CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2017-17533

    Last Modified: 20 Apr 2025

    default.tcl in Tkabber 1.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL. NOTE: a third party has indicated that the attack cannot occur because of the argument-parsing behavior of the Tcl exec function

    Published: 14 Dec 2017
    8.8
    High

    CVE-2017-17535

    Last Modified: 20 Apr 2025

    lib/gui.py in Bob Hepple gjots2 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL.

    Published: 14 Dec 2017
    8.8
    High

    CVE-2017-5663

    Last Modified: 20 Apr 2025

    In Apache Fineract 0.4.0-incubating, 0.5.0-incubating, and 0.6.0-incubating, an authenticated user with client/loan/center/staff/group read permissions is able to inject malicious SQL into SELECT queries. The 'sqlSearch' parameter on a number of endpoints is not sanitized and appended directly to the query.

    Published: 14 Dec 2017
    7.5
    High

    CVE-2017-17683

    Last Modified: 20 Apr 2025

    Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c44 \\.\PSMEMDriver DeviceIoControl request.

    Published: 14 Dec 2017
    7.5
    High

    CVE-2017-17684

    Last Modified: 20 Apr 2025

    Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c04 \\.\PSMEMDriver DeviceIoControl request.

    Published: 14 Dec 2017
    8.1
    High

    CVE-2017-1000503

    Last Modified: 21 Nov 2024

    A race condition during Jenkins 2.81 through 2.94 (inclusive); 2.89.1 startup could result in the wrong order of execution of commands during initialization. This could in rare cases result in failure to initialize the setup wizard on the first startup. This resulted in multiple security-related settings not being set to their usual strict default.

    Published: 14 Dec 2017
    9.8
    Critical

    CVE-2017-17672

    Last Modified: 20 Apr 2025

    In vBulletin through 5.3.x, there is an unauthenticated deserialization vulnerability that leads to arbitrary file deletion and, under certain circumstances, code execution, because of unsafe usage of PHP's unserialize() in vB_Library_Template's cacheTemplates() function, which is a publicly exposed API. This is exploited with the templateidlist parameter to ajax/api/template/cacheTemplates.

    Published: 14 Dec 2017
    6.5
    Medium

    CVE-2017-17681

    Last Modified: 20 Apr 2025

    In ImageMagick 7.0.7-12 Q16, an infinite loop vulnerability was found in the function ReadPSDChannelZip in coders/psd.c, which allows attackers to cause a denial of service (CPU exhaustion) via a crafted psd image file.

    Published: 14 Dec 2017
    6.5
    Medium

    CVE-2017-17682

    Last Modified: 20 Apr 2025

    In ImageMagick 7.0.7-12 Q16, a large loop vulnerability was found in the function ExtractPostscript in coders/wpg.c, which allows attackers to cause a denial of service (CPU exhaustion) via a crafted wpg image file that triggers a ReadWPGImage call.

    Published: 14 Dec 2017
    8.8
    High

    CVE-2017-12161

    Last Modified: 21 Nov 2024

    It was found that keycloak before 3.4.2 final would permit misuse of a client-side /etc/hosts entry to spoof a URL in a password reset request. An attacker could use this flaw to craft a malicious password reset request and gain a valid reset token, leading to information disclosure or further attacks.

    Published: 14 Dec 2017
    8.8
    High

    CVE-2017-17513

    Last Modified: 20 Apr 2025

    TeX Live through 20170524 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL, related to linked_scripts/context/stubs/unix/mtxrun, texmf-dist/scripts/context/stubs/mswin/mtxrun.lua, and texmf-dist/tex/luatex/lualibs/lualibs-os.lua.

    Published: 14 Dec 2017
    9.8
    Critical

    CVE-2017-17671

    Last Modified: 20 Apr 2025

    vBulletin through 5.3.x on Windows allows remote PHP code execution because a require_once call is reachable with an unauthenticated request that can include directory traversal sequences to specify an arbitrary pathname, and because ../ traversal is blocked but ..\ traversal is not blocked. For example, an attacker can make an invalid HTTP request containing PHP code, and then make an index.php?routestring= request with enough instances of ".." to reach an Apache HTTP Server log file.

    Published: 14 Dec 2017
    6.5
    Medium

    CVE-2017-17680

    Last Modified: 20 Apr 2025

    In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in the function ReadXPMImage in coders/xpm.c, which allows attackers to cause a denial of service via a crafted xpm image file.

    Published: 14 Dec 2017
    4.2
    Medium

    CVE-2017-1000500

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-12161. Reason: This candidate is a reservation duplicate of CVE-2017-12161. Notes: All CVE users should reference CVE-2017-12161 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 14 Dec 2017
    6.1
    Medium

    CVE-2017-15429

    Last Modified: 21 Nov 2024

    Inappropriate implementation in V8 WebAssembly JS bindings in Google Chrome prior to 63.0.3239.108 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.

