LiveActive security incident?Get immediate response
CVE archive

July 2018

Browse CVE records published in July 2018, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 2018 matching CVEs · Page 8 of 41.

Unknown · CVSS Not scored

CVE-2018-13833: An issue was discovered in cmft through 2017-09-24.

An issue was discovered in cmft through 2017-09-24. The cmft::rwReadFile function in image.cpp allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact.

Published Jul 10, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-13408: An issue was discovered in Jirafeau before 3.4.1.

An issue was discovered in Jirafeau before 3.4.1. The "search file by link" form is affected by reflected XSS that could allow, by targeting an administrator, stealing a session and gaining administrative privileges.

Published Jul 6, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-1129: A flaw was found in the way signature calculation was handled by cephx authentication protocol.

A flaw was found in the way signature calculation was handled by cephx authentication protocol. An attacker having access to ceph cluster network who is able to alter the message payload was able to bypass signature checks done by cephx protocol. Ceph branches master, mimic, luminous and jewel are believed to be vulnerable.

Published Jul 10, 2018 · Updated Sep 17, 2024

High · CVSS 8.8

CVE-2018-3871: An exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0.

An exploitable out-of-bounds write exists in the PCX parsing functionality of Canvas Draw version 4.0.0. A specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker can deliver a PCX image to trigger this vulnerability and gain code execution. A different vulnerability than CVE-2018-3870.

Published Jul 19, 2018 · Updated Sep 17, 2024

High · CVSS 8.8

CVE-2018-1212: Authenticated remote code execution in iDRAC 6

The web-based diagnostics console in Dell EMC iDRAC6 (Monolithic versions prior to 2.91 and Modular all versions) contains a command injection vulnerability. A remote authenticated malicious iDRAC user with access to the diagnostics console could potentially exploit this vulnerability to execute arbitrary commands as root on the affected iDRAC system.

Published Jul 2, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-5891: While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle...

While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available. Consequently, the DPL thread frees the internal memory for dataDHandle but the local variable pointer is not updated which can lead to a Use After Free condition in Snapdragon Mobile and Snapdragon Wear.

Published Jul 6, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-14345: An issue was discovered in SDDM through 0.17.0.

An issue was discovered in SDDM through 0.17.0. If configured with ReuseSession=true, the password is not checked for users with an already existing session. Any user with access to the system D-Bus can therefore unlock any graphical session. This is related to daemon/Display.cpp and helper/backend/PamBackend.cpp.

Published Jul 17, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-1000616: ONOS ONOS controller version 1.13.1 and earlier contains a XML External Entity (XXE) vulnerability in onos\...

ONOS ONOS controller version 1.13.1 and earlier contains a XML External Entity (XXE) vulnerability in onos\drivers\utilities\src\main\java\org\onosproject\drivers\utilities\XmlConfigParser.java loadxml() that can result in An adversary can remotely launch XXE attacks on ONOS controller via an OpenConfig Terminal Device.. This attack appear to be exploitable via network connectivity.

Published Jul 9, 2018 · Updated Sep 17, 2024

High · CVSS 8.8

CVE-2018-3933: An exploitable out-of-bounds write exists in the Microsoft Word document conversion functionality of the An...

An exploitable out-of-bounds write exists in the Microsoft Word document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This vulnerability occurs in the `vbputanld` method.

Published Jul 11, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-14472: An issue was discovered in WUZHI CMS 4.1.0.

An issue was discovered in WUZHI CMS 4.1.0. The vulnerable file is coreframe/app/order/admin/goods.php. The $keywords parameter is taken directly into execution without any filtering, leading to SQL injection.

Published Jul 20, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-8020: Apache Tomcat Native 1.2.0 to 1.2.16 and 1.1.23 to 1.1.34 has a flaw that does not properly check OCSP pre-...

Apache Tomcat Native 1.2.0 to 1.2.16 and 1.1.23 to 1.1.34 has a flaw that does not properly check OCSP pre-produced responses, which are lists (multiple entries) of certificate statuses. Subsequently, revoked client certificates may not be properly identified, allowing for users to authenticate with revoked certificates to connections that require mutual TLS. Users not using OCSP checks are not affected by this vulnerability.

Published Jul 31, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-5873: An issue was discovered in the __ns_get_path function in fs/nsfs.c in the Linux kernel before 4.11.

An issue was discovered in the __ns_get_path function in fs/nsfs.c in the Linux kernel before 4.11. Due to a race condition when accessing files, a Use After Free condition can occur. This also affects all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05.

Published Jul 6, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-13878: An XSS issue was discovered in packages/rocketchat-mentions/Mentions.js in Rocket.Chat before 0.65.

An XSS issue was discovered in packages/rocketchat-mentions/Mentions.js in Rocket.Chat before 0.65. The real name of a username is displayed unescaped when the user is mentioned (using the @ symbol) in a channel or private chat. Consequently, it is possible to exfiltrate the secret token of every user and also admins in the channel.

Published Jul 11, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-1337: In Apache Directory LDAP API before 1.0.2, a bug in the way the SSL Filter was setup made it possible for a...

In Apache Directory LDAP API before 1.0.2, a bug in the way the SSL Filter was setup made it possible for another thread to use the connection before the TLS layer has been established, if the connection has already been used and put back in a pool of connections, leading to leaking any information contained in this request (including the credentials when sending a BIND request).

Published Jul 10, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-6965: VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10...

VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator. Successful exploitation of this issue may lead to information disclosure or may allow attackers with normal user privileges to crash their VMs, a different vulnerability than CVE-2018-6966 and CVE-2018-6967.

Published Jul 9, 2018 · Updated Sep 17, 2024

Medium · CVSS 5.9

CVE-2018-1546: IBM API Connect information disclosure

IBM API Connect 5.0.0.0 through 5.0.8.3 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 142650.

Published Jul 6, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-10887: A flaw was found in libgit2 before version 0.27.3.

A flaw was found in libgit2 before version 0.27.3. It has been discovered that an unexpected sign extension in git_delta_apply function in delta.c file may lead to an integer overflow which in turn leads to an out of bound read, allowing to read before the base object. An attacker may use this flaw to leak memory addresses or cause a Denial of Service.

Published Jul 10, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-4851: A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions).

A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with network access to the device could cause a Denial-of-Service condition by sending certain packets to the device, causing potential reboots of the device. The core functionality of the device could be impacted. The time serving functionality recovers when time synchronization with GPS devices or other NTP servers are completed.

Published Jul 3, 2018 · Updated Sep 17, 2024

Unknown · CVSS Not scored

CVE-2018-11259: Due to Improper Access Control of NAND-based EFS in Snapdragon Automobile, Snapdragon Mobile and Snapdragon...

Due to Improper Access Control of NAND-based EFS in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, From fastboot on a NAND-based device, the EFS partition can be erased. Apps processor then has non-secure world full read/write access to the partition until the modem boots and configures the EFS partition addresses in its MPU partition.

Published Jul 6, 2018 · Updated Sep 17, 2024