|
248791
|
7.8 |
HIGH
Local
|
woodybells
|
jtrim
|
Untrusted search path vulnerability in Jtrim 1.53c and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
|
CWE-426
Untrusted Search Path
|
CVE-2018-0543
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248792
|
5.3 |
MEDIUM
Network
|
jubat
|
jubatus
|
Directory traversal vulnerability in Jubatus 1.0.2 and earlier allows remote attackers to read arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2018-0525
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248793
|
7.3 |
HIGH
Network
|
jubat
|
jubatus
|
Jubatus 1.0.2 and earlier allows remote code execution via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2018-0524
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248794
|
8.8 |
HIGH
Adjacent
|
buffalo
|
wxr-1900dhp2_firmware
|
Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2018-0523
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248795
|
7.8 |
HIGH
Local
|
buffalo
|
wxr-1900dhp2_firmware
|
Buffer overflow in Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary code via a specially crafted file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0522
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248796
|
8.8 |
HIGH
Adjacent
|
buffalo
|
wxr-1900dhp2_firmware
|
Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to bypass authentication and execute arbitrary commands on the device via unspecified vectors.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-0521
|
2024-11-21 12:38 |
2018-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248797
|
7.5 |
HIGH
Network
|
torproject
|
tor
|
A use-after-free issue was discovered in Tor 0.3.2.x before 0.3.2.10. It allows remote attackers to cause a denial of service (relay crash) because the KIST implementation allows a channel to be adde…
|
CWE-416
Use After Free
|
CVE-2018-0491
|
2024-11-21 12:38 |
2018-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248798
|
7.5 |
HIGH
Network
|
torproject debian
|
tor debian_linux
|
An issue was discovered in Tor before 0.2.9.15, 0.3.1.x before 0.3.1.10, and 0.3.2.x before 0.3.2.10. The directory-authority protocol-list subprotocol implementation allows remote attackers to cause…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-0490
|
2024-11-21 12:38 |
2018-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248799
|
6.5 |
MEDIUM
Network
|
shibboleth debian arubanetworks
|
xmltooling-c debian_linux clearpass
|
Shibboleth XMLTooling-C before 1.6.4, as used in Shibboleth Service Provider before 2.6.1.4 on Windows and other products, mishandles digital signatures of user data, which allows remote attackers to…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2018-0489
|
2024-11-21 12:38 |
2018-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248800
|
8.8 |
HIGH
Network
|
fsi
|
fs010w_firmware
|
Cross-site request forgery (CSRF) vulnerability in FS010W firmware FS010W_00_V1.3.0 and earlier allows an attacker to hijack the authentication of administrators via unspecified vectors.
|
CWE-352
Origin Validation Error
|
CVE-2018-0520
|
2024-11-21 12:38 |
2018-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|