|
253071
|
8.8 |
HIGH
Network
|
dell
|
emc_integrated_data_protection_appliance
|
Integrated Data Protection Appliance versions 2.0, 2.1, and 2.2 contain undocumented accounts named 'support' and 'admin' that are protected with default passwords. These accounts have limited privil…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-11062
|
2024-11-21 12:42 |
2018-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253072
|
7.8 |
HIGH
Local
|
emc
|
secure_remote_services
|
Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains Improper File Permission Vulnerabilities. The application contains multiple configuration files with world-readable permissions…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-11080
|
2024-11-21 12:42 |
2018-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253073
|
7.8 |
HIGH
Local
|
emc
|
secure_remote_services
|
Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains a Plaintext Password Storage vulnerability. Database credentials are stored in plaintext in a configuration file. An authentica…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2018-11079
|
2024-11-21 12:42 |
2018-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253074
|
9.8 |
CRITICAL
Network
|
dlink
|
dwr-116_firmware dir-140l_firmware dir-640l_firmware dwr-512_firmware dwr-712_firmware dwr-912_firmware dwr-921_firmware dwr-111_firmware
|
An issue was discovered on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-1…
|
CWE-22 CWE-522
Path Traversal Insufficiently Protected Credentials
|
CVE-2018-10824
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253075
|
8.8 |
HIGH
Network
|
dlink
|
dwr-116_firmware dwr-512_firmware dwr-912_firmware dwr-111_firmware
|
An issue was discovered on D-Link DWR-116 through 1.06, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices. An authenticated atta…
|
CWE-78
OS Command
|
CVE-2018-10823
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253076
|
9.1 |
CRITICAL
Network
|
libssh canonical debian redhat netapp oracle
|
libssh ubuntu_linux debian_linux enterprise_linux snapcenter storage_automation_store oncommand_unified_manager oncommand_workflow_automation mysql_workbench
|
A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unautho…
|
CWE-287
Improper Authentication
|
CVE-2018-10933
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253077
|
7.5 |
HIGH
Network
|
dlink
|
dwr-116_firmware dir-140l_firmware dir-640l_firmware dwr-512_firmware dwr-712_firmware dwr-912_firmware dwr-921_firmware dwr-111_firmware
|
Directory traversal vulnerability in the web interface on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, …
|
CWE-22
Path Traversal
|
CVE-2018-10822
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253078
|
7.5 |
HIGH
Network
|
amazon
|
fire_os
|
kernel/omap/drivers/mfd/twl6030-gpadc.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 allows attackers to inject a crafted argument via the argument of an ioctl on device /dev…
|
CWE-88
Argument Injection
|
CVE-2018-11025
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253079
|
7.5 |
HIGH
Network
|
amazon
|
fire_os
|
kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD (3rd) Fire OS 4.5.5.3 allows attackers to inject a crafted argument via the argument of an ioctl on device…
|
CWE-88
Argument Injection
|
CVE-2018-11024
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253080
|
7.5 |
HIGH
Network
|
amazon
|
fire_os
|
kernel/omap/drivers/misc/gcx/gcioctl/gcif.c in the kernel component in Amazon Kindle Fire HD (3rd) Fire OS 4.5.5.3 allows attackers to inject a crafted argument via the argument of an ioctl on device…
|
CWE-88
Argument Injection
|
CVE-2018-11023
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|