Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In April 2018
Etherpad 1.5.x and 1.6.x before 1.6.4 allows an attacker to export all the existing pads of an instance without knowledge of pad names.
CVSS Score
7.5
EPSS Score
0.003
Published
2018-04-07
Etherpad 1.6.3 before 1.6.4 allows an attacker to execute arbitrary code.
CVSS Score
9.8
EPSS Score
0.011
Published
2018-04-07
Etherpad 1.5.x and 1.6.x before 1.6.4 allows an attacker to execute arbitrary code on the server. The instance has to be configured to use a document database (DirtyDB, CouchDB, MongoDB, or RethinkDB).
CVSS Score
8.1
EPSS Score
0.011
Published
2018-04-07
In Roundcube from versions 1.2.0 to 1.3.5, with the archive plugin enabled and configured, it's possible to exploit the unsanitized, user-controlled "_uid" parameter (in an archive.php _task=mail&_mbox=INBOX&_action=plugin.move2archive request) to perform an MX (IMAP) injection attack by placing an IMAP command after a %0d%0a sequence. NOTE: this is less easily exploitable in 1.3.4 and later because of a Same Origin Policy protection mechanism.
CVSS Score
8.8
EPSS Score
0.005
Published
2018-04-07
In Gxlcms QY v1.0.0713, the update function in Lib\Lib\Action\Admin\TplAction.class.php allows remote attackers to execute arbitrary PHP code by placing this code into a template.
CVSS Score
9.8
EPSS Score
0.01
Published
2018-04-07
In Gxlcms QY v1.0.0713, the upload function in Lib\Lib\Action\Admin\UploadAction.class.php allows remote attackers to execute arbitrary PHP code by first using an Admin-Admin-Configsave request to change the config[upload_class] value from jpg,gif,png,jpeg to jpg,gif,png,jpeg,php and then making an Admin-Upload-Upload request.
CVSS Score
9.8
EPSS Score
0.01
Published
2018-04-07
register.jsp in Coremail XT3.0 allows stored XSS, as demonstrated by the third form field to a URI under register/, a different vulnerability than CVE-2015-6942.
CVSS Score
5.4
EPSS Score
0.002
Published
2018-04-07
The export function in libavfilter/vf_signature.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out-of-array access) or possibly have unspecified other impact via a long filename.
CVSS Score
8.8
EPSS Score
0.006
Published
2018-04-07
The Iptanus WordPress File Upload plugin before 4.3.4 for WordPress mishandles Settings attributes, leading to XSS.
CVSS Score
6.1
EPSS Score
0.05
Published
2018-04-07
An issue was discovered in zzcms 8.2. user/adv.php allows remote attackers to delete arbitrary files via directory traversal sequences in the oldimg parameter. This can be leveraged for database access by deleting install.lock.
CVSS Score
7.5
EPSS Score
0.008
Published
2018-04-07


Contact Us

Shodan ® - All rights reserved