024
Netwide Assembler (NASM) 2.14rc0 has a division-by-zero vulnerability in the expr5 function in asm/eval.c via a malformed input file.
Published Apr 11, 2018 · Updated Aug 5, 2024
soundlib/Snd_fx.cpp in OpenMPT before 1.27.07.00 and libopenmpt before 0.3.8 allows remote attackers to cause a denial of service (out-of-bounds read) via an IT or MO3 file with many nested pattern loops.
Published Apr 11, 2018 · Updated Aug 5, 2024
An issue was discovered in GEGL through 0.3.32. The render_rectangle function in process/gegl-processor.c has unbounded memory allocation, leading to a denial of service (application crash) upon allocation failure.
Published Apr 14, 2018 · Updated Aug 5, 2024
D-Link DIR-815 REV. B (with firmware through DIR-815_REVB_FIRMWARE_PATCH_2.07.B01) devices have XSS in the Treturn parameter to /htdocs/webinc/js/bsc_sms_inbox.php.
Published Apr 16, 2018 · Updated Aug 5, 2024
Before WordPress 4.9.5, the URL validator assumed URLs with the hostname localhost were on the same host as the WordPress server.
Published Apr 14, 2018 · Updated Aug 5, 2024
TBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR Login, and MDVR Login, which run re-branded versions of the original TBK DVR4104 and DVR4216 series, allow remote attackers to bypass authentication via a "Cookie: uid=admin" header, as demonstrated by a device.rsp?opt=user&cmd=list request that provides credentials within JSON data in a response.
Published Apr 10, 2018 · Updated Aug 5, 2024
sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrect integer data type in the StgSmallStrm class, which allows remote attackers to cause a denial of service (use-after-free with write access) or possibly have unspecified other impact via a crafted document that uses the structured storage ole2 wrapper file format.
Published Apr 15, 2018 · Updated Aug 5, 2024
D-Link DIR-615 T1 devices allow XSS via the Add User feature.
Published Apr 18, 2018 · Updated Aug 5, 2024
Cross-site scripting (XSS) vulnerability in Geist WatchDog Console 3.2.2 allows remote authenticated administrators to inject arbitrary web script or HTML via a server description.
Published Apr 20, 2018 · Updated Aug 5, 2024
The decode_init function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out of array read) via an AVI file.
Published Apr 11, 2018 · Updated Aug 5, 2024
An issue was discovered in GEGL through 0.3.32. The gegl_tile_backend_swap_constructed function in buffer/gegl-tile-backend-swap.c allows remote attackers to cause a denial of service (write access violation) or possibly have unspecified other impact via a malformed PNG file that is mishandled during a call to the babl_format_get_bytes_per_pixel function in babl-format.c in babl 0.1.46.
Published Apr 14, 2018 · Updated Aug 5, 2024
Monstra CMS 3.0.4 has Stored XSS via the Name field on the Create New Page screen under the admin/index.php?id=pages URI, related to plugins/box/pages/pages.admin.php.
Published Apr 15, 2018 · Updated Aug 5, 2024
The kill_something_info function in kernel/signal.c in the Linux kernel before 4.13, when an unspecified architecture and compiler is used, might allow local users to cause a denial of service via an INT_MIN argument.
Published Apr 16, 2018 · Updated Aug 5, 2024
D-Link DIR-815 REV. B (with firmware through DIR-815_REVB_FIRMWARE_PATCH_2.07.B01) devices have XSS in the RESULT parameter to /htdocs/webinc/js/info.php.
Published Apr 16, 2018 · Updated Aug 5, 2024
The jDownloads extension before 3.2.59 for Joomla! has XSS.
Published Apr 12, 2018 · Updated Aug 5, 2024
The kernel_wait4 function in kernel/exit.c in the Linux kernel before 4.13, when an unspecified architecture and compiler is used, might allow local users to cause a denial of service by triggering an attempted use of the -INT_MIN value.
Published Apr 13, 2018 · Updated Aug 5, 2024
Before WordPress 4.9.5, the version string was not escaped in the get_the_generator function, and could lead to XSS in a generator tag.
Published Apr 14, 2018 · Updated Aug 5, 2024
QingDao Nature Easy Soft Chanzhi Enterprise Portal System (aka chanzhieps) pro1.6 allows remote attackers to read arbitrary files via directory traversal sequences in the pathname parameter to www/file.php.
Published Apr 16, 2018 · Updated Aug 5, 2024
An issue was discovered in GEGL through 0.3.32. The process function in operations/external/ppm-load.c has unbounded memory allocation, leading to a denial of service (application crash) upon allocation failure.
Published Apr 14, 2018 · Updated Aug 5, 2024
Before WordPress 4.9.5, the redirection URL for the login page was not validated or sanitized if forced to use HTTPS.
Published Apr 14, 2018 · Updated Aug 5, 2024
D-Link DIR-815 REV. B (with firmware through DIR-815_REVB_FIRMWARE_PATCH_2.07.B01) devices have permission bypass and information disclosure in /htdocs/web/getcfg.php, as demonstrated by a /getcfg.php?a=%0a_POST_SERVICES%3DDEVICE.ACCOUNT%0aAUTHORIZED_GROUP%3D1 request.
Published Apr 16, 2018 · Updated Aug 5, 2024
XML external entity (XXE) vulnerability in Geist WatchDog Console 3.2.2 allows remote authenticated administrators to read arbitrary files via crafted XML data.
