|
248481
|
7.5 |
HIGH
Network
|
soliton
|
filezen
|
Directory traversal vulnerability in FileZen V3.0.0 to V4.2.1 allows remote attackers to upload an arbitrary file in the specific directory in FileZen via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2018-0693
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248482
|
7.8 |
HIGH
Local
|
baidu
|
spark_browser
|
Untrusted search path vulnerability in Baidu Browser Version 43.23.1000.500 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
|
CWE-426
Untrusted Search Path
|
CVE-2018-0692
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248483
|
5.9 |
MEDIUM
Network
|
kddi ntttocomo softbank ntt_tocomo
|
\+_message
|
Multiple +Message Apps (Softbank +Message App for Android prior to version 10.1.7, Softbank +Message App for iOS prior to version 1.1.23, NTT DOCOMO +Message App for Android prior to version 42.40.28…
|
CWE-295
Improper Certificate Validation
|
CVE-2018-0691
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248484
|
7.5 |
HIGH
Network
|
sony
|
music_center_for_pc
|
An unvalidated software update vulnerability in Music Center for PC version 1.0.02 and earlier could allow a man-in-the-middle attacker to tamper with an update file and inject executable files.
|
NVD-CWE-noinfo
|
CVE-2018-0690
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248485
|
6.1 |
MEDIUM
Network
|
neo
|
debun_pop debun_imap
|
Cross-site scripting vulnerability in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote attackers to inject arbitrary web s…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0687
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248486
|
8.8 |
HIGH
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote authenticated attackers to upload and execute any executable files via un…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2018-0686
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248487
|
8.8 |
HIGH
Network
|
neo
|
debun_pop
|
SQL injection vulnerability in the Denbun POP version V3.3P R4.0 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via HTTP requests for mail search.
|
CWE-89
SQL Injection
|
CVE-2018-0685
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248488
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R3.0 and earlier, Denbun IMAP version V3.3I R3.0 and earlier) allows remote attackers to execute arbitrary code or cause a denial-…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0684
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248489
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote attackers to execute arbitrary code or cause a denial-…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0683
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248490
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) does not properly manage sessions, which allows remote attackers to read/send mail or c…
|
NVD-CWE-noinfo
|
CVE-2018-0682
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|