|
246061
|
8.0 |
HIGH
Adjacent
|
dell
|
wyse_thinlinux
|
The Dell Wyse Password Encoder in ThinLinux2 versions prior to 2.1.0.01 contain a Hard-coded Cryptographic Key vulnerability. An unauthenticated remote attacker could reverse engineer the cryptograph…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-15781
|
2024-11-21 12:51 |
2019-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246062
|
7.5 |
HIGH
Network
|
freron
|
mailmate
|
MailMate before 1.11.3 mishandles a suspicious HTML/MIME structure in a signed/encrypted email.
|
CWE-290
Authentication Bypass by Spoofing
|
CVE-2018-15588
|
2024-11-21 12:51 |
2019-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246063
|
6.5 |
MEDIUM
Network
|
gnome debian
|
evolution debian_linux
|
GNOME Evolution through 3.28.2 is prone to OpenPGP signatures being spoofed for arbitrary messages using a specially crafted email that contains a valid signature from the entity to be impersonated a…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2018-15587
|
2024-11-21 12:51 |
2019-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246064
|
6.5 |
MEDIUM
Network
|
enigmail
|
enigmail
|
Enigmail before 2.0.6 is prone to to OpenPGP signatures being spoofed for arbitrary messages using a PGP/INLINE signature wrapped within a specially crafted multipart HTML email.
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2018-15586
|
2024-11-21 12:51 |
2019-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246065
|
6.5 |
MEDIUM
Network
|
42gears
|
suremdm
|
An issue was discovered in 42Gears SureMDM before 2018-11-27, related to the access policy for Silverlight applications. Cross-origin access is possible.
|
CWE-200
Information Exposure
|
CVE-2018-15659
|
2024-11-21 12:51 |
2019-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246066
|
7.5 |
HIGH
Network
|
42gears
|
suremdm
|
An issue was discovered in 42Gears SureMDM before 2018-11-27. By visiting the page found at /console/ConsolePage/Master.html, an attacker is able to see the markup that would be presented to an authe…
|
CWE-200
Information Exposure
|
CVE-2018-15658
|
2024-11-21 12:51 |
2019-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246067
|
7.3 |
HIGH
Local
|
42gears
|
suremdm
|
An SSRF issue was discovered in 42Gears SureMDM before 2018-11-27 via the /api/DownloadUrlResponse.ashx "url" parameter.
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2018-15657
|
2024-11-21 12:51 |
2019-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246068
|
7.5 |
HIGH
Network
|
42gears
|
suremdm
|
An issue was discovered in the registration API endpoint in 42Gears SureMDM before 2018-11-27. An attacker can submit a GET request to /api/register/:email, where :email is a base64 encoded e-mail ad…
|
CWE-200
Information Exposure
|
CVE-2018-15656
|
2024-11-21 12:51 |
2019-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246069
|
6.5 |
MEDIUM
Network
|
42gears
|
suremdm
|
An issue was discovered in 42Gears SureMDM before 2018-11-27, related to CORS settings. Cross-origin access is possible.
|
CWE-200
Information Exposure
|
CVE-2018-15655
|
2024-11-21 12:51 |
2019-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246070
|
7.8 |
HIGH
Local
|
dell
|
networking_os10
|
Dell OS10 versions prior to 10.4.2.1 contain a vulnerability caused by lack of proper input validation on the command-line interface (CLI).
|
CWE-20
Improper Input Validation
|
CVE-2018-15778
|
2024-11-21 12:51 |
2019-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|