Unknown · CVSS Not scored
Persistent Cross-Site Scripting (XSS) in the advancedsetup_websiteblocking.html Website Blocking page of the Actiontec C1000A router with firmware through CAC004-31.30L.95 allows a remote attacker to inject arbitrary HTML into the Website Blocking page by inserting arbitrary HTML into the 'TodUrlAdd' URL parameter in a /urlfilter.cmd POST request.
Published Dec 6, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
imcat 4.4 allows remote attackers to read phpinfo output via the root/tools/adbug/binfo.php?phpinfo1 URI.
Published Dec 30, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Tenda ADSL modem routers 1.0.1 allow XSS via the hostname of a DHCP client.
Published Dec 23, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
LH-EHR version REL-2_0_0 contains a Arbitrary File Upload vulnerability in Profile picture upload that can result in Remote Code Execution. This attack appear to be exploitable via Uploading a PHP file with image MIME type.
Published Dec 20, 2018 · Updated Sep 16, 2024
Medium · CVSS 5.4
IBM DataPower Gateway 7.6.0.0 through 7.6.0.10, 7.5.2.0 through 7.5.2.17, 7.5.1.0 through 7.5.1.17, 7.5.0.0 through 7.5.0.18, and 7.7.0.0 through 7.7.1.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 144893.
Published Dec 13, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
ThinkCMF X2.2.2 has SQL Injection via the function _listorders() in AdminbaseController.class.php and is exploitable with the manager privilege via the listorders[key][1] parameter in a Link listorders action.
Published Dec 6, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
ThinkCMF X2.2.2 has SQL Injection via the function delete() in SlideController.class.php and is exploitable with the manager privilege via the ids[] parameter in a slide action.
Published Dec 6, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
CastleNet CBV38Z4EC 125.553mp1.39219mp1.899.007, CBV38Z4ECNIT 125.553mp1.39219mp1.899.005ITT, CBW383G4J 37.556mp5.008, and CBW38G4J 37.553mp1.008 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
Published Dec 23, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
UCMS 1.4.7 has XSS via the description parameter in an index.php list_editpost action.
Published Dec 30, 2018 · Updated Sep 16, 2024
Medium · CVSS 6.5
Cross-site scripting (XSS) vulnerability in info.cgi in Synology DiskStation Manager (DSM) before 6.1.6-15266 allows remote attackers to inject arbitrary web script or HTML via the host parameter.
Published Dec 24, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
An invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC) 1.29.9.2. The vulnerability causes a segmentation fault and application crash, which leads to denial of service in the book 10 case.
Published Dec 6, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
sadmin\cedit.php in UCMS 1.4.7 has XSS via an index.php sadmin_cedit action.
Published Dec 30, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Zoho ManageEngine OpManager 12.3 before 123238 allows SQL injection via the getGraphData API.
Published Dec 17, 2018 · Updated Sep 16, 2024
Medium · CVSS 4.3
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Admin Console is vulnerable to cross-site request forgery, caused by improper validation of user-supplied input. By persuading a user to visit a malicious URL, a remote attacker could send a specially-crafted request. An attacker could exploit this vulnerability to perform CSRF attack and update available applications. IBM X-Force ID: 152992.
Published Dec 12, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
On BIG-IP AAM 13.0.0 or 12.1.0-12.1.3.7, the dcdb_convert utility used by BIG-IP AAM fails to drop group permissions when executing helper scripts, which could be used to leverage attacks against the BIG-IP system.
Published Dec 20, 2018 · Updated Sep 16, 2024
Medium · CVSS 4
IBM BigFix Platform 9.2.0 through 9.2.14 and 9.5 through 9.5.9 does not set the 'HttpOnly' attribute on authorization tokens or session cookies. If a Cross-Site Scripting vulnerability also existed attackers may be able to get the cookie values via malicious JavaScript and then hijack the user session. IBM X-Force ID: 140762.
Published Dec 12, 2018 · Updated Sep 16, 2024
High · CVSS 8.4
IBM Campaign 9.1.0 and 9.1.2 could allow a local user to obtain admini privileges due to the application not validating access permissions. IBM X-Force ID: 153382.
