|
247321
|
8.1 |
HIGH
Network
|
dell
|
emc_integrated_data_protection_appliance emc_data_protection_advisor
|
Dell EMC Data Protection Advisor, versions 6.2, 6,3, 6.4, 6.5 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2.1 contain a XML External Entity (XXE) Injection vulnerability in…
|
CWE-611
XXE
|
CVE-2018-11048
|
2024-11-21 12:42 |
2018-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247322
|
7.8 |
HIGH
Local
|
dell
|
wyse_management_suite
|
Dell WMS versions 1.1 and prior are impacted by multiple unquoted service path vulnerabilities. Affected software installs multiple services incorrectly by specifying the paths to the service executa…
|
CWE-428
Unquoted Search Path or Element
|
CVE-2018-11063
|
2024-11-21 12:42 |
2018-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247323
|
7.5 |
HIGH
Network
|
smartmesh_project ugtoken_project gg_token_project first_project mtc_project mesh_project
|
smartmesh ugtoken gg_token first mtc mesh
|
The transferProxy and approveProxy functions of a smart contract implementation for SmartMesh (SMT), an Ethereum ERC20 token, allow attackers to accomplish an unauthorized transfer of digital assets …
|
NVD-CWE-noinfo
|
CVE-2018-10769
|
2024-11-21 12:42 |
2018-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247324
|
8.1 |
HIGH
Network
|
canonical debian postgresql
|
ubuntu_linux debian_linux postgresql
|
It was discovered that PostgreSQL versions before 10.5, 9.6.10, 9.5.14, 9.4.19, and 9.3.24 failed to properly check authorization on certain statements involved with "INSERT ... ON CONFLICT DO UPDATE…
|
CWE-863
Incorrect Authorization
|
CVE-2018-10925
|
2024-11-21 12:42 |
2018-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247325
|
9.8 |
CRITICAL
Network
|
cobbler_project redhat
|
cobbler satellite
|
It was found that cobbler 2.6.x exposed all functions from its CobblerXMLRPCInterface class over XMLRPC. A remote, unauthenticated attacker could use this flaw to gain high privileges within cobbler,…
|
-
|
CVE-2018-10931
|
2024-11-21 12:42 |
2018-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247326
|
7.5 |
HIGH
Network
|
redhat canonical debian postgresql
|
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server virtualization enterprise_linux_server_eus openstack ubuntu_linux debian_linux postgresql
|
A vulnerability was found in libpq, the default PostgreSQL client library where libpq failed to properly reset its internal state between connections. If an affected version of libpq was used with "h…
|
CWE-89
SQL Injection
|
CVE-2018-10915
|
2024-11-21 12:42 |
2018-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247327
|
6.3 |
MEDIUM
Local
|
ovirt redhat
|
vdsm virtualization
|
It was found that vdsm before version 4.20.37 invokes qemu-img on untrusted inputs without limiting resources. By uploading a specially crafted image, an attacker could cause the qemu-img process to …
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2018-10908
|
2024-11-21 12:42 |
2018-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247328
|
5.5 |
MEDIUM
Local
|
ttembed_project
|
ttembed
|
An input validation flaw exists in ttembed. With a crafted input file, an attacker may be able to trigger a denial of service condition due to ttembed trusting attacker controlled values.
|
CWE-20
Improper Input Validation
|
CVE-2018-10922
|
2024-11-21 12:42 |
2018-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247329
|
7.5 |
HIGH
Network
|
ttembed_project
|
ttembed
|
Certain input files may trigger an integer overflow in ttembed input file processing. This overflow could potentially lead to corruption of the input file due to a lack of checking return codes of fg…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-10921
|
2024-11-21 12:42 |
2018-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247330
|
6.8 |
MEDIUM
Network
|
nic
|
knot_resolver
|
Improper input validation bug in DNS resolver component of Knot Resolver before 2.4.1 allows remote attacker to poison cache.
|
CWE-20
Improper Input Validation
|
CVE-2018-10920
|
2024-11-21 12:42 |
2018-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|