Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-05 CVE-2016-10725 Cryptographic Issues vulnerability in Bitcoin Core
In Bitcoin Core before v0.13.0, a non-final alert is able to block the special "final alert" (which is supposed to override all other alerts) because operations occur in the wrong order.
network
low complexity
bitcoin CWE-310
7.5
2018-07-05 CVE-2016-10724 Resource Exhaustion vulnerability in Bitcoin Core
Bitcoin Core before v0.13.0 allows denial of service (memory exhaustion) triggered by the remote network alert system (deprecated since Q1 2016) if an attacker can sign a message with a certain private key that had been known by unintended actors, because of an infinitely sized map.
network
low complexity
bitcoin CWE-400
7.5
2018-07-05 CVE-2018-13031 Cross-Site Request Forgery (CSRF) vulnerability in Damicms 6.0.0
DamiCMS v6.0.0 aand 6.1.0 allows CSRF via admin.php?s=/Admin/doadd to add an administrator account.
network
low complexity
damicms CWE-352
8.8
2018-07-05 CVE-2018-12739 Cross-Site Request Forgery (CSRF) vulnerability in Beescms 4.0
In BEESCMS 4.0, CSRF allows administrators to be added arbitrarily, a related issue to CVE-2018-10266.
network
low complexity
beescms CWE-352
8.8
2018-07-05 CVE-2018-12520 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Ntop Ntopng 3.4
An issue was discovered in ntopng 3.4 before 3.4.180617.
network
high complexity
ntop CWE-335
8.1
2018-07-05 CVE-2018-10988 Improper Verification of Cryptographic Signature vulnerability in Diqee Diqee360 Firmware
An issue was discovered on Diqee Diqee360 devices.
local
low complexity
diqee CWE-347
7.8
2018-07-05 CVE-2018-10987 OS Command Injection vulnerability in Diqee Diqee360 Firmware
An issue was discovered on Dongguan Diqee Diqee360 devices.
network
high complexity
diqee CWE-78
7.5
2018-07-05 CVE-2018-13328 Integer Overflow or Wraparound vulnerability in PFG Project PFG
The transfer, transferFrom, and mint functions of a smart contract implementation for PFGc, an Ethereum token, have an integer overflow.
network
low complexity
pfg-project CWE-190
7.5
2018-07-05 CVE-2018-13327 Integer Overflow or Wraparound vulnerability in Chucunlingaigo Project Chucunlingaigo
The transfer and transferFrom functions of a smart contract implementation for ChuCunLingAIGO (CCLAG), an Ethereum token, have an integer overflow.
network
low complexity
chucunlingaigo-project CWE-190
7.5
2018-07-05 CVE-2018-13326 Integer Overflow or Wraparound vulnerability in Bittelux Project Bittelux
The transfer and transferFrom functions of a smart contract implementation for Bittelux (BTX), an Ethereum token, have an integer overflow.
network
low complexity
bittelux-project CWE-190
7.5