7.1

CVSS4.0

CVE-2018-25312 - LifeSize ClearSea 3.1.4 Directory Traversal Remote Code Execution

LifeSize ClearSea 3.1.4 contains directory traversal vulnerabilities that allow authenticated attackers to download and upload arbitrary files by manipulating path parameters in the smartgui interface. Attackers can exploit the upload endpoint with directory traversal sequences to write files to ar…

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: April 30, 2026, 3:22 p.m.

5.1

CVSS4.0

CVE-2018-25309 - MyBB Recent threads 17.0 Persistent Cross-Site Scripting

MyBB Recent threads 17.0 contains a persistent cross-site scripting vulnerability that allows attackers to inject malicious scripts by creating threads with crafted subject lines. Attackers can create threads with script tags in the subject parameter to execute arbitrary JavaScript in the browsers …

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: May 1, 2026, 7:15 p.m.

8.7

CVSS4.0

CVE-2018-25308 - BuddyPress Xprofile Custom Fields Type 2.6.3 Remote Code Execution

BuddyPress Xprofile Custom Fields Type 2.6.3 contains a remote code execution vulnerability that allows authenticated users to delete arbitrary files by manipulating unescaped POST parameters. Attackers can modify the field_hiddenfile and field_deleteimg parameters during profile editing to unlink …

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: April 30, 2026, 12:22 p.m.

8.6

CVSS4.0

CVE-2018-25307 - SysGauge Pro 4.6.12 Local Buffer Overflow SEH

SysGauge Pro 4.6.12 contains a local buffer overflow vulnerability in the Register function that allows local attackers to overwrite the structured exception handler by supplying a crafted unlock key. Attackers can inject shellcode through the Unlock Key field during registration to execute arbitra…

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: May 1, 2026, 4:39 p.m.

6.9

CVSS4.0

CVE-2018-25306 - PDFunite 0.41.0 Buffer Overflow via Malformed PDF

PDFunite 0.41.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by processing malformed PDF files during merge operations. Attackers can trigger a segmentation fault in the XRef::getEntry function within libpoppler by providing a specially crafted PDF f…

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: April 30, 2026, 3:48 p.m.

6.9

CVSS4.0

CVE-2018-25305 - librsvg2-bin 2.40.13 Buffer Overflow via Malformed SVG

librsvg2-bin 2.40.13 contains a buffer overflow vulnerability that allows local attackers to cause a denial of service by processing malformed SVG files. Attackers can supply crafted SVG input to the rsvg conversion tool to trigger a segmentation fault in the cairo image compositor.

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: April 30, 2026, 2:06 p.m.

8.6

CVSS4.0

CVE-2018-25304 - Free Download Manager 2.0 Built 417 Local Buffer Overflow SEH

Free Download Manager 2.0 Built 417 contains a local buffer overflow vulnerability in the URL import functionality that allows attackers to trigger a structured exception handler (SEH) chain exploitation. Attackers can craft a malicious URL file that, when imported through the File > Import > Impor…

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: April 30, 2026, 12:40 p.m.

8.6

CVSS4.0

CVE-2018-25303 - Allok Video to DVD Burner 2.6.1217 Buffer Overflow SEH

Allok Video to DVD Burner 2.6.1217 contains a stack-based buffer overflow vulnerability in the License Name field that allows local attackers to execute arbitrary code by triggering a structured exception handler (SEH) overwrite. Attackers can craft a malicious input string with 780 bytes of junk d…

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: April 30, 2026, 1:07 p.m.

8.5

CVSS4.0

CVE-2018-25302 - Allok AVI to DVD SVCD VCD Converter 4.0.1217 Buffer Overflow SEH

Allok AVI to DVD SVCD VCD Converter 4.0.1217 contains a structured exception handling (SEH) based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious string in the License Name field. Attackers can craft a payload with junk data, NSEH bypass,…

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: April 30, 2026, 12:20 p.m.

8.6

CVSS4.0

CVE-2018-25301 - Easy MPEG to DVD Burner 1.7.11 SEH Local Buffer Overflow

Easy MPEG to DVD Burner 1.7.11 contains a structured exception handling (SEH) local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious username string. Attackers can craft a payload containing junk data, SEH chain pointers, and shellcode tha…

πŸ“… Published: April 29, 2026, 7:24 p.m. πŸ”„ Last Modified: May 4, 2026, 6:23 p.m.
Total resulsts: 348389
Page 121 of 34,839
Β« previous page Β» next page
Filters