|
246991
|
5.5 |
MEDIUM
Local
|
linux canonical debian
|
linux_kernel ubuntu_linux debian_linux
|
A flaw was found in Linux kernel in the ext4 filesystem code. A use-after-free is possible in ext4_ext_remove_space() function when mounting and operating a crafted ext4 image.
|
-
|
CVE-2018-10876
|
2024-11-21 12:42 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246992
|
7.8 |
HIGH
Local
|
linux redhat
|
linux_kernel enterprise_linux_server_aus enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
A flaw was found in Linux kernel's KVM virtualization subsystem. The VMX code does not restore the GDT.LIMIT to the previous host value, but instead sets it to 64KB. With a corrupted GDT limit a host…
|
NVD-CWE-noinfo
|
CVE-2018-10901
|
2024-11-21 12:42 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246993
|
7.8 |
HIGH
Local
|
gnome debian
|
network_manager_vpnc debian_linux
|
Network Manager VPNC plugin (aka networkmanager-vpnc) before version 1.2.6 is vulnerable to a privilege escalation attack. A new line character can be used to inject a Password helper parameter into …
|
CWE-78
OS Command
|
CVE-2018-10900
|
2024-11-21 12:42 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246994
|
5.5 |
MEDIUM
Local
|
debian linux redhat canonical
|
debian_linux linux_kernel enterprise_linux ubuntu_linux
|
Linux kernel is vulnerable to a stack-out-of-bounds write in the ext4 filesystem code when mounting and writing to a crafted ext4 image in ext4_update_inline_data(). An attacker could use this to cau…
|
-
|
CVE-2018-10880
|
2024-11-21 12:42 |
2018-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246995
|
7.8 |
HIGH
Local
|
debian fuse_project redhat
|
debian_linux fuse enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server
|
In fuse before versions 2.9.8 and 3.x before 3.2.5, fusermount is vulnerable to a restriction bypass when SELinux is active. This allows non-root users to mount a FUSE file system with the 'allow_oth…
|
CWE-269
Improper Privilege Management
|
CVE-2018-10906
|
2024-11-21 12:42 |
2018-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246996
|
8.8 |
HIGH
Network
|
rsa
|
archer
|
RSA Archer, versions prior to 6.4.0.1, contain an authorization bypass vulnerability in the REST API. A remote authenticated malicious Archer user could potentially exploit this vulnerability to elev…
|
NVD-CWE-noinfo
|
CVE-2018-11060
|
2024-11-21 12:42 |
2018-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246997
|
5.4 |
MEDIUM
Network
|
rsa
|
archer
|
RSA Archer, versions prior to 6.4.0.1, contain a stored cross-site scripting vulnerability. A remote authenticated malicious Archer user could potentially exploit this vulnerability to store maliciou…
|
CWE-79
Cross-site Scripting
|
CVE-2018-11059
|
2024-11-21 12:42 |
2018-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246998
|
6.5 |
MEDIUM
Network
|
pivotal_software
|
pivotal_application_service
|
Pivotal Apps Manager included in Pivotal Application Service, versions 2.2.x prior to 2.2.1 and 2.1.x prior to 2.1.8 and 2.0.x prior to 2.0.17 and 1.12.x prior to 1.12.26, does not escape all user-pr…
|
CWE-20
Improper Input Validation
|
CVE-2018-11044
|
2024-11-21 12:42 |
2018-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246999
|
7.5 |
HIGH
Network
|
pivotal_software
|
cloud_foundry_uaa
|
Cloud Foundry UAA, versions 4.19 prior to 4.19.2 and 4.12 prior to 4.12.4 and 4.10 prior to 4.10.2 and 4.7 prior to 4.7.6 and 4.5 prior to 4.5.7, incorrectly authorizes requests to admin endpoints by…
|
CWE-863
Incorrect Authorization
|
CVE-2018-11047
|
2024-11-21 12:42 |
2018-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247000
|
7.8 |
HIGH
Local
|
redhat
|
cloudforms cloudforms_management_engine
|
CloudForms Management Engine (cfme) is vulnerable to an improper security setting in the dRuby component of CloudForms. An attacker with access to an unprivileged local shell could use this flaw to e…
|
CWE-78
OS Command
|
CVE-2018-10905
|
2024-11-21 12:42 |
2018-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|