|
248471
|
7.8 |
HIGH
Local
|
cisco
|
energy_management_suite
|
A vulnerability in the configuration of a local database installed as part of the Cisco Energy Management Suite (CEMS) could allow an authenticated, local attacker to access and alter confidential da…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0468
|
2024-11-21 12:38 |
2018-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248472
|
6.1 |
MEDIUM
Network
|
qnap
|
qts
|
Cross-site scripting vulnerability in QTS 4.2.6 build 20180711, QTS 4.3.3: Qsync Central 3.0.2, QTS 4.3.4: Qsync Central 3.0.3, QTS 4.3.5: Qsync Central 3.0.4 and earlier versions could allow remote …
|
CWE-79
Cross-site Scripting
|
CVE-2018-0716
|
2024-11-21 12:38 |
2018-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248473
|
9.8 |
CRITICAL
Network
|
qnap
|
qts
|
Buffer Overflow vulnerability in NAS devices. QTS allows attackers to run arbitrary code. This issue affects: QNAP Systems Inc. QTS version 4.2.6 and prior versions on build 20180711; version 4.3.3 a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0721
|
2024-11-21 12:38 |
2018-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248474
|
6.1 |
MEDIUM
Network
|
qnap
|
qts
|
Cross-site Scripting (XSS) vulnerability in NAS devices of QNAP Systems Inc. QTS allows attackers to inject javascript. This issue affects: QNAP Systems Inc. QTS version 4.2.6 and prior versions on b…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0719
|
2024-11-21 12:38 |
2018-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248475
|
8.8 |
HIGH
Adjacent
|
bluestacks
|
bluestacks
|
BlueStacks App Player (BlueStacks App Player for Windows 3.0.0 to 4.31.55, BlueStacks App Player for macOS 2.0.0 and later) allows an attacker on the same network segment to bypass access restriction…
|
NVD-CWE-noinfo
|
CVE-2018-0701
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248476
|
7.5 |
HIGH
Network
|
hyuki
|
yukiwiki
|
YukiWiki 2.1.3 and earlier does not process a particular request properly that may allow consumption of large amounts of CPU and memory resources and may result in causing a denial of service conditi…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-0700
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248477
|
6.1 |
MEDIUM
Network
|
hyuki
|
yukiwiki
|
Cross-site scripting vulnerability in YukiWiki 2.1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0699
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248478
|
6.1 |
MEDIUM
Network
|
metabase
|
metabase
|
Cross-site scripting vulnerability in Metabase version 0.29.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0697
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248479
|
6.1 |
MEDIUM
Network
|
usvn
|
usvn
|
Cross-site scripting vulnerability in User-friendly SVN (USVN) Version 1.0.7 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0695
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248480
|
9.8 |
CRITICAL
Network
|
soliton
|
filezen
|
FileZen V3.0.0 to V4.2.1 allows remote attackers to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2018-0694
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|