CVE-2018-1488
published 2018-05-25CVE-2018-1488: IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5 and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local…
PriorityP337high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EPSS
0.52%
40.2th percentile
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5 and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local attacker to execute arbitrary code on the system as root. IBM X-Force ID: 140973.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | db2 | — | — |
| ibm | db2 | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
SynaMan 4.0 build 1488 - (Authenticated) Cross-Site Scripting
exploitdb·2018-09-12·CVSS 4.8
CVE-2018-10763 [MEDIUM] SynaMan 4.0 build 1488 - (Authenticated) Cross-Site Scripting
SynaMan 4.0 build 1488 - (Authenticated) Cross-Site Scripting
---
# Exploit Author: bzyo
# CVE: CVE-2018-10763
# Twitter: @bzyo_
# Exploit Title: SynaMan 4.0 - Authenticated Cross Site Scripting (XSS)
# Date: 09-12-18
# Vulnerable Software: SynaMan 4.0 build 1488
# Vendor Homepage: http://web.synametrics.com/SynaMan.htm
# Version: 4.0 build 1488
# Software Link: http://web.synametrics.com/SynaManDownload.htm
# Tested On: Windows 7 x86
Description
SynaMan 4.0 suffers from Authenticated Cross Site Scripting (XSS)
Prerequisites
Admin access to Synaman web console
Proof of Concept
From Configuration > Advanced Configuration > Partial Branding
- Main heading
- Sub heading
If one were to apply the following XSS payload in either of the fields, alert pop-ups with xss would be present on na
Exploit-DB
SynaMan 4.0 build 1488 - SMTP Credential Disclosure
exploitdb·2018-09-12·CVSS 7.8
CVE-2018-10814 [HIGH] SynaMan 4.0 build 1488 - SMTP Credential Disclosure
SynaMan 4.0 build 1488 - SMTP Credential Disclosure
---
# Exploit Author: bzyo
# CVE: CVE-2018-10814
# Twitter: @bzyo_
# Exploit Title: SynaMan 4.0 - Cleartext password SMTP settings
# Date: 09-12-18
# Vulnerable Software: SynaMan 4.0 build 1488
# Vendor Homepage: http://web.synametrics.com/SynaMan.htm
# Version: 4.0 build 1488
# Software Link: http://web.synametrics.com/SynaManDownload.htm
# Tested On: Windows 7 x86
Description
SynaMan 4.0 suffers from cleartext password storage for SMTP settings which would allow email account compromise
Prerequisites
Access to a system running Synaman 4 using a low-privileged user account
Proof of Concept
The password for the smtp email account is stored in plaintext in the AppConfig.xml configuration file. This file can be viewed by any local user
No writeups or analysis indexed.
http://www.ibm.com/support/docview.wss?uid=swg22016141http://www.securitytracker.com/id/1040968https://exchange.xforce.ibmcloud.com/vulnerabilities/140973http://www.ibm.com/support/docview.wss?uid=swg22016141http://www.securitytracker.com/id/1040968https://exchange.xforce.ibmcloud.com/vulnerabilities/140973
2018-05-25
Published