|
250441
|
6.1 |
MEDIUM
Network
|
flexense
|
dupscout
|
XSS exists in Flexense DupScout Enterprise from v10.0.18 to v10.7.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10566
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250442
|
6.1 |
MEDIUM
Network
|
flexense
|
disksavvy
|
XSS exists in Flexense DiskSavvy Enterprise from v10.4 to v10.7.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10565
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250443
|
6.1 |
MEDIUM
Network
|
flexense
|
diskpulse
|
XSS exists in Flexense DiskPulse Enterprise from v10.4 to v10.7.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10564
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250444
|
6.1 |
MEDIUM
Network
|
flexense
|
syncbreeze
|
An XSS in Flexense SyncBreeze affects all versions (tested from SyncBreeze Enterprise from v10.1 to v10.7).
|
CWE-79
Cross-site Scripting
|
CVE-2018-10563
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250445
|
6.1 |
MEDIUM
Network
|
flexense
|
diskboss
|
Flexense DiskBoss Enterprise v7.4.28 to v9.1.16 has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10294
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250446
|
6.1 |
MEDIUM
Network
|
zblogcn
|
z-blogphp
|
Z-BlogPHP 1.5.2 has a stored Cross Site Scripting Vulnerability exploitable by an administrator who navigates to "Web site settings --> Basic setting --> Website title" and enters an XSS payload via …
|
CWE-79
Cross-site Scripting
|
CVE-2018-10680
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250447
|
8.8 |
HIGH
Network
|
miniupnp_project
|
ngiflib
|
The DecodeGifImg function in ngiflib.c in MiniUPnP ngiflib 0.4 lacks certain checks against width and height, which allows remote attackers to cause a denial of service (WritePixels heap-based buffer…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-10677
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250448
|
9.8 |
CRITICAL
Network
|
tbkvision
|
tbk-dvr4216_firmware tbk-dvr4104_firmware
|
CeNova, Night OWL, Novo, Pulnix, QSee, Securus, and TBK Vision DVR devices allow remote attackers to download a file and obtain sensitive credential information via a direct request for the download.…
|
NVD-CWE-noinfo
|
CVE-2018-10676
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250449
|
7.8 |
HIGH
Local
|
linux redhat canonical
|
linux_kernel enterprise_linux_server_aus enterprise_linux_server_tus enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_server_eus vir…
|
The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12.9 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafte…
|
CWE-416
Use After Free
|
CVE-2018-10675
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250450
|
6.1 |
MEDIUM
Network
|
ilias
|
ilias
|
ILIAS 5.3.4 has XSS through unsanitized output of PHP_SELF, related to shib_logout.php and third-party demo files.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10665
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|