|
245831
|
5.5 |
MEDIUM
Local
|
linux canonical debian
|
linux_kernel ubuntu_linux debian_linux
|
An issue was discovered in the Linux kernel through 4.19. An information leak in cdrom_ioctl_select_disc in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast…
|
CWE-200
Information Exposure
|
CVE-2018-18710
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245832
|
7.5 |
HIGH
Network
|
tenda
|
ac7_firmware ac9_firmware ac10_firmware ac15_firmware ac18_firmware
|
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerabil…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-18709
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245833
|
7.5 |
HIGH
Network
|
tenda
|
ac7_firmware ac9_firmware ac10_firmware ac15_firmware ac18_firmware
|
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerabil…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-18708
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245834
|
7.5 |
HIGH
Network
|
tenda
|
ac7_firmware ac9_firmware ac10_firmware ac15_firmware ac18_firmware
|
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerabil…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-18707
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245835
|
7.5 |
HIGH
Network
|
tenda
|
ac7_firmware ac9_firmware ac10_firmware ac15_firmware ac18_firmware
|
An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. It is a buffer overflow vulnerabil…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-18706
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245836
|
9.8 |
CRITICAL
Network
|
phptpoint
|
hospital_management_system
|
PhpTpoint hospital management system suffers from multiple SQL injection vulnerabilities via the index.php user parameter associated with LOGIN.php, or the rno parameter to ALIST.php, DUNDEL.php, PDE…
|
CWE-89
SQL Injection
|
CVE-2018-18705
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245837
|
9.8 |
CRITICAL
Network
|
phptpoint
|
pharmacy_management_system
|
PhpTpoint Pharmacy Management System suffers from a SQL injection vulnerability in the index.php username parameter.
|
CWE-89
SQL Injection
|
CVE-2018-18704
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245838
|
7.5 |
HIGH
Network
|
phptpoint
|
mailing_server_using_file_handling
|
PhpTpoint Mailing Server Using File Handling 1.0 suffers from multiple Arbitrary File Read vulnerabilities in different sections that allow an attacker to read sensitive files on the system via direc…
|
CWE-22
Path Traversal
|
CVE-2018-18703
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245839
|
9.8 |
CRITICAL
Network
|
icmsdev
|
icms
|
spider.admincp.php in iCMS v7.0.11 allows SQL injection via admincp.php?app=spider&do=import_rule because the upfile content is base64 decoded, deserialized, and used for database insertion.
|
CWE-89
SQL Injection
|
CVE-2018-18702
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
245840
|
5.5 |
MEDIUM
Local
|
gnu
|
binutils
|
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a stack consumption vulnerability resulting from infinite recursion in the functions next_is_t…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2018-18701
|
2024-11-21 12:56 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|