Published Apr 20, 2018 · Updated Aug 5, 2024
Monstra CMS 3.0.4 has a stored XSS vulnerability when an attacker has access to the editor role, and enters the payload in the content section of a new page in the blog catalog.
Published Apr 14, 2018 · Updated Aug 5, 2024
A vulnerability in MikroTik Version 6.41.4 could allow an unauthenticated remote attacker to exhaust all available CPU and all available RAM by sending a crafted FTP request on port 21 that begins with many '\0' characters, preventing the affected router from accepting new FTP connections. The router will reboot after 10 minutes, logging a "router was rebooted without proper shutdown" message.
Published Apr 16, 2018 · Updated Aug 5, 2024
Cacti before 1.1.37 has XSS because it makes certain htmlspecialchars calls without the ENT_QUOTES flag (these calls occur when the html_escape function in lib/html.php is not used).
Published Apr 12, 2018 · Updated Aug 5, 2024
H2 1.4.197, as used in Datomic before 0.9.5697 and other products, allows remote code execution because CREATE ALIAS can execute arbitrary Java code. NOTE: the vendor's position is "h2 is not designed to be run outside of a secure environment."
Published Apr 11, 2018 · Updated Aug 5, 2024
The Convert Forms extension before 2.0.4 for Joomla! is vulnerable to Remote Command Execution using CSV Injection that is mishandled when exporting a Leads file.
Published Apr 12, 2018 · Updated Aug 5, 2024
Geist WatchDog Console 3.2.2 uses a weak ACL for the C:\ProgramData\WatchDog Console directory, which allows local users to modify configuration data by updating (1) config.xml or (2) servers.xml.
Published Apr 20, 2018 · Updated Aug 5, 2024
An issue was discovered in MikroTik RouterOS 6.41.4. Missing OpenVPN server certificate verification allows a remote unauthenticated attacker capable of intercepting client traffic to act as a malicious OpenVPN server. This may allow the attacker to gain access to the client's internal network (for example, at site-to-site tunnels).
Published Apr 13, 2018 · Updated Aug 5, 2024
joyplus-cms 1.6.0 has XSS in manager/admin_vod.php via the keyword parameter.
Published Apr 12, 2018 · Updated Aug 5, 2024
Cacti before 1.1.37 has XSS because the get_current_page function in lib/functions.php relies on $_SERVER['PHP_SELF'] instead of $_SERVER['SCRIPT_NAME'] to determine a page name.
Published Apr 12, 2018 · Updated Aug 5, 2024
Cacti before 1.1.37 has XSS because it does not properly reject unintended characters, related to use of the sanitize_uri function in lib/functions.php.
Published Apr 12, 2018 · Updated Aug 5, 2024
ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_psk_hint() that could cause a crash on invalid input.
Published Apr 10, 2018 · Updated Aug 5, 2024
Invalid memory access and/or a heap buffer overflow in the TensorFlow XLA compiler in Google TensorFlow before 1.7.1 could cause a crash or read from other parts of process memory via a crafted configuration file.
Published Apr 24, 2019 · Updated Aug 5, 2024
In Zulip Server versions before 1.7.2, there was an XSS issue with stream names in topic typeahead.
Published Apr 18, 2018 · Updated Aug 5, 2024
The WeChat module in YzmCMS 3.7.1 has reflected XSS via the admin/module/init.html echostr parameter, related to the valid function in application/wechat/controller/index.class.php.
Published Apr 11, 2018 · Updated Aug 5, 2024
drivers/scsi/libsas/sas_scsi_host.c in the Linux kernel before 4.16 allows local users to cause a denial of service (ata qc leak) by triggering certain failure conditions. NOTE: a third party disputes the relevance of this report because the failure can only occur for physically proximate attackers who unplug SAS Host Bus Adapter cables
Published Apr 11, 2018 · Updated Aug 5, 2024
Frog CMS 0.9.5 has XSS via the name field of a new "File" or "Directory" on the admin/?/plugin/file_manager/browse/ screen.
Published Apr 11, 2018 · Updated Aug 5, 2024
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_template_value_parm, demangle_integral_value, and demangle_expression.
Published Apr 10, 2018 · Updated Aug 5, 2024
The hi3660_stub_clk_probe function in drivers/clk/hisilicon/clk-hi3660-stub.c in the Linux kernel before 4.16 allows local users to cause a denial of service (NULL pointer dereference) by triggering a failure of resource retrieval.
Published Apr 12, 2018 · Updated Aug 5, 2024
In Zulip Server versions before 1.7.2, there was an XSS issue with user uploads and the (default) LOCAL_UPLOADS_DIR storage backend.
Published Apr 18, 2018 · Updated Aug 5, 2024
The Video Downloader professional extension before 2018-04-05 for Chrome has Universal XSS (UXSS) via vectors related to a link64_msgAddLinks event.
Published Apr 11, 2018 · Updated Aug 5, 2024
Frog CMS 0.9.5 has XSS via the /admin/?/user/add Name or Username parameter.
Published Apr 11, 2018 · Updated Aug 5, 2024
In Zulip Server versions 1.5.x, 1.6.x, and 1.7.x before 1.7.2, there was an XSS issue with muting notifications.
Published Apr 18, 2018 · Updated Aug 5, 2024
The front page of MetInfo 6.0 allows XSS by sending a feedback message to an administrator.
Published Apr 10, 2018 · Updated Aug 5, 2024