Monthly Archive: September 2018

CVE-2018-7355

All versions up to V1.0.0B05 of ZTE MF65 and all versions up to V1.0.0B02 of ZTE MF65M1 are impacted by cross-site scripting vulnerability. Due to improper neutralization of input during web page generation, an...

CVE-2018-3972

An exploitable code execution vulnerability exists in the Levin deserialization functionality of the Epee library, as used in Monero ‘Lithium Luna’ (v0.12.2.0-master-ffab6700) and other cryptocurrencies. A specially crafted network packet can cause a logic...

CVE-2018-1768

IBM Spectrum Protect Plus 10.1.0 and 10.1.1 could disclose sensitive information when an authorized user executes a test operation, the user id an password may be displayed in plain text within an instrumentation log...

CVE-2018-17538

** DISPUTED ** Axon (formerly TASER International) Evidence Sync 3.15.89 is vulnerable to process injection. NOTE: the vendor’s position is that this CVE is not associated with information that supports any finding of any...