    Published: 14 Dec 2017
    8.8
    High

    CVE-2017-17405

    Last Modified: 20 Apr 2025

    Ruby before 2.4.3 allows Net::FTP command injection. Net::FTP#get, getbinaryfile, gettextfile, put, putbinaryfile, and puttextfile use Kernel#open to open a local file. If the localfile argument starts with the "|" pipe character, the command following the pipe character is executed. The default value of localfile is File.basename(remotefile), so malicious FTP servers could cause arbitrary command execution.

    Published: 14 Dec 2017
    8.8
    High

    CVE-2017-17521

    Last Modified: 20 Apr 2025

    uiutil.c in FontForge through 20170731 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL, a different vulnerability than CVE-2017-17534.

    Published: 14 Dec 2017
    8.8
    High

    CVE-2017-17522

    Last Modified: 20 Apr 2025

    Lib/webbrowser.py in Python through 3.6.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL. NOTE: a software maintainer indicates that exploitation is impossible because the code relies on subprocess.Popen and the default shell=False setting

    Published: 14 Dec 2017
    7.2
    High

    CVE-2017-7738

    Last Modified: 20 Apr 2025

    An Information Disclosure vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.5, 5.2 and below versions allow an admin user with super_admin privileges to view the current SSL VPN web portal session info which may contains user credentials through the fnsysctl CLI command.

    Published: 13 Dec 2017
    6.7
    Medium

    CVE-2017-14380

    Last Modified: 20 Apr 2025

    In EMC Isilon OneFS 8.1.0.0, 8.0.1.0 - 8.0.1.1, 8.0.0.0 - 8.0.0.4, 7.2.1.0 - 7.2.1.5, 7.2.0.x, and 7.1.1.x, a malicious compliance admin (compadmin) account user could exploit a vulnerability in isi_get_itrace or isi_get_profile maintenance scripts to run any shell script as system root on a cluster in compliance mode. This could potentially lead to an elevation of privilege for the compadmin user and violate compliance mode.

    Published: 13 Dec 2017
    5.9
    Medium

    CVE-2017-17664

    Last Modified: 20 Apr 2025

    A Remote Crash issue was discovered in Asterisk Open Source 13.x before 13.18.4, 14.x before 14.7.4, and 15.x before 15.1.4 and Certified Asterisk before 13.13-cert9. Certain compound RTCP packets cause a crash in the RTCP Stack.

    Published: 13 Dec 2017
    8.8
    High

    CVE-2017-17665

    Last Modified: 20 Apr 2025

    In Octopus Deploy before 4.1.3, the machine update process doesn't check that the user has access to all environments. This allows an access-control bypass because the set of environments to which a machine is scoped may include environments in which the user lacks access.

    Published: 13 Dec 2017
    6.2
    Medium

    CVE-2017-15529

    Last Modified: 20 Apr 2025

    Prior to 4.4.1.10, the Norton Family Android App can be susceptible to a Denial of Service (DoS) exploit. A DoS attack is a type of attack whereby the perpetrator attempts to make a particular device unavailable to its intended user by temporarily or indefinitely disrupting services of a specific host within a network.

    Published: 13 Dec 2017
    3.3
    Low

    CVE-2017-15530

    Last Modified: 20 Apr 2025

    Prior to 4.4.1.10, the Norton Family Android App can be susceptible to an Information Disclosure issue. Information disclosure is a very common issue that attackers will attempt to exploit as a first pass across the application. As they probe the application they will take note of anything that may seem out of place or any bit of information they can use to their advantage such as error messages, system information, user data, version numbers, component names, URL paths, or even simple typos and misspellings.

    Published: 13 Dec 2017
    5.4
    Medium

    CVE-2017-1546

    Last Modified: 20 Apr 2025

    IBM DOORS Next Generation (DNG/RRC) 4.07, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 130915.

    Published: 13 Dec 2017
    6.1
    Medium

    CVE-2017-1421

    Last Modified: 20 Apr 2025

    IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 13 Dec 2017
    6.1
    Medium

    CVE-2017-1558

    Last Modified: 20 Apr 2025

    IBM Maximo Asset Management 7.5 and 7.6 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 131548.

    Published: 13 Dec 2017
    8
    High

    CVE-2017-1635

    Last Modified: 20 Apr 2025

    IBM Tivoli Monitoring V6 6.2.2.x could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free error. A remote attacker could exploit this vulnerability to execute arbitrary code on the system or cause the application to crash. IBM X-Force ID: 133243.

    Published: 13 Dec 2017
    3.3
    Low

    CVE-2017-1716

    Last Modified: 20 Apr 2025

    IBM Tivoli Workload Scheduler 8.6.0, 9.1.0, and 9.2.0 could disclose sensitive information to a local attacker due to improper permission settings. IBM X-Force ID: 134638.

    Published: 13 Dec 2017
    7.5
    High

    CVE-2017-17537

    Last Modified: 16 Sept 2026

    MikroTik RouterBOARD v6.39.2 and v6.40.5 allows an unauthenticated remote attacker to cause a denial of service by connecting to TCP port 53 and sending data that begins with many '\0' characters, possibly related to DNS.

