The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a database and tools to fix them.
History of vulnerabilities analyzed by Vigil@nce:

vulnerability bulletin CVE-2018-18557

LibTIFF: buffer overflow via JBIGDecode

Synthesis of the vulnerability

An attacker can generate a buffer overflow via JBIGDecode() of LibTIFF, in order to trigger a denial of service, and possibly to run code.
Impacted products: LibTIFF.
Severity: 2/4.
Creation date: 23/10/2018.
Identifiers: CVE-2018-18557, VIGILANCE-VUL-27603.

Description of the vulnerability

The LibTIFF product offers a web service. However, if the size of data is gre...
Complete Vigil@nce bulletin.... (Free trial)

computer vulnerability note CVE-2018-18460

WordPress WP Live Chat Support: Cross Site Scripting

Synthesis of the vulnerability

An attacker can trigger a Cross Site Scripting of WordPress WP Live Chat Support, in order to run JavaScript code in the context of the web site.
Impacted products: WordPress Plugins ~ not comprehensive.
Severity: 2/4.
Creation date: 19/10/2018.
Identifiers: CVE-2018-18460, VIGILANCE-VUL-27589.

Description of the vulnerability

The WP Live Chat Support plugin can be installed on WordPress. However, it do...
Complete Vigil@nce bulletin.... (Free trial)

computer vulnerability bulletin CVE-2018-15314

F5 BIG-IP AFM: Cross Site Scripting via TMUI Page

Synthesis of the vulnerability

An attacker can trigger a Cross Site Scripting via TMUI Page of F5 BIG-IP AFM, in order to run JavaScript code in the context of the web site.
Impacted products: BIG-IP Hardware, TMOS.
Severity: 2/4.
Creation date: 19/10/2018.
Identifiers: CVE-2018-15314, K04524282, VIGILANCE-VUL-27588.

Description of the vulnerability

The F5 BIG-IP AFM product offers a web service. However, it does not filter r...
Complete Vigil@nce bulletin.... (Free trial)

computer vulnerability announce CVE-2018-15313

F5 BIG-IP AFM: Cross Site Scripting via TMUI Page

Synthesis of the vulnerability

An attacker can trigger a Cross Site Scripting via TMUI Page of F5 BIG-IP AFM, in order to run JavaScript code in the context of the web site.
Impacted products: BIG-IP Hardware, TMOS.
Severity: 2/4.
Creation date: 19/10/2018.
Identifiers: CVE-2018-15313, K21042153, VIGILANCE-VUL-27587.

Description of the vulnerability

The F5 BIG-IP AFM product offers a web service. However, it does not filter r...
Complete Vigil@nce bulletin.... (Free trial)

vulnerability announce CVE-2018-7427

Splunk Enterprise: Cross Site Scripting via Splunk Web

Synthesis of the vulnerability

An attacker can trigger a Cross Site Scripting via Splunk Web of Splunk Enterprise, in order to run JavaScript code in the context of the web site.
Impacted products: Splunk Enterprise.
Severity: 2/4.
Creation date: 18/10/2018.
Identifiers: CVE-2018-7427, SP-CAAAP2K, SP-CAAAP5T, SPL-135650, VIGILANCE-VUL-27582.

Description of the vulnerability

The Splunk Enterprise product offers a web service. However, it does not filt...
Complete Vigil@nce bulletin.... (Free trial)

vulnerability alert CVE-2018-15312

F5 BIG-IP: Cross Site Scripting via Configuration Utility Page

Synthesis of the vulnerability

An attacker can trigger a Cross Site Scripting via Configuration Utility Page of F5 BIG-IP, in order to run JavaScript code in the context of the web site.
Impacted products: BIG-IP Hardware, TMOS.
Severity: 2/4.
Creation date: 18/10/2018.
Identifiers: CVE-2018-15312, K44462254, VIGILANCE-VUL-27581.

Description of the vulnerability

The F5 BIG-IP product offers a web service. However, it does not filter recei...
Complete Vigil@nce bulletin.... (Free trial)

computer vulnerability bulletin CVE-2018-15315

F5 BIG-IP: Cross Site Scripting via Configuration Utility Page

Synthesis of the vulnerability

An attacker can trigger a Cross Site Scripting via Configuration Utility Page of F5 BIG-IP, in order to run JavaScript code in the context of the web site.
Impacted products: BIG-IP Hardware, TMOS.
Severity: 2/4.
Creation date: 18/10/2018.
Identifiers: CVE-2018-15315, K41704442, VIGILANCE-VUL-27578.

Description of the vulnerability

The F5 BIG-IP product offers a web service. However, it does not filter recei...
Complete Vigil@nce bulletin.... (Free trial)

vulnerability note CVE-2018-7603

Drupal Search Autocomplete: Cross Site Scripting

Synthesis of the vulnerability

An attacker can trigger a Cross Site Scripting of Drupal Search Autocomplete, in order to run JavaScript code in the context of the web site.
Impacted products: Drupal Modules ~ not comprehensive.
Severity: 2/4.
Creation date: 18/10/2018.
Identifiers: CVE-2018-7603, DRUPAL-SA-CONTRIB-2018-070, VIGILANCE-VUL-27574.

Description of the vulnerability

The Search Autocomplete module can be installed on Drupal. However, it does n...
Complete Vigil@nce bulletin.... (Free trial)

vulnerability bulletin CVE-2018-0388

Cisco Wireless LAN Controller: Cross Site Scripting

Synthesis of the vulnerability

An attacker can trigger a Cross Site Scripting of Cisco Wireless LAN Controller, in order to run JavaScript code in the context of the web site.
Impacted products: Cisco Wireless Controller.
Severity: 2/4.
Creation date: 18/10/2018.
Identifiers: CERTFR-2018-AVI-502, cisco-sa-20181017-wlan-xss, CSCvi97023, CVE-2018-0388, VIGILANCE-VUL-27563.

Description of the vulnerability

The Cisco Wireless LAN Controller product offers a web service. However, it d...
Complete Vigil@nce bulletin.... (Free trial)

vulnerability alert CVE-2018-0456

Cisco NX-OS: denial of service via SNMP

Synthesis of the vulnerability

An attacker can send malicious SNMP packets to Cisco NX-OS, in order to trigger a denial of service.
Impacted products: Nexus by Cisco, NX-OS.
Severity: 2/4.
Creation date: 18/10/2018.
Identifiers: CERTFR-2018-AVI-502, cisco-sa-20181017-nxos-snmp, CSCvj70029, CVE-2018-0456, VIGILANCE-VUL-27561.

Description of the vulnerability

The Cisco NX-OS product has a service to manage received SNMP packets. Howeve...
Complete Vigil@nce bulletin.... (Free trial)

   Next page

Direct access to page 1 21 41 61 81 101 121 141 161 181 201 221 241 261 281 301 321 341 361 381 401 421 441 461 481 501 521 541 561 581 601 621 641 661 681 701 721 741 761 781 801 821 841 861 881 901 921 941 961 981 1001 1021 1041 1061 1081 1101 1121 1141 1161 1181 1201 1221 1241 1261 1281 1301 1321 1341 1361 1381 1401 1421 1441 1461 1481 1501 1521 1541 1561 1581 1601 1621 1641 1661 1681 1701 1721 1741 1761 1781 1801 1821 1841 1861 1881 1901 1921 1941 1961 1981 2001 2021 2037 2038 2039 2040 2041 2042 2043 2044 2045 2046 2047