Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-06-13 CVE-2018-10403 Improper Certificate Validation vulnerability in F-Secure Xfence
An issue was discovered in F-Secure XFENCE and Little Flocker.
local
low complexity
f-secure CWE-295
7.8
2018-06-13 CVE-2018-10363 Improper Input Validation vulnerability in Wpdevart Booking Calendar 2.2.2
An issue was discovered in the WpDevArt "Booking calendar, Appointment Booking System" plugin 2.2.2 for WordPress.
network
low complexity
wpdevart CWE-20
7.5
2018-06-13 CVE-2017-11672 Unquoted Search Path or Element vulnerability in Opcfoundation Local Discovery Server 1.03.355
The OPC Foundation Local Discovery Server (LDS) before 1.03.367 is installed as a Windows Service without adding double quotes around the opcualds.exe executable path, which might allow local users to gain privileges.
local
low complexity
opcfoundation CWE-428
7.8
2018-06-13 CVE-2017-15695 Incorrect Authorization vulnerability in Apache Geode
When an Apache Geode server versions 1.0.0 to 1.4.0 is configured with a security manager, a user with DATA:WRITE privileges is allowed to deploy code by invoking an internal Geode function.
network
low complexity
apache CWE-863
8.8
2018-06-13 CVE-2018-7167 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nodejs Node.Js
Calling Buffer.fill() or Buffer.alloc() with some parameters can lead to a hang which could result in a Denial of Service.
network
low complexity
nodejs CWE-119
7.5
2018-06-13 CVE-2018-7164 Resource Exhaustion vulnerability in Nodejs Node.Js
Node.js versions 9.7.0 and later and 10.x are vulnerable and the severity is MEDIUM.
network
low complexity
nodejs CWE-400
7.5
2018-06-13 CVE-2018-7162 Improper Input Validation vulnerability in Nodejs Node.Js
All versions of Node.js 9.x and 10.x are vulnerable and the severity is HIGH.
network
low complexity
nodejs CWE-20
7.5
2018-06-13 CVE-2018-7161 Improper Input Validation vulnerability in Nodejs Node.Js
All versions of Node.js 8.x, 9.x, and 10.x are vulnerable and the severity is HIGH.
network
low complexity
nodejs CWE-20
7.5
2018-06-13 CVE-2018-12321 Out-of-bounds Read vulnerability in Radare Radare2 2.6.0
There is a heap out of bounds read in radare2 2.6.0 in java_switch_op() in libr/anal/p/anal_java.c via a crafted Java binary file.
local
low complexity
radare CWE-125
7.8
2018-06-13 CVE-2018-12320 Use After Free vulnerability in Radare Radare2 2.6.0
There is a use after free in radare2 2.6.0 in r_anal_bb_free() in libr/anal/bb.c via a crafted Java binary file.
local
low complexity
radare CWE-416
7.8