Show filters
137 Total Results
Displaying 81-90 of 137
Sort by:
Attacker Value
Unknown
CVE-2018-16261
Disclosure Date: September 06, 2018 (last updated November 27, 2024)
In Pulse Secure Pulse Desktop Client 5.3RX before 5.3R5 and 9.0R1, there is a Privilege Escalation Vulnerability with Dynamic Certificate Trust.
0
Attacker Value
Unknown
CVE-2018-16513
Disclosure Date: September 05, 2018 (last updated November 08, 2023)
In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the setcolor function to crash the interpreter or possibly have unspecified other impact.
0
Attacker Value
Unknown
CVE-2018-15911
Disclosure Date: August 28, 2018 (last updated November 08, 2023)
In Artifex Ghostscript 9.23 before 2018-08-24, attackers able to supply crafted PostScript could use uninitialized memory access in the aesdecode operator to crash the interpreter or potentially execute code.
0
Attacker Value
Unknown
CVE-2018-15910
Disclosure Date: August 27, 2018 (last updated November 08, 2023)
In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the LockDistillerParams parameter to crash the interpreter or execute code.
0
Attacker Value
Unknown
CVE-2018-15909
Disclosure Date: August 27, 2018 (last updated November 08, 2023)
In Artifex Ghostscript 9.23 before 2018-08-24, a type confusion using the .shfill operator could be used by attackers able to supply crafted PostScript files to crash the interpreter or potentially execute code.
0
Attacker Value
Unknown
CVE-2018-10613
Disclosure Date: June 04, 2018 (last updated November 26, 2024)
Multiple variants of XML External Entity (XXE) attacks may be used to exfiltrate data from the host Windows platform in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior.
0
Attacker Value
Unknown
CVE-2018-10615
Disclosure Date: June 04, 2018 (last updated November 26, 2024)
Directory traversal may lead to files being exfiltrated or deleted on the GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior host platform.
0
Attacker Value
Unknown
CVE-2018-10611
Disclosure Date: June 04, 2018 (last updated November 26, 2024)
Java remote method invocation (RMI) input port in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior may be exploited to allow unauthenticated users to launch applications and support remote code execution through web services.
0
Attacker Value
Unknown
CVE-2018-9849
Disclosure Date: May 10, 2018 (last updated November 26, 2024)
Pulse Secure Pulse Connect Secure 8.1.x before 8.1R14, 8.2.x before 8.2R11, and 8.3.x before 8.3R5 do not properly process nested XML entities, which allows remote attackers to cause a denial of service (memory consumption and memory errors) via a crafted XML document.
0
Attacker Value
Unknown
CVE-2018-10564
Disclosure Date: May 02, 2018 (last updated November 26, 2024)
XSS exists in Flexense DiskPulse Enterprise from v10.4 to v10.7.
0