Published Dec 5, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
mplus CBC383Z CBC383Z_mplus_MDr026 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
Published Dec 23, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
imcat 4.4 allows directory traversal via the root/run/adm.php efile parameter.
Published Dec 30, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
MicroMathematics version before commit 5c05ac8 contains a XML External Entity (XXE) vulnerability in SMathStudio files that can result in Disclosure of confidential data, denial of service, SSRF, port scanning. This attack appear to be exploitable via Specially crafted SMathStudio files. This vulnerability appears to have been fixed in after commit 5c05ac8.
Published Dec 20, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
WellinTech KingSCADA before 3.7.0.0.1 contains a stack-based buffer overflow. The vulnerability is triggered when sending a specially crafted packet to the AlarmServer (AEserver.exe) service listening on TCP port 12401.
Published Dec 24, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Zoom 5352 v5.5.8.6Y devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4491.2.4.1.1.6.1.1.0 and iso.3.6.1.4.1.4491.2.4.1.1.6.1.2.0 SNMP requests.
Published Dec 23, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
UCMS 1.4.7 has ?do=user_addpost CSRF.
Published Dec 30, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Tcpreplay before 4.3.1 has a heap-based buffer over-read in get_l2len in common/get.c.
Published Dec 28, 2018 · Updated Sep 16, 2024
High · CVSS 7.1
IBM Marketing Platform 9.1.0, 9.1.2, and 10.1 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 139029.
Published Dec 7, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
OpenKMIP PyKMIP version All versions before 0.8.0 contains a CWE 399: Resource Management Errors (similar issue to CVE-2015-5262) vulnerability in PyKMIP server that can result in DOS: the server can be made unavailable by one or more clients opening all of the available sockets. This attack appear to be exploitable via A client or clients open sockets with the server and then never close them. This vulnerability appears to have been fixed in 0.8.0.
Published Dec 20, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
In Artifex MuPDF 1.14.0, svg/svg-run.c allows remote attackers to cause a denial of service (recursive calls followed by a fitz/xml.c fz_xml_att crash from excessive stack consumption) via a crafted svg file, as demonstrated by mupdf-gl.
Published Dec 6, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
In Artifex MuPDF 1.14.0, the svg_run_image function in svg/svg-run.c allows remote attackers to cause a denial of service (href_att NULL pointer dereference and application crash) via a crafted svg file, as demonstrated by mupdf-gl.
Published Dec 6, 2018 · Updated Sep 12, 2024
Unknown · CVSS Not scored
A flaw was found in PolicyKit (aka polkit) 0.115 that allows a user with a uid greater than INT_MAX to successfully execute any systemctl command.
Published Dec 3, 2018 · Updated Aug 29, 2024
Unknown · CVSS Not scored
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit. There is an XSS vulnerability in integration-contact-form.html.php:15: via POST request variable html_id.
Published Dec 3, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
These vulnerabilities require administrative privileges to exploit. There is an XSS vulnerability in bft_list.html.php:43: via the filter_signup_date parameter.
Published Dec 3, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit.
Published Dec 3, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
These vulnerabilities require administrative privileges to exploit. There is an XSS vulnerability in integration-contact-form.html.php:14: via POST request variable classes
Published Dec 3, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when deserializing transactions.
Published Dec 23, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Fasterxml Jackson version Before 2.9.8 contains a CWE-20: Improper Input Validation vulnerability in Jackson-Modules-Java8 that can result in Causes a denial-of-service (DoS). This attack appear to be exploitable via The victim deserializes malicious input, specifically very large values in the nanoseconds field of a time value. This vulnerability appears to have been fixed in 2.9.8.
Published Dec 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit.
Published Dec 3, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-415: Double Free vulnerability in RAR decoder - libarchive/archive_read_support_format_rar.c, parse_codes(), realloc(rar->lzss.window, new_size) with new_size = 0 that can result in Crash/DoS. This attack appear to be exploitable via the victim must open a specially crafted RAR archive.
