Show filters
699 Total Results
Displaying 321-330 of 699
Sort by:
Attacker Value
Unknown
CVE-2018-17570
Disclosure Date: September 26, 2018 (last updated November 27, 2024)
utils/ut_ws_svr.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.
0
Attacker Value
Unknown
CVE-2018-17568
Disclosure Date: September 26, 2018 (last updated November 27, 2024)
utils/ut_rpc.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.
0
Attacker Value
Unknown
CVE-2018-17100
Disclosure Date: September 16, 2018 (last updated November 27, 2024)
An issue was discovered in LibTIFF 4.0.9. There is a int32 overflow in multiply_ms in tools/ppm2tiff.c, which can cause a denial of service (crash) or possibly have unspecified other impact via a crafted image file.
0
Attacker Value
Unknown
CVE-2018-17101
Disclosure Date: September 16, 2018 (last updated November 27, 2024)
An issue was discovered in LibTIFF 4.0.9. There are two out-of-bounds writes in cpTags in tools/tiff2bw.c and tools/pal2rgb.c, which can cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image file.
0
Attacker Value
Unknown
CVE-2018-17000
Disclosure Date: September 13, 2018 (last updated November 27, 2024)
A NULL pointer dereference in the function _TIFFmemcmp at tif_unix.c (called from TIFFWriteDirectoryTagTransferfunction) in LibTIFF 4.0.9 allows an attacker to cause a denial-of-service through a crafted tiff file. This vulnerability can be triggered by the executable tiffcp.
0
Attacker Value
Unknown
CVE-2018-15677
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
The newsfeed (aka /index.php?page=viewnews) in BTITeam XBTIT 2.5.4 has stored XSS via the title of a news item. This is also exploitable via CSRF.
0
Attacker Value
Unknown
CVE-2018-15683
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT. The "returnto" parameter of the login page is vulnerable to an open redirect due to a lack of validation. If a user is already logged in when accessing the page, they will be instantly redirected.
0
Attacker Value
Unknown
CVE-2018-15679
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT 2.5.4. The "keywords" parameter in the search function available at /index.php?page=forums&action=search is vulnerable to reflected cross-site scripting.
0
Attacker Value
Unknown
CVE-2018-15678
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT 2.5.4. The "act" parameter in the sign-up page available at /index.php?page=signup is vulnerable to reflected cross-site scripting.
0
Attacker Value
Unknown
CVE-2018-15682
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT. Due to a lack of cross-site request forgery protection, it is possible to automate the action of sending private messages to users by luring an authenticated user to a web page that automatically submits a form on their behalf.
0