|
248611
|
5.9 |
MEDIUM
Network
|
cisco
|
advanced_malware_protection_for_endpoints
|
A vulnerability in Cisco AMP for Endpoints Mac Connector Software installed on Apple macOS 10.12 could allow an unauthenticated, remote attacker to cause a kernel panic on an affected system, resulti…
|
NVD-CWE-noinfo
|
CVE-2018-0397
|
2024-11-21 12:38 |
2018-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248612
|
6.5 |
MEDIUM
Network
|
cisco
|
prime_collaboration prime_collaboration_provisioning
|
A vulnerability in the password change function of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to cause the system to become inoperable. The vulnerability is …
|
NVD-CWE-noinfo
|
CVE-2018-0391
|
2024-11-21 12:38 |
2018-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248613
|
4.7 |
MEDIUM
Local
|
arm debian
|
mbed_tls debian_linux
|
ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows local users to achieve partial plaintext recovery (for a CBC based ciphersuite) via a cache-based side-channel attack.
|
NVD-CWE-noinfo
|
CVE-2018-0498
|
2024-11-21 12:38 |
2018-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248614
|
5.9 |
MEDIUM
Network
|
arm debian
|
mbed_tls debian_linux
|
ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows remote attackers to achieve partial plaintext recovery (for a CBC based ciphersuite) via a timing-based side-channel attack. This vu…
|
NVD-CWE-noinfo
|
CVE-2018-0497
|
2024-11-21 12:38 |
2018-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248615
|
7.4 |
HIGH
Network
|
dhc
|
dhc_online_shop
|
The DHC Online Shop App for Android version 3.2.0 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive infor…
|
CWE-295
Improper Certificate Validation
|
CVE-2018-0622
|
2024-11-21 12:38 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248616
|
7.8 |
HIGH
Local
|
logitech
|
connection_utility_software
|
Untrusted search path vulnerability in LOGICOOL CONNECTION UTILITY SOFTWARE versions before 2.30.9 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
|
CWE-426
Untrusted Search Path
|
CVE-2018-0621
|
2024-11-21 12:38 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248617
|
7.8 |
HIGH
Local
|
logitech
|
game_software
|
Untrusted search path vulnerability in LOGICOOL Game Software versions before 8.87.116 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
|
CWE-426
Untrusted Search Path
|
CVE-2018-0620
|
2024-11-21 12:38 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248618
|
7.8 |
HIGH
Local
|
glarysoft
|
glary_utilities
|
Untrusted search path vulnerability in the installer of Glarysoft Glary Utilities (Glary Utilities 5.99 and earlier and Glary Utilities Pro 5.99 and earlier) allows an attacker to gain privileges via…
|
CWE-426
Untrusted Search Path
|
CVE-2018-0619
|
2024-11-21 12:38 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248619
|
5.4 |
MEDIUM
Network
|
gnu debian
|
mailman debian_linux
|
Cross-site scripting vulnerability in Mailman 2.1.26 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0618
|
2024-11-21 12:38 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248620
|
7.5 |
HIGH
Network
|
chama
|
memocgi
|
Directory traversal vulnerability in ChamaNet MemoCGI v2.1800 to v2.2200 allows remote attackers to read arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2018-0617
|
2024-11-21 12:38 |
2018-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|