|
248631
|
6.5 |
MEDIUM
Network
|
webkitgtk gnome
|
webkitgtk\+ libsoup
|
WebCore/platform/network/soup/SocketStreamHandleImplSoup.cpp in the libsoup network backend of WebKit, as used in WebKitGTK+ prior to version 2.20.0 or without libsoup 2.62.0, unexpectedly failed to …
|
NVD-CWE-noinfo
|
CVE-2018-11713
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248632
|
7.5 |
HIGH
Network
|
webkitgtk
|
webkitgtk\+
|
WebCore/platform/network/soup/SocketStreamHandleImplSoup.cpp in the libsoup network backend of WebKit, as used in WebKitGTK+ versions 2.20.0 and 2.20.1, failed to perform TLS certificate verification…
|
CWE-295
Improper Certificate Validation
|
CVE-2018-11712
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248633
|
9.8 |
CRITICAL
Network
|
canon
|
mf210_firmware mf220_firmware
|
A remote attacker can bypass the System Manager Mode on the Canon MF210 and MF220 web interface without knowing the PIN for /login.html via vectors involving /portal_top.html to get full access to th…
|
CWE-287
Improper Authentication
|
CVE-2018-11711
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248634
|
8.8 |
HIGH
Network
|
openmpt
|
libopenmpt
|
soundlib/pattern.h in libopenmpt before 0.3.9 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted AMS file because of an i…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-11710
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248635
|
6.1 |
MEDIUM
Network
|
gvectors
|
wpforo_forum
|
wpforo_get_request_uri in wpf-includes/functions.php in the wpForo Forum plugin before 1.4.12 for WordPress allows Unauthenticated Reflected Cross-Site Scripting (XSS) via the URI.
|
CWE-79
Cross-site Scripting
|
CVE-2018-11709
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248636
|
8.1 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. An out-of-bounds read of a memory region was found in the function Sass::handle_error which could be leveraged by an attacker to disclose information…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11698
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248637
|
8.1 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. An out-of-bounds read of a memory region was found in the function Sass::Prelexer::exactly() which could be leveraged by an attacker to disclose info…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11697
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248638
|
8.8 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. A NULL pointer dereference was found in the function Sass::Inspect::operator which could be leveraged by an attacker to cause a denial of service (ap…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11696
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248639
|
8.8 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass <3.5.3. A NULL pointer dereference was found in the function Sass::Expand::operator which could be leveraged by an attacker to cause a denial of service (applicatio…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11695
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248640
|
8.8 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. A NULL pointer dereference was found in the function Sass::Functions::selector_append which could be leveraged by an attacker to cause a denial of se…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11694
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|