|
246161
|
7.5 |
HIGH
Network
|
tcpdump redhat debian opensuse fedoraproject apple
|
tcpdump enterprise_linux debian_linux leap fedora mac_os_x
|
The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_attr_print() (MP_REACH_NLRI).
|
CWE-125
Out-of-bounds Read
|
CVE-2018-16230
|
2024-11-21 12:52 |
2019-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246162
|
7.5 |
HIGH
Network
|
tcpdump redhat debian opensuse fedoraproject f5 apple
|
tcpdump enterprise_linux debian_linux leap fedora traffix_signaling_delivery_controller mac_os_x
|
The DCCP parser in tcpdump before 4.9.3 has a buffer over-read in print-dccp.c:dccp_print_option().
|
CWE-125
Out-of-bounds Read
|
CVE-2018-16229
|
2024-11-21 12:52 |
2019-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246163
|
7.5 |
HIGH
Network
|
tcpdump redhat debian opensuse fedoraproject apple
|
tcpdump enterprise_linux debian_linux leap fedora mac_os_x
|
The HNCP parser in tcpdump before 4.9.3 has a buffer over-read in print-hncp.c:print_prefix().
|
CWE-125
Out-of-bounds Read
|
CVE-2018-16228
|
2024-11-21 12:52 |
2019-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246164
|
7.5 |
HIGH
Network
|
tcpdump redhat debian opensuse fedoraproject apple
|
tcpdump enterprise_linux debian_linux leap fedora mac_os_x
|
The IEEE 802.11 parser in tcpdump before 4.9.3 has a buffer over-read in print-802_11.c for the Mesh Flags subfield.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-16227
|
2024-11-21 12:52 |
2019-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246165
|
7.5 |
HIGH
Network
|
swift
|
alliance_web_platform
|
An issue was discovered in SWIFT Alliance Web Platform 7.1.23. A log injection (and an arbitrary log filename) can be achieved via the PATH_INFO to swp/login/EJBRemoteService/, related to com.swift.e…
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2018-16386
|
2024-11-21 12:52 |
2019-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246166
|
5.4 |
MEDIUM
Network
|
google
|
chrome
|
Insufficient policy enforcement in extensions API in Google Chrome prior to 69.0.3497.81 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions vi…
|
CWE-285
Improper Authorization
|
CVE-2018-16086
|
2024-11-21 12:52 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246167
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Object lifecycle issue in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass content security policy via a crafted HTML page.
|
CWE-285
Improper Authorization
|
CVE-2018-16077
|
2024-11-21 12:52 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246168
|
5.3 |
MEDIUM
Network
|
google
|
chrome
|
Insufficient file type enforcement in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to obtain local file data via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2018-16075
|
2024-11-21 12:52 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246169
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Insufficient policy enforcement in site isolation in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass site isolation via a crafted HTML page.
|
CWE-285
Improper Authorization
|
CVE-2018-16074
|
2024-11-21 12:52 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246170
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Insufficient policy enforcement in site isolation in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass site isolation via a crafted HTML page.
|
CWE-285
Improper Authorization
|
CVE-2018-16073
|
2024-11-21 12:52 |
2019-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|