CVE-2018-11020

CVSS v3 Score
4.4
Medium
CVSS v2 Score
4.9
Medium

Vulnerability Description

kernel/omap/drivers/rpmsg/rpmsg_omx.c in the kernel component in Amazon Kindle Fire HD(3rd) Fire OS 4.5.5.3 allows attackers to inject a crafted argument via the argument of an ioctl on device file /dev/rpmsg-omx1 with the command 3221772291, and cause a kernel crash.

CVSS:4.4(Medium)

Vim, a text editor, is vulnerable to potential data loss with zip.vim and special crafted zip files in versions prior to 9.1.1198. The impact is medium because a user must be made to view such an arch...

CWE-882025
CVSS:4.9(Medium)

An OS command argument injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to read any arbitrary file from the file system. This issue impacts...

CWE-882021
CVSS:3.9(Low)

A flaw was found in Ansible Engine when the module package or service is used and the parameter 'use' is not specified. If a previous task is executed with a malicious user, the module sent can be sel...

CWE-882020
CVSS:5.3(Medium)

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The database connection strings accept custom unsafe arguments, such as ENABLE_LOCAL_INFILE, that can be leveraged by attackers to enabl...

CWE-882020
CVSS:5.3(Medium)

The Crypt_GPG extension before 1.6.7 for PHP does not prevent additional options in GPG calls, which presents a risk for certain environments and GPG versions.

CWE-882022
CVSS:5.3(Medium)

Argument Injection in GitHub repository froxlor/froxlor prior to 2.0.0-beta1.

CWE-882022