CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2017-14358

    Last Modified: 20 Apr 2025

    A URL redirection to untrusted site vulnerability in HP ArcSight ESM and HP ArcSight ESM Express, in any 6.x version prior to 6.9.1c Patch 4 or 6.11.0 Patch 1. This vulnerability could be exploited remotely to allow URL redirection to untrusted site.

    Published: 31 Oct 2017
    5.9
    Medium

    CVE-2017-3934

    Last Modified: 20 Apr 2025

    Missing HTTP Strict Transport Security state information vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows man-in-the-middle attackers to expose confidential data via read files on the webserver.

    Published: 31 Oct 2017
    7.5
    High

    CVE-2017-3935

    Last Modified: 20 Apr 2025

    Network Data Loss Prevention is vulnerable to MIME type sniffing which allows older versions of Internet Explorer to perform MIME-sniffing on the response body, potentially causing the response body to be interpreted and displayed as a content type other than the intended content type.

    Published: 31 Oct 2017
    Unknown

    CVE-2016-0759

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-4003. Reason: This candidate is a reservation duplicate of CVE-2016-4003. Notes: All CVE users should reference CVE-2016-4003 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 31 Oct 2017
    7.8
    High

    CVE-2017-15950

    Last Modified: 20 Apr 2025

    Flexense SyncBreeze Enterprise version 10.1.16 is vulnerable to a buffer overflow that can be exploited for arbitrary code execution. The flaw is triggered by providing a long input into the "Destination directory" field, either within an XML document or through use of passive mode.

    Published: 31 Oct 2017
    5.4
    Medium

    CVE-2017-3933

    Last Modified: 20 Apr 2025

    Embedding Script (XSS) in HTTP Headers vulnerability in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view confidential information via a cross site request forgery attack.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15984

    Last Modified: 20 Apr 2025

    Creative Management System (CMS) Lite 1.4 allows SQL Injection via the S parameter to index.php.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15992

    Last Modified: 20 Apr 2025

    Website Broker Script allows SQL Injection via the 'status_id' Parameter to status_list.php.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15977

    Last Modified: 20 Apr 2025

    Protected Links - Expiring Download Links 1.0 allows SQL Injection via the username parameter.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15985

    Last Modified: 20 Apr 2025

    Basic B2B Script allows SQL Injection via the product_view1.php pid or id parameter.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15987

    Last Modified: 20 Apr 2025

    Fake Magazine Cover Script allows SQL Injection via the rate.php value parameter or the content.php id parameter.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15991

    Last Modified: 20 Apr 2025

    Vastal I-Tech Agent Zone (aka The Real Estate Script) allows SQL Injection in searchCommercial.php via the property_type, city, or posted_by parameter, or searchResidential.php via the property_type, city, or bedroom parameter, a different vulnerability than CVE-2008-3951, CVE-2009-3497, and CVE-2012-0982.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15993

    Last Modified: 20 Apr 2025

    Zomato Clone Script allows SQL Injection via the restaurant-menu.php resid parameter.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2015-9245

    Last Modified: 20 Apr 2025

    Insecure default configuration in Progress Software OpenEdge 10.2x and 11.x allows unauthenticated remote attackers to specify arbitrary URLs from which to load and execute malicious Java classes via port 20931.

    Published: 31 Oct 2017
    6.1
    Medium

    CVE-2016-10699

    Last Modified: 20 Apr 2025

    D-Link DSL-2740E 1.00_BG_20150720 devices are prone to persistent XSS attacks in the username and password fields: a remote unauthenticated user may craft logins and passwords with script tags in them. Because there is no sanitization in the input fields, an unaware logged-in administrator may be a victim when checking the router logs.

    Published: 31 Oct 2017
    6.1
    Medium

    CVE-2017-14373

    Last Modified: 20 Apr 2025

    EMC RSA Authentication Manager 8.2 SP1 P4 and earlier contains a reflected cross-site scripting vulnerability that could potentially be exploited by malicious users to compromise the affected system.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15978

    Last Modified: 20 Apr 2025

    AROX School ERP PHP Script 1.0 allows SQL Injection via the office_admin/ id parameter.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15979

    Last Modified: 20 Apr 2025

    Shareet - Photo Sharing Social Network 1.0 allows SQL Injection via the photo parameter.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15980

    Last Modified: 20 Apr 2025

    US Zip Codes Database Script 1.0 allows SQL Injection via the state parameter.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15981

