|
247951
|
6.1 |
MEDIUM
Network
|
asus
|
rt-ac68u_firmware
|
Cross-site scripting vulnerability in ASUS RT-AC68U Firmware version prior to 3.0.0.4.380.1031 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0582
|
2024-11-21 12:38 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247952
|
6.1 |
MEDIUM
Network
|
asus
|
rt-ac87u_firmware
|
Cross-site scripting vulnerability in ASUS RT-AC87U Firmware version prior to 3.0.0.4.378.9383 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0581
|
2024-11-21 12:38 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247953
|
6.1 |
MEDIUM
Network
|
webdados
|
open_graph_for_facebook\ _google\+_and_twitter_card_tags
|
Cross-site scripting vulnerability in Open Graph for Facebook, Google+ and Twitter Card Tags plugin prior to version 2.2.4.1 for WordPress allows remote attackers to inject arbitrary web script or HT…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0579
|
2024-11-21 12:38 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247954
|
7.8 |
HIGH
Local
|
celsys
|
clip_studio_paint clip_studio_action clip_studio_modeler
|
Untrusted search path vulnerability in CELSYS, Inc CLIP STUDIO series (CLIP STUDIO PAINT (for Windows) EX/PRO/DEBUT Ver.1.7.3 and earlier, CLIP STUDIO ACTION (for Windows) Ver.1.5.5 and earlier, with…
|
CWE-426
Untrusted Search Path
|
CVE-2018-0580
|
2024-11-21 12:38 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247955
|
5.4 |
MEDIUM
Network
|
pixelyoursite
|
pixelyoursite
|
Cross-site scripting vulnerability in PixelYourSite plugin prior to version 5.3.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0578
|
2024-11-21 12:38 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247956
|
5.4 |
MEDIUM
Network
|
flippercode
|
wp_google_map
|
Cross-site scripting vulnerability in WP Google Map Plugin prior to version 4.0.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0577
|
2024-11-21 12:38 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247957
|
5.4 |
MEDIUM
Network
|
pixelite
|
events_manager
|
Cross-site scripting vulnerability in Events Manager plugin prior to version 5.9 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0576
|
2024-11-21 12:38 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247958
|
8.8 |
HIGH
Network
|
sitebridge
|
joruri_gw
|
Unrestricted file upload vulnerability in SiteBridge Inc. Joruri Gw Ver 3.2.0 and earlier allows remote authenticated users to execute arbitrary PHP code via unspecified vectors.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2018-0568
|
2024-11-21 12:38 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247959
|
7.5 |
HIGH
Network
|
microsoft
|
.net_core .net_framework
|
A denial of service vulnerability exists when .NET and .NET Core improperly process XML documents, aka ".NET and .NET Core Denial of Service Vulnerability." This affects Microsoft .NET Framework 2.0,…
|
CWE-611
XXE
|
CVE-2018-0765
|
2024-11-21 12:38 |
2018-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247960
|
6.5 |
MEDIUM
Network
|
gnu canonical debian redhat
|
wget ubuntu_linux debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server
|
GNU Wget before 1.19.5 is prone to a cookie injection vulnerability in the resp_new function in http.c via a \r\n sequence in a continuation line.
|
CWE-20
Improper Input Validation
|
CVE-2018-0494
|
2024-11-21 12:38 |
2018-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|