|
246601
|
6.1 |
MEDIUM
Network
|
digisol
|
dg-br4000ng_firmware
|
DIGISOL DG-BR4000NG devices have XSS via the SSID (it is validated only on the client side).
|
CWE-79
Cross-site Scripting
|
CVE-2018-12705
|
2024-11-21 12:45 |
2018-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246602
|
9.1 |
CRITICAL
Network
|
gimp
|
gimp
|
GIMP through 2.10.2 makes g_get_tmp_dir calls to establish temporary filenames, which may result in a filename that already exists, as demonstrated by the gimp_write_and_read_file function in app/tes…
|
NVD-CWE-noinfo
|
CVE-2018-12713
|
2024-11-21 12:45 |
2018-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246603
|
9.8 |
CRITICAL
Network
|
gnu canonical
|
binutils ubuntu_linux
|
finish_stab in stabs.c in GNU Binutils 2.30 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds w…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-12699
|
2024-11-21 12:45 |
2018-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246604
|
7.5 |
HIGH
Network
|
gnu canonical
|
binutils ubuntu_linux
|
demangle_template in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30, allows attackers to trigger excessive memory consumption (aka OOM) during the "Create an array for saving the t…
|
NVD-CWE-noinfo
|
CVE-2018-12698
|
2024-11-21 12:45 |
2018-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246605
|
7.5 |
HIGH
Network
|
gnu canonical
|
binutils ubuntu_linux
|
A NULL pointer dereference (aka SEGV on unknown address 0x000000000000) was discovered in work_stuff_copy_to_from in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. This can occur …
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-12697
|
2024-11-21 12:45 |
2018-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246606
|
9.8 |
CRITICAL
Network
|
insteon
|
2864-222_firmware
|
The webService binary on Insteon HD IP Camera White 2864-222 devices has a Buffer Overflow via a crafted pid, pwd, or usr key in a GET request on port 34100.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12640
|
2024-11-21 12:45 |
2018-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246607
|
6.1 |
MEDIUM
Network
|
mao10
|
mao10cms
|
mao10cms 6 allows XSS via the article page.
|
CWE-79
Cross-site Scripting
|
CVE-2018-12696
|
2024-11-21 12:45 |
2018-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246608
|
6.1 |
MEDIUM
Network
|
mao10
|
mao10cms
|
mao10cms 6 allows XSS via the m=bbs&a=index page.
|
CWE-79
Cross-site Scripting
|
CVE-2018-12695
|
2024-11-21 12:45 |
2018-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246609
|
7.5 |
HIGH
Network
|
tp-link
|
tl-wa850re_firmware
|
TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote attackers to cause a denial of service (reboot) via data/reboot.json.
|
CWE-20
Improper Input Validation
|
CVE-2018-12694
|
2024-11-21 12:45 |
2018-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246610
|
6.5 |
MEDIUM
Network
|
tp-link
|
tl-wa850re_firmware
|
Stack-based buffer overflow in TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote authenticated users to cause a denial of service (outage) via a long type parameter to /da…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-12693
|
2024-11-21 12:45 |
2018-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|