|
247551
|
7.5 |
HIGH
Network
|
citrix
|
xenmobile_server
|
There is a Sensitive Data Leakage issue in Citrix XenMobile Server 10.7 before RP3.
|
CWE-200
Information Exposure
|
CVE-2018-10652
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247552
|
6.1 |
MEDIUM
Network
|
citrix
|
xenmobile_server
|
There are Open Redirect Vulnerabilities in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
|
CWE-601
Open Redirect
|
CVE-2018-10651
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247553
|
7.8 |
HIGH
Local
|
citrix
|
xenmobile_server
|
There is an Insufficient Path Validation Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
|
CWE-426
Untrusted Search Path
|
CVE-2018-10650
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247554
|
6.1 |
MEDIUM
Network
|
citrix
|
xenmobile_server
|
There is a Cross-Site Scripting Vulnerability in Citrix XenMobile Server 10.7 before RP3.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10649
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247555
|
9.8 |
CRITICAL
Network
|
citrix
|
xenmobile_server
|
There are Unauthenticated File Upload Vulnerabilities in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2018-10648
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247556
|
8.8 |
HIGH
Network
|
trendmicro
|
endpoint_application_control
|
A directory traversal vulnerability in Trend Micro Endpoint Application Control 2.0 could allow a remote attacker to execute arbitrary code on vulnerable installations due to a flaw in the FileDrop s…
|
CWE-22
Path Traversal
|
CVE-2018-10357
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247557
|
8.8 |
HIGH
Network
|
trendmicro
|
email_encryption_gateway
|
A SQL injection remote code execution vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to execute arbitrary SQL statements on vulnerable installations due to a flaw i…
|
CWE-89
SQL Injection
|
CVE-2018-10356
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247558
|
7.0 |
HIGH
Local
|
trendmicro
|
email_encryption_gateway
|
An authentication weakness vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to recover user passwords on vulnerable installations due to a flaw in the DBCrypto class.…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2018-10355
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247559
|
8.8 |
HIGH
Network
|
trendmicro
|
email_encryption_gateway
|
A command injection remote command execution vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a remote attacker to execute arbitrary code on vulnerable installations due to a fla…
|
CWE-78
OS Command
|
CVE-2018-10354
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247560
|
6.5 |
MEDIUM
Network
|
trendmicro
|
email_encryption_gateway
|
A SQL injection information disclosure vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a remote attacker to disclose sensitive information on vulnerable installations due to a f…
|
CWE-89
SQL Injection
|
CVE-2018-10353
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|