|
247491
|
7.5 |
HIGH
Network
|
easy_trading_token_project
|
easy_trading_token
|
The transfer and transferFrom functions of a smart contract implementation for Easy Trading Token (ETT), an Ethereum token, have an integer overflow. NOTE: this has been disputed by a third party.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-13113
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247492
|
7.5 |
HIGH
Network
|
broadcom
|
tcpreplay
|
get_l2len in common/get.c in Tcpreplay 4.3.0 beta1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via crafted packets, as demonstrated by tcp…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13112
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247493
|
4.8 |
MEDIUM
Network
|
clippercms
|
clippercms
|
ClipperCMS 1.3.3 has stored XSS via the "Tools -> Configuration" screen of the manager/ URI.
|
CWE-79
Cross-site Scripting
|
CVE-2018-13106
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247494
|
7.8 |
HIGH
Local
|
anydesk
|
anydesk
|
AnyDesk before "12.06.2018 - 4.1.3" on Windows 7 SP1 has a DLL preloading vulnerability.
|
CWE-426
Untrusted Search Path
|
CVE-2018-13102
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247495
|
9.8 |
CRITICAL
Network
|
redswimmer
|
kiosksimple
|
KioskSimpleService.exe in RedSwimmer KioskSimple 1.4.7.0 suffers from a privilege escalation vulnerability in the WCF endpoint. The exposed methods allow read and write access to the Windows registry…
|
NVD-CWE-noinfo
|
CVE-2018-13101
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247496
|
6.1 |
MEDIUM
Network
|
trustwave
|
modsecurity
|
ModSecurity 3.0.0 has XSS via an onerror attribute of an IMG element. NOTE: a third party has disputed this issue because it may only apply to environments without a Core Rule Set configured
|
CWE-79
Cross-site Scripting
|
CVE-2018-13065
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247497
|
5.5 |
MEDIUM
Local
|
linux debian
|
linux_kernel debian_linux
|
An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.17.3, which does not properly validate secs_per_zone in a corrupted f2fs image, as demonstrated by a divide-by-zero error.
|
CWE-369
Divide By Zero
|
CVE-2018-13100
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247498
|
5.5 |
MEDIUM
Local
|
linux debian opensuse canonical
|
linux_kernel debian_linux leap ubuntu_linux
|
An issue was discovered in fs/f2fs/inline.c in the Linux kernel through 4.4. A denial of service (out-of-bounds memory access and BUG) can occur for a modified f2fs filesystem image in which an inlin…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13099
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247499
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An issue was discovered in fs/f2fs/inode.c in the Linux kernel through 4.17.3. A denial of service (slab out-of-bounds read and BUG) can occur for a modified f2fs filesystem image in which FI_EXTRA_A…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-13098
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247500
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An issue was discovered in fs/f2fs/super.c in the Linux kernel through 4.17.3. There is an out-of-bounds read or a divide-by-zero error for an incorrect user_block_count in a corrupted f2fs image, le…
|
CWE-125 CWE-369
Out-of-bounds Read Divide By Zero
|
CVE-2018-13097
|
2024-11-21 12:46 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|