CVE-2018-18288 CrushFTP through 8.3.0 is vulnerable to credentials theft via URL redirection. View Full Alert Related Posts CVE-2018-17792MDaemon Webmail (formerly WorldClient) has CSRF. View Full Alert CVE-2018-14919LOYTEC LGATE-902 6.3.2 devices allow XSS. View Full Alert CVE-2018-14918LOYTEC LGATE-902 6.3.2 devices allow Directory Traversal. View Full Alert