|
246631
|
4.3 |
MEDIUM
Network
|
apache debian canonical netapp redhat oracle
|
tomcat debian_linux ubuntu_linux snap_creator_framework enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_li…
|
When the default servlet in Apache Tomcat versions 9.0.0.M1 to 9.0.11, 8.5.0 to 8.5.33 and 7.0.23 to 7.0.90 returned a redirect to a directory (e.g. redirecting to '/foo/' when the user requested '/f…
|
CWE-601
Open Redirect
|
CVE-2018-11784
|
2024-11-21 12:44 |
2018-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246632
|
7.6 |
HIGH
Physics
|
intel lenovo
|
core_i3 core_i5 core_i7 core_i9 thinkpad_x1_yoga thinkpad_x1_tablet thinkpad_x1_carbon thinkpad_11e thinkpad_p51s thinkpad_p71 thinkpad_t470 thinkpad_t470p thinkpa…
|
Platform sample code firmware in 4th Generation Intel Core Processor, 5th Generation Intel Core Processor, 6th Generation Intel Core Processor, 7th Generation Intel Core Processor and 8th Generation …
|
CWE-287
Improper Authentication
|
CVE-2018-12169
|
2024-11-21 12:44 |
2018-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246633
|
8.8 |
HIGH
Adjacent
|
qualcomm
|
mdm9206_firmware mdm9607_firmware mdm9635m_firmware mdm9640_firmware mdm9645_firmware mdm9655_firmware msm8909w_firmware msm8996au_firmware sd210_firmware sd212_firmware
|
In Snapdragon (Mobile, Wear) in version MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/…
|
CWE-415
Double Free
|
CVE-2018-11982
|
2024-11-21 12:44 |
2018-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246634
|
8.8 |
HIGH
Adjacent
|
symantec
|
messaging_gateway
|
The Symantec Messaging Gateway product prior to 10.6.6 may be susceptible to a XML external entity (XXE) exploit, which is a type of issue where XML input containing a reference to an external entity…
|
CWE-611
XXE
|
CVE-2018-12243
|
2024-11-21 12:44 |
2018-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246635
|
9.8 |
CRITICAL
Network
|
symantec
|
messaging_gateway
|
The Symantec Messaging Gateway product prior to 10.6.6 may be susceptible to an authentication bypass exploit, which is a type of issue that can allow attackers to potentially circumvent security mec…
|
CWE-287
Improper Authentication
|
CVE-2018-12242
|
2024-11-21 12:44 |
2018-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246636
|
7.8 |
HIGH
Local
|
google
|
android
|
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, asynchronous callbacks received a pointer to a callers local variable. Should the caller re…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11904
|
2024-11-21 12:44 |
2018-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246637
|
7.8 |
HIGH
Local
|
google
|
android
|
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of length validation check for value received from caller function used as an array in…
|
CWE-787 CWE-129
Out-of-bounds Write Improper Validation of Array Index
|
CVE-2018-11903
|
2024-11-21 12:44 |
2018-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246638
|
7.8 |
HIGH
Local
|
google
|
android
|
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, lack of length validation check for value received from firmware can lead to OOB access in …
|
CWE-129
Improper Validation of Array Index
|
CVE-2018-11902
|
2024-11-21 12:44 |
2018-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246639
|
7.8 |
HIGH
Local
|
google
|
android
|
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing start bss request from upper layer, out of bounds read occurs if ssid leng…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11898
|
2024-11-21 12:44 |
2018-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246640
|
7.8 |
HIGH
Local
|
google
|
android
|
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing diag event after associating to a network out of bounds read occurs if ssi…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11897
|
2024-11-21 12:44 |
2018-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|