|
246501
|
9.8 |
CRITICAL
Network
|
adobe
|
photoshop_cc
|
Adobe Photoshop CC 2018 before 19.1.6 and Photoshop CC 2017 before 18.1.6 have a memory corruption vulnerability. Successful exploitation could lead to remote code execution.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12811
|
2024-11-21 12:45 |
2018-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246502
|
9.8 |
CRITICAL
Network
|
adobe
|
photoshop_cc
|
Adobe Photoshop CC 2018 before 19.1.6 and Photoshop CC 2017 before 18.1.6 have a memory corruption vulnerability. Successful exploitation could lead to remote code execution.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12810
|
2024-11-21 12:45 |
2018-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246503
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat_dc acrobat_reader_dc
|
Adobe Acrobat and Reader versions 2018.011.20055 and earlier, 2017.011.30096 and earlier, and 2015.006.30434 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead …
|
CWE-787
Out-of-bounds Write
|
CVE-2018-12808
|
2024-11-21 12:45 |
2018-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246504
|
5.3 |
MEDIUM
Network
|
adobe
|
experience_manager
|
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have an input validation bypass vulnerability. Successful exploitation could lead to unauthorized information modification.
|
CWE-20
Improper Input Validation
|
CVE-2018-12807
|
2024-11-21 12:45 |
2018-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246505
|
6.1 |
MEDIUM
Network
|
adobe
|
experience_manager
|
Adobe Experience Manager versions 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
|
CWE-79
Cross-site Scripting
|
CVE-2018-12806
|
2024-11-21 12:45 |
2018-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246506
|
8.8 |
HIGH
Network
|
adobe
|
acrobat_dc acrobat_reader_dc
|
Adobe Acrobat and Reader versions 2018.011.20055 and earlier, 2017.011.30096 and earlier, and 2015.006.30434 and earlier have an untrusted pointer dereference vulnerability. Successful exploitation c…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-12799
|
2024-11-21 12:45 |
2018-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246507
|
8.1 |
HIGH
Network
|
oxid-esales
|
eshop
|
An issue was discovered in OXID eShop Enterprise Edition before 5.3.8, 6.0.x before 6.0.3, and 6.1.x before 6.1.0; Professional Edition before 4.10.8, 5.x and 6.0.x before 6.0.3, and 6.1.x before 6.1…
|
CWE-640
Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2018-12579
|
2024-11-21 12:45 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246508
|
7.8 |
HIGH
Local
|
eclipse oracle
|
openj9 enterprise_manager_base_platform
|
In Eclipse OpenJ9 version 0.8, users other than the process owner may be able to use Java Attach API to connect to an Eclipse OpenJ9 or IBM JVM on the same machine and use Attach API operations, whic…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2018-12539
|
2024-11-21 12:45 |
2018-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246509
|
5.3 |
MEDIUM
Network
|
eclipse
|
vert.x
|
In Eclipse Vert.x version 3.0 to 3.5.1, the HttpServer response headers and HttpClient request headers do not filter carriage return and line feed characters from the header value. This allow unfilte…
|
CWE-20
Improper Input Validation
|
CVE-2018-12537
|
2024-11-21 12:45 |
2018-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246510
|
6.1 |
MEDIUM
Network
|
german_spelling_dictionary_project
|
german_spelling_dictionary
|
A cross-site scripting (XSS) vulnerability was found in valeuraddons German Spelling Dictionary v1.3 (an Opera Browser add-on). Instead of providing text for a spelling check, remote attackers may in…
|
CWE-79
Cross-site Scripting
|
CVE-2018-12587
|
2024-11-21 12:45 |
2018-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|