Show filters
699 Total Results
Displaying 331-340 of 699
Sort by:
Attacker Value
Unknown
CVE-2018-15676
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT. By using String.replace and eval, it is possible to bypass the includes/crk_protection.php anti-XSS mechanism that looks for a number of dangerous fingerprints.
0
Attacker Value
Unknown
CVE-2018-16361
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT 2.5.4. news.php allows XSS via the id parameter.
0
Attacker Value
Unknown
CVE-2018-15681
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT 2.5.4. When a user logs in, their password hash is rehashed using a predictable salt and stored in the "pass" cookie, which is not flagged as HTTPOnly. Due to the weak and predictable salt that is in place, an attacker who successfully steals this cookie can efficiently brute-force it to retrieve the user's cleartext password.
0
Attacker Value
Unknown
CVE-2018-15680
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT 2.5.4. The hashed passwords stored in the xbtit_users table are stored as unsalted MD5 hashes, which makes it easier for context-dependent attackers to obtain cleartext values via a brute-force attack.
0
Attacker Value
Unknown
CVE-2018-15684
Disclosure Date: September 05, 2018 (last updated November 27, 2024)
An issue was discovered in BTITeam XBTIT. PHP error logs are stored in an open directory (/include/logs) using predictable file names, which can lead to full path disclosure and leakage of sensitive data.
0
Attacker Value
Unknown
CVE-2018-16362
Disclosure Date: September 02, 2018 (last updated November 27, 2024)
An issue was discovered in the Source Integration plugin before 1.5.9 and 2.x before 2.1.5 for MantisBT. A cross-site scripting (XSS) vulnerability in the Manage Repository and Changesets List pages allows execution of arbitrary code (if CSP settings permit it) via repo_manage_page.php or list.php.
0
Attacker Value
Unknown
CVE-2018-16335
Disclosure Date: September 02, 2018 (last updated November 27, 2024)
newoffsets handling in ChopUpSingleUncompressedStrip in tif_dirread.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted TIFF file, as demonstrated by tiff2pdf. This is a different vulnerability than CVE-2018-15209.
0
Attacker Value
Unknown
CVE-2018-14621
Disclosure Date: August 30, 2018 (last updated November 08, 2023)
An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file descriptors would cause the server to enter an infinite loop, consuming a large amount of CPU time and denying service to other clients until restarted.
0
Attacker Value
Unknown
CVE-2018-14622
Disclosure Date: August 30, 2018 (last updated November 08, 2023)
A null-pointer dereference vulnerability was found in libtirpc before version 0.3.3-rc3. The return value of makefd_xprt() was not checked in all instances, which could lead to a crash when the server exhausted the maximum number of available file descriptors. A remote attacker could cause an rpc-based application to crash by flooding it with new connections.
0
Attacker Value
Unknown
CVE-2018-14722
Disclosure Date: August 15, 2018 (last updated November 27, 2024)
An issue was discovered in evaluate_auto_mountpoint in btrfsmaintenance-functions in btrfsmaintenance through 0.4.1. Code execution as root can occur via a specially crafted filesystem label if btrfs-{scrub,balance,trim} are set to auto in /etc/sysconfig/btrfsmaintenance (this is not the default, though).
0