    Published: 13 Dec 2017
    5.9
    Medium

    CVE-2017-17427

    Last Modified: 20 Apr 2025

    Radware Alteon devices with a firmware version between 31.0.0.0-31.0.3.0 are vulnerable to an adaptive-chosen ciphertext attack ("Bleichenbacher attack"). This allows an attacker to decrypt observed traffic that has been encrypted with the RSA cipher and to perform other private key operations.

    Published: 13 Dec 2017
    5.9
    Medium

    CVE-2017-17382

    Last Modified: 20 Apr 2025

    Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.19, and 12.0 before build 53.22 might allow remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a ROBOT attack.

    Published: 13 Dec 2017
    5.9
    Medium

    CVE-2017-17549

    Last Modified: 20 Apr 2025

    Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.19, and 12.0 before build 53.22 allow remote attackers to obtain sensitive information from the backend client TLS handshake by leveraging use of TLS with Client Certificates and a Diffie-Hellman Ephemeral (DHE) key exchange.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17648

    Last Modified: 20 Apr 2025

    Entrepreneur Dating Script 2.0.1 has SQL Injection via the search_result.php marital, gender, country, or profileid parameter.

    Published: 13 Dec 2017
    9.6
    Critical

    CVE-2017-14589

    Last Modified: 20 Apr 2025

    It was possible for double OGNL evaluation in FreeMarker templates through Struts FreeMarker tags to occur. An attacker who has restricted administration rights to Bamboo or who hosts a website that a Bamboo administrator visits, is able to exploit this vulnerability to execute Java code of their choice on systems that run a vulnerable version of Bamboo. All versions of Bamboo before 6.1.6 (the fixed version for 6.1.x) and from 6.2.0 before 6.2.5 (the fixed version for 6.2.x) are affected by this vulnerability.

    Published: 13 Dec 2017
    9.1
    Critical

    CVE-2017-14590

    Last Modified: 20 Apr 2025

    Bamboo did not check that the name of a branch in a Mercurial repository contained argument parameters. An attacker who has permission to create a repository in Bamboo, edit an existing plan that has a non-linked Mercurialrepository, create or edit a plan when there is at least one linked Mercurial repository that the attacker has permission to use, or commit to a Mercurial repository used by a Bamboo plan which has branch detection enabled can execute code of their choice on systems that run a vulnerable version of Bamboo Server. Versions of Bamboo starting with 2.7.0 before 6.1.6 (the fixed version for 6.1.x) and from 6.2.0 before 6.2.5 (the fixed version for 6.2.x) are affected by this vulnerability.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17595

    Last Modified: 20 Apr 2025

    Beauty Parlour Booking Script 1.0 has SQL Injection via the /list gender or city parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17571

    Last Modified: 20 Apr 2025

    FS Foodpanda Clone 1.0 has SQL Injection via the /food keywords parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17584

    Last Modified: 20 Apr 2025

    FS Makemytrip Clone 1.0 has SQL Injection via the show-flight-result.php fl_orig or fl_dest parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17617

    Last Modified: 20 Apr 2025

    Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter.

    Published: 13 Dec 2017
    7.5
    High

    CVE-2017-17567

    Last Modified: 20 Apr 2025

    Scubez Posty Readymade Classifieds has SQL Injection via the admin/user_activate_submit.php ID parameter.

    Published: 13 Dec 2017
    7.5
    High

    CVE-2017-17568

    Last Modified: 20 Apr 2025

    Scubez Posty Readymade Classifieds has Incorrect Access Control for visiting admin/user_activate_submit.php (aka the backend PHP script), which might allow remote attackers to obtain sensitive information via a direct request.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17570

    Last Modified: 20 Apr 2025

    FS Expedia Clone 1.0 has SQL Injection via the pages.php or content.php id parameter, or the show-flight-result.php fl_orig or fl_dest parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17575

    Last Modified: 20 Apr 2025

    FS Groupon Clone 1.0 has SQL Injection via the item_details.php id parameter or the vendor_details.php id parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17576

    Last Modified: 20 Apr 2025

    FS Gigs Script 1.0 has SQL Injection via the browse-category.php cat parameter, browse-scategory.php sc parameter, or service-provider.php ser parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17583

    Last Modified: 20 Apr 2025

    FS Shutterstock Clone 1.0 has SQL Injection via the /Category keywords parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17585

    Last Modified: 20 Apr 2025

    FS Monster Clone 1.0 has SQL Injection via the Employer_Details.php id parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17587

    Last Modified: 20 Apr 2025

    FS Indiamart Clone 1.0 has SQL Injection via the catcompany.php token parameter, buyleads-details.php id parameter, or company/index.php c parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17591

    Last Modified: 20 Apr 2025

    Realestate Crowdfunding Script 2.7.2 has SQL Injection via the single-cause.php pid parameter.

    Published: 13 Dec 2017
    9.8
    Critical

    CVE-2017-17592

    Last Modified: 20 Apr 2025

    Website Auction Marketplace 2.0.5 has SQL Injection via the search.php cat_id parameter.

    Published: 13 Dec 2017