    Last Modified: 20 Apr 2025

    Responsive Newspaper Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15982

    Last Modified: 20 Apr 2025

    Dynamic News Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15983

    Last Modified: 20 Apr 2025

    MyMagazine Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15986

    Last Modified: 20 Apr 2025

    CPA Lead Reward Script allows SQL Injection via the username parameter.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15988

    Last Modified: 20 Apr 2025

    Nice PHP FAQ Script allows SQL Injection via the index.php nice_theme parameter, a different vulnerability than CVE-2008-6525.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15989

    Last Modified: 20 Apr 2025

    Online Exam Test Application allows SQL Injection via the resources.php sort parameter in a category action.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-15990

    Last Modified: 20 Apr 2025

    Php Inventory & Invoice Management System allows Arbitrary File Upload via dashboard/edit_myaccountdetail/.

    Published: 31 Oct 2017
    5.5
    Medium

    CVE-2017-1000383

    Last Modified: 20 Apr 2025

    GNU Emacs version 25.3.1 (and other versions most likely) ignores umask when creating a backup save file ("[ORIGINAL_FILENAME]~") resulting in files that may be world readable or otherwise accessible in ways not intended by the user running the emacs binary.

    Published: 31 Oct 2017
    5.5
    Medium

    CVE-2017-1000382

    Last Modified: 20 Apr 2025

    VIM version 8.0.1187 (and other versions most likely) ignores umask when creating a swap file ("[ORIGINAL_FILENAME].swp") resulting in files that may be world readable or otherwise accessible in ways not intended by the user running the vi binary.

    Published: 31 Oct 2017
    9.8
    Critical

    CVE-2017-16548

    Last Modified: 20 Apr 2025

    The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for a trailing '\0' character in an xattr name, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact by sending crafted data to the daemon.

    Published: 31 Oct 2017
    7.8
    High

    CVE-2017-16826

    Last Modified: 20 Apr 2025

    The coff_slurp_line_table function in coffcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via a crafted PE file.

    Published: 31 Oct 2017
    7.8
    High

    CVE-2017-16832

    Last Modified: 20 Apr 2025

    The pe_bfd_read_buildid function in peicode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate size and offset values in the data dictionary, which allows remote attackers to cause a denial of service (segmentation violation and application crash) or possibly have unspecified other impact via a crafted PE file.

    Published: 31 Oct 2017
    8.1
    High

    CVE-2017-17426

    Last Modified: 20 Apr 2025

    The malloc function in the GNU C Library (aka glibc or libc6) 2.26 could return a memory block that is too small if an attempt is made to allocate an object whose size is close to SIZE_MAX, potentially leading to a subsequent heap overflow. This occurs because the per-thread cache (aka tcache) feature enables a code path that lacks an integer overflow check.

    Published: 31 Oct 2017
    6.1
    Medium

    CVE-2017-15100

    Last Modified: 20 Apr 2025

    An attacker submitting facts to the Foreman server containing HTML can cause a stored XSS on certain pages: (1) Facts page, when clicking on the "chart" button and hovering over the chart; (2) Trends page, when checking the graph for a trend based on a such fact; (3) Statistics page, for facts that are aggregated on this page.

    Published: 31 Oct 2017
    10
    Critical

    CVE-2017-10151

    Last Modified: 20 Apr 2025

    Vulnerability in the Oracle Identity Manager component of Oracle Fusion Middleware (subcomponent: Default Account). Supported versions that are affected are 11.1.1.7, 11.1.2.3 and 12.2.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Identity Manager. While the vulnerability is in Oracle Identity Manager, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle Identity Manager. CVSS 3.0 Base Score 10.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H).

    Published: 30 Oct 2017
    9.8
    Critical

    CVE-2013-4366

    Last Modified: 20 Apr 2025

    http/impl/client/HttpClientBuilder.java in Apache HttpClient 4.3.x before 4.3.1 does not ensure that X509HostnameVerifier is not null, which allows attackers to have unspecified impact via vectors involving hostname verification.

    Published: 30 Oct 2017
    7.5
    High

    CVE-2014-0072

    Last Modified: 20 Apr 2025

    ios/CDVFileTransfer.m in the Apache Cordova File-Transfer standalone plugin (org.apache.cordova.file-transfer) before 0.4.2 for iOS and the File-Transfer plugin for iOS from Cordova 2.4.0 through 2.9.0 might allow remote attackers to spoof SSL servers by leveraging a default value of true for the trustAllHosts option.

