CVE-2018-3155
- EPSS 0.25%
- Veröffentlicht 17.10.2018 01:31:18
- Zuletzt bearbeitet 21.11.2024 04:05:18
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network a...
CVE-2018-3156
- EPSS 0.25%
- Veröffentlicht 17.10.2018 01:31:18
- Zuletzt bearbeitet 21.11.2024 04:05:18
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2018-3144
- EPSS 0.52%
- Veröffentlicht 17.10.2018 01:31:17
- Zuletzt bearbeitet 21.11.2024 04:05:15
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Audit). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Difficult to exploit vulnerability allows unauthenticated attacker wi...
CVE-2018-3145
- EPSS 0.42%
- Veröffentlicht 17.10.2018 01:31:17
- Zuletzt bearbeitet 21.11.2024 04:05:16
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple pr...
CVE-2018-3137
- EPSS 0.42%
- Veröffentlicht 17.10.2018 01:31:16
- Zuletzt bearbeitet 21.11.2024 04:05:14
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple...
CVE-2018-3143
- EPSS 0.25%
- Veröffentlicht 17.10.2018 01:31:16
- Zuletzt bearbeitet 21.11.2024 04:05:15
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2018-11763
- EPSS 17.4%
- Veröffentlicht 25.09.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:43:58
In Apache HTTP Server 2.4.17 to 2.4.34, by sending continuous, large SETTINGS frames a client can occupy a connection, server thread and CPU time without any connection timeout coming to effect. This affects only HTTP/2 connections. A possible mitiga...
CVE-2018-17082
- EPSS 17.77%
- Veröffentlicht 16.09.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:50
The Apache2 component in PHP before 5.6.38, 7.0.x before 7.0.32, 7.1.x before 7.1.22, and 7.2.x before 7.2.10 allows XSS via the body of a "Transfer-Encoding: chunked" request, because the bucket brigade is mishandled in the php_handler function in s...
CVE-2018-15132
- EPSS 4.26%
- Veröffentlicht 07.08.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:50:22
An issue was discovered in ext/standard/link_win32.c in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8. The linkinfo function on Windows doesn't implement the open_basedir check. This could be abused to find files...
CVE-2018-14883
- EPSS 20.29%
- Veröffentlicht 03.08.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:50:00
An issue was discovered in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8. An Integer Overflow leads to a heap-based buffer over-read in exif_thumbnail_extract of exif.c.