Export limit exceeded: 11235 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (11235 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2019-0608 | 1 Microsoft | 10 Edge, Internet Explorer, Windows 10 and 7 more | 2024-11-21 | 4.3 Medium |
| A spoofing vulnerability exists when Microsoft Browsers does not properly parse HTTP content, aka 'Microsoft Browser Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1357. | ||||
| CVE-2019-0283 | 1 Sap | 1 Netweaver Process Integration | 2024-11-21 | N/A |
| SAP NetWeaver Process Integration (Adapter Engine), fixed in versions 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50; is vulnerable to Digital Signature Spoofing. It is possible to spoof XML signatures and send arbitrary requests to the server via PI Axis adapter. These requests will be accepted by the PI Axis adapter even if the payload has been altered, especially when the signed element is the body of the xml document. | ||||
| CVE-2019-0279 | 1 Sap | 1 Business Application Software Integrated Solution | 2024-11-21 | N/A |
| ABAP BASIS function modules INST_CREATE_R3_RFC_DEST, INST_CREATE_TCPIP_RFCDEST, and INST_CREATE_TCPIP_RFC_DEST in SAP BASIS (fixed in versions 7.0 to 7.02, 7.10 to 7.30, 7.31, 7.40, 7.50 to 7.53) do not perform necessary authorization checks in all circumstances for an authenticated user, resulting in escalation of privileges. | ||||
| CVE-2019-0278 | 1 Sap | 1 Netweaver Process Integration | 2024-11-21 | N/A |
| Under certain conditions the Monitoring Servlet of the SAP NetWeaver Process Integration (Messaging System), fixed in versions 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows an attacker to see the names of database tables used by the application, leading to information disclosure. | ||||
| CVE-2019-0216 | 1 Apache | 1 Airflow | 2024-11-21 | N/A |
| A malicious admin user could edit the state of objects in the Airflow metadata database to execute arbitrary javascript on certain page views. | ||||
| CVE-2018-9568 | 4 Canonical, Google, Linux and 1 more | 16 Ubuntu Linux, Android, Linux Kernel and 13 more | 2024-11-21 | 7.8 High |
| In sk_clone_lock of sock.c, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-113509306. References: Upstream kernel. | ||||
| CVE-2018-9020 | 1 Pixelite | 1 Events Manager | 2024-11-21 | N/A |
| The Events Manager plugin before 5.8.1.2 for WordPress allows XSS via the events-manager.js mapTitle parameter in the Google Maps miniature. | ||||
| CVE-2018-9018 | 2 Debian, Graphicsmagick | 2 Debian Linux, Graphicsmagick | 2024-11-21 | N/A |
| In GraphicsMagick 1.3.28, there is a divide-by-zero in the ReadMNGImage function of coders/png.c. Remote attackers could leverage this vulnerability to cause a crash and denial of service via a crafted mng file. | ||||
| CVE-2018-9017 | 1 Dsmall Project | 1 Dsmall | 2024-11-21 | N/A |
| dsmall v20180320 allows XSS via the member search box at the public/index.php/home/membersnsfriend/findlist.html URI. | ||||
| CVE-2018-9016 | 1 Dsmall Project | 1 Dsmall | 2024-11-21 | N/A |
| dsmall v20180320 allows XSS via the main page search box at the public/index.php/home URI. | ||||
| CVE-2018-9015 | 1 Dsmall Project | 1 Dsmall | 2024-11-21 | N/A |
| dsmall v20180320 allows XSS via the public/index.php/home/predeposit/index.html pdr_sn parameter (aka the CMS search box). | ||||
| CVE-2018-9014 | 1 Dsmall Project | 1 Dsmall | 2024-11-21 | N/A |
| dsmall v20180320 allows physical path leakage via a public/index.php/home/predeposit/index.html?pdr_sn= request. | ||||
| CVE-2018-9009 | 2 Debian, Libming | 2 Debian Linux, Libming | 2024-11-21 | N/A |
| In libming 0.4.8, there is a use-after-free in the decompileJUMP function of the decompile.c file. | ||||
| CVE-2018-9007 | 1 Iobit | 1 Advanced Systemcare Ultimate | 2024-11-21 | N/A |
| In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_x86.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c4060c4. | ||||
| CVE-2018-9006 | 1 Iobit | 1 Advanced Systemcare Ultimate | 2024-11-21 | N/A |
| In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402004. | ||||
| CVE-2018-9005 | 1 Iobit | 1 Advanced Systemcare Ultimate | 2024-11-21 | N/A |
| In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c4060d0. | ||||
| CVE-2018-9004 | 1 Iobit | 1 Advanced Systemcare Ultimate | 2024-11-21 | N/A |
| In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_x86.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c4060d0. | ||||
| CVE-2018-9003 | 1 Iobit | 1 Advanced Systemcare Ultimate | 2024-11-21 | N/A |
| In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_x86.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402000. | ||||
| CVE-2018-9002 | 1 Iobit | 1 Advanced Systemcare Ultimate | 2024-11-21 | N/A |
| In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c4060cc. | ||||
| CVE-2018-9001 | 1 Iobit | 1 Advanced Systemcare Ultimate | 2024-11-21 | N/A |
| In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402000. | ||||