4nuxd
_
Experience
Certifications
About
Writeups
News
Tools
Resources
Database
[Connect]
Vulnerability_Archives
CVE_
ARCHIVES
.DB
ARCHIVE_CHRONOLOGY.INDEX
STATUS: ONLINE
YEAR:
[2018]
Risk_Filter:
CRITICAL
HIGH
MEDIUM
LOW
Records:
18,154
Mode:
SECURE_QUERY
CVE-2018-6333
CRITICAL
The hhvm-attach deep link handler in Nuclide did not properly sanitize the provided hostname parameter when rendering. As a result, a malicious URL co
Discovered
Dec 31, 2018
CVE-2018-6331
CRITICAL
Buck parser-cache command loads/saves state using Java serialized object. If the state information is maliciously crafted, deserializing it could lead
Discovered
Dec 31, 2018
CVE-2018-6347
HIGH
An issue in the Proxygen handling of HTTP2 parsing of headers/trailers can lead to a denial-of-service attack. This affects Proxygen prior to v2018.12
Discovered
Dec 31, 2018
CVE-2018-6346
HIGH
A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 priority settings (specifically a circular dependency). This affects Pro
Discovered
Dec 31, 2018
CVE-2018-6344
HIGH
A heap corruption in WhatsApp can be caused by a malformed RTP packet being sent after a call is established. The vulnerability can be used to cause d
Discovered
Dec 31, 2018
CVE-2018-6343
HIGH
Proxygen fails to validate that a secondary auth manager is set before dereferencing it. That can cause a denial of service issue when parsing a Certi
Discovered
Dec 31, 2018
CVE-2018-6342
CRITICAL
react-dev-utils on Windows allows developers to run a local webserver for accepting various commands, including a command to launch an editor. The inp
Discovered
Dec 31, 2018
CVE-2018-6341
MEDIUM
React applications which rendered to HTML using the ReactDOMServer API were not escaping user-supplied attribute names at render-time. That lack of es
Discovered
Dec 31, 2018
CVE-2018-6340
HIGH
The Memcache::getextendedstats function can be used to trigger an out-of-bounds read. Exploiting this issue requires control over memcached server hos
Discovered
Dec 31, 2018
CVE-2018-6337
HIGH
folly::secureRandom will re-use a buffer between parent and child processes when fork() is called. That will result in multiple forked children produc
Discovered
Dec 31, 2018
CVE-2018-6336
HIGH
An issue was discovered in osquery. A maliciously crafted Universal/fat binary can evade third-party code signing checks. By not completing full inspe
Discovered
Dec 31, 2018
CVE-2018-6335
HIGH
A Malformed h2 frame can cause 'std::out_of_range' exception when parsing priority meta data. This behavior can lead to denial-of-service. This affect
Discovered
Dec 31, 2018
CVE-2018-6334
CRITICAL
Multipart-file uploads call variables to be improperly registered in the global scope. In cases where variables are not declared explicitly before bei
Discovered
Dec 31, 2018
CVE-2018-20623
MEDIUM
In GNU Binutils 2.31.1, there is a use-after-free in the error function in elfcomm.c when called from the process_archive function in readelf.c via a
Discovered
Dec 31, 2018
CVE-2018-20622
MEDIUM
JasPer 2.0.14 has a memory leak in base/jas_malloc.c in libjasper.a when "--output-format jp2" is used.
Discovered
Dec 31, 2018
CVE-2018-6668
MEDIUM
A whitelist bypass vulnerability in McAfee Application Control / Change Control 7.0.1 and before allows execution bypass, for example, with simple DLL
Discovered
Dec 31, 2018
CVE-2018-19937
MEDIUM
A local, authenticated attacker can bypass the passcode in the VideoLAN VLC media player app before 3.1.5 for iOS by opening a URL and turning the pho
Discovered
Dec 31, 2018
CVE-2018-18602
CRITICAL
The Cloud API on Guardzilla smart cameras allows user enumeration, with resultant arbitrary camera access and monitoring.
Discovered
Dec 31, 2018
CVE-2018-18601
HIGH
The TK_set_deviceModel_req_handle function in the cloud communication component in Guardzilla GZ621W devices with firmware 0.5.1.4 has a Buffer Overfl
Discovered
Dec 31, 2018
CVE-2018-18600
HIGH
The remote upgrade feature in Guardzilla GZ180 devices allow command injection via a crafted new firmware version parameter.
Discovered
Dec 31, 2018
1
2
3
...
Jump_To_Sector:
GO
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
2015
2014
2013
2012
2011
2010
2009
2008
2007
2006
2005
2004
2003
2002
2001
2000
1999
1998
1997
1996
1995
1994
1993
1992
1991
1990
1989
1988
2026 CVE Archives
2025 CVE Archives
2024 CVE Archives
2023 CVE Archives
2022 CVE Archives
2021 CVE Archives
2020 CVE Archives
2019 CVE Archives
2018 CVE Archives
2017 CVE Archives
2016 CVE Archives
2015 CVE Archives
2014 CVE Archives
2013 CVE Archives
2012 CVE Archives
2011 CVE Archives
2010 CVE Archives
2009 CVE Archives
2008 CVE Archives
2007 CVE Archives
2006 CVE Archives
2005 CVE Archives
2004 CVE Archives
2003 CVE Archives
2002 CVE Archives
2001 CVE Archives
2000 CVE Archives
1999 CVE Archives
1998 CVE Archives
1997 CVE Archives
1996 CVE Archives
1995 CVE Archives
1994 CVE Archives
1993 CVE Archives
1992 CVE Archives
1991 CVE Archives
1990 CVE Archives
1989 CVE Archives
1988 CVE Archives
CVE Database - Vulnerability Explorer