    Published: 30 Oct 2017
    6.1
    Medium

    CVE-2012-5636

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Apache Wicket 1.4.x before 1.4.22, 1.5.x before 1.5.10, and 6.x before 6.4.0 might allow remote attackers to inject arbitrary web script or HTML via vectors related to <script> tags in a rendered response.

    Published: 30 Oct 2017
    9.8
    Critical

    CVE-2012-4449

    Last Modified: 20 Apr 2025

    Apache Hadoop before 0.23.4, 1.x before 1.0.4, and 2.x before 2.0.2 generate token passwords using a 20-bit secret when Kerberos security features are enabled, which makes it easier for context-dependent attackers to crack secret keys via a brute-force attack.

    Published: 30 Oct 2017
    9.8
    Critical

    CVE-2014-0073

    Last Modified: 20 Apr 2025

    The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 through 2.9.0 does not properly validate callback identifiers, which allows remote attackers to execute arbitrary JavaScript in the host page and consequently gain privileges via a crafted gap-iab: URI.

    Published: 30 Oct 2017
    5.4
    Medium

    CVE-2017-16230

    Last Modified: 20 Apr 2025

    In admin/write-post.php in Typecho through 1.1, one can log in to the background page, write a new article, and add payload in the article content, resulting in XSS via index.php/action/contents-post-edit.

    Published: 30 Oct 2017
    5.4
    Medium

    CVE-2017-15888

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Custom Internet Radio List in Synology Audio Station before 6.3.0-3260 allows remote authenticated attackers to inject arbitrary web script or HTML via the NAME parameter.

    Published: 30 Oct 2017
    5.3
    Medium

    CVE-2009-1197

    Last Modified: 20 Apr 2025

    Apache jUDDI before 2.0 allows attackers to spoof entries in log files via vectors related to error logging of keys from uddiget.jsp.

    Published: 30 Oct 2017
    6.1
    Medium

    CVE-2009-1198

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Apache jUDDI before 2.0 allows remote attackers to inject arbitrary web script or HTML via the dsname parameter to happyjuddi.jsp.

    Published: 30 Oct 2017
    7.5
    High

    CVE-2014-0115

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in the log viewer in Apache Storm 0.9.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to log.

    Published: 30 Oct 2017
    7.5
    High

    CVE-2017-15921

    Last Modified: 20 Apr 2025

    In Watchdog Anti-Malware 2.74.186.150 and Online Security Pro 2.74.186.150, the zam32.sys driver contains a NULL pointer dereference vulnerability that gets triggered when sending an operation to ioctl 0x80002010. This is due to the input buffer being NULL or the input buffer size being 0 as they are not validated.

    Published: 30 Oct 2017
    7.5
    High

    CVE-2017-15920

    Last Modified: 20 Apr 2025

    In Watchdog Anti-Malware 2.74.186.150 and Online Security Pro 2.74.186.150, the zam32.sys driver contains a NULL pointer dereference vulnerability that gets triggered when sending an operation to ioctl 0x80002054. This is due to the input buffer being NULL or the input buffer size being 0 as they are not validated.

    Published: 30 Oct 2017
    5.4
    Medium

    CVE-2017-12460

    Last Modified: 20 Apr 2025

    An issue was discovered in Barco ClickShare CSM-1 firmware before v1.7.0.3 and CSC-1 firmware before v1.10.0.10. An authenticated user can manage the wallpaper collection in the webUI to be shown as background on the ClickShare product. By uploading a wallpaper with a specially crafted name, an HTML injection can be triggered as special characters are not neutralized before output.

    Published: 30 Oct 2017
    7.5
    High

    CVE-2014-3526

    Last Modified: 20 Apr 2025

    Apache Wicket before 1.5.12, 6.x before 6.17.0, and 7.x before 7.0.0-M3 might allow remote attackers to obtain sensitive information via vectors involving identifiers for storing page markup for temporary user sessions.

    Published: 30 Oct 2017
    9.8
    Critical

    CVE-2012-5357

    Last Modified: 20 Apr 2025

    Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data.

    Published: 30 Oct 2017
    9.8
    Critical

    CVE-2012-5358

    Last Modified: 20 Apr 2025

    The XSLTCompiledTransform function in Ektron Content Management System (CMS) before 8.02 SP5 configures the XSL with enableDocumentFunction set to true, which allows remote attackers to read arbitrary files and consequently bypass authentication, modify viewstate, cause a denial of service, or possibly have unspecified other impact via crafted XSL data.

    Published: 30 Oct 2017