|
248441
|
7.5 |
HIGH
Network
|
gemchain_project
|
gemchain
|
The mintToken function of a smart contract implementation for GEMCHAIN (GEM), an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-13155
|
2024-11-21 12:46 |
2018-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248442
|
6.5 |
MEDIUM
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
In ImageMagick 7.0.8-4, there is a memory leak in the XMagickCommand function in MagickCore/animate.c.
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2018-13153
|
2024-11-21 12:46 |
2018-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248443
|
7.5 |
HIGH
Network
|
lef_project
|
lef
|
The mintToken, buy, and sell functions of a smart contract implementation for LEF, an Ethereum token, have an integer overflow.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-13146
|
2024-11-21 12:46 |
2018-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248444
|
7.5 |
HIGH
Network
|
javaswaptest_project
|
javaswaptest
|
The mintToken function of a smart contract implementation for JavaSwapTest (JST), an Ethereum token, has an integer overflow.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-13145
|
2024-11-21 12:46 |
2018-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248445
|
7.5 |
HIGH
Network
|
pandora_project
|
pandora
|
The transfer and transferFrom functions of a smart contract implementation for Pandora (PDX), an Ethereum token, have an integer overflow. NOTE: this has been disputed by a third party.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-13144
|
2024-11-21 12:46 |
2018-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248446
|
8.8 |
HIGH
Network
|
libsndfile_project debian
|
libsndfile debian_linux
|
A stack-based buffer overflow in psf_memset in common.c in libsndfile 1.0.28 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a c…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-13139
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248447
|
6.1 |
MEDIUM
Network
|
ultimatemember
|
ultimate_member
|
The Ultimate Member (aka ultimatemember) plugin before 2.0.18 for WordPress has XSS via the wp-admin settings screen.
|
CWE-79
Cross-site Scripting
|
CVE-2018-13136
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248448
|
6.1 |
MEDIUM
Network
|
tp-link
|
archer_c1200_firmware
|
TP-Link Archer C1200 1.13 Build 2018/01/24 rel.52299 EU devices have XSS via the PATH_INFO to the /webpages/data URI.
|
CWE-79
Cross-site Scripting
|
CVE-2018-13134
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248449
|
7.8 |
HIGH
Local
|
goldenfrog
|
vyprvpn
|
Golden Frog VyprVPN before 2018-06-21 has a vulnerability associated with the installation process on Windows.
|
CWE-426
Untrusted Search Path
|
CVE-2018-13133
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248450
|
7.5 |
HIGH
Network
|
spadeico_project
|
spadeico
|
Spadeico is a smart contract running on Ethereum. The mint function has an integer overflow that allows minted tokens to be arbitrarily retrieved by the contract owner.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-13132
|
2024-11-21 12:46 |
2018-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|