|
2131
|
7.5 |
HIGH
Network
|
-
|
-
|
Nord VPN 6.14.31 contains a denial of service vulnerability that allows unauthenticated attackers to crash the application by submitting an excessively long string in the password field. Attackers ca…
|
CWE-789
Memory Allocation with Excessive Size Value
|
CVE-2018-25368
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2132
|
6.2 |
MEDIUM
Local
|
-
|
-
|
Visual Ping 0.8.0.0 contains a buffer overflow vulnerability in input field handling that allows local attackers to crash the application by supplying oversized data. Attackers can inject malicious p…
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-25369
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2133
|
5.3 |
MEDIUM
Network
|
-
|
-
|
Admidio 3.3.5 contains a cross-site request forgery vulnerability that allows low-privilege users to increase their permissions by exploiting improper origin checking. Attackers can craft malicious H…
|
CWE-352
Origin Validation Error
|
CVE-2018-25370
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2134
|
8.2 |
HIGH
Network
|
-
|
-
|
mooSocial Store Plugin 2.6 contains a blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries through the product parameter in URL rewrite functionality…
|
CWE-89
SQL Injection
|
CVE-2018-25371
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2135
|
8.2 |
HIGH
Network
|
-
|
-
|
MedDream PACS Server Premium 6.7.1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the email param…
|
CWE-89
SQL Injection
|
CVE-2018-25372
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2136
|
8.4 |
HIGH
Local
|
-
|
-
|
SocuSoft DVD Photo Slideshow Professional 8.07 contains a stack-based buffer overflow vulnerability in the registration name field that allows local attackers to execute arbitrary code by exploiting …
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2018-25373
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2137
|
7.5 |
HIGH
Network
|
-
|
-
|
Softneta MedDream PACS Server Premium 6.7.1.1 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating the path parameter. Attackers …
|
CWE-22
Path Traversal
|
CVE-2018-25374
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2138
|
8.4 |
HIGH
Local
|
-
|
-
|
SocuSoft iPod Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by overwriting the structured exception ha…
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2018-25375
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2139
|
8.4 |
HIGH
Local
|
-
|
-
|
Socusoft 3GP Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by exploiting structured exception handling…
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-25376
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2140
|
8.4 |
HIGH
Local
|
-
|
-
|
Flash Slideshow Maker Professional 5.20 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by exploiting structured exception ha…
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-25377
|
2026-05-27 04:47 |
2026-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|