|
247641
|
4.2 |
MEDIUM
Local
|
cisco
|
jabber
|
A vulnerability in the Cisco Jabber Client Framework (JCF) software, installed as part of the Cisco Jabber for Mac client, could allow an authenticated, local attacker to corrupt arbitrary files on a…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-0449
|
2024-11-21 12:38 |
2019-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247642
|
9.1 |
CRITICAL
Network
|
cybozu
|
dezie
|
Directory traversal vulnerability in Cybozu Dezie 8.0.2 to 8.1.2 allows remote attackers to read arbitrary files via HTTP requests.
|
CWE-22
Path Traversal
|
CVE-2018-0705
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247643
|
7.5 |
HIGH
Network
|
cybozu
|
office
|
Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.1 allows remote attackers to delete arbitrary files via Keitai Screen.
|
CWE-22
Path Traversal
|
CVE-2018-0704
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247644
|
7.5 |
HIGH
Network
|
cybozu
|
office
|
Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.1 allows remote attackers to delete arbitrary files via HTTP requests.
|
CWE-22
Path Traversal
|
CVE-2018-0703
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247645
|
7.5 |
HIGH
Network
|
cybozu
|
mailwise
|
Directory traversal vulnerability in Cybozu Mailwise 5.0.0 to 5.4.5 allows remote attackers to delete arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2018-0702
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247646
|
5.4 |
MEDIUM
Network
|
weseek
|
growi
|
Cross-site scripting vulnerability in GROWI v3.2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0698
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247647
|
8.8 |
HIGH
Network
|
epson
|
ds-570w_firmware ds-780n_firmware ep-10va_firmware ep-30va_firmware ep-707a_firmware ep-708a_firmware ep-709a_firmware ep-777a_firmware ep-807ab_firmware ep-807aw_firmware<…
|
HTTP header injection vulnerability in SEIKO EPSON printers and scanners (DS-570W firmware versions released prior to 2018 March 13, DS-780N firmware versions released prior to 2018 March 13, EP-10VA…
|
CWE-113
HTTP Response Splitting
|
CVE-2018-0689
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247648
|
6.8 |
MEDIUM
Adjacent
|
panasonic
|
bn-sdwbp3_firmware
|
Buffer overflow in BN-SDWBP3 firmware version 1.0.9 and earlier allows an attacker on the same network segment to execute arbitrary code via unspecified vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0678
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247649
|
6.1 |
MEDIUM
Network
|
epson
|
ds-570w_firmware ds-780n_firmware ep-10va_firmware ep-30va_firmware ep-707a_firmware ep-708a_firmware ep-709a_firmware ep-777a_firmware ep-807ab_firmware ep-807aw_firmware<…
|
Open redirect vulnerability in SEIKO EPSON printers and scanners (DS-570W firmware versions released prior to 2018 March 13, DS-780N firmware versions released prior to 2018 March 13, EP-10VA firmwar…
|
CWE-601
Open Redirect
|
CVE-2018-0688
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247650
|
6.8 |
MEDIUM
Adjacent
|
panasonic
|
bn-sdwbp3_firmware
|
BN-SDWBP3 firmware version 1.0.9 and earlier allows attacker with administrator rights on the same network segment to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2018-0677
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|