|
246971
|
7.8 |
HIGH
Local
|
asus
|
zenfone_v_live_firmware zenfone_3_max_firmware
|
The ASUS Zenfone V Live Android device with a build fingerprint of asus/VZW_ASUS_A009/ASUS_A009:7.1.1/NMF26F/14.0610.1802.78-20180313:user/release-keys and the Asus ZenFone 3 Max Android device with …
|
NVD-CWE-noinfo
|
CVE-2018-14993
|
2024-11-21 12:50 |
2019-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246972
|
9.8 |
CRITICAL
Network
|
coolpad t-mobile
|
defiant_firmware revvl_plus_firmware zte_zmax_pro_firmware
|
The Coolpad Defiant device with a build fingerprint of Coolpad/cp3632a/cp3632a:7.1.1/NMF26F/099480857:user/release-keys, the ZTE ZMAX Pro with a build fingerprint of ZTE/P895T20/urd:6.0.1/MMB29M/2017…
|
CWE-20
Improper Input Validation
|
CVE-2018-14991
|
2024-11-21 12:50 |
2019-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246973
|
7.5 |
HIGH
Network
|
coolpad t-mobile
|
defiant_firmware revvl_plus_firmware zte_zmax_pro_firmware
|
The Coolpad Defiant device with a build fingerprint of Coolpad/cp3632a/cp3632a:7.1.1/NMF26F/099480857:user/release-keys, the ZTE ZMAX Pro with a build fingerprint of ZTE/P895T20/urd:6.0.1/MMB29M/2017…
|
CWE-20
Improper Input Validation
|
CVE-2018-14990
|
2024-11-21 12:50 |
2019-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246974
|
7.5 |
HIGH
Network
|
plum-mobile
|
compass_firmware
|
The Plum Compass Android device with a build fingerprint of PLUM/c179_hwf_221/c179_hwf_221:6.0/MRA58K/W16.51.5-22:user/release-keys contains a pre-installed platform app with a package name of com.an…
|
CWE-20
Improper Input Validation
|
CVE-2018-14989
|
2024-11-21 12:50 |
2019-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246975
|
5.5 |
MEDIUM
Local
|
sony
|
xperia_l1_firmware
|
The Sony Xperia L1 Android device with a build fingerprint of Sony/G3313/G3313:7.0/43.0.A.6.49/2867558199:user/release-keys contains the android framework (i.e., system_server) with a package name of…
|
CWE-20
Improper Input Validation
|
CVE-2018-14983
|
2024-11-21 12:50 |
2019-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246976
|
7.1 |
HIGH
Local
|
asus
|
zenfone_3_max_firmware
|
The ASUS ZenFone 3 Max Android device with a build fingerprint of asus/US_Phone/ASUS_X008_1:7.0/NRD90M/US_Phone-14.14.1711.92-20171208:user/release-keys contains the android framework (i.e., system_s…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-14980
|
2024-11-21 12:50 |
2019-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246977
|
7.8 |
HIGH
Local
|
cyberark
|
endpoint_privilege_manager
|
CyberArk Endpoint Privilege Manager 10.2.1.603 and earlier allows an attacker (who is able to edit permissions of a file) to bypass intended access restrictions and execute blocked applications.
|
CWE-269
Improper Privilege Management
|
CVE-2018-14894
|
2024-11-21 12:50 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246978
|
6.1 |
MEDIUM
Network
|
qasymphony
|
qtest_manager
|
qTest Portal in QASymphony qTest Manager 9.0.0 has an Open Redirect via the /portal/loginform redirect parameter.
|
CWE-601
Open Redirect
|
CVE-2018-15180
|
2024-11-21 12:50 |
2019-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246979
|
7.5 |
HIGH
Network
|
five9
|
agent_desktop_plus
|
Five9 Agent Desktop Plus 10.0.70 has Incorrect Access Control allowing a remote attackers to cause a denial of service via opening a connection on port 8083 to a device running the Five9 SoftPhone(is…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-15508
|
2024-11-21 12:50 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246980
|
8.1 |
HIGH
Network
|
ysoft
|
safeq_server_client
|
YSoft SafeQ Server 6 allows a replay attack.
|
CWE-294
Authentication Bypass by Capture-replay
|
CVE-2018-15498
|
2024-11-21 12:50 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|