|
247461
|
9.8 |
CRITICAL
Network
|
eclipse redhat
|
openj9 enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server satellite
|
In Eclipse OpenJ9, prior to the 0.12.0 release, the jio_snprintf() and jio_vsnprintf() native methods ignored the length parameter. This affects existing APIs that called the functions to exceed the …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12547
|
2024-11-21 12:45 |
2019-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247462
|
9.8 |
CRITICAL
Network
|
eclipse
|
openj9
|
In OpenJDK + Eclipse OpenJ9 version 0.11.0 builds, the public jdk.crypto.jniprovider.NativeCrypto class contains public static natives which accept pointer values that are dereferenced in the native …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12548
|
2024-11-21 12:45 |
2019-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247463
|
6.1 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX App Suite 7.8.4 and earlier allows Directory Traversal.
|
CWE-79
Cross-site Scripting
|
CVE-2018-12611
|
2024-11-21 12:45 |
2019-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247464
|
5.3 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX App Suite 7.8.4 and earlier allows Information Exposure.
|
CWE-200
Information Exposure
|
CVE-2018-12610
|
2024-11-21 12:45 |
2019-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247465
|
6.5 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX App Suite 7.8.4 and earlier allows Server-Side Request Forgery.
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2018-12609
|
2024-11-21 12:45 |
2019-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247466
|
7.8 |
HIGH
Local
|
adobe
|
acrobat_dc acrobat_reader_dc
|
Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-12830
|
2024-11-21 12:45 |
2019-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247467
|
7.5 |
HIGH
Network
|
adobe
|
digital_editions
|
Adobe Digital Editions versions 4.5.9 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-12817
|
2024-11-21 12:45 |
2019-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247468
|
6.1 |
MEDIUM
Network
|
myadrenalin
|
human_resource_management_software
|
A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in Adrenalin 5.4 HRMS Software. The user supplied input containing JavaScript is echoed back in JavaScript code in an HTML response…
|
CWE-79
Cross-site Scripting
|
CVE-2018-12651
|
2024-11-21 12:45 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247469
|
7.5 |
HIGH
Network
|
eclipse
|
mosquitto
|
In Eclipse Mosquitto versions 1.5 to 1.5.2 inclusive, if a message is published to Mosquitto that has a topic starting with $, but that is not $SYS, e.g. $test/test, then an assert is triggered that …
|
CWE-20
Improper Input Validation
|
CVE-2018-12543
|
2024-11-21 12:45 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247470
|
6.1 |
MEDIUM
Network
|
microfocus
|
access_manager
|
Mitigates an XSS issue in NetIQ Access Manager versions prior to 4.4 SP3.
|
CWE-79
Cross-site Scripting
|
CVE-2018-12480
|
2024-11-21 12:45 |
2018-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|