Total
1004 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2018-14703 | 1 Drobo | 2 5n2, 5n2 Firmware | 2019-10-02 | 5.0 MEDIUM | 9.8 CRITICAL |
Incorrect access control in the /mysql/api/droboapp/data endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to retrieve the MySQL database root password. | |||||
CVE-2018-14327 | 1 Ee | 2 Ee40vb, Ee40vb Firmware | 2019-10-02 | 9.3 HIGH | 7.8 HIGH |
The installer for the Alcatel OSPREY3_MINI Modem component on EE EE40VB 4G mobile broadband modems with firmware before EE40_00_02.00_45 sets weak permissions (Everyone:Full Control) for the "Web Connecton\EE40" and "Web Connecton\EE40\BackgroundService" directories, which allows local users to gain privileges, as demonstrated by inserting a Trojan horse ServiceManager.exe file into the "Web Connecton\EE40\BackgroundService" directory. | |||||
CVE-2018-14043 | 1 Monetra | 1 Mstdlib | 2019-10-02 | 7.5 HIGH | 9.8 CRITICAL |
mstdlib (aka the M Standard Library for C) 1.2.0 has incorrect file access control in situations where M_fs_perms_can_access attempts to delete an existing file (that lacks public read/write access) during a copy operation, related to fs/m_fs.c and fs/m_fs_path.c. An attacker could create the file and then would have access to the data. | |||||
CVE-2018-1417 | 1 Ibm | 1 Java Sdk | 2019-10-02 | 6.8 MEDIUM | 8.1 HIGH |
Under certain circumstances, a flaw in the J9 JVM (IBM SDK, Java Technology Edition 7.1 and 8.0) allows untrusted code running under a security manager to elevate its privileges. IBM X-Force ID: 138823. | |||||
CVE-2018-13791 | 1 Abbyy | 1 Flexicapture | 2019-10-02 | 7.5 HIGH | 9.8 CRITICAL |
The HTTP API in ABBYY FlexiCapture before 12 Release 1 Update 7 allows an attacker to conduct Access Control attacks via the /FlexiCapture12/Login/Server/SevaUserProfile FlexiCaptureTmsSts2 parameter. | |||||
CVE-2018-1354 | 1 Fortinet | 2 Fortianalyzer, Fortimanager | 2019-10-02 | 4.0 MEDIUM | 6.5 MEDIUM |
An improper access control vulnerability in Fortinet FortiManager 6.0.0, 5.6.5 and below versions, FortiAnalyzer 6.0.0, 5.6.5 and below versions allows a regular user edit the avatar picture of other users with arbitrary content. | |||||
CVE-2018-13399 | 1 Atlassian | 2 Crucible, Fisheye | 2019-10-02 | 4.6 MEDIUM | 7.8 HIGH |
The Microsoft Windows Installer for Atlassian Fisheye and Crucible before version 4.6.1 allows local attackers to escalate privileges because of weak permissions on the installation directory. | |||||
CVE-2018-13355 | 1 Terra-master | 1 Terramaster Operating System | 2019-10-02 | 4.0 MEDIUM | 6.5 MEDIUM |
Incorrect access controls in ajaxdata.php in TerraMaster TOS version 3.1.03 allow attackers to create user groups without proper authorization. | |||||
CVE-2018-13321 | 1 Buffalo | 2 Ts5600d1206, Ts5600d1206 Firmware | 2019-10-02 | 6.5 MEDIUM | 8.8 HIGH |
Incorrect access controls in nasapi in Buffalo TS5600D1206 version 3.61-0.10 allow attackers to call dangerous internal functions via the "method" parameter. | |||||
CVE-2018-16145 | 1 Opsview | 1 Opsview | 2019-10-02 | 9.3 HIGH | 8.1 HIGH |
The /etc/init.d/opsview-reporting-module script that runs at boot time in Opsview Monitor before 5.3.1 and 5.4.x before 5.4.2 invokes a file that can be edited by the nagios user, and would allow attackers to elevate their privileges to root after a system restart, hence obtaining full control of the appliance. | |||||
