Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In August 2018
An issue was discovered in Joomla! before 3.8.12. Inadequate output filtering on the user profile page could lead to a stored XSS attack.
CVSS Score
5.4
EPSS Score
0.002
Published
2018-08-29
An issue was discovered in Joomla! before 3.8.12. Inadequate checks regarding disabled fields can lead to an ACL violation.
CVSS Score
7.5
EPSS Score
0.002
Published
2018-08-29
An issue was discovered in Joomla! before 3.8.12. Inadequate checks in the InputFilter class could allow specifically prepared phar files to pass the upload filter.
CVSS Score
9.8
EPSS Score
0.012
Published
2018-08-29
dwarf_getaranges in dwarf_getaranges.c in libdw in elfutils before 2018-08-18 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file.
CVSS Score
5.5
EPSS Score
0.001
Published
2018-08-29
PHP Scripts Mall Website Seller Script 2.0.5 has XSS via Personal Address or Company Name.
CVSS Score
5.4
EPSS Score
0.002
Published
2018-08-28
PHP Scripts Mall Website Seller Script 2.0.5 allows remote attackers to cause a denial of service via crafted JavaScript code in the First Name, Last Name, Company Name, or Fax field, as demonstrated by crossPwn.
CVSS Score
6.5
EPSS Score
0.005
Published
2018-08-28
A stack buffer overflow in NumberingSystem in International Components for Unicode (ICU) for C/C++ before 60.2, as used in V8 in Google Chrome prior to 62.0.3202.75 and other products, allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVSS Score
6.5
EPSS Score
0.02
Published
2018-08-28
A stack buffer overflow in the QUIC networking stack in Google Chrome prior to 62.0.3202.89 allowed a remote attacker to gain code execution via a malicious server.
CVSS Score
9.8
EPSS Score
0.101
Published
2018-08-28
A use after free in V8 in Google Chrome prior to 62.0.3202.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVSS Score
8.8
EPSS Score
0.312
Published
2018-08-28
A stack buffer overflow in V8 in Google Chrome prior to 62.0.3202.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
CVSS Score
8.8
EPSS Score
0.01
Published
2018-08-28


Contact Us

Shodan ® - All rights reserved