|
246791
|
6.5 |
MEDIUM
Network
|
nucleuscms
|
nucleus_cms
|
Nucleus CMS 3.70 allows HTML Injection via the index.php body parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2018-16636
|
2024-11-21 12:53 |
2018-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246792
|
5.4 |
MEDIUM
Network
|
blackcat-cms
|
blackcat_cms
|
Blackcat CMS 1.3.2 allows XSS via the willkommen.php?lang=DE page title at backend/pages/modify.php.
|
CWE-79
Cross-site Scripting
|
CVE-2018-16635
|
2024-11-21 12:53 |
2018-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246793
|
4.8 |
MEDIUM
Network
|
theforeman
|
foreman
|
A cross-site scripting (XSS) flaw was found in the foreman component of satellite. An attacker with privilege to create entries using the Hosts, Monitor, Infrastructure, or Administer Menus is able t…
|
CWE-79
Cross-site Scripting
|
CVE-2018-16861
|
2024-11-21 12:53 |
2018-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246794
|
5.9 |
MEDIUM
Network
|
amazon
|
amazon_web_services_freertos freertos
|
An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. Out of bounds access…
|
CWE-200
Information Exposure
|
CVE-2018-16603
|
2024-11-21 12:53 |
2018-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246795
|
5.9 |
MEDIUM
Network
|
amazon
|
amazon_web_services_freertos freertos
|
An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. Out of bounds memory…
|
CWE-200
Information Exposure
|
CVE-2018-16602
|
2024-11-21 12:53 |
2018-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246796
|
8.1 |
HIGH
Network
|
amazon
|
amazon_web_services_freertos freertos
|
An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. A crafted IP header …
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2018-16601
|
2024-11-21 12:53 |
2018-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246797
|
5.9 |
MEDIUM
Network
|
amazon
|
amazon_web_services_freertos freertos
|
An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. Out of bounds memory…
|
CWE-200
Information Exposure
|
CVE-2018-16600
|
2024-11-21 12:53 |
2018-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246798
|
5.9 |
MEDIUM
Network
|
amazon
|
amazon_web_services_freertos freertos
|
An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. Out of bounds memory…
|
CWE-200
Information Exposure
|
CVE-2018-16599
|
2024-11-21 12:53 |
2018-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246799
|
5.9 |
MEDIUM
Network
|
amazon
|
amazon_web_services_freertos freertos
|
An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. In xProcessReceivedU…
|
CWE-441
Confused Deputy
|
CVE-2018-16598
|
2024-11-21 12:53 |
2018-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246800
|
9.1 |
CRITICAL
Network
|
solarwinds
|
sftp\/scp_server
|
SolarWinds SFTP/SCP server through 2018-09-10 is vulnerable to XXE via a world readable and writable configuration file that allows an attacker to exfiltrate data.
|
CWE-611
XXE
|
CVE-2018-16792
|
2024-11-21 12:53 |
2018-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|