|
249381
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R3.0 and earlier, Denbun IMAP version V3.3I R3.0 and earlier) allows remote attackers to execute arbitrary code or cause a denial-…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0684
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249382
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote attackers to execute arbitrary code or cause a denial-…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0683
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249383
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) does not properly manage sessions, which allows remote attackers to read/send mail or c…
|
NVD-CWE-noinfo
|
CVE-2018-0682
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249384
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) uses hard-coded credentials, which may allow remote attackers to login to the Managemen…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0681
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249385
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) uses hard-coded credentials, which may allow remote attackers to read/send mail or chan…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0680
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249386
|
4.8 |
MEDIUM
Network
|
fxc
|
fxc5210_firmware fxc5218_firmware fxc5224_firmware fxc5426f_firmware fxc5428_firmware fxc5210pe_firmware fxc5218pe_firmware fxc5224pe_firmware ae1021_firmware ae1021pe_firm…
|
Cross-site scripting vulnerability in multiple FXC Inc. network devices (Managed Ethernet switch FXC5210/5218/5224 firmware prior to version Ver1.00.22, Managed Ethernet switch FXC5426F firmware prio…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0679
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249387
|
8.1 |
HIGH
Network
|
cybozu
|
garoon
|
Directory traversal vulnerability in Cybozu Garoon 3.5.0 to 4.6.3 allows authenticated attackers to read arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2018-0673
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249388
|
5.9 |
MEDIUM
Network
|
openssl canonical debian nodejs netapp oracle
|
openssl ubuntu_linux debian_linux node.js cn1610_firmware cloud_backup oncommand_unified_manager steelstore santricity_smi-s_provider snapcenter storage_automation_store…
|
The OpenSSL DSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in Ope…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2018-0734
|
2024-11-21 12:38 |
2018-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249389
|
5.9 |
MEDIUM
Network
|
openssl canonical debian nodejs netapp oracle
|
openssl ubuntu_linux debian_linux node.js cn1610_firmware cloud_backup oncommand_unified_manager steelstore santricity_smi-s_provider element_software snapdrive smi-s…
|
The OpenSSL ECDSA signature algorithm has been shown to be vulnerable to a timing side channel attack. An attacker could use variations in the signing algorithm to recover the private key. Fixed in O…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2018-0735
|
2024-11-21 12:38 |
2018-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249390
|
7.5 |
HIGH
Network
|
cisco
|
wireless_lan_controller_software
|
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol component of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker t…
|
CWE-20
Improper Input Validation
|
CVE-2018-0443
|
2024-11-21 12:38 |
2018-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|