|
247981
|
7.0 |
HIGH
Local
|
beep_project debian
|
beep debian_linux
|
Johnathan Nightingale beep through 1.3.4, if setuid, has a race condition that allows local privilege escalation.
|
CWE-362
Race Condition
|
CVE-2018-0492
|
2024-11-21 12:38 |
2018-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247982
|
6.5 |
MEDIUM
Network
|
openssl debian canonical
|
openssl debian_linux ubuntu_linux
|
Constructed ASN.1 types with a recursive definition (such as can be found in PKCS7) could eventually exceed the stack given malicious input with excessive recursion. This could result in a Denial Of …
|
CWE-674
Uncontrolled Recursion
|
CVE-2018-0739
|
2024-11-21 12:38 |
2018-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247983
|
5.9 |
MEDIUM
Network
|
openssl
|
openssl
|
Because of an implementation bug the PA-RISC CRYPTO_memcmp function is effectively reduced to only comparing the least significant bit of each byte. This allows an attacker to forge messages that wou…
|
NVD-CWE-noinfo
|
CVE-2018-0733
|
2024-11-21 12:38 |
2018-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247984
|
7.8 |
HIGH
Local
|
securebrain
|
phishwall_client
|
Untrusted search path vulnerability in The installer of PhishWall Client Firefox and Chrome edition for Windows Ver. 5.1.26 and earlier allows an attacker to gain privileges via a Trojan horse DLL in…
|
CWE-426
Untrusted Search Path
|
CVE-2018-0552
|
2024-11-21 12:38 |
2018-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247985
|
7.5 |
HIGH
Network
|
webproxy_project
|
webproxy
|
Directory traversal vulnerability in WebProxy version 1.7.8 allows an attacker to read arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2018-0542
|
2024-11-21 12:38 |
2018-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247986
|
9.8 |
CRITICAL
Network
|
tinyftp_project
|
tinyftp
|
Buffer overflow in Tiny FTP Daemon Ver0.52d allows an attacker to cause a denial-of-service (DoS) condition or execute arbitrary code via unspecified vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0541
|
2024-11-21 12:38 |
2018-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247987
|
7.8 |
HIGH
Local
|
vix_project
|
vix
|
Untrusted search path vulnerability in ViX version 2.21.148.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
|
CWE-426
Untrusted Search Path
|
CVE-2018-0540
|
2024-11-21 12:38 |
2018-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247988
|
9.8 |
CRITICAL
Network
|
qqq_systems_project
|
qqq_systems
|
QQQ SYSTEMS version 2.24 allows an attacker to execute arbitrary commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2018-0539
|
2024-11-21 12:38 |
2018-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247989
|
6.1 |
MEDIUM
Network
|
qqq_systems_project
|
qqq_systems
|
Cross-site scripting vulnerability in QQQ SYSTEMS ver2.24 allows an attacker to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0538
|
2024-11-21 12:38 |
2018-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247990
|
6.1 |
MEDIUM
Network
|
qqq_systems_project
|
qqq_systems
|
Cross-site scripting vulnerability in QQQ SYSTEMS ver2.24 allows an attacker to inject arbitrary web script or HTML via quiz_op.cgi.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0537
|
2024-11-21 12:38 |
2018-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|