|
247461
|
9.8 |
CRITICAL
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer overflow in the function H5G_ent_decode in H5Gent.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2018-13872
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247462
|
9.8 |
CRITICAL
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer overflow in the function H5FL_blk_malloc in H5FL.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2018-13871
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247463
|
9.8 |
CRITICAL
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_link_decode in H5Olink.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13870
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247464
|
9.8 |
CRITICAL
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a memcpy parameter overlap in the function H5O_link_decode in H5Olink.c.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-13869
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247465
|
9.8 |
CRITICAL
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_fill_old_decode in H5Ofill.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13868
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247466
|
9.8 |
CRITICAL
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in the function H5F__accum_read in H5Faccum.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13867
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247467
|
9.8 |
CRITICAL
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a stack-based buffer over-read in the function H5F_addr_decode_len in H5Fint.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13866
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247468
|
6.1 |
MEDIUM
Network
|
idreamsoft
|
icms
|
An issue was discovered in idreamsoft iCMS 7.0.9. XSS exists via the callback parameter in a public/api.php uploadpic request, bypassing the iWAF protection mechanism.
|
CWE-79
Cross-site Scripting
|
CVE-2018-13865
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247469
|
7.5 |
HIGH
Network
|
mongodb
|
js-bson
|
The MongoDB bson JavaScript module (also known as js-bson) versions 0.5.0 to 1.0.x before 1.0.5 is vulnerable to a Regular Expression Denial of Service (ReDoS) in lib/bson/decimal128.js. The flaw is …
|
NVD-CWE-noinfo
|
CVE-2018-13863
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247470
|
9.8 |
CRITICAL
Network
|
icanstudioz
|
firebase_push_notification_on_ios_\/_fcm_\+_advance_admin_panel
|
The "Firebase Cloud Messaging (FCM) + Advance Admin Panel" component supporting Firebase Push Notification on iOS (through 2017-10-26) allows SQL injection via the /advance_push/public/login username…
|
CWE-89
SQL Injection
|
CVE-2018-13850
|
2024-11-21 12:48 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|