Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-10 CVE-2018-13844 Memory Leak vulnerability in Htslib 1.8
An issue has been found in HTSlib 1.8.
network
low complexity
htslib CWE-401
7.5
2018-07-10 CVE-2018-13843 Missing Release of Resource after Effective Lifetime vulnerability in Htslib 1.8
An issue has been found in HTSlib 1.8.
network
low complexity
htslib CWE-772
7.5
2018-07-10 CVE-2018-12461 Improper Certificate Validation vulnerability in Netiq Edirectory 9.1.1
Fixed issues with NetIQ eDirectory prior to 9.1.1 when checking certificate revocation.
network
low complexity
netiq CWE-295
7.5
2018-07-10 CVE-2018-10891 Unspecified vulnerability in Moodle
A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13.
network
low complexity
moodle
7.3
2018-07-10 CVE-2018-1331 Unspecified vulnerability in Apache Storm
In Apache Storm 0.10.0 through 0.10.2, 1.0.0 through 1.0.6, 1.1.0 through 1.1.2, and 1.2.0 through 1.2.1, an attacker with access to a secure storm cluster in some cases could execute arbitrary code as a different user.
network
low complexity
apache
8.8
2018-07-10 CVE-2018-1566 Use of Externally-Controlled Format String vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow a local user to execute arbitrary code due to a format string error.
local
low complexity
ibm CWE-134
7.8
2018-07-10 CVE-2018-1487 Untrusted Search Path vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5 and 11.1 binaries load shared libraries from an untrusted path potentially giving low privilege users full access to the DB2 instance account by loading a malicious shared library.
local
low complexity
ibm CWE-426
7.8
2018-07-10 CVE-2018-1458 Untrusted Search Path vulnerability in IBM DB2
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10,1, 10.5 and 11.1 could allow a local user to execute arbitrary code and conduct DLL hijacking attacks.
local
low complexity
ibm CWE-426
7.8
2018-07-10 CVE-2018-13833 Out-of-bounds Write vulnerability in Cmft Project Cmft 20170924
An issue was discovered in cmft through 2017-09-24.
local
low complexity
cmft-project CWE-787
7.8
2018-07-10 CVE-2018-10943 Improper Input Validation vulnerability in Barco products
An issue was discovered on Barco ClickShare CSE-200 and CS-100 Base Units with firmware before 1.6.0.3.
network
low complexity
barco CWE-20
7.5