Skip to content

Commit bdb5750

Browse files
Sync EUVD catalog: Thu Apr 23 00:43:17 UTC 2026
Signed-off-by: AboutCode Automation <automation@aboutcode.org>
1 parent 11928d4 commit bdb5750

364 files changed

Lines changed: 18322 additions & 154 deletions

File tree

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
Lines changed: 31 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,31 @@
1+
{
2+
"id": "EUVD-2018-21772",
3+
"enisaUuid": "c35318b2-45a9-3df1-a82e-ed1daaa1033e",
4+
"description": "Terminal Services Manager 3.1 contains a stack-based buffer overflow vulnerability in the computer names field that allows local attackers to execute arbitrary code by triggering structured exception handling. Attackers can craft a malicious input file with shellcode and jump instructions that overwrite the SEH handler pointer to execute calc.exe or other payloads when imported through the add computers wizard.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 8.6,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/46058\nhttps://lizardsystems.com\nhttps://www.vulncheck.com/advisories/terminal-services-manager-buffer-overflow-seh\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25259\n",
11+
"aliases": "CVE-2018-25259\nGHSA-2m2r-hgfh-2mrp\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "65a3c2aa-fe3e-37aa-9020-614b4c9015f4",
17+
"product": {
18+
"name": "Terminal Services Manager"
19+
},
20+
"product_version": "3.1"
21+
}
22+
],
23+
"enisaIdVendor": [
24+
{
25+
"id": "36bd3dc6-1043-3805-a0eb-cae949b83bf6",
26+
"vendor": {
27+
"name": "LizardSystems"
28+
}
29+
}
30+
]
31+
}
Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
{
2+
"id": "EUVD-2018-21775",
3+
"enisaUuid": "aec3de89-2a8a-3ed2-8d6a-3e1fa9b25d99",
4+
"description": "MAGIX Music Editor 3.1 contains a buffer overflow vulnerability in the FreeDB Proxy Options dialog that allows local attackers to execute arbitrary code by exploiting structured exception handling. Attackers can craft a malicious payload, paste it into the Server field via the CD menu's FreeDB Proxy Options, and trigger code execution when settings are accepted.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 8.6,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/46056\nhttps://www.magix.com/us/\nhttps://www.magix.com/us/music/mp3-deluxe/\nhttps://www.vulncheck.com/advisories/magix-music-editor-buffer-overflow-via-seh\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25260\n",
11+
"aliases": "CVE-2018-25260\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [],
15+
"enisaIdVendor": [
16+
{
17+
"id": "c500133d-7708-3b9e-8831-7f4278f03d62",
18+
"vendor": {
19+
"name": "Magix"
20+
}
21+
}
22+
]
23+
}
Lines changed: 31 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,31 @@
1+
{
2+
"id": "EUVD-2018-21776",
3+
"enisaUuid": "ae6b5ee4-5548-34c0-b61c-a08b07c6533b",
4+
"description": "Iperius Backup 5.8.1 contains a local buffer overflow vulnerability in the structured exception handling (SEH) mechanism that allows local attackers to execute arbitrary code by supplying a malicious file path. Attackers can create a backup job with a crafted payload in the external file location field that triggers a buffer overflow when the backup job executes, enabling code execution with application privileges.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 8.6,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/46059\nhttps://www.iperiusbackup.com\nhttps://www.vulncheck.com/advisories/iperius-backup-local-buffer-overflow-seh\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25261\n",
11+
"aliases": "GHSA-jq85-wxcr-jm7v\nCVE-2018-25261\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "a5666664-609a-3e02-a347-3e73bca222ab",
17+
"product": {
18+
"name": "Iperius Backup"
19+
},
20+
"product_version": "5.8.1"
21+
}
22+
],
23+
"enisaIdVendor": [
24+
{
25+
"id": "f712ef14-8b27-393c-8376-2a8f46af8069",
26+
"vendor": {
27+
"name": "Iperiusbackup"
28+
}
29+
}
30+
]
31+
}
Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
{
2+
"id": "EUVD-2018-21779",
3+
"enisaUuid": "a6202ab8-7cc3-3c28-9282-8fb196fec719",
4+
