|
247691
|
6.5 |
MEDIUM
Network
|
plug_project
|
plug
|
Elixir Plug Plug version All contains a Header Injection vulnerability in Connection that can result in Given a cookie value, Headers can be added. This attack appear to be exploitable via Crafting a…
|
CWE-20
Improper Input Validation
|
CVE-2018-1000883
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247692
|
7.5 |
HIGH
Network
|
webidsupport
|
webid
|
WeBid version up to current version 1.2.2 contains a Directory Traversal vulnerability in getthumb.php that can result in Arbitrary Image File Read. This attack appear to be exploitable via HTTP GET …
|
CWE-22
Path Traversal
|
CVE-2018-1000882
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247693
|
9.8 |
CRITICAL
Network
|
traccar
|
server
|
Traccar Traccar Server version 4.0 and earlier contains a CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability in ComputedAttributesHandler.java that can result in Remote C…
|
CWE-94
Code Injection
|
CVE-2018-1000881
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247694
|
6.5 |
MEDIUM
Network
|
libarchive canonical opensuse fedoraproject
|
libarchive ubuntu_linux leap fedora
|
libarchive version commit 9693801580c0cf7c70e862d305270a16b52826a7 onwards (release v3.2.0 onwards) contains a CWE-20: Improper Input Validation vulnerability in WARC parser - libarchive/archive_read…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-1000880
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247695
|
6.5 |
MEDIUM
Network
|
libarchive opensuse fedoraproject
|
libarchive leap fedora
|
libarchive version commit 379867ecb330b3a952fb7bfa7bffb7bbd5547205 onwards (release v3.3.0 onwards) contains a CWE-476: NULL Pointer Dereference vulnerability in ACL parser - libarchive/archive_acl.c…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-1000879
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247696
|
8.8 |
HIGH
Network
|
libarchive debian canonical redhat opensuse fedoraproject
|
libarchive debian_linux ubuntu_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server leap fedora
|
libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-416: Use After Free vulnerability in RAR decoder - libarchive/archive_read_support_f…
|
CWE-416
Use After Free
|
CVE-2018-1000878
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247697
|
8.8 |
HIGH
Network
|
libarchive debian canonical redhat fedoraproject
|
libarchive debian_linux ubuntu_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server fedora
|
libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-415: Double Free vulnerability in RAR decoder - libarchive/archive_read_support_form…
|
CWE-415
Double Free
|
CVE-2018-1000877
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247698
|
7.8 |
HIGH
Local
|
gnu canonical redhat
|
binutils ubuntu_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server
|
binutils version 2.32 and earlier contains a Integer Overflow vulnerability in objdump, bfd_get_dynamic_reloc_upper_bound,bfd_canonicalize_dynamic_reloc that can result in Integer overflow trigger he…
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2018-1000876
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247699
|
9.8 |
CRITICAL
Network
|
berkeley
|
berkeley_open_infrastructure_for_network_computing
|
Berkeley Open Infrastructure for Network Computing BOINC Server and Website Code version 0.9-1.0.2 contains a CWE-302: Authentication Bypass by Assumed-Immutable Data vulnerability in Website Terms o…
|
CWE-287
Improper Authentication
|
CVE-2018-1000875
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247700
|
6.5 |
MEDIUM
Network
|
pykmip_project
|
pykmip
|
OpenKMIP PyKMIP version All versions before 0.8.0 contains a CWE 399: Resource Management Errors (similar issue to CVE-2015-5262) vulnerability in PyKMIP server that can result in DOS: the server can…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-1000872
|
2024-11-21 12:40 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|