Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-10 CVE-2018-10943 Improper Input Validation vulnerability in Barco products
An issue was discovered on Barco ClickShare CSE-200 and CS-100 Base Units with firmware before 1.6.0.3.
network
low complexity
barco CWE-20
7.5
2018-07-10 CVE-2018-1128 Improper Authentication vulnerability in multiple products
It was found that cephx authentication protocol did not verify ceph clients correctly and was vulnerable to replay attack.
high complexity
redhat debian opensuse CWE-287
7.5
2018-07-10 CVE-2018-10887 Incorrect Conversion between Numeric Types vulnerability in multiple products
A flaw was found in libgit2 before version 0.27.3.
network
low complexity
libgit2 debian CWE-681
8.1
2018-07-10 CVE-2018-10861 Improper Authentication vulnerability in multiple products
A flaw was found in the way ceph mon handles user requests.
network
low complexity
ceph redhat opensuse debian CWE-287
8.1
2018-07-10 CVE-2018-12230 Integer Underflow (Wrap or Wraparound) vulnerability in Remicoin Project Remicoin
An wrong logical check identified in the transferFrom function of a smart contract implementation for RemiCoin (RMC), an Ethereum ERC20 token, allows the attacker to steal tokens or conduct resultant integer underflow attacks.
network
low complexity
remicoin-project CWE-191
7.5
2018-07-10 CVE-2016-10726 Path Traversal vulnerability in Duraspace Dspace
The XMLUI feature in DSpace before 3.6, 4.x before 4.5, and 5.x before 5.5 allows directory traversal via the themes/ path in an attack with two or more arbitrary characters and a colon before a pathname, as demonstrated by a themes/Reference/aa:etc/passwd URI.
network
low complexity
duraspace CWE-22
7.5
2018-07-09 CVE-2018-13795 Improper Input Validation vulnerability in Creolabs Gravity
Gravity before 0.5.1 does not support a maximum recursion depth.
network
low complexity
creolabs CWE-20
7.5
2018-07-09 CVE-2018-13793 Cross-Site Request Forgery (CSRF) vulnerability in Abbyy Flexicapture
Multiple Cross Site Request Forgery (CSRF) vulnerabilities in the HTTP API in ABBYY FlexiCapture before 12 Release 1 Update 7 exist in Web Verification, Web Scanning, Web Capture, Monitoring and Administration, and Login.
network
low complexity
abbyy CWE-352
8.8
2018-07-09 CVE-2018-6967 Out-of-bounds Read vulnerability in VMWare Esxi, Fusion and Workstation
VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator.
network
low complexity
vmware CWE-125
8.1
2018-07-09 CVE-2018-6966 Out-of-bounds Read vulnerability in VMWare Esxi, Fusion and Workstation
VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator.
network
low complexity
vmware CWE-125
8.1