"description": "Angry IP Scanner for Linux 3.5.3 contains a denial of service vulnerability that allows local attackers to crash the application by supplying malformed input to the port selection field. Attackers can craft a malicious string containing buffer overflow patterns and paste it into the Preferences Ports tab to trigger an application crash.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 6.9,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/46038\nhttps://angryip.org/\nhttps://www.vulncheck.com/advisories/angry-ip-scanner-for-linux-denial-of-service\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25262\n",
11+
"aliases": "CVE-2018-25262\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [],
15+
"enisaIdVendor": [
16+
{
17+
"id": "67c2eb7b-87b7-3dae-ba36-49f5bbfdbd36",
18+
"vendor": {
19+
"name": "Angryip"
20+
}
21+
}
22+
]
23+
}
Lines changed: 31 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,31 @@
1+
{
2+
"id": "EUVD-2018-21780",
3+
"enisaUuid": "723b9e48-1bc6-3ca9-8b5e-5a715ca805f7",
4+
"description": "LanSpy 2.0.1.159 contains a local buffer overflow vulnerability in the scan section that allows local attackers to execute arbitrary code by exploiting structured exception handling mechanisms. Attackers can craft malicious payloads using egghunter techniques to locate and execute shellcode, triggering code execution through SEH chain manipulation and controlled jumps.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 8.6,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/46018\nhttps://lizardsystems.com\nhttps://www.vulncheck.com/advisories/lanspy-local-buffer-overflow\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25265\n",
11+
"aliases": "CVE-2018-25265\nGHSA-vmwc-673c-vf2w\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "031b039c-dbc2-30cc-8d40-d5e12572b0e7",
17+
"product": {
18+
"name": "LanSpy"
19+
},
20+
"product_version": "2.0.1.159"
21+
}
22+
],
23+
"enisaIdVendor": [
24+
{
25+
"id": "d633fb33-2f9e-3305-800b-72109f52f6f5",
26+
"vendor": {
27+
"name": "LizardSystems"
28+
}
29+
}
30+
]
31+
}
Lines changed: 31 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,31 @@
1+
{
2+
"id": "EUVD-2018-21782",
3+
"enisaUuid": "184c2271-95d6-3e8a-b753-f91ff8ecba28",
4+
"description": "Angry IP Scanner 3.5.3 contains a buffer overflow vulnerability in the preferences dialog that allows local attackers to crash the application by supplying an excessively large string. Attackers can generate a file containing a massive buffer of repeated characters and paste it into the unavailable value field in the display preferences to trigger a denial of service.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 6.9,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/45993\nhttps://angryip.org\nhttps://www.vulncheck.com/advisories/angry-ip-scanner-denial-of-service-via-preferences-buffer-overflow\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25266\n",
11+
"aliases": "CVE-2018-25266\nGHSA-348g-w65w-cxjq\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "2cb2351a-c756-3c1d-af0d-72d0bb1f10d5",
17+
"product": {
18+
"name": "Angry IP Scanner"
19+
},
20+
"product_version": "3.11"
21+
}
22+
],
23+
"enisaIdVendor": [
24+
{
25+
"id": "df45a454-8216-3e77-b387-21fe34a7d48d",
26+
"vendor": {
27+
"name": "Angryip"
28+
}
29+
}
30+
]
31+
}
Lines changed: 31 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,31 @@
1+
{
2+
"id": "EUVD-2018-21783",
3+
"enisaUuid": "5fb231aa-d7f5-31e9-98ff-01e6f1f30c20",
4+
"description": "UltraISO 9.7.1.3519 contains a local buffer overflow vulnerability in the Output FileName field of the Make CD/DVD Image dialog that allows attackers to overwrite SEH and SE handler records. Attackers can craft a malicious filename string with 304 bytes of data followed by SEH record overwrite values and paste it into the Output FileName field to trigger a denial of service crash.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 6.9,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/45996\nhttps://www.ultraiso.com/\nhttps://www.vulncheck.com/advisories/ultraiso-buffer-overflow-via-output-filename\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25267\n",
11+
"aliases": "CVE-2018-25267\nGHSA-mfmx-cpqw-mpw8\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "f4295aad-7db0-3df5-8caf-ea8e36b2668d",
17+
"product": {
18+
"name": "UltraISO"
