|
248821
|
6.1 |
MEDIUM
Network
|
meowapps
|
wp_retina_2x
|
Cross-site scripting vulnerability in WP Retina 2x prior to version 5.2.2 allows an attacker to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0511
|
2024-11-21 12:38 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248822
|
9.8 |
CRITICAL
Network
|
kkcald_project
|
kkcald
|
Buffer overflow in epg search result viewer (kkcald) 0.7.19 and earlier allows remote attackers to perform unintended operations or execute DoS (denial of service) attacks via unspecified vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0510
|
2024-11-21 12:38 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248823
|
8.8 |
HIGH
Network
|
kkcald_project
|
kkcald
|
Cross-site request forgery (CSRF) vulnerability in epg search result viewer (kkcald) 0.7.21 and earlier allows an attacker to hijack the authentication of administrators via unspecified vectors.
|
CWE-352
Origin Validation Error
|
CVE-2018-0509
|
2024-11-21 12:38 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248824
|
6.1 |
MEDIUM
Network
|
kkcald_project
|
kkcald
|
Cross-site scripting vulnerability in epg search result viewer (kkcald) 0.7.21 and earlier allows an attacker to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2018-0508
|
2024-11-21 12:38 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248825
|
7.8 |
HIGH
Local
|
ntt-east
|
flet\'s_virus_clear_v6_easy_setup_\&_application_tool flet\'s_virus_clear_easy_setup_\&_application_tool
|
Untrusted search path vulnerability in FLET'S VIRUS CLEAR Easy Setup & Application Tool ver.11 and earlier versions, FLET'S VIRUS CLEAR v6 Easy Setup & Application Tool ver.11 and earlier versions al…
|
CWE-426
Untrusted Search Path
|
CVE-2018-0507
|
2024-11-21 12:38 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248826
|
9.8 |
CRITICAL
Network
|
nootka_project
|
nootka
|
Nootka 1.4.4 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2018-0506
|
2024-11-21 12:38 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248827
|
6.5 |
MEDIUM
Network
|
shibboleth debian
|
xmltooling-c debian_linux
|
Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote atta…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2018-0486
|
2024-11-21 12:38 |
2018-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248828
|
8.8 |
HIGH
Network
|
microsoft
|
word office office_compatibility_pack
|
Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way ob…
|
NVD-CWE-noinfo
|
CVE-2018-0807
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248829
|
8.8 |
HIGH
Network
|
microsoft
|
word office office_compatibility_pack
|
Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way ob…
|
NVD-CWE-noinfo
|
CVE-2018-0806
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248830
|
8.8 |
HIGH
Network
|
microsoft
|
word office office_compatibility_pack
|
Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way ob…
|
NVD-CWE-noinfo
|
CVE-2018-0805
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|