Published Dec 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
libarchive version commit 379867ecb330b3a952fb7bfa7bffb7bbd5547205 onwards (release v3.3.0 onwards) contains a CWE-476: NULL Pointer Dereference vulnerability in ACL parser - libarchive/archive_acl.c, archive_acl_from_text_l() that can result in Crash/DoS. This attack appear to be exploitable via the victim must open a specially crafted archive file.
Published Dec 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when receiving sendheaders messages.
Published Dec 23, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit. There is an XSS vulnerability in unsubscribe.html.php:3: via GET reuqest to the email variable.
Published Dec 3, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
FreeRDP FreeRDP 2.0.0-rc3 released version before commit 205c612820dac644d665b5bb1cdf437dc5ca01e3 contains a Other/Unknown vulnerability in channels/drdynvc/client/drdynvc_main.c, drdynvc_process_capability_request that can result in The RDP server can read the client's memory.. This attack appear to be exploitable via RDPClient must connect the rdp server with echo option. This vulnerability appears to have been fixed in after commit 205c612820dac644d665b5bb1cdf437dc5ca01e3.
Published Dec 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An information exposure vulnerability exists in Jenkins 2.153 and earlier, LTS 2.138.3 and earlier in DirectoryBrowserSupport.java that allows attackers with the ability to control build output to browse the file system on agents running builds beyond the duration of the build using the workspace browser.
Published Dec 10, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
libarchive version commit 9693801580c0cf7c70e862d305270a16b52826a7 onwards (release v3.2.0 onwards) contains a CWE-20: Improper Input Validation vulnerability in WARC parser - libarchive/archive_read_support_format_warc.c, _warc_read() that can result in DoS - quasi-infinite run time and disk usage from tiny file. This attack appear to be exploitable via the victim must open a specially crafted WARC file.
Published Dec 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Square Retrofit version versions from (including) 2.0 and 2.5.0 (excluding) contains a Directory Traversal vulnerability in RequestBuilder class, method addPathParameter that can result in By manipulating the URL an attacker could add or delete resources otherwise unavailable to her.. This attack appear to be exploitable via An attacker should have access to an encoded path parameter on POST, PUT or DELETE request.. This vulnerability appears to have been fixed in 2.5.0 and later.
Published Dec 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A data modification vulnerability exists in Jenkins 2.153 and earlier, LTS 2.138.3 and earlier in User.java, IdStrategy.java that allows attackers to submit crafted user names that can cause an improper migration of user record storage formats, potentially preventing the victim from logging into Jenkins.
Published Dec 10, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
GnuPG version 2.1.12 - 2.2.11 contains a Cross ite Request Forgery (CSRF) vulnerability in dirmngr that can result in Attacker controlled CSRF, Information Disclosure, DoS. This attack appear to be exploitable via Victim must perform a WKD request, e.g. enter an email address in the composer window of Thunderbird/Enigmail. This vulnerability appears to have been fixed in after commit 4a4bb874f63741026bd26264c43bb32b1099f060.
Published Dec 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit.
Published Dec 3, 2018 · Updated Aug 5, 2024
Medium · CVSS 5.9
In Kubernetes versions 1.9.0-1.9.9, 1.10.0-1.10.5, and 1.11.0-1.11.1, user input was handled insecurely while setting up volume mounts on Windows nodes, which could lead to command line argument injection.
Published Dec 5, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Bitcoin SV before 0.1.1 allows uncontrolled resource consumption when receiving messages with invalid checksums.
Published Dec 23, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
binutils version 2.32 and earlier contains a Integer Overflow vulnerability in objdump, bfd_get_dynamic_reloc_upper_bound,bfd_canonicalize_dynamic_reloc that can result in Integer overflow trigger heap overflow. Successful exploitation allows execution of arbitrary code.. This attack appear to be exploitable via Local. This vulnerability appears to have been fixed in after commit 3a551c7a1b80fca579461774860574eabfd7f18f.
Published Dec 20, 2018 · Updated Aug 5, 2024