|
251581
|
7.5 |
HIGH
Network
|
auroradao
|
idex_membership
|
The Owned smart contract implementation for Aurora IDEX Membership (IDXM), an Ethereum ERC20 token, allows attackers to acquire contract ownership because the setOwner function is declared as public.…
|
NVD-CWE-noinfo
|
CVE-2018-10666
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251582
|
9.8 |
CRITICAL
Network
|
long_range_zip_project
|
long_range_zip
|
In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote attackers to cause a denial of service (application crash) or possi…
|
CWE-416
Use After Free
|
CVE-2018-10685
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251583
|
9.8 |
CRITICAL
Network
|
watchguard
|
ap200_firmware ap102_firmware ap100_firmware ap300_firmware
|
An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15, and AP300 devices with firmware before 2.0.0.10. Incorrect validation of the "old password" field …
|
CWE-20
Improper Input Validation
|
CVE-2018-10578
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251584
|
8.8 |
HIGH
Network
|
watchguard
|
ap200_firmware ap102_firmware ap100_firmware ap300_firmware
|
An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15, and AP300 devices with firmware before 2.0.0.10. File upload functionality allows any users authen…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2018-10577
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251585
|
6.1 |
MEDIUM
Network
|
flexense
|
disksorter
|
XSS exists in Flexense DiskSorter Enterprise from v9.5.12 to v10.7.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10568
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251586
|
6.1 |
MEDIUM
Network
|
flexense
|
vx_search
|
XSS exists in Flexense VX Search Enterprise from v10.1.12 to v10.7.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10567
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251587
|
6.1 |
MEDIUM
Network
|
flexense
|
dupscout
|
XSS exists in Flexense DupScout Enterprise from v10.0.18 to v10.7.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10566
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251588
|
6.1 |
MEDIUM
Network
|
flexense
|
disksavvy
|
XSS exists in Flexense DiskSavvy Enterprise from v10.4 to v10.7.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10565
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251589
|
6.1 |
MEDIUM
Network
|
flexense
|
diskpulse
|
XSS exists in Flexense DiskPulse Enterprise from v10.4 to v10.7.
|
CWE-79
Cross-site Scripting
|
CVE-2018-10564
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251590
|
6.1 |
MEDIUM
Network
|
flexense
|
syncbreeze
|
An XSS in Flexense SyncBreeze affects all versions (tested from SyncBreeze Enterprise from v10.1 to v10.7).
|
CWE-79
Cross-site Scripting
|
CVE-2018-10563
|
2024-11-21 12:41 |
2018-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|