CVE-2018-2612
- EPSS 0.28%
- Veröffentlicht 18.01.2018 02:29:19
- Zuletzt bearbeitet 21.11.2024 04:04:02
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.38 and prior and 5.7.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access v...
CVE-2018-2618
- EPSS 0.16%
- Veröffentlicht 18.01.2018 02:29:19
- Zuletzt bearbeitet 21.11.2024 04:04:03
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JCE). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit...
CVE-2018-2579
- EPSS 0.11%
- Veröffentlicht 18.01.2018 02:29:18
- Zuletzt bearbeitet 21.11.2024 04:03:58
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to e...
CVE-2018-2582
- EPSS 0.16%
- Veröffentlicht 18.01.2018 02:29:18
- Zuletzt bearbeitet 21.11.2024 04:03:58
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 8u152 and 9.0.1; Java SE Embedded: 8u151. Easily exploitable vulnerability allows unauthenticated at...
CVE-2018-2588
- EPSS 0.48%
- Veröffentlicht 18.01.2018 02:29:18
- Zuletzt bearbeitet 21.11.2024 04:03:59
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: LDAP). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Easily exploitable ...
CVE-2018-2562
- EPSS 0.78%
- Veröffentlicht 18.01.2018 02:29:17
- Zuletzt bearbeitet 21.11.2024 04:03:56
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Partition). Supported versions that are affected are 5.5.58 and prior, 5.6.38 and prior and 5.7.19 and prior. Easily exploitable vulnerability allows low privileged a...
CVE-2018-5764
- EPSS 9.76%
- Veröffentlicht 17.01.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:09:21
The parse_arguments function in options.c in rsyncd in rsync before 3.1.3 does not prevent multiple --protect-args uses, which allows remote attackers to bypass an argument-sanitization protection mechanism.
CVE-2018-5747
- EPSS 0.24%
- Veröffentlicht 17.01.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 04:09:18
In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ucompthread function (stream.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted lrz file.
CVE-2018-5704
- EPSS 1.89%
- Veröffentlicht 16.01.2018 09:29:00
- Zuletzt bearbeitet 21.11.2024 04:09:12
Open On-Chip Debugger (OpenOCD) 0.10.0 does not block attempts to use HTTP POST for sending data to 127.0.0.1 port 4444, which allows remote attackers to conduct cross-protocol scripting attacks, and consequently execute arbitrary commands, via a cra...
CVE-2018-5711
- EPSS 10.27%
- Veröffentlicht 16.01.2018 09:29:00
- Zuletzt bearbeitet 21.11.2024 04:09:13
gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1, has an integer signedness error that leads to an infinite loop via a crafted GIF file, as demonstrated...