CVE-2018-1315 | 1 Apache | 1 Hive | 2019-10-02 | 4.3 MEDIUM | 3.7 LOW |
In Apache Hive 2.1.0 to 2.3.2, when 'COPY FROM FTP' statement is run using HPL/SQL extension to Hive, a compromised/malicious FTP server can cause the file to be written to an arbitrary location on the cluster where the command is run from. This is because FTP client code in HPL/SQL does not verify the destination location of the downloaded file. This does not affect hive cli user and hiveserver2 user as hplsql is a separate command line script and needs to be invoked differently. | |||||
CVE-2018-13110 | 1 Adbglobal | 8 Dv2210, Dv2210 Firmware, Prg Av4202n and 5 more | 2019-10-02 | 8.5 HIGH | 7.5 HIGH |
All ADB broadband gateways / routers based on the Epicentro platform are affected by a privilege escalation vulnerability where attackers can gain access to the command line interface (CLI) if previously disabled by the ISP, escalate their privileges, and perform further attacks. | |||||
CVE-2018-13025 | 1 Yxcms | 1 Yxcms | 2019-10-02 | 5.5 MEDIUM | 4.9 MEDIUM |
protected/apps/admin/controller/photoController.php in YXcms 1.4.7 allows remote attackers to delete arbitrary files via the index.php?r=admin/photo/delpic picname parameter. | |||||
CVE-2018-12642 | 1 Froxlor | 1 Froxlor | 2019-10-02 | 5.0 MEDIUM | 7.5 HIGH |
Froxlor through 0.9.39.5 has Incorrect Access Control for tickets not owned by the current user. | |||||
CVE-2018-12615 | 1 Phusion | 1 Passenger | 2019-10-02 | 5.0 MEDIUM | 5.3 MEDIUM |
An issue was discovered in switchGroup() in agent/ExecHelper/ExecHelperMain.cpp in Phusion Passenger before 5.3.2. The set of groups (gidset) is not set correctly, leaving it up to randomness (i.e., uninitialized memory) which supplementary groups are actually being set while lowering privileges. | |||||
CVE-2018-12457 | 1 Expresscart Project | 1 Expresscart | 2019-10-02 | 6.5 MEDIUM | 8.8 HIGH |
expressCart before 1.1.6 allows remote attackers to create an admin user via a /admin/setup Referer header. | |||||
CVE-2018-12396 | 4 Canonical, Debian, Mozilla and 1 more | 10 Ubuntu Linux, Debian Linux, Firefox and 7 more | 2019-10-02 | 4.3 MEDIUM | 6.5 MEDIUM |
A vulnerability where a WebExtension can run content scripts in disallowed contexts following navigation or other events. This allows for potential privilege escalation by the WebExtension on sites where content scripts should not be run. This vulnerability affects Firefox ESR < 60.3 and Firefox < 63. | |||||
CVE-2018-12335 | 1 Ecos | 1 System Management Appliance | 2019-10-02 | 4.1 MEDIUM | 7.3 HIGH |
Incorrect access control in ECOS System Management Appliance (aka SMA) 5.2.68 allows a user to compromise authentication keys, and access and manipulate security relevant configurations, via unrestricted database access during Easy Enrollment. | |||||
CVE-2018-1231 | 1 Pivotal Software | 1 Bosh Cli | 2019-10-02 | 6.5 MEDIUM | 8.8 HIGH |
Cloud Foundry BOSH CLI, versions prior to v3.0.1, contains an improper access control vulnerability. A user with access to an instance using the BOSH CLI can access the BOSH CLI configuration file and use its contents to perform authenticated requests to BOSH. | |||||
CVE-2018-12296 | 1 Seagate | 1 Nas Os | 2019-10-02 | 5.0 MEDIUM | 7.5 HIGH |
Insufficient access control in /api/external/7.0/system.System.get_infos in Seagate NAS OS version 4.3.15.1 allows attackers to obtain information about the NAS without authentication via empty POST requests. |