Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-02-27 CVE-2018-7549 Improper Input Validation vulnerability in multiple products
In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.
network
low complexity
zsh redhat canonical CWE-20
7.5
2018-02-27 CVE-2017-18205 NULL Pointer Dereference vulnerability in ZSH Project ZSH
In builtin.c in zsh before 5.4, when sh compatibility mode is used, there is a NULL pointer dereference during processing of the cd command with no argument if HOME is not set.
network
high complexity
zsh-project CWE-476
8.1
2018-02-27 CVE-2014-10070 Permissions, Privileges, and Access Controls vulnerability in ZSH Project ZSH
zsh before 5.0.7 allows evaluation of the initial values of integer variables imported from the environment (instead of treating them as literal numbers).
local
low complexity
zsh-project CWE-264
7.8
2018-02-27 CVE-2018-7467 Path Traversal vulnerability in Axxonsoft Next
AxxonSoft Axxon Next has Directory Traversal via an initial /css//..%2f substring in a URI.
network
low complexity
axxonsoft CWE-22
7.5
2018-02-27 CVE-2017-7671 Improper Input Validation vulnerability in multiple products
There is a DOS attack vulnerability in Apache Traffic Server (ATS) 5.2.0 to 5.3.2, 6.0.0 to 6.2.0, and 7.0.0 with the TLS handshake.
network
low complexity
apache debian CWE-20
7.5
2018-02-27 CVE-2017-5660 Improper Input Validation vulnerability in multiple products
There is a vulnerability in Apache Traffic Server (ATS) 6.2.0 and prior and 7.0.0 and prior with the Host header and line folding.
network
low complexity
apache debian CWE-20
8.6
2018-02-27 CVE-2018-7541 An issue was discovered in Xen through 4.10.x allowing guest OS users to cause a denial of service (hypervisor crash) or gain privileges by triggering a grant-table transition from v2 to v1.
local
low complexity
xen debian
8.8
2018-02-27 CVE-2018-6535 Unspecified vulnerability in Icinga
An issue was discovered in Icinga 2.x through 2.8.1.
network
high complexity
icinga
8.1
2018-02-27 CVE-2018-6533 Unspecified vulnerability in Icinga
An issue was discovered in Icinga 2.x through 2.8.1.
local
low complexity
icinga
7.8
2018-02-27 CVE-2018-6532 Resource Exhaustion vulnerability in Icinga
An issue was discovered in Icinga 2.x through 2.8.1.
network
low complexity
icinga CWE-400
7.5