|
246721
|
9.8 |
CRITICAL
Network
|
tinyxml2_project
|
tinyxml2
|
TinyXML2 6.2.0 has a heap-based buffer over-read in the XMLDocument::Parse function in libtinyxml2.so. NOTE: The tinyxml2 developers have determined that the reported overflow is due to improper use …
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11210
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246722
|
7.2 |
HIGH
Network
|
zblogcn
|
z-blogphp
|
An issue was discovered in Z-BlogPHP 2.0.0. zb_system/cmd.php?act=verify relies on MD5 for the password parameter, which might make it easier for attackers to bypass intended access restrictions via …
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2018-11209
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246723
|
4.8 |
MEDIUM
Network
|
zblogcn
|
z-blogphp
|
An issue was discovered in Z-BlogPHP 2.0.0. There is a persistent XSS that allows remote attackers to inject arbitrary web script or HTML into background web site settings via the "copyright informat…
|
CWE-79
Cross-site Scripting
|
CVE-2018-11208
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246724
|
6.5 |
MEDIUM
Network
|
hdfgroup
|
hdf5
|
A division by zero was discovered in H5D__chunk_init in H5Dchunk.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.
|
CWE-369
Divide By Zero
|
CVE-2018-11207
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246725
|
8.1 |
HIGH
Network
|
hdfgroup
|
hdf5
|
An out of bounds read was discovered in H5O_fill_new_decode and H5O_fill_old_decode in H5Ofill.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or information disclosure at…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11206
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246726
|
8.1 |
HIGH
Network
|
hdfgroup
|
hdf5
|
A out of bounds read was discovered in H5VM_memcpyvv in H5VM.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service or information disclosure attack.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11205
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246727
|
6.5 |
MEDIUM
Network
|
hdfgroup
|
hdf5
|
A NULL pointer dereference was discovered in H5O__chunk_deserialize in H5Ocache.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11204
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246728
|
6.5 |
MEDIUM
Network
|
hdfgroup
|
hdf5
|
A division by zero was discovered in H5D__btree_decode_key in H5Dbtree.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.
|
CWE-369
Divide By Zero
|
CVE-2018-11203
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246729
|
6.5 |
MEDIUM
Network
|
hdfgroup
|
hdf5
|
A NULL pointer dereference was discovered in H5S_hyper_make_spans in H5Shyper.c in the HDF HDF5 1.10.2 library. It could allow a remote denial of service attack.
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11202
|
2024-11-21 12:42 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246730
|
6.1 |
MEDIUM
Network
|
livezilla
|
livezilla
|
chat/mobile/index.php in LiveZilla Live Chat 7.0.9.5 and prior is affected by Cross-Site Scripting via the Accept-Language HTTP header.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10810
|
2024-11-21 12:42 |
2018-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|