Количество 24 658
Количество 24 658
CVE-2018-16865
CVE-2018-16864
CVE-2018-16548
CVE-2018-16395
CVE-2018-16301
CVE-2018-15688
CVE-2018-15687
CVE-2018-15686
CVE-2018-15664
Docker Elevation of Privilege Vulnerability
CVE-2018-14628
An information leak vulnerability was discovered in Samba's LDAP server. Due to missing access control checks, an authenticated but unprivileged attacker could discover the names and preserved attributes of deleted objects in the LDAP store.
CVE-2018-14348
CVE-2018-14042
In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
CVE-2018-14040
In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attributeIn Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute
CVE-2018-13420
Google gperftools 2.7 has a memory leak in malloc_extension.cc related to MallocExtension::Register and InitModule. NOTE: the software maintainer indicates that this is not a bug; it is only a false-positive report from the LeakSanitizer program
CVE-2018-13419
CVE-2018-13410
CVE-2018-13139
CVE-2018-1311
CVE-2018-12207
Windows Denial of Service Vulnerability
CVE-2018-12123
Node.js: All versions prior to Node.js 6.15.0 8.14.0 10.14.0 and 11.3.0: Hostname spoofing in URL parser for javascript protocol: If a Node.js application is using url.parse() to determine the URL hostname that hostname can be spoofed by using a mixed case "javascript:" (e.g. "javAscript:") protocol (other protocols are not affected). If security decisions are made about the URL based on the hostname they may be incorrect.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVSS3: 7.8 | 3% Низкий | почти 6 лет назад | ||
CVSS3: 7.8 | 1% Низкий | почти 6 лет назад | ||
CVSS3: 6.5 | 2% Низкий | больше 4 лет назад | ||
CVSS3: 9.8 | 11% Средний | почти 6 лет назад | ||
CVSS3: 7.8 | 1% Низкий | больше 4 лет назад | ||
CVSS3: 8.8 | 2% Низкий | почти 6 лет назад | ||
CVSS3: 7 | 1% Низкий | почти 6 лет назад | ||
CVSS3: 7.8 | 2% Низкий | почти 6 лет назад | ||
CVE-2018-15664 Docker Elevation of Privilege Vulnerability | 3% Низкий | около 7 лет назад | ||
CVE-2018-14628 An information leak vulnerability was discovered in Samba's LDAP server. Due to missing access control checks, an authenticated but unprivileged attacker could discover the names and preserved attributes of deleted objects in the LDAP store. | CVSS3: 4.3 | 1% Низкий | 10 месяцев назад | |
CVSS3: 8.1 | 2% Низкий | почти 6 лет назад | ||
CVE-2018-14042 In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip. | 4% Низкий | 11 месяцев назад | ||
CVE-2018-14040 In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attributeIn Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute | CVSS3: 6.1 | 4% Низкий | 11 месяцев назад | |
CVE-2018-13420 Google gperftools 2.7 has a memory leak in malloc_extension.cc related to MallocExtension::Register and InitModule. NOTE: the software maintainer indicates that this is not a bug; it is only a false-positive report from the LeakSanitizer program | CVSS3: 7.5 | 2% Низкий | почти 6 лет назад | |
CVSS3: 6.5 | 1% Низкий | больше 5 лет назад | ||
CVSS3: 9.8 | 4% Низкий | почти 6 лет назад | ||
CVSS3: 8.8 | 4% Низкий | больше 5 лет назад | ||
CVSS3: 8.1 | 10% Низкий | больше 4 лет назад | ||
CVE-2018-12207 Windows Denial of Service Vulnerability | CVSS3: 4.7 | 1% Низкий | больше 6 лет назад | |
CVE-2018-12123 Node.js: All versions prior to Node.js 6.15.0 8.14.0 10.14.0 and 11.3.0: Hostname spoofing in URL parser for javascript protocol: If a Node.js application is using url.parse() to determine the URL hostname that hostname can be spoofed by using a mixed case "javascript:" (e.g. "javAscript:") protocol (other protocols are not affected). If security decisions are made about the URL based on the hostname they may be incorrect. | CVSS3: 4.3 | 4% Низкий | около 5 лет назад |
Уязвимостей на страницу