|
248001
|
7.3 |
HIGH
Network
|
jubat
|
jubatus
|
Jubatus 1.0.2 and earlier allows remote code execution via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2018-0524
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248002
|
8.8 |
HIGH
Adjacent
|
buffalo
|
wxr-1900dhp2_firmware
|
Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2018-0523
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248003
|
7.8 |
HIGH
Local
|
buffalo
|
wxr-1900dhp2_firmware
|
Buffer overflow in Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary code via a specially crafted file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0522
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248004
|
8.8 |
HIGH
Adjacent
|
buffalo
|
wxr-1900dhp2_firmware
|
Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to bypass authentication and execute arbitrary commands on the device via unspecified vectors.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-0521
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248005
|
7.5 |
HIGH
Network
|
torproject
|
tor
|
A use-after-free issue was discovered in Tor 0.3.2.x before 0.3.2.10. It allows remote attackers to cause a denial of service (relay crash) because the KIST implementation allows a channel to be adde…
|
CWE-416
Use After Free
|
CVE-2018-0491
|
2024-11-21 12:38 |
2018-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248006
|
7.5 |
HIGH
Network
|
torproject debian
|
tor debian_linux
|
An issue was discovered in Tor before 0.2.9.15, 0.3.1.x before 0.3.1.10, and 0.3.2.x before 0.3.2.10. The directory-authority protocol-list subprotocol implementation allows remote attackers to cause…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-0490
|
2024-11-21 12:38 |
2018-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248007
|
6.5 |
MEDIUM
Network
|
shibboleth debian arubanetworks
|
xmltooling-c debian_linux clearpass
|
Shibboleth XMLTooling-C before 1.6.4, as used in Shibboleth Service Provider before 2.6.1.4 on Windows and other products, mishandles digital signatures of user data, which allows remote attackers to…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2018-0489
|
2024-11-21 12:38 |
2018-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248008
|
8.8 |
HIGH
Network
|
fsi
|
fs010w_firmware
|
Cross-site request forgery (CSRF) vulnerability in FS010W firmware FS010W_00_V1.3.0 and earlier allows an attacker to hijack the authentication of administrators via unspecified vectors.
|
CWE-352
Origin Validation Error
|
CVE-2018-0520
|
2024-11-21 12:38 |
2018-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248009
|
4.8 |
MEDIUM
Network
|
fsi
|
fs010w_firmware
|
Cross-site scripting vulnerability in FS010W firmware FS010W_00_V1.3.0 and earlier allows an attacker to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0519
|
2024-11-21 12:38 |
2018-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248010
|
5.9 |
MEDIUM
Network
|
linecorp
|
line
|
LINE for iOS version 7.1.3 to 7.1.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certi…
|
CWE-295
Improper Certificate Validation
|
CVE-2018-0518
|
2024-11-21 12:38 |
2018-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|