National Vulnerability Database

Subscribe to National Vulnerability Database feed
This feed contains the most recent CVE cyber vulnerabilities published within the National Vulnerability Database.
Updated: 15 hours 35 min ago

CVE-2018-11536

Tue, 05/29/2018 - 03:29
md4c before 0.2.5 has a heap-based buffer overflow because md_split_simple_pairing_mark mishandles splits.
Categories: Security News

CVE-2018-10732

Mon, 05/28/2018 - 13:29
The REST API in Dataiku DSS before 4.2.3 allows remote attackers to obtain sensitive information (i.e., determine if a username is valid) because of profile pictures visibility.
Categories: Security News

CVE-2018-11309

Mon, 05/28/2018 - 12:29
Blind SQL injection in coupon_code in the MemberMouse plugin 2.2.8 and prior for WordPress allows an unauthenticated attacker to dump the WordPress MySQL database via an applyCoupon action in an admin-ajax.php request.
Categories: Security News

CVE-2018-11430

Mon, 05/28/2018 - 12:29
An issue was discovered in the Moderator Log Notes plugin 1.1 for MyBB. It allows moderators to save notes and display them in a list in the modCP. The XSS is located in the mod notes textarea.
Categories: Security News

CVE-2018-11516

Mon, 05/28/2018 - 12:29
The vlc_demux_chained_Delete function in input/demux_chained.c in VideoLAN VLC media player 3.0.1 allows remote attackers to cause a denial of service (heap corruption and application crash) or possibly have unspecified other impact via a crafted .swf file.
Categories: Security News

CVE-2018-11517

Mon, 05/28/2018 - 12:29
mySCADA myPRO 7 allows remote attackers to discover all ProjectIDs in a project by sending all of the prj parameter values from 870000 to 875000 in t=0&rq=0 requests to TCP port 11010.
Categories: Security News

CVE-2018-11514

Mon, 05/28/2018 - 10:29
PHP Scripts Mall Naukri Clone Script through 3.0.3 allows Unrestricted Upload of a File with a Dangerous Type in edit_resume_det.php, as demonstrated by changing .docx to .php.
Categories: Security News

CVE-2018-11515

Mon, 05/28/2018 - 10:29
The wpForo plugin through 2018-02-05 for WordPress has SQL Injection via a search with the /forum/ wpfo parameter.
Categories: Security News

CVE-2018-11508

Mon, 05/28/2018 - 09:29
The compat_get_timex function in kernel/compat.c in the Linux kernel before 4.16.9 allows local users to obtain sensitive information from kernel memory via adjtimex.
Categories: Security News

CVE-2018-11512

Mon, 05/28/2018 - 09:29
Stored cross-site scripting (XSS) vulnerability in the "Website's name" field found in the "Settings" page under the "General" menu in Creatiwity wityCMS 0.6.1 allows remote attackers to inject arbitrary web script or HTML via a crafted website name by doing an authenticated POST HTTP request to admin/settings/general.
Categories: Security News

CVE-2018-11506

Mon, 05/28/2018 - 00:29
The sr_do_ioctl function in drivers/scsi/sr_ioctl.c in the Linux kernel through 4.16.12 allows local users to cause a denial of service (stack-based buffer overflow) or possibly have unspecified other impact because sense buffers have different sizes at the CDROM layer and the SCSI layer.
Categories: Security News

CVE-2018-11507

Mon, 05/28/2018 - 00:29
An issue was discovered in Free Lossless Image Format (FLIF) 0.3. An attacker can trigger a long loop in image_load_pnm in image/image-pnm.cpp.
Categories: Security News

CVE-2018-11505

Sat, 05/26/2018 - 18:29
The Werewolf Online application 0.8.8 for Android allows attackers to discover the Firebase token by reading logcat output.
Categories: Security News

CVE-2018-6409

Sat, 05/26/2018 - 18:29
An issue was discovered in Appnitro MachForm before 4.2.3. The module in charge of serving stored files gets the path from the database. Modifying the name of the file to serve on the corresponding ap_form table leads to a path traversal vulnerability via the download.php q parameter.
Categories: Security News

CVE-2018-6410

Sat, 05/26/2018 - 18:29
An issue was discovered in Appnitro MachForm before 4.2.3. There is a download.php SQL injection via the q parameter.
Categories: Security News

CVE-2018-6411

Sat, 05/26/2018 - 18:29
An issue was discovered in Appnitro MachForm before 4.2.3. When the form is set to filter a blacklist, it automatically adds dangerous extensions to the filters. If the filter is set to a whitelist, the dangerous extensions can be bypassed through ap_form_elements SQL Injection.
Categories: Security News

CVE-2018-11500

Sat, 05/26/2018 - 17:29
An issue was discovered in PublicCMS V4.0.20180210. There is a CSRF vulnerability in "admin/sysUser/save.do?callbackType=closeCurrent&navTabId=sysUser/list" that can add an admin account.
Categories: Security News

CVE-2018-11501

Sat, 05/26/2018 - 17:29
PHP Scripts Mall Website Seller Script 2.0.3 has CSRF via user_submit.php?upd=2.
Categories: Security News

CVE-2018-11503

Sat, 05/26/2018 - 17:29
The isfootnote function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.
Categories: Security News

CVE-2018-11504

Sat, 05/26/2018 - 17:29
The islist function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.
Categories: Security News

Pages