|
248281
|
8.1 |
HIGH
Network
|
citrix
|
xenmobile_server
|
There is a Hazelcast Library Java Deserialization Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2018-10654
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248282
|
9.8 |
CRITICAL
Network
|
citrix
|
xenmobile_server
|
There is an XML External Entity (XXE) Processing Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
|
CWE-611
XXE
|
CVE-2018-10653
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248283
|
7.5 |
HIGH
Network
|
citrix
|
xenmobile_server
|
There is a Sensitive Data Leakage issue in Citrix XenMobile Server 10.7 before RP3.
|
CWE-200
Information Exposure
|
CVE-2018-10652
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248284
|
6.1 |
MEDIUM
Network
|
citrix
|
xenmobile_server
|
There are Open Redirect Vulnerabilities in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
|
CWE-601
Open Redirect
|
CVE-2018-10651
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248285
|
7.8 |
HIGH
Local
|
citrix
|
xenmobile_server
|
There is an Insufficient Path Validation Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
|
CWE-426
Untrusted Search Path
|
CVE-2018-10650
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248286
|
6.1 |
MEDIUM
Network
|
citrix
|
xenmobile_server
|
There is a Cross-Site Scripting Vulnerability in Citrix XenMobile Server 10.7 before RP3.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10649
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248287
|
9.8 |
CRITICAL
Network
|
citrix
|
xenmobile_server
|
There are Unauthenticated File Upload Vulnerabilities in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2018-10648
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248288
|
8.8 |
HIGH
Network
|
trendmicro
|
endpoint_application_control
|
A directory traversal vulnerability in Trend Micro Endpoint Application Control 2.0 could allow a remote attacker to execute arbitrary code on vulnerable installations due to a flaw in the FileDrop s…
|
CWE-22
Path Traversal
|
CVE-2018-10357
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248289
|
8.8 |
HIGH
Network
|
trendmicro
|
email_encryption_gateway
|
A SQL injection remote code execution vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to execute arbitrary SQL statements on vulnerable installations due to a flaw i…
|
CWE-89
SQL Injection
|
CVE-2018-10356
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248290
|
7.0 |
HIGH
Local
|
trendmicro
|
email_encryption_gateway
|
An authentication weakness vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to recover user passwords on vulnerable installations due to a flaw in the DBCrypto class.…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2018-10355
|
2024-11-21 12:41 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|