|
246011
|
8.8 |
HIGH
Network
|
open-emr
|
openemr
|
OpenEMR 5.0.1.3 allows Cross-Site Request Forgery (CSRF) via library/ajax and interface/super, as demonstrated by use of interface/super/manage_site_files.php to upload a .php file.
|
CWE-352
Origin Validation Error
|
CVE-2018-16795
|
2024-11-21 12:53 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246012
|
7.8 |
HIGH
Local
|
v-secure
|
jingyun_antivirus
|
In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values…
|
CWE-20
Improper Input Validation
|
CVE-2018-16723
|
2024-11-21 12:53 |
2020-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246013
|
7.8 |
HIGH
Local
|
v-secure
|
jingyun_antivirus
|
In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values…
|
CWE-20
Improper Input Validation
|
CVE-2018-16722
|
2024-11-21 12:53 |
2020-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246014
|
7.8 |
HIGH
Local
|
v-secure
|
jingyun_antivirus
|
In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values…
|
CWE-20
Improper Input Validation
|
CVE-2018-16721
|
2024-11-21 12:53 |
2020-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246015
|
7.8 |
HIGH
Local
|
v-secure
|
jingyun_antivirus
|
In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values…
|
CWE-20
Improper Input Validation
|
CVE-2018-16720
|
2024-11-21 12:53 |
2020-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246016
|
7.8 |
HIGH
Local
|
v-secure
|
jingyun_antivirus
|
In Jingyun Antivirus v2.4.2.39, the driver file (hookbody.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values …
|
CWE-20
Improper Input Validation
|
CVE-2018-16719
|
2024-11-21 12:53 |
2020-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246017
|
7.5 |
HIGH
Network
|
btcd_project bcoin namecoin litecoin bitcoinknots bitcoin decred
|
btcd bcoin namecoin_core litecoin bitcoin_knots bitcoin_core dcrd
|
Bitcoin Core 0.16.x before 0.16.2 and Bitcoin Knots 0.16.x before 0.16.2 allow remote denial of service via a flood of multiple transaction inv messages with random hashes, aka INVDoS. NOTE: this can…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-17145
|
2024-11-21 12:53 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246018
|
6.5 |
MEDIUM
Network
|
redhat
|
openstack-mistral
|
A Denial of Service (DoS) condition is possible in OpenStack Mistral in versions up to and including 7.0.3. Submitting a specially crafted workflow definition YAML file containing nested anchors can …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-16848
|
2024-11-21 12:53 |
2020-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246019
|
8.8 |
HIGH
Network
|
jaba
|
jaba_xpress
|
An issue was discovered in JABA XPress Online Shop through 2018-09-14. It contains an arbitrary file upload vulnerability in the picture-upload feature of ProductEdit.aspx. An authenticated attacker …
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2018-17058
|
2024-11-21 12:53 |
2020-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246020
|
7.5 |
HIGH
Network
|
phoenixcontact
|
axl_f_bk_pn_firmware axl_f_bk_eth_firmware axl_f_bk_eth_xc_firmware
|
An issue was discovered on PHOENIX CONTACT AXL F BK PN <=1.0.4, AXL F BK ETH <= 1.12, and AXL F BK ETH XC <= 1.11 devices and Bosch Rexroth S20-ETH-BK and Rexroth S20-PN-BK+ (the S20-PN-BK+/S20-ETH-B…
|
NVD-CWE-noinfo
|
CVE-2018-16994
|
2024-11-21 12:53 |
2020-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|