CSV
14,733 results for "vulnerability" Page 50
CVE-2018-3810 CRITICAL Exploit

Authentication Bypass vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackers to insert arbitrary JavaScript or HTML code (via the sgcgoogleanalytic parameter) that runs on all pages served by WordPress. The saveGoogleCode() function in smartgooglecode.php does not check if the current request is made by an authorized user, thus allowing any unauthenticated user to successfully update the inserted code.

Jan 1, 2018 1 affected product(s) NVD
9.8
CVSS
91.1%
EPSS
⚡ 76.5
CVE-2017-17411 CRITICAL Exploit

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Linksys WVBR0. Authentication is not required to exploit this vulnerability. The specific flaw exists within the web management portal. The issue lies in the lack of proper validation of user data before executing a system call. An attacker could leverage this vulnerability to execute code with root privileges. Was ZDI-CAN-4892.

Dec 21, 2017 1 affected product(s) NVD
9.8
CVSS
87.9%
EPSS
⚡ 75.6
CVE-2012-2576 CRITICAL

SQL injection vulnerability in the LoginServlet page in SolarWinds Storage Manager before 5.1.2, SolarWinds Storage Profiler before 5.1.2, and SolarWinds Backup Profiler before 5.1.2 allows remote attackers to execute arbitrary SQL commands via the loginName field.

Dec 20, 2017 3 affected product(s) NVD
9.8
CVSS
59.4%
EPSS
⚡ 57
CVE-2017-17932 CRITICAL

A buffer overflow vulnerability exists in MediaServer.exe in ALLPlayer ALLMediaServer 0.95 and earlier that could allow remote attackers to execute arbitrary code and/or cause denial of service on the victim machine/computer via a long string to TCP port 888.

Dec 28, 2017 1 affected product(s) NVD
9.8
CVSS
53.6%
EPSS
⚡ 55.3
CVE-2018-3811 CRITICAL

SQL Injection vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackers to execute SQL queries in the context of the web server. The saveGoogleAdWords() function in smartgooglecode.php did not use prepared statements and did not sanitize the $_POST["oId"] variable before passing it as input into the SQL query.

Jan 1, 2018 1 affected product(s) NVD
9.8
CVSS
42.0%
EPSS
⚡ 51.8
CVE-2017-17968 CRITICAL

A buffer overflow vulnerability in NetTransport.exe in NetTransport Download Manager 2.96L and earlier could allow remote HTTP servers to execute arbitrary code on NAS devices via a long HTTP response.

Dec 29, 2017 1 affected product(s) NVD
9.8
CVSS
39.6%
EPSS
⚡ 51.1
CVE-2017-3195 CRITICAL

Commvault Edge Communication Service (cvd) prior to version 11 SP7 or version 11 SP6 with hotfix 590 is prone to a stack-based buffer overflow vulnerability that could lead to arbitrary code execution with administrative privileges.

Dec 16, 2017 7 affected product(s) NVD
9.8
CVSS
21.4%
EPSS
⚡ 45.6
CVE-2017-17849 CRITICAL

A buffer overflow vulnerability in GetGo Download Manager 5.3.0.2712 and earlier could allow remote HTTP servers to execute arbitrary code on NAS devices via a long response.

Dec 27, 2017 1 affected product(s) NVD
9.8
CVSS
19.0%
EPSS
⚡ 44.9
CVE-2017-17672 CRITICAL

In vBulletin through 5.3.x, there is an unauthenticated deserialization vulnerability that leads to arbitrary file deletion and, under certain circumstances, code execution, because of unsafe usage of PHP's unserialize() in vB_Library_Template's cacheTemplates() function, which is a publicly exposed API. This is exploited with the templateidlist parameter to ajax/api/template/cacheTemplates.

Dec 14, 2017 3 affected product(s) NVD
9.8
CVSS
15.2%
EPSS
⚡ 43.8
CVE-2017-17106 CRITICAL

Credentials for Zivif PR115-204-P-RS V2.3.4.2103 Webcams can be obtained by an unauthenticated remote attacker using a standard web /cgi-bin/hi3510/param.cgi?cmd=getuser HTTP request. This vulnerability exists because of a lack of authentication checks in requests to CGI pages.

