|
247371
|
10.0 |
CRITICAL
Network
|
eclipse
|
rdf4j
|
Eclipse RDF4j version < 2.4.0 Milestone 2 contains a XML External Entity (XXE) vulnerability in RDF4j XML parser parsing RDF files that can result in the disclosure of confidential data, denial of se…
|
CWE-611
XXE
|
CVE-2018-1000644
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247372
|
6.1 |
MEDIUM
Network
|
flightairmap
|
flightairmap
|
FlightAirMap version <=v1.0-beta.21 contains a Cross Site Scripting (XSS) vulnerability in GET variable used within registration sub menu page that can result in unauthorised actions and access to da…
|
CWE-79
Cross-site Scripting
|
CVE-2018-1000642
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247373
|
9.8 |
CRITICAL
Network
|
yeswiki
|
yeswiki
|
YesWiki version <= cercopitheque beta 1 contains a PHP Object Injection vulnerability in Unserialising user entered parameter in i18n.inc.php that can result in execution of code, disclosure of infor…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2018-1000641
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247374
|
6.1 |
MEDIUM
Network
|
villagedefrance
|
opencart-overclocked
|
OpenCart-Overclocked version <=1.11.1 contains a Cross Site Scripting (XSS) vulnerability in User input entered unsanitised within JS function in the template that can result in Unauthorised actions …
|
CWE-79
Cross-site Scripting
|
CVE-2018-1000640
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247375
|
9.6 |
CRITICAL
Network
|
latexdraw_project
|
latexdraw
|
LatexDraw version <=4.0 contains a XML External Entity (XXE) vulnerability in SVG parsing functionality that can result in disclosure of data, server side request forgery, port scanning, possible rce…
|
CWE-611
XXE
|
CVE-2018-1000639
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247376
|
6.1 |
MEDIUM
Network
|
1234n
|
minicms
|
MiniCMS version 1.1 contains a Cross Site Scripting (XSS) vulnerability in http://example.org/mc-admin/page.php?date={payload} that can result in code injection.
|
CWE-79
Cross-site Scripting
|
CVE-2018-1000638
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247377
|
7.8 |
HIGH
Local
|
nongnu debian
|
zutils debian_linux
|
zutils version prior to version 1.8-pre2 contains a Buffer Overflow vulnerability in zcat that can result in Potential denial of service or arbitrary code execution. This attack appear to be exploita…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-1000637
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247378
|
6.7 |
MEDIUM
Local
|
openmicroscopy
|
omero
|
The Open Microscopy Environment OMERO.server version 5.4.0 to 5.4.6 contains a Information Exposure Through Sent Data vulnerability in OMERO.server that can result in an Attacker gaining full adminis…
|
CWE-200
Information Exposure
|
CVE-2018-1000635
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247379
|
7.2 |
HIGH
Network
|
openmicroscopy
|
omero
|
The Open Microscopy Environment OMERO.server version 5.4.0 to 5.4.6 contains an Improper Access Control vulnerability in User management that can result in administrative user with privilege restrict…
|
CWE-269
Improper Privilege Management
|
CVE-2018-1000634
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247380
|
6.5 |
MEDIUM
Network
|
jerryscript
|
jerryscript
|
JerryScript version Tested on commit f86d7459d195c8ba58479d1861b0cc726c8b3793. Analysing history it seems that the issue has been present since commit 64a340ffeb8809b2b66bbe32fd443a8b79fdd860 contain…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-1000636
|
2024-11-21 12:40 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|