CSV
14,739 results for "vulnerability" Page 75
CVE-2018-5159 CRITICAL

An integer overflow can occur in the Skia library due to 32-bit integer use in an array without integer overflow checks, resulting in possible out-of-bounds writes. This could lead to a potentially exploitable crash triggerable by web content. This vulnerability affects Thunderbird < 52.8, Thunderbird ESR < 52.8, Firefox < 60, and Firefox ESR < 52.8.

Jun 11, 2018 21 affected product(s) NVD
9.8
CVSS
21.0%
EPSS
⚡ 45.5
CVE-2015-4664 CRITICAL

An improper input validation vulnerability in CA Privileged Access Manager 2.4.4.4 and earlier allows remote attackers to execute arbitrary commands.

Jun 18, 2018 3 affected product(s) NVD
9.8
CVSS
20.8%
EPSS
⚡ 45.4
CVE-2018-9022 CRITICAL

An authentication bypass vulnerability in CA Privileged Access Manager 2.8.2 and earlier allows remote attackers to execute arbitrary code or commands by poisoning a configuration file.

Jun 18, 2018 1 affected product(s) NVD
9.8
CVSS
20.4%
EPSS
⚡ 45.3
CVE-2018-9021 CRITICAL

An authentication bypass vulnerability in CA Privileged Access Manager 2.8.2 and earlier allows remote attackers to execute arbitrary commands with specially crafted requests.

Jun 18, 2018 1 affected product(s) NVD
9.8
CVSS
19.4%
EPSS
⚡ 45
CVE-2018-12292 CRITICAL

A use-after-free vulnerability exists in DOMProxyHandler::EnsureExpandoObject in Pale Moon before 27.9.3.

Jun 13, 2018 1 affected product(s) NVD
9.8
CVSS
9.2%
EPSS
⚡ 42
CVE-2018-6968 CRITICAL

The VMware AirWatch Agent for Android prior to 8.2 and AirWatch Agent for Windows Mobile prior to 6.5.2 contain a remote code execution vulnerability in real time File Manager capabilities. This vulnerability may allow for unauthorized creation and execution of files in the Agent sandbox and other publicly accessible directories such as those on the SD card by a malicious administrator.

Jun 11, 2018 2 affected product(s) NVD
10.0
CVSS
5.0%
EPSS
⚡ 41.5
CVE-2017-7828 CRITICAL

A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been freed while still in use. This results in a potentially exploitable crash during these operations. This vulnerability affects Firefox < 57, Firefox ESR < 52.5, and Thunderbird < 52.5.

Jun 11, 2018 15 affected product(s) NVD
9.8
CVSS
7.3%
EPSS
⚡ 41.4
CVE-2018-5097 CRITICAL

A use-after-free vulnerability can occur during XSL transformations when the source document for the transformation is manipulated by script content during the transformation. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

Jun 11, 2018 18 affected product(s) NVD
9.8
CVSS
7.2%
EPSS
⚡ 41.4
CVE-2018-5104 CRITICAL

A use-after-free vulnerability can occur during font face manipulation when a font face is freed while still in use, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

Jun 11, 2018 18 affected product(s) NVD
9.8
CVSS
7.2%
EPSS
⚡ 41.4
CVE-2018-5102 CRITICAL

A use-after-free vulnerability can occur when manipulating HTML media elements with media streams, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

Jun 11, 2018 18 affected product(s) NVD
9.8
CVSS
7.1%
EPSS
⚡ 41.3
CVE-2018-10969 CRITICAL

SQL injection vulnerability in the Pie Register plugin before 3.0.10 for WordPress allows remote attackers to execute arbitrary SQL commands via the invitation codes grid.

Jun 17, 2018 1 affected product(s) NVD
9.8
CVSS
5.3%
EPSS
⚡ 40.8
CVE-2018-5095 CRITICAL

An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 8 GB of RAM. This results in the use of uninitialized memory, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

Jun 11, 2018 21 affected product(s) NVD
9.8
CVSS
4.2%
EPSS
⚡ 40.5
CVE-2018-5089 CRITICAL

Memory safety bugs were reported in Firefox 57 and Firefox ESR 52.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

Jun 11, 2018 15 affected product(s) NVD
9.8
CVSS
3.3%
EPSS
⚡ 40.2
CVE-2018-5091 CRITICAL

A use-after-free vulnerability can occur during WebRTC connections when interacting with the DTMF timers. This results in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52.6 and Firefox < 58.

Jun 11, 2018 21 affected product(s) NVD
9.8
CVSS
3.4%
EPSS
⚡ 40.2
CVE-2018-5154 CRITICAL

A use-after-free vulnerability can occur while enumerating attributes during SVG animations with clip paths. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.8, Thunderbird ESR < 52.8, Firefox < 60, and Firefox ESR < 52.8.

Jun 11, 2018 21 affected product(s) NVD
9.8
CVSS
3.3%
EPSS
⚡ 40.2
CVE-2018-5155 CRITICAL

A use-after-free vulnerability can occur while adjusting layout during SVG animations with text paths. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.8, Thunderbird ESR < 52.8, Firefox < 60, and Firefox ESR < 52.8.

Jun 11, 2018 21 affected product(s) NVD
9.8
CVSS
3.4%
EPSS
⚡ 40.2
CVE-2018-5096 CRITICAL

A use-after-free vulnerability can occur while editing events in form elements on a page, resulting in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52.6 and Thunderbird < 52.6.

Jun 11, 2018 16 affected product(s) NVD
9.8
CVSS
3.0%
EPSS
⚡ 40.1
CVE-2018-5098 CRITICAL

A use-after-free vulnerability can occur when form input elements, focus, and selections are manipulated by script content. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

Jun 11, 2018 18 affected product(s) NVD
9.8
CVSS
3.1%
EPSS
⚡ 40.1
CVE-2018-5099 CRITICAL

A use-after-free vulnerability can occur when the widget listener is holding strong references to browser objects that have previously been freed, resulting in a potentially exploitable crash when these references are used. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

Jun 11, 2018 18 affected product(s) NVD
9.8
CVSS
3.0%
EPSS
⚡ 40.1
CVE-2018-5103 CRITICAL

A use-after-free vulnerability can occur during mouse event handling due to issues with multiprocess support. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.

Jun 11, 2018 18 affected product(s) NVD
9.8
CVSS
3.0%
EPSS
⚡ 40.1