19+
},
20+
"product_version": "9.7.1.3519"
21+
}
22+
],
23+
"enisaIdVendor": [
24+
{
25+
"id": "8848377f-69f3-3f09-a70e-938e20e5f149",
26+
"vendor": {
27+
"name": "Ultraiso"
28+
}
29+
}
30+
]
31+
}
Lines changed: 31 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,31 @@
1+
{
2+
"id": "EUVD-2018-21784",
3+
"enisaUuid": "9c9236cf-25ba-3388-9d6b-9f81728d6c7c",
4+
"description": "LanSpy 2.0.1.159 contains a local buffer overflow vulnerability that allows attackers to overwrite the instruction pointer by supplying oversized input to the scan field. Attackers can craft a payload with 688 bytes of padding followed by 4 bytes of controlled data to crash the application or potentially achieve code execution.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 8.6,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/45968\nhttps://lizardsystems.com\nhttps://www.vulncheck.com/advisories/lanspy-local-buffer-overflow-via-scan-field\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25268\n",
11+
"aliases": "CVE-2018-25268\nGHSA-m76w-v74r-fqv2\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "d9816e89-b60d-3bc2-8284-2b02a9b93c5f",
17+
"product": {
18+
"name": "LanSpy"
19+
},
20+
"product_version": "2.0.1.159"
21+
}
22+
],
23+
"enisaIdVendor": [
24+
{
25+
"id": "5e4e0c38-46c5-3c5a-89df-37e59f7e1cc5",
26+
"vendor": {
27+
"name": "LizardSystems"
28+
}
29+
}
30+
]
31+
}
Lines changed: 38 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,38 @@
1+
{
2+
"id": "EUVD-2018-21785",
3+
"enisaUuid": "fae76258-ac04-3c85-9119-15815ef5e92c",
4+
"description": "ICEWARP 11.0.0.0 contains a cross-site scripting vulnerability that allows attackers to inject malicious HTML elements into emails by embedding base64-encoded payloads in object and embed tags. Attackers can craft emails containing data URIs with embedded scripts that execute in the client when the email is viewed, compromising user sessions and stealing sensitive information.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 5.1,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/45974\nhttp://www.icewarp.com/\nhttps://www.vulncheck.com/advisories/icewarp-cross-site-scripting-via-email-html-injection\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25269\n",
11+
"aliases": "GHSA-xx24-qg5f-3r29\nCVE-2018-25269\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "227cc17c-d869-3197-a5ad-256176e17330",
17+
"product": {
18+
"name": "ICEWARP Client"
19+
},
20+
"product_version": "11.0.0.0"
21+
},
22+
{
23+
"id": "c7cc11c2-50de-3486-916f-b8263b829f6b",
24+
"product": {
25+
"name": "ICEWARP Client"
26+
},
27+
"product_version": "10.3.4"
28+
}
29+
],
30+
"enisaIdVendor": [
31+
{
32+
"id": "fac5ca1f-9bd4-3f40-9976-2702ab052309",
33+
"vendor": {
34+
"name": "Icewarp"
35+
}
36+
}
37+
]
38+
}
Lines changed: 38 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,38 @@
1+
{
2+
"id": "EUVD-2018-21786",
3+
"enisaUuid": "0d505ffe-00ad-3e65-aadf-61bca576382c",
4+
"description": "ThinkPHP 5.0.23 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary PHP code by invoking functions through the routing parameter. Attackers can craft requests to the index.php endpoint with malicious function parameters to execute system commands with application privileges.",
5+
"datePublished": "Apr 22, 2026, 6:31:44 PM",
6+
"dateUpdated": "Apr 22, 2026, 6:31:44 PM",
7+
"baseScore": 9.3,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://www.exploit-db.com/exploits/45978\nhttps://thinkphp.cn\nhttps://github.com/top-think/framework/\nhttps://www.vulncheck.com/advisories/thinkphp-remote-code-execution-via-invokefunction\nhttps://nvd.nist.gov/vuln/detail/CVE-2018-25270\n",
11+
"aliases": "GHSA-98w3-frc2-62p8\nCVE-2018-25270\n",
12+
"assigner": "VulnCheck",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "7661bfb8-eef7-3e7d-b102-a3242e3759a0",
17+
"product": {
18+
"name": "ThinkPHP"
19+
},
20+
"product_version": "5.0.23"
21+
},
22+
{
23+
"id": "b11384d1-f7e0-3884-850b-d9df5a751014",
24+
"product": {
25+
"name": "ThinkPHP"
26+
},
27+
"product_version": "5.1.31"
28+
}
29+
],
30+
"enisaIdVendor": [
31+
{
32+
"id": "d8776f28-2643-385a-9dd1-b1b55df8d7bd",
33+
"vendor": {
34+
"name": "Thinkphp"
35+
}
36+
}
37+
]
38+
}

0 commit comments

Comments
 (0)