|
246851
|
6.5 |
MEDIUM
Network
|
iobit
|
advanced_systemcare
|
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send an IOCTL (0x9C402084) with a buffer containing u…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-16713
|
2024-11-21 12:53 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246852
|
6.5 |
MEDIUM
Network
|
iobit
|
advanced_systemcare
|
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send a specially crafted IOCTL 0x9C406104 to read phy…
|
CWE-200
Information Exposure
|
CVE-2018-16712
|
2024-11-21 12:53 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246853
|
8.8 |
HIGH
Network
|
iobit
|
advanced_systemcare
|
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send an IOCTL (0x9C402088) with a buffer containing u…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-16711
|
2024-11-21 12:53 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246854
|
7.8 |
HIGH
Local
|
suse
|
shadow
|
Privilege escalation can occur in the SUSE useradd.c code in useradd, as distributed in the SUSE shadow package through 4.2.1-27.9.1 for SUSE Linux Enterprise 12 (SLE-12) and through 4.5-5.39 for SUS…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-16588
|
2024-11-21 12:53 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246855
|
4.3 |
MEDIUM
Network
|
e107
|
e107
|
e107 2.1.9 allows CSRF via e107_admin/wmessage.php?mode=&action=inline&ajax_used=1&id= for changing the title of an arbitrary page.
|
CWE-352
Origin Validation Error
|
CVE-2018-17081
|
2024-11-21 12:53 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246856
|
4.3 |
MEDIUM
Network
|
citrix
|
sharefile_storagezones_controller
|
Citrix ShareFile StorageZones Controller before 5.4.2 has Information Exposure Through an Error Message.
|
CWE-200
Information Exposure
|
CVE-2018-16969
|
2024-11-21 12:53 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246857
|
3.1 |
LOW
Network
|
citrix
|
sharefile_storagezones_controller
|
Citrix ShareFile StorageZones Controller before 5.4.2 allows Directory Traversal.
|
CWE-22
Path Traversal
|
CVE-2018-16968
|
2024-11-21 12:53 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246858
|
6.5 |
MEDIUM
Network
|
circontrol
|
circarlife_scada
|
An issue was discovered in CIRCONTROL CirCarLife before 4.3. Due to the storage of multiple sensitive information elements in a JSON format at /services/system/setup.json, an authenticated but unpriv…
|
CWE-200
Information Exposure
|
CVE-2018-16672
|
2024-11-21 12:53 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246859
|
9.8 |
CRITICAL
Network
|
tgstation13
|
tgstation-server
|
In Tgstation tgstation-server 3.2.4.0 through 3.2.1.0 (fixed in 3.2.5.0), active logins would be cached, allowing subsequent logins to succeed with any username or password.
|
NVD-CWE-noinfo
|
CVE-2018-17107
|
2024-11-21 12:53 |
2018-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246860
|
9.8 |
CRITICAL
Network
|
debian hylafax
|
debian_linux hylafax\+ hylafax
|
HylaFAX 6.0.6 and HylaFAX+ 5.6.0 allow remote attackers to execute arbitrary code via a dial-in session that provides a FAX page with the JPEG bit enabled, which is mishandled in FaxModem::writeECMDa…
|
CWE-824 CWE-787
Access of Uninitialized Pointer Out-of-bounds Write
|
CVE-2018-17141
|
2024-11-21 12:53 |
2018-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|