|
247041
|
4.8 |
MEDIUM
Network
|
hoosk
|
hoosk
|
Hoosk v1.7.0 allows XSS via the Navigation Title of a new page entered at admin/pages/new.
|
CWE-79
Cross-site Scripting
|
CVE-2018-16772
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247042
|
9.8 |
CRITICAL
Network
|
hoosk
|
hoosk
|
Hoosk v1.7.0 allows PHP code execution via a SiteUrl that is provided during installation and mishandled in config.php.
|
CWE-94
Code Injection
|
CVE-2018-16771
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247043
|
8.8 |
HIGH
Network
|
webassembly_virtual_machine_project
|
webassembly_virtual_machine
|
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because a certain new_al…
|
NVD-CWE-noinfo
|
CVE-2018-16770
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247044
|
8.8 |
HIGH
Network
|
webassembly_virtual_machine_project
|
webassembly_virtual_machine
|
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because libRuntime.so!ll…
|
NVD-CWE-noinfo
|
CVE-2018-16769
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247045
|
8.8 |
HIGH
Network
|
webassembly_virtual_machine_project
|
webassembly_virtual_machine
|
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because of an unspecifie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-16768
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247046
|
8.8 |
HIGH
Network
|
webassembly_virtual_machine_project
|
webassembly_virtual_machine
|
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because of an unspecifie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-16767
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247047
|
8.8 |
HIGH
Network
|
webassembly_virtual_machine_project
|
webassembly_virtual_machine
|
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because Errors::unreacha…
|
CWE-670
Always-Incorrect Control Flow Implementation
|
CVE-2018-16766
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247048
|
8.8 |
HIGH
Network
|
webassembly_virtual_machine_project
|
webassembly_virtual_machine
|
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because of an unspecifie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-16765
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247049
|
8.8 |
HIGH
Network
|
webassembly_virtual_machine_project
|
webassembly_virtual_machine
|
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because of an IR::Functi…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-16764
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247050
|
9.8 |
CRITICAL
Network
|
thedaylightstudio
|
fuel_cms
|
FUEL CMS 1.4.1 allows PHP Code Evaluation via the pages/select/ filter parameter or the preview/ data parameter. This can lead to Pre-Auth Remote Code Execution.
|
CWE-74
Injection
|
CVE-2018-16763
|
2024-11-21 12:53 |
2018-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|