|
371
|
7.1 |
HIGH
Network
|
-
|
-
|
Joomla Component eXtroForms 2.1.5 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through the filter_type_id, filter_pid_id, and filter_s…
New
|
CWE-89
SQL Injection
|
CVE-2018-25380
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
372
|
8.2 |
HIGH
Network
|
-
|
-
|
Collectric CMU 1.0 contains a boolean-based blind SQL injection vulnerability in the lang parameter that allows unauthenticated attackers to manipulate database queries during authentication. Attacke…
New
|
CWE-89
SQL Injection
|
CVE-2018-25379
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
373
|
6.2 |
MEDIUM
Local
|
-
|
-
|
Notebook Pro 2.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the notebook name field. Attackers can crea…
New
|
CWE-789
Memory Allocation with Excessive Size Value
|
CVE-2018-25378
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
374
|
8.4 |
HIGH
Local
|
-
|
-
|
Flash Slideshow Maker Professional 5.20 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by exploiting structured exception ha…
New
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-25377
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
375
|
8.4 |
HIGH
Local
|
-
|
-
|
Socusoft 3GP Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by exploiting structured exception handling…
New
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-25376
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
376
|
8.4 |
HIGH
Local
|
-
|
-
|
SocuSoft iPod Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by overwriting the structured exception ha…
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2018-25375
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
377
|
7.5 |
HIGH
Network
|
-
|
-
|
Softneta MedDream PACS Server Premium 6.7.1.1 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating the path parameter. Attackers …
New
|
CWE-22
Path Traversal
|
CVE-2018-25374
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
378
|
8.4 |
HIGH
Local
|
-
|
-
|
SocuSoft DVD Photo Slideshow Professional 8.07 contains a stack-based buffer overflow vulnerability in the registration name field that allows local attackers to execute arbitrary code by exploiting …
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2018-25373
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
379
|
8.2 |
HIGH
Network
|
-
|
-
|
MedDream PACS Server Premium 6.7.1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the email param…
New
|
CWE-89
SQL Injection
|
CVE-2018-25372
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
380
|
8.2 |
HIGH
Network
|
-
|
-
|
mooSocial Store Plugin 2.6 contains a blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries through the product parameter in URL rewrite functionality…
New
|
CWE-89
SQL Injection
|
CVE-2018-25371
|
2026-05-26 00:16 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|