LiveActive security incident?Get immediate response
CVE archive

December 2018

Browse CVE records published in December 2018, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 1298 matching CVEs · Page 7 of 26.

Medium · CVSS 6.8

CVE-2018-1654: IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, 7.0.1, and 7.0.3 could allow a remote attacker to...

IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, 7.0.1, and 7.0.3 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 144747.

Published Dec 11, 2018 · Updated Sep 16, 2024

High · CVSS 7.2

CVE-2018-4020: An exploitable command injection vulnerability exists in the way Netgate pfSense CE 2.4.4-RELEASE processes...

An exploitable command injection vulnerability exists in the way Netgate pfSense CE 2.4.4-RELEASE processes the parameters of a specific POST request. The attacker can exploit this and gain the ability to execute arbitrary commands on the system. An attacker needs to be able to send authenticated POST requests to the administration web interface. Command injection is possible in the `powerd_ac_mode` POST parameter parameter.

Published Dec 3, 2018 · Updated Sep 16, 2024

Unknown · CVSS Not scored

CVE-2018-20299: An issue was discovered in several Bosch Smart Home cameras (360 degree indoor camera and Eyes outdoor came...

An issue was discovered in several Bosch Smart Home cameras (360 degree indoor camera and Eyes outdoor camera) with firmware before 6.52.4. A malicious client could potentially succeed in the unauthorized execution of code on the device via the network interface, because there is a buffer overflow in the RCP+ parser of the web server.

Published Dec 19, 2018 · Updated Sep 16, 2024

Unknown · CVSS Not scored

CVE-2018-1000836: bw-calendar-engine version <= bw-calendar-engine-3.12.0 contains a XML External Entity (XXE) vulnerability...

bw-calendar-engine version <= bw-calendar-engine-3.12.0 contains a XML External Entity (XXE) vulnerability in IscheduleClient XML Parser that can result in Disclosure of confidential data, denial of service, SSRF, port scanning. This attack appear to be exploitable via Man in the Middle or malicious server.

Published Dec 20, 2018 · Updated Sep 16, 2024

Medium · CVSS 6.1

CVE-2018-1803: IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 could allow a remote...

IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 149702.

Published Dec 13, 2018 · Updated Sep 16, 2024

Unknown · CVSS Not scored

CVE-2018-5202: SKCertService 2.5.5 and earlier contains a vulnerability that could allow remote attacker to execute arbitr...

SKCertService 2.5.5 and earlier contains a vulnerability that could allow remote attacker to execute arbitrary code. This vulnerability exists due to the way .dll files are loaded by SKCertService. It allows an attacker to load a .dll of the attacker's choosing that could execute arbitrary code without the user's knowledge.

Published Dec 21, 2018 · Updated Sep 16, 2024

Low · CVSS 3.4

CVE-2018-17957: yast2-rmt leaks database passwords in process list

The YaST2 RMT module for configuring the SUSE Repository Mirroring Tool (RMT) before 1.1.2 exposed MySQL database passwords on process commandline, allowing local attackers to access or corrupt the RMT database.

Published Dec 26, 2018 · Updated Sep 16, 2024

Unknown · CVSS Not scored

CVE-2018-20159: i-doit open 1.11.2 allows Remote Code Execution because ZIP archives are mishandled.

i-doit open 1.11.2 allows Remote Code Execution because ZIP archives are mishandled. It has an upload feature that allows an authenticated user with the administrator role to upload arbitrary files to the main website directory. Exploitation involves uploading a ".php" file within a ".zip" file because a ZIP archive is accepted by /admin/?req=modules&action=add as a plugin, and extracted to the main directory. In order for the ".zip" file to be accepted, it must also contain a package.json file.

Published Dec 15, 2018 · Updated Sep 16, 2024

Medium · CVSS 6.1

CVE-2018-1815: IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 for Enterprise Single...

IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 for Enterprise Single-Sign On is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 150019.

Published Dec 13, 2018 · Updated Sep 16, 2024

Unknown · CVSS Not scored

CVE-2018-1000854: esigate.org esigate version 5.2 and earlier contains a CWE-74: Improper Neutralization of Special Elements...

esigate.org esigate version 5.2 and earlier contains a CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in ESI directive with user specified XSLT that can result in Remote Code Execution. This attack appear to be exploitable via Use of another weakness in backend application to reflect ESI directives. This vulnerability appears to have been fixed in 5.3.

Published Dec 20, 2018 · Updated Sep 16, 2024

Unknown · CVSS Not scored

CVE-2018-1000875: Berkeley Open Infrastructure for Network Computing BOINC Server and Website Code version 0.9-1.0.2 contains...

Berkeley Open Infrastructure for Network Computing BOINC Server and Website Code version 0.9-1.0.2 contains a CWE-302: Authentication Bypass by Assumed-Immutable Data vulnerability in Website Terms of Service Acceptance Page that can result in Access to any user account. This attack appear to be exploitable via Specially crafted URL. This vulnerability appears to have been fixed in 1.0.3.

Published Dec 20, 2018 · Updated Sep 16, 2024

Unknown · CVSS Not scored

CVE-2018-1000847: FreshDNS version 1.0.3 and prior contains a Cross Site Scripting (XSS) vulnerability in Account data form;...

FreshDNS version 1.0.3 and prior contains a Cross Site Scripting (XSS) vulnerability in Account data form; Zone editor that can result in Execution of attacker's JavaScript code in victim's session. This attack appear to be exploitable via The attacker stores a specially crafted string as their Full Name in their account details. The victim (e.g. the administrator of the FreshDNS instance) opens the User List in the admin interface.. This vulnerability appears to have been fixed in 1.0.5 and later.

Published Dec 20, 2018 · Updated Sep 16, 2024

High · CVSS 8.8

CVE-2018-4039: An exploitable out-of-bounds write vulnerability exists in the PNG implementation of Atlantis Word Processo...

An exploitable out-of-bounds write vulnerability exists in the PNG implementation of Atlantis Word Processor, version 3.2.7.2. This can allow an attacker to corrupt memory, which can result in code execution under the context of the application. An attacker must convince a victim to open a specially crafted document in order to trigger this vulnerability.

Published Dec 1, 2018 · Updated Sep 16, 2024