Dec 19, 2017 1 affected product(s) NVD
9.8
CVSS
15.3%
EPSS
⚡ 43.8
CVE-2017-16725 CRITICAL

A Stack-based Buffer Overflow issue was discovered in Xiongmai Technology IP Cameras and DVRs using the NetSurveillance Web interface. The stack-based buffer overflow vulnerability has been identified, which may allow an attacker to execute code remotely or crash the device. After rebooting, the device restores itself to a more vulnerable state in which Telnet is accessible.

Dec 20, 2017 139 affected product(s) NVD
9.8
CVSS
9.2%
EPSS
⚡ 42
CVE-2017-3114 CRITICAL

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the target buffer; the computation is part of providing language- and region- or country- specific functionality. The use of an invalid (out-of-range) pointer offset during access of internal data structure fields causes the vulnerability. A successful attack can lead to sensitive data exposure.

Dec 9, 2017 7 affected product(s) NVD
9.8
CVSS
6.2%
EPSS
⚡ 41.1
CVE-2017-11899 CRITICAL

Device Guard in Windows 10 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows a security feature bypass vulnerability due to the way untrusted files are handled, aka "Microsoft Windows Security Feature Bypass Vulnerability".

Dec 12, 2017 7 affected product(s) NVD
9.8
CVSS
5.8%
EPSS
⚡ 41
CVE-2017-3184 CRITICAL

ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC fail to properly restrict access to the factory reset page. An unauthenticated, remote attacker can exploit this vulnerability by directly accessing the http://x.x.x.x/setup/setup_maintain_firmware-default.html page. This will allow an attacker to perform a factory reset on the device, leading to a denial of service condition or the ability to make use of default credentials (CVE-2017-3186).

Dec 16, 2017 1 affected product(s) NVD
9.8
CVSS
5.9%
EPSS
⚡ 41
CVE-2017-17790 CRITICAL

The lazy_initialize function in lib/resolv.rb in Ruby through 2.4.3 uses Kernel#open, which might allow Command Injection attacks, as demonstrated by a Resolv::Hosts::new argument beginning with a '|' character, a different vulnerability than CVE-2017-17405. NOTE: situations with untrusted input may be highly unlikely.

Dec 20, 2017 4 affected product(s) NVD
9.8
CVSS
5.9%
EPSS
⚡ 41
CVE-2017-1000469 CRITICAL

Cobbler version up to 2.8.2 is vulnerable to a command injection vulnerability in the "add repo" component resulting in arbitrary code execution as root user.

Jan 3, 2018 1 affected product(s) NVD
9.8
CVSS
5.6%
EPSS
⚡ 40.9
CVE-2014-4972 CRITICAL

Unrestricted file upload vulnerability in the Gravity Upload Ajax plugin 1.1 and earlier for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file under wp-content/uploads/gravity_forms.

Jan 8, 2018 1 affected product(s) NVD
9.8
CVSS
4.7%
EPSS
⚡ 40.6
CVE-2017-17033 CRITICAL

A buffer overflow vulnerability in password function in QNAP QTS version 4.2.6 build 20171026, 4.3.3.0378 build 20171117, 4.3.4.0387 (Beta 2) build 20171116 and earlier could allow remote attackers to execute arbitrary code on NAS devices.

Dec 21, 2017 6 affected product(s) NVD
9.8
CVSS
4.4%
EPSS
⚡ 40.5
CVE-2017-17027 CRITICAL

A buffer overflow vulnerability in FTP service in QNAP QTS version 4.2.6 build 20171026, 4.3.3.0378 build 20171117, 4.3.4.0387 (Beta 2) build 20171116 and earlier could allow remote attackers to execute arbitrary code on NAS devices.

Dec 21, 2017 6 affected product(s) NVD
9.8
CVSS
3.3%
EPSS
⚡ 40.2
CVE-2017-17028 CRITICAL

A buffer overflow vulnerability in external device function in QNAP QTS version 4.2.6 build 20171026, 4.3.3.0378 build 20171117, 4.3.4.0387 (Beta 2) build 20171116 and earlier could allow remote attackers to execute arbitrary code on NAS devices.

Dec 21, 2017 6 affected product(s) NVD
9.8
CVSS
3.3%
EPSS
⚡ 40.2