|
249261
|
7.5 |
HIGH
Network
|
webkitgtk
|
webkitgtk\+
|
WebCore/platform/network/soup/SocketStreamHandleImplSoup.cpp in the libsoup network backend of WebKit, as used in WebKitGTK+ versions 2.20.0 and 2.20.1, failed to perform TLS certificate verification…
|
CWE-295
Improper Certificate Validation
|
CVE-2018-11712
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249262
|
9.8 |
CRITICAL
Network
|
canon
|
mf210_firmware mf220_firmware
|
A remote attacker can bypass the System Manager Mode on the Canon MF210 and MF220 web interface without knowing the PIN for /login.html via vectors involving /portal_top.html to get full access to th…
|
CWE-287
Improper Authentication
|
CVE-2018-11711
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249263
|
8.8 |
HIGH
Network
|
openmpt
|
libopenmpt
|
soundlib/pattern.h in libopenmpt before 0.3.9 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted AMS file because of an i…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-11710
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249264
|
6.1 |
MEDIUM
Network
|
gvectors
|
wpforo_forum
|
wpforo_get_request_uri in wpf-includes/functions.php in the wpForo Forum plugin before 1.4.12 for WordPress allows Unauthenticated Reflected Cross-Site Scripting (XSS) via the URI.
|
CWE-79
Cross-site Scripting
|
CVE-2018-11709
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249265
|
8.1 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. An out-of-bounds read of a memory region was found in the function Sass::handle_error which could be leveraged by an attacker to disclose information…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11698
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249266
|
8.1 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. An out-of-bounds read of a memory region was found in the function Sass::Prelexer::exactly() which could be leveraged by an attacker to disclose info…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11697
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249267
|
8.8 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. A NULL pointer dereference was found in the function Sass::Inspect::operator which could be leveraged by an attacker to cause a denial of service (ap…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11696
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249268
|
8.8 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass <3.5.3. A NULL pointer dereference was found in the function Sass::Expand::operator which could be leveraged by an attacker to cause a denial of service (applicatio…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11695
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249269
|
8.8 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. A NULL pointer dereference was found in the function Sass::Functions::selector_append which could be leveraged by an attacker to cause a denial of se…
|
CWE-476
NULL Pointer Dereference
|
CVE-2018-11694
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249270
|
8.1 |
HIGH
Network
|
sass-lang
|
libsass
|
An issue was discovered in LibSass through 3.5.4. An out-of-bounds read of a memory region was found in the function Sass::Prelexer::skip_over_scopes which could be leveraged by an attacker to disclo…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11693
|
2024-11-21 12:43 |
2018-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|