|
246891
|
6.1 |
MEDIUM
Network
|
dell vmware
|
emc_integrated_data_protection_appliance emc_avamar vsphere_data_protection
|
Dell EMC Avamar Client Manager in Dell EMC Avamar Server versions 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.4.0, 7.4.1, 7.5.0, 7.5.1, 18.1 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2…
|
CWE-601
Open Redirect
|
CVE-2018-11067
|
2024-11-21 12:42 |
2018-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246892
|
9.8 |
CRITICAL
Network
|
dell vmware
|
emc_integrated_data_protection_appliance emc_avamar vsphere_data_protection
|
Dell EMC Avamar Client Manager in Dell EMC Avamar Server versions 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.4.0, 7.4.1, 7.5.0, 7.5.1, 18.1 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2…
|
NVD-CWE-noinfo
|
CVE-2018-11066
|
2024-11-21 12:42 |
2018-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246893
|
8.8 |
HIGH
Network
|
dell
|
emc_integrated_data_protection_appliance
|
Integrated Data Protection Appliance versions 2.0, 2.1, and 2.2 contain undocumented accounts named 'support' and 'admin' that are protected with default passwords. These accounts have limited privil…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-11062
|
2024-11-21 12:42 |
2018-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246894
|
7.8 |
HIGH
Local
|
emc
|
secure_remote_services
|
Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains Improper File Permission Vulnerabilities. The application contains multiple configuration files with world-readable permissions…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-11080
|
2024-11-21 12:42 |
2018-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246895
|
7.8 |
HIGH
Local
|
emc
|
secure_remote_services
|
Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains a Plaintext Password Storage vulnerability. Database credentials are stored in plaintext in a configuration file. An authentica…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2018-11079
|
2024-11-21 12:42 |
2018-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246896
|
9.8 |
CRITICAL
Network
|
dlink
|
dwr-116_firmware dir-140l_firmware dir-640l_firmware dwr-512_firmware dwr-712_firmware dwr-912_firmware dwr-921_firmware dwr-111_firmware
|
An issue was discovered on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-1…
|
CWE-22 CWE-522
Path Traversal Insufficiently Protected Credentials
|
CVE-2018-10824
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246897
|
8.8 |
HIGH
Network
|
dlink
|
dwr-116_firmware dwr-512_firmware dwr-912_firmware dwr-111_firmware
|
An issue was discovered on D-Link DWR-116 through 1.06, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices. An authenticated atta…
|
CWE-78
OS Command
|
CVE-2018-10823
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246898
|
9.1 |
CRITICAL
Network
|
libssh canonical debian redhat netapp oracle
|
libssh ubuntu_linux debian_linux enterprise_linux snapcenter storage_automation_store oncommand_unified_manager oncommand_workflow_automation mysql_workbench
|
A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unautho…
|
CWE-287
Improper Authentication
|
CVE-2018-10933
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246899
|
7.5 |
HIGH
Network
|
dlink
|
dwr-116_firmware dir-140l_firmware dir-640l_firmware dwr-512_firmware dwr-712_firmware dwr-912_firmware dwr-921_firmware dwr-111_firmware
|
Directory traversal vulnerability in the web interface on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, …
|
CWE-22
Path Traversal
|
CVE-2018-10822
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246900
|
7.5 |
HIGH
Network
|
amazon
|
fire_os
|
kernel/omap/drivers/mfd/twl6030-gpadc.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 allows attackers to inject a crafted argument via the argument of an ioctl on device /dev…
|
CWE-88
Argument Injection
|
CVE-2018-11025
|
2024-11-21 12:42 |
2018-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|