CSV
14,882 results for "vulnerability" Page 86
CVE-2018-1000226 CRITICAL

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Incorrect Access Control vulnerability in XMLRPC API (/cobbler_api) that can result in Privilege escalation, data manipulation or exfiltration, LDAP credential harvesting. This attack appear to be exploitable via "network connectivity". Taking advantage of improper validation of security tokens in API endpoints. Please note this is a different issue than CVE-2018-10931.

Aug 20, 2018 1 affected product(s) NVD
9.8
CVSS
12.5%
EPSS
⚡ 42.9
CVE-2018-3786 CRITICAL

A command injection vulnerability in egg-scripts <v2.8.1 allows arbitrary shell command execution through a maliciously crafted command line argument.

Aug 24, 2018 1 affected product(s) NVD
9.8
CVSS
12.3%
EPSS
⚡ 42.9
CVE-2018-12808 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20055 and earlier, 2017.011.30096 and earlier, and 2015.006.30434 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

Aug 29, 2018 6 affected product(s) NVD
9.8
CVSS
7.5%
EPSS
⚡ 41.5
CVE-2018-12825 CRITICAL

Adobe Flash Player 30.0.0.134 and earlier have a security bypass vulnerability. Successful exploitation could lead to security mitigation bypass.

Aug 29, 2018 7 affected product(s) NVD
9.8
CVSS
7.1%
EPSS
⚡ 41.3
CVE-2018-12828 CRITICAL

Adobe Flash Player 30.0.0.134 and earlier have a "use of a component with a known vulnerability" vulnerability. Successful exploitation could lead to privilege escalation.

Aug 29, 2018 7 affected product(s) NVD
9.8
CVSS
7.1%
EPSS
⚡ 41.3
CVE-2018-6692 CRITICAL

Stack-based Buffer Overflow vulnerability in libUPnPHndlr.so in Belkin Wemo Insight Smart Plug allows remote attackers to bypass local security protection via a crafted HTTP post packet.

Aug 21, 2018 1 affected product(s) NVD
10.0
CVSS
3.7%
EPSS
⚡ 41.1
CVE-2018-12810 CRITICAL

Adobe Photoshop CC 2018 before 19.1.6 and Photoshop CC 2017 before 18.1.6 have a memory corruption vulnerability. Successful exploitation could lead to remote code execution.

Aug 29, 2018 2 affected product(s) NVD
9.8
CVSS
6.5%
EPSS
⚡ 41.1
CVE-2018-12811 CRITICAL

Adobe Photoshop CC 2018 before 19.1.6 and Photoshop CC 2017 before 18.1.6 have a memory corruption vulnerability. Successful exploitation could lead to remote code execution.

Aug 29, 2018 2 affected product(s) NVD
9.8
CVSS
6.5%
EPSS
⚡ 41.1
CVE-2017-11563 CRITICAL

D-Link EyeOn Baby Monitor (DCS-825L) 1.08.1 has a remote code execution vulnerability. A UDP "Discover" service, which provides multiple functions such as changing the passwords and getting basic information, was installed on the device. A remote attacker can send a crafted UDP request to finderd to perform stack overflow and execute arbitrary code with root privilege on the device.

Aug 24, 2018 1 affected product(s) NVD
9.8
CVSS
5.2%
EPSS
⚡ 40.8
CVE-2018-12829 CRITICAL

Adobe Creative Cloud Desktop Application before 4.6.1 has an improper certificate validation vulnerability. Successful exploitation could lead to privilege escalation.

Aug 29, 2018 1 affected product(s) NVD
9.8
CVSS
5.1%
EPSS
⚡ 40.7
CVE-2018-3856 CRITICAL

An exploitable vulnerability exists in the smart cameras RTSP configuration of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The device incorrectly handles spaces in the URL field, leading to an arbitrary operating system command injection. An attacker can send a series of HTTP requests to trigger this vulnerability.

Aug 23, 2018 1 affected product(s) NVD
9.9
CVSS
3.4%
EPSS
⚡ 40.6
CVE-2018-14805 CRITICAL

ABB eSOMS version 6.0.2 may allow unauthorized access to the system when LDAP is set to allow anonymous authentication, and specific key values within the eSOMS web.config file are present. Both conditions are required to exploit this vulnerability.

Aug 29, 2018 1 affected product(s) NVD
9.8
CVSS
4.8%
EPSS
⚡ 40.6
CVE-2018-3907 CRITICAL

An exploitable vulnerability exists in the REST parser of video-core's HTTP server of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The video-core process incorrectly handles pipelined HTTP requests, which allows successive requests to overwrite the previously parsed HTTP method, 'on_url' callback. An attacker can send an HTTP request to trigger this vulnerability.

Aug 24, 2018 1 affected product(s) NVD
10.0
CVSS
1.4%
EPSS
⚡ 40.4
CVE-2018-16367 CRITICAL

In OnlineJudge 2.0, the sandbox has an incorrect access control vulnerability that can write a file anywhere. A user can write a directory listing to /tmp, and can leak file data with a #include.

Sep 2, 2018 1 affected product(s) NVD
9.9
CVSS
2.2%
EPSS
⚡ 40.3
CVE-2018-3867 CRITICAL

An exploitable stack-based buffer overflow vulnerability exists in the samsungWifiScan callback notification of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process incorrectly handles the answer received from a smart camera, leading to a buffer overflow on the stack. An attacker can send a series of HTTP requests to trigger this vulnerability.

Aug 23, 2018 1 affected product(s) NVD
9.9
CVSS
2.0%
EPSS
⚡ 40.2
CVE-2018-16518 CRITICAL

A directory traversal vulnerability with remote code execution in Prim'X Zed! FREE through 1.0 build 186 and Zed! Limited Edition through 6.1 build 2208 allows creation of arbitrary files on a user's workstation using crafted ZED! containers because the watermark loading function can place an executable file into a Startup folder.

Sep 5, 2018 2 affected product(s) NVD
9.8
CVSS
3.2%
EPSS
⚡ 40.2
CVE-2018-3863 CRITICAL

On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability. A strcpy overflows the destination buffer, which has a size of 40 bytes. An attacker can send an arbitrarily long "user" value in order to exploit this vulnerability.

Aug 23, 2018 1 affected product(s) NVD
9.9
CVSS
1.7%
EPSS
⚡ 40.1
CVE-2018-3878 CRITICAL

Multiple exploitable buffer overflow vulnerabilities exist in the credentials handler of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. A strncpy overflows the destination buffer, which has a size of 16 bytes. An attacker can send an arbitrarily long "region" value in order to exploit this vulnerability.

Aug 23, 2018 1 affected product(s) NVD
9.9
CVSS
1.5%
EPSS
⚡ 40.1
CVE-2018-3902 CRITICAL

An exploitable buffer overflow vulnerability exists in the camera "replace" feature of video-core's HTTP server of Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17. The video-core process incorrectly extracts the URL field from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability.

Aug 23, 2018 1 affected product(s) NVD
9.9
CVSS
1.8%
EPSS
⚡ 40.1
CVE-2018-3903 CRITICAL

On Samsung SmartThings Hub STH-ETH-250 devices with firmware version 0.20.17, the video-core process incorrectly extracts fields from a user-controlled JSON payload, leading to a buffer overflow on the stack. An attacker can send an HTTP request to trigger this vulnerability. The memcpy call overflows the destination buffer, which has a size of 512 bytes. An attacker can send an arbitrarily long "url" value in order to overwrite the saved-PC with 0x42424242.

Aug 23, 2018 1 affected product(s) NVD
9.9
CVSS
1.8%
EPSS
⚡ 40.1