16,510 vulnerabilities published in 2018
An issue was discovered in Icinga 2.x through 2.8.1. By editing the init.conf file, Icinga 2 can be run as root. Followi
zsh before 5.0.7 allows evaluation of the initial values of integer variables imported from the environment (instead of
An uninitialised stack variable in the nxfuse component that is part of the Open Source DokanFS library shipped with NoM
A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager w
The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts runnin
An issue was discovered in CImg v.220. DoS occurs when loading a crafted bmp image that triggers an allocation failure i
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted
An issue was discovered in CImg v.220. A double free in load_bmp in CImg.h occurs when loading a crafted bmp image.
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted
An issue was discovered in CImg v.220. A heap-based buffer over-read in load_bmp in CImg.h occurs when loading a crafted
The display_debug_ranges function in dwarf.c in GNU Binutils 2.30 allows remote attackers to cause a denial of service (
SafeNet Authentication Service End User Software Tools for Windows uses a weak ACL for unspecified installation director
SafeNet Authentication Service IIS Agent uses a weak ACL for unspecified installation directories and executable modules
SafeNet Authentication Service TokenValidator Proxy Agent uses a weak ACL for unspecified installation directories and e
SafeNet Authentication Service Remote Web Workplace Agent uses a weak ACL for unspecified installation directories and e
SafeNet Authentication Service for Outlook Web App Agent uses a weak ACL for unspecified installation directories and ex
SafeNet Authentication Service for AD FS Agent uses a weak ACL for unspecified installation directories and executable m
SafeNet Authentication Service for NPS Agent uses a weak ACL for unspecified installation directories and executable mod
SafeNet Authentication Service Windows Logon Agent uses a weak ACL for unspecified installation directories and executab
SafeNet Authentication Service Windows Logon Agent uses a weak ACL for unspecified installation directories and executab
SafeNet Authentication Service for Citrix Web Interface Agent uses a weak ACL for unspecified installation directories a
In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of serv
NVIDIA Tegra kernel driver contains a vulnerability in NVMAP where an attacker has the ability to write an arbitrary val
GPAC MP4Box version 0.7.1 and earlier contains a Buffer Overflow vulnerability in src/isomedia/avc_ext.c lines 2417 to 2
In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands
GPAC through 0.7.1 has a Buffer Overflow in the gf_media_avc_read_sps function in media_tools/av_parsers.c, a different
In the Linux kernel before 4.12, Hisilicon Network Subsystem (HNS) does not consider the ETH_SS_PRIV_FLAGS case when ret
An issue was discovered in EMC RSA Identity Governance and Lifecycle versions 7.0.1, 7.0.2, all patch levels (hardware a
Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to log in as user "sddm" without authentication.
Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to gain root privileges because code running as r
A vulnerability allows local attackers to escalate privilege on Rapid Scada 5.5.0 because of weak C:\SCADA permissions.
gui2/viewer/bookmarkmanager.py in Calibre 3.18 calls cPickle.load on imported bookmark data, which allows remote attacke
Buffer overflow in Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary code via a
Untrusted search path vulnerability in Jtrim 1.53c and earlier (Installer) allows an attacker to gain privileges via a T
Untrusted search path vulnerability in WinShot 1.53a and earlier (Installer) allows an attacker to gain privileges via a
Huawei DP300 V500R002C00 have a buffer overflow vulnerability due to the lack of validation. An authenticated local atta
GPU driver in Huawei Mate 10 smart phones with the versions before ALP-L09 8.0.0.120(C212); The versions before ALP-L09
Huawei Mate 9 Pro smartphones with software LON-AL00BC00B139D; LON-AL00BC00B229 have an integer overflow vulnerability.
In PoDoFo 0.9.5, there exists a heap-based buffer over-read vulnerability in UnescapeName() in PdfName.cpp. Remote attac
\ProgramData\WebLog Expert\WebServer\WebServer.cfg in WebLog Expert Web Server Enterprise 9.4 has weak permissions (BUIL
Touchscreen drive in Huawei H60 (Honor 6) Versions earlier than H60-L02_6.12.16 and P9 Plus Versions earlier than VIE-AL
A DLL hijacking vulnerability exists in Schneider Electric's SoMove Software and associated DTM software components in a
The Gentoo net-im/jabberd2 package through 2.6.1 installs jabberd, jabberd2-c2s, jabberd2-router, jabberd2-s2s, and jabb
NVIDIA libnvomx contains a possible out of bounds write due to a improper input validation which could lead to local esc
NVIDIA libnvomx contains a possible out of bounds write due to a missing bounds check which could lead to local escalati
Dell EMC Data Protection Advisor versions prior to 6.3 Patch 159 and Dell EMC Data Protection Advisor versions prior to
Unquoted Windows search path vulnerability in the srvInventoryWebServer service in 10-Strike Network Monitor 5.4 allows
Scan for 2018 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started