|
247011
|
7.3 |
HIGH
Local
|
emc rsa
|
rsa_identity_management_and_governance rsa_identity_governance_and_lifecycle rsa_via_lifecycle_and_governance
|
RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance, and RSA IMG releases have an uncontrolled search vulnerability. The installation scripts set an environment variable in an uni…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2018-11049
|
2024-11-21 12:42 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247012
|
5.9 |
MEDIUM
Network
|
pivotal_software
|
operations_manager
|
Pivotal Operations Manager, versions 2.1 prior to 2.1.6 and 2.0 prior to 2.0.15 and 1.12 prior to 1.12.22, contains a static Linux Random Number Generator (LRNG) seed file embedded in the appliance i…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2018-11045
|
2024-11-21 12:42 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247013
|
5.5 |
MEDIUM
Local
|
redhat
|
enterprise_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or Pop SS instructions. During the stack switch operation, processor does not deliv…
|
-
|
CVE-2018-10872
|
2024-11-21 12:42 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247014
|
7.3 |
HIGH
Network
|
moodle
|
moodle
|
A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. When a quiz question bank is imported, it was possible for the question preview that is displayed to execute JavaScript that is…
|
NVD-CWE-noinfo
|
CVE-2018-10891
|
2024-11-21 12:42 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247015
|
5.3 |
MEDIUM
Network
|
moodle
|
moodle
|
A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. It was possible for the core_course_get_categories web service to return hidden categories, which should be omitted when fetchi…
|
CWE-200
Information Exposure
|
CVE-2018-10890
|
2024-11-21 12:42 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247016
|
5.3 |
MEDIUM
Network
|
moodle
|
moodle
|
A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No option existed to omit logs from data privacy exports, which may contain details of other users who interacted with the requester.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2018-10889
|
2024-11-21 12:42 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247017
|
7.5 |
HIGH
Network
|
barco
|
clickshare_cse-200_firmware clickshare_cs-100_firmware
|
An issue was discovered on Barco ClickShare CSE-200 and CS-100 Base Units with firmware before 1.6.0.3. Sending an arbitrary unexpected string to TCP port 7100 respecting a certain frequency timing d…
|
CWE-20
Improper Input Validation
|
CVE-2018-10943
|
2024-11-21 12:42 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247018
|
6.5 |
MEDIUM
Network
|
libgit2 debian
|
libgit2 debian_linux
|
A flaw was found in libgit2 before version 0.27.3. A missing check in git_delta_apply function in delta.c file, may lead to an out-of-bound read while reading a binary delta file. An attacker may use…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-10888
|
2024-11-21 12:42 |
2018-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247019
|
8.1 |
HIGH
Network
|
libgit2 debian
|
libgit2 debian_linux
|
A flaw was found in libgit2 before version 0.27.3. It has been discovered that an unexpected sign extension in git_delta_apply function in delta.c file may lead to an integer overflow which in turn l…
|
CWE-125 CWE-190 CWE-681
Out-of-bounds Read Integer Overflow or Wraparound Incorrect Conversion between Numeric Types
|
CVE-2018-10887
|
2024-11-21 12:42 |
2018-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247020
|
8.1 |
HIGH
Network
|
ceph redhat opensuse debian
|
ceph enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server ceph_storage_osd ceph_storage_mon ceph_storage leap debian_linux
|
A flaw was found in the way ceph mon handles user requests. Any authenticated ceph user having read access to ceph can delete, create ceph storage pools and corrupt snapshot images. Ceph branches mas…
|
CWE-287
Improper Authentication
|
CVE-2018-10861
|
2024-11-21 12:42 |
2018-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|