|
246151
|
8.1 |
HIGH
Adjacent
|
linux
|
tizen
|
The Enlightenment system service in Tizen allows an unprivileged process to fully control or capture windows, due to improper D-Bus security policy configurations. This affects Tizen before 5.0 M1, a…
|
CWE-269
Improper Privilege Management
|
CVE-2018-16266
|
2024-11-21 12:52 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246152
|
6.5 |
MEDIUM
Adjacent
|
linux
|
tizen
|
The bt/bt_core system service in Tizen allows an unprivileged process to create a system user interface and control the Bluetooth pairing process, due to improper D-Bus security policy configurations…
|
CWE-269
Improper Privilege Management
|
CVE-2018-16265
|
2024-11-21 12:52 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246153
|
6.5 |
MEDIUM
Adjacent
|
linux
|
tizen
|
The BlueZ system service in Tizen allows an unprivileged process to partially control Bluetooth or acquire sensitive information, due to improper D-Bus security policy configurations. This affects Ti…
|
CWE-200
Information Exposure
|
CVE-2018-16264
|
2024-11-21 12:52 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246154
|
8.8 |
HIGH
Adjacent
|
linux
|
tizen
|
The PulseAudio system service in Tizen allows an unprivileged process to control its A2DP MediaEndpoint, due to improper D-Bus security policy configurations. This affects Tizen before 5.0 M1, and Ti…
|
CWE-269
Improper Privilege Management
|
CVE-2018-16263
|
2024-11-21 12:52 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246155
|
8.8 |
HIGH
Adjacent
|
linux
|
tizen
|
The pkgmgr system service in Tizen allows an unprivileged process to perform package management actions, due to improper D-Bus security policy configurations. Such actions include installing, decrypt…
|
CWE-269
Improper Privilege Management
|
CVE-2018-16262
|
2024-11-21 12:52 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246156
|
7.5 |
HIGH
Network
|
arubanetworks siemens
|
instant w1750d_firmware
|
Aruba Instant 4.x prior to 6.4.4.8-4.2.4.12, 6.5.x prior to 6.5.4.11, 8.3.x prior to 8.3.0.6, and 8.4.x prior to 8.4.0.1 allows Command injection.
|
CWE-77
Command Injection
|
CVE-2018-16417
|
2024-11-21 12:52 |
2019-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246157
|
7.5 |
HIGH
Network
|
tcpdump
|
tcpdump
|
The SMB parser in tcpdump before 4.9.3 has stack exhaustion in smbutil.c:smb_fdata() via recursion.
|
CWE-674
Uncontrolled Recursion
|
CVE-2018-16452
|
2024-11-21 12:52 |
2019-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246158
|
7.5 |
HIGH
Network
|
tcpdump redhat debian opensuse fedoraproject apple
|
tcpdump enterprise_linux debian_linux leap fedora mac_os_x
|
The SMB parser in tcpdump before 4.9.3 has buffer over-reads in print-smb.c:print_trans() for \MAILSLOT\BROWSE and \PIPE\LANMAN.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-16451
|
2024-11-21 12:52 |
2019-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246159
|
7.8 |
HIGH
Local
|
tcpdump
|
tcpdump
|
The command-line argument parser in tcpdump before 4.99.0 has a buffer overflow in tcpdump.c:read_infile(). To trigger this vulnerability the attacker needs to create a 4GB file on the local filesyst…
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-16301
|
2024-11-21 12:52 |
2019-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246160
|
7.5 |
HIGH
Network
|
tcpdump
|
tcpdump
|
The BGP parser in tcpdump before 4.9.3 allows stack consumption in print-bgp.c:bgp_attr_print() because of unlimited recursion.
|
CWE-674
Uncontrolled Recursion
|
CVE-2018-16300
|
2024-11-21 12:52 |
2019-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|