|
249321
|
9.8 |
CRITICAL
Network
|
universal-robots
|
cb3.1_firmware
|
In Universal Robots Robot Controllers Version CB 3.1, SW Version 3.4.5-100, ports 30001/TCP to 30003/TCP listen for arbitrary URScript code and execute the code. This enables a remote attacker who ha…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-10635
|
2024-11-21 12:41 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249322
|
9.8 |
CRITICAL
Network
|
universal-robots
|
cb3.1_firmware
|
Universal Robots Robot Controllers Version CB 3.1, SW Version 3.4.5-100 utilizes hard-coded credentials that may allow an attacker to reset passwords for the controller.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-10633
|
2024-11-21 12:41 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249323
|
6.5 |
MEDIUM
Network
|
topdesk
|
topdesk
|
Cross-site request forgery (CSRF) vulnerability in TOPdesk before 8.05.017 (June 2018 version) and before 5.7.SR9 allows remote attackers to hijack the authentication of authenticated users for reque…
|
CWE-352
Origin Validation Error
|
CVE-2018-10232
|
2024-11-21 12:41 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249324
|
6.1 |
MEDIUM
Network
|
topdesk
|
topdesk
|
Cross-site scripting (XSS) vulnerability in TOPdesk before 8.05.017 (June 2018 version) and before 5.7.SR9 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10231
|
2024-11-21 12:41 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249325
|
9.8 |
CRITICAL
Network
|
elo
|
access_manager
|
There is a time-based blind SQL injection vulnerability in the Access Manager component before 9.18.040 and 10.x before 10.18.040 in ELO ELOenterprise 9 and 10 and ELOprofessional 9 and 10 that makes…
|
CWE-89
SQL Injection
|
CVE-2018-10197
|
2024-11-21 12:41 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249326
|
8.0 |
HIGH
Adjacent
|
medtronic
|
2090_carelink_programmer_firmware
|
Medtronic 2090 CareLink Programmer all versions The affected product uses a virtual private network connection to securely download updates. The product does not verify it is still connected to this …
|
CWE-200
Information Exposure
|
CVE-2018-10596
|
2024-11-21 12:41 |
2018-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249327
|
9.8 |
CRITICAL
Network
|
deltaww
|
commgr
|
Delta Industrial Automation COMMGR from Delta Electronics versions 1.08 and prior with accompanying PLC Simulators (DVPSimulator EH2, EH3, ES2, SE, SS2 and AHSIM_5x0, AHSIM_5x1) utilize a fixed-lengt…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-10594
|
2024-11-21 12:41 |
2018-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249328
|
7.5 |
HIGH
Network
|
axis
|
a1001_firmware a8004-v_firmware a8105-e_firmware a9161_firmware a9188_firmware a9188-v_firmware c1004-e_firmware c2005_firmware c3003-e_firmware c8033_firmware companion…
|
An issue was discovered in the httpd process in multiple models of Axis IP Cameras. There is Memory Corruption.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-10664
|
2024-11-21 12:41 |
2018-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249329
|
7.5 |
HIGH
Network
|
axis
|
a1001_firmware a8004-v_firmware a8105-e_firmware a9161_firmware a9188_firmware a9188-v_firmware c1004-e_firmware c2005_firmware c3003-e_firmware c8033_firmware companion…
|
An issue was discovered in multiple models of Axis IP Cameras. There is an Incorrect Size Calculation.
|
CWE-200
Information Exposure
|
CVE-2018-10663
|
2024-11-21 12:41 |
2018-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249330
|
9.8 |
CRITICAL
Network
|
axis
|
a1001_firmware a8004-v_firmware a8105-e_firmware a9161_firmware a9188_firmware a9188-v_firmware c1004-e_firmware c2005_firmware c3003-e_firmware c8033_firmware companion…
|
An issue was discovered in multiple models of Axis IP Cameras. There is an Exposed Insecure Interface.
|
NVD-CWE-noinfo
|
CVE-2018-10662
|
2024-11-21 12:41 |
2018-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|