Vulnerabilities (CVE)

CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-5830 1 Google 1 Android 2018-08-29 7.2 HIGH 7.8 HIGH
While processing the HTT_T2H_MSG_TYPE_MGMT_TX_COMPL_IND message, a buffer overflow can potentially occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.
CVE-2018-558213 2018-08-29 N/A N/A
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-15727. Reason: This candidate is a reservation duplicate of CVE-2018-15727. Notes: All CVE users should reference CVE-2018-15727 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
CVE-2018-13531 1 Maxhouse Project 1 Maxhouse 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for MaxHouse, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13498 1 Kapaycoin Project 1 Kapaycoin 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for KAPAYcoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13499 1 Pcncoin 1 Pcncoin 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for Crowdsale, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13500 1 Missimx 1 Msxadvanced 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for MSXAdvanced, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13486 1 Helpproject 1 Help 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for HELP, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13523 1 Smartpayment Project 1 Smartpayment 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for SmartPayment, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13497 1 Cobtoken Project 1 Cobtoken 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for COBToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13501 1 Hrwtoken Project 1 Hrwtoken 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for HRWtoken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13511 1 Corellicoin Project 1 Corellicoin 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for CorelliCoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13505 1 Ecogreenhouse Project 1 Ecogreenhouse 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for ecogreenhouse, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13540 1 Gsi Project 1 Gsi 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for GSI, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13510 1 Welfare Token Fund Project 1 Welfare Token Fund 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for Welfare Token Fund (WTF), an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13509 1 Iamrich Project 1 Iamrich 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for IamRich, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13463 1 T-swap-token Project 1 T-swap-token 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for T-Swap-Token (T-S-T), an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13502 1 Heliumnetwork Project 1 Heliumnetwork 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for HeliumNetwork, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13535 1 Paccoin 1 Paccoin 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for PACCOIN, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13536 1 Erc20 Ico Project 1 Erc20 Ico 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for ERC20_ICO, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13537 1 Ethereumlegit Project 1 Ethereumlegit 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for EthereumLegit, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13507 1 Slcadvancedtoken Project 1 Slcadvancedtoken 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for SLCAdvancedToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13520 1 Topscoinadvanced Project 1 Topscoinadvanced 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for TopscoinAdvanced, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13538 1 Sipctoken Project 1 Sipctoken 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for SIPCToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13539 1 Bcxss Project 1 Bcxss 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for Bcxss, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13521 1 Pinky Token Project 1 Pinky Token 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for PinkyToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-5858 1 Google 1 Android 2018-08-29 4.6 MEDIUM 7.8 HIGH
In the audio debugfs in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, out of bounds access can occur.
CVE-2018-5873 2 Google, Linux 2 Android, Linux Kernel 2018-08-29 6.9 MEDIUM 7.0 HIGH
An issue was discovered in the __ns_get_path function in fs/nsfs.c in the Linux kernel before 4.11. Due to a race condition when accessing files, a Use After Free condition can occur. This also affects all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05.
CVE-2018-5886 1 Google 1 Android 2018-08-29 5.0 MEDIUM 7.5 HIGH
A pointer in an ADSPRPC command is not properly validated in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android), which can lead to kernel memory being accessed.
CVE-2018-13524 1 Porn-coin 1 Porncoin 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for PornCoin (PRNC), an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13530 1 Huntercoin 1 Huntercoin 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for HunterCoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13506 1 Self Drive Rental Project 1 Self Drive Rental 2018-08-29 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for SDR22, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-1093 1 Linux 1 Linux Kernel 2018-08-29 7.1 HIGH 5.5 MEDIUM
The ext4_valid_block_bitmap function in fs/ext4/balloc.c in the Linux kernel through 4.15.15 allows attackers to cause a denial of service (out-of-bounds read and system crash) via a crafted ext4 image because balloc.c and ialloc.c do not validate bitmap block numbers.
CVE-2017-16850 1 Zohocorp 1 Manageengine Applications Manager 2018-08-28 7.5 HIGH 9.8 CRITICAL
Zoho ManageEngine Applications Manager 13 before build 13530 allows SQL injection via the /showresource.do resourceid parameter in a getResourceProfiles action.
CVE-2017-17411 1 Linksys 2 Wvbr0, Wvbr0 Firmware 2018-08-28 10.0 HIGH 9.8 CRITICAL
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Linksys WVBR0. Authentication is not required to exploit this vulnerability. The specific flaw exists within the web management portal. The issue lies in the lack of proper validation of user data before executing a system call. An attacker could leverage this vulnerability to execute code with root privileges. Was ZDI-CAN-4892.
CVE-2018-13525 1 Flow Project 1 Flow 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for Flow, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13526 1 Wangwangtoken Project 1 Wangwangtoken 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for WangWangToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13527 1 Elevateico 1 Elevatecoin 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for ElevateCoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13528 1 Dhacoin Project 1 Dhacoin 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for DhaCoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13529 1 Betterthanadrien Project 1 Betterthanadrien 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for BetterThanAdrien, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-11351 1 Jirafeau 1 Jirafeau 2018-08-28 4.3 MEDIUM 6.1 MEDIUM
script.php in Jirafeau before 3.4.1 is affected by two stored Cross-Site Scripting (XSS) vulnerabilities. These are stored within the shared files description file and allow the execution of a JavaScript payload each time an administrator searches or lists uploaded files. These two injections could be triggered without authentication, and target the administrator. The attack vectors are the Content-Type field and the filename parameter.
CVE-2018-12990 1 Phpwcms 1 Phpwcms 2018-08-28 5.0 MEDIUM 5.3 MEDIUM
phpwcms 1.8.9 allows remote attackers to discover the installation path via an invalid csrf_token_value field.
CVE-2018-0499 2 Canonical, Xapian 2 Ubuntu Linux, Xapian-core 2018-08-28 4.3 MEDIUM 6.1 MEDIUM
A cross-site scripting vulnerability in queryparser/termgenerator_internal.cc in Xapian xapian-core before 1.4.6 exists due to incomplete HTML escaping by Xapian::MSet::snippet().
CVE-2007-4607 2 Gate Comm Software, Quicksoft 2 Postcast Server Pro, Easymail Objects 2018-08-28 9.3 HIGH N/A
Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used in Postcast Server Pro 3.0.61 and other products, allows remote attackers to execute arbitrary code via a long argument to the SubmitToExpress method, a different vulnerability than CVE-2007-1029. NOTE: this may have been fixed in version 6.0.3.15.
CVE-2017-8399 1 Pcre 1 Pcre2 2018-08-28 7.5 HIGH 9.8 CRITICAL
PCRE2 before 10.30 has an out-of-bounds write caused by a stack-based buffer overflow in pcre2_match.c, related to a "pattern with very many captures."
CVE-2018-13480 1 Qrg Project 1 Qrg 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for QRG, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13484 1 Cbr Token Project 1 Cbr Token 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for CBRToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13485 1 Bitcoinagile Project 1 Bitcoinagile 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for BitcoinAgileToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13487 1 Plato Project 1 Plato 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for PlatoToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13488 1 Crypto Alley Shares Project 1 Crypto Alley Shares 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for Crypto Alley Shares (CAST), an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
CVE-2018-13489 1 Olliscoin Project 1 Olliscoin 2018-08-28 5.0 MEDIUM 7.5 HIGH
The mintToken function of a smart contract implementation for OllisCoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.