CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2014-3624

    Last Modified: 20 Apr 2025

    Apache Traffic Server 5.1.x before 5.1.1 allows remote attackers to bypass access restrictions by leveraging failure to properly tunnel remap requests using CONNECT.

    Published: 30 Oct 2017
    8.8
    High

    CVE-2017-9377

    Last Modified: 20 Apr 2025

    A command injection was identified on Barco ClickShare Base Unit devices with CSM-1 firmware before 1.7.0.3 and CSC-1 firmware before 1.10.0.10. An attacker with access to the product's web API can exploit this vulnerability to completely compromise the vulnerable device.

    Published: 30 Oct 2017
    9.8
    Critical

    CVE-2015-3249

    Last Modified: 20 Apr 2025

    The HTTP/2 experimental feature in Apache Traffic Server 5.3.x before 5.3.1 allows remote attackers to cause a denial of service (out-of-bounds access and daemon crash) or possibly execute arbitrary code via vectors related to the (1) frame_handlers array or (2) set_dynamic_table_size function.

    Published: 30 Oct 2017
    8.8
    High

    CVE-2016-3090

    Last Modified: 20 Apr 2025

    The TextParseUtil.translateVariables method in Apache Struts 2.x before 2.3.20 allows remote attackers to execute arbitrary code via a crafted OGNL expression with ANTLR tooling.

    Published: 30 Oct 2017
    8.8
    High

    CVE-2017-7411

    Last Modified: 20 Apr 2025

    An issue was discovered in Enalean Tuleap 9.6 and prior versions. The vulnerability exists because the User::getRecentElements() method is using the unserialize() function with a preference value that can be arbitrarily manipulated by malicious users through the REST API interface, and this can be exploited to inject arbitrary PHP objects into the application scope, allowing an attacker to perform a variety of attacks (including but not limited to Remote Code Execution).

    Published: 30 Oct 2017
    7.8
    High

    CVE-2017-9450

    Last Modified: 20 Apr 2025

    The Amazon Web Services (AWS) CloudFormation bootstrap tools package (aka aws-cfn-bootstrap) before 1.4-19.10 allows local users to execute arbitrary code with root privileges by leveraging the ability to create files in an unspecified directory.

    Published: 30 Oct 2017
    5.5
    Medium

    CVE-2018-15859

    Last Modified: 21 Nov 2024

    Unchecked NULL pointer usage when parsing invalid atoms in ExprResolveLhs in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because lookup failures are mishandled.

    Published: 30 Oct 2017
    7.5
    High

    CVE-2017-15998

    Last Modified: 20 Apr 2025

    In the "NQ Contacts Backup & Restore" application 1.1 for Android, DES encryption with a static key is used to secure transmitted contact data. This makes it easier for remote attackers to obtain cleartext information by sniffing the network.

    Published: 29 Oct 2017
    7.2
    High

    CVE-2017-16000

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in the EyesOfNetwork web interface (aka eonweb) 5.1-0 allows remote authenticated administrators to execute arbitrary SQL commands via the graph parameter to module/capacity_per_label/index.php.

    Published: 29 Oct 2017
    7.8
    High

    CVE-2017-15997

    Last Modified: 20 Apr 2025

    In the "NQ Contacts Backup & Restore" application 1.1 for Android, RC4 encryption is used to secure the user password locally stored in shared preferences. Because there is a static RC4 key, an attacker can gain access to user credentials more easily by leveraging access to the preferences XML file.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15999

    Last Modified: 20 Apr 2025

    In the "NQ Contacts Backup & Restore" application 1.1 for Android, no HTTPS is used for transmitting login and synced user data. When logging in, the username is transmitted in cleartext along with an SHA-1 hash of the password. The attacker can either crack this hash or use it for further attacks where only the hash value is required.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15960

    Last Modified: 20 Apr 2025

    Article Directory Script 3.0 allows SQL Injection via the id parameter to author.php or category.php.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15969

    Last Modified: 20 Apr 2025

    PG All Share Video 1.0 allows SQL Injection via the PATH_INFO to search/tag, friends/index, users/profile, or video_catalog/category.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15976

    Last Modified: 20 Apr 2025

    ZeeBuddy 2x allows SQL Injection via the admin/editadgroup.php groupid parameter, a different vulnerability than CVE-2008-3604.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15967

    Last Modified: 20 Apr 2025

    Mailing List Manager Pro 3.0 allows SQL Injection via the edit parameter to admin/users in a sort=login action, or the edit parameter to admin/template.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15961

    Last Modified: 20 Apr 2025

    iProject Management System 1.0 allows SQL Injection via the ID parameter to index.php.

    Published: 29 Oct 2017
    7.5
    High

    CVE-2017-15956

    Last Modified: 20 Apr 2025

    ConverTo Video Downloader & Converter 1.4.1 allows Arbitrary File Download via the token parameter to download.php.

    Published: 29 Oct 2017
    8.8
    High

    CVE-2017-15957

    Last Modified: 20 Apr 2025

    my_profile.php in Ingenious School Management System 2.3.0 allows a student or teacher to upload an arbitrary file.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15958

    Last Modified: 20 Apr 2025

    D-Park Pro Domain Parking Script 1.0 allows SQL Injection via the username to admin/loginform.php.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15959

    Last Modified: 20 Apr 2025

    Adult Script Pro 2.2.4 allows SQL Injection via the PATH_INFO to a /download URI, a different vulnerability than CVE-2007-6576.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15962

    Last Modified: 20 Apr 2025

    iStock Management System 1.0 allows Arbitrary File Upload via user/profile.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15963

    Last Modified: 20 Apr 2025

    iTech Gigs Script 1.21 allows SQL Injection via the browse-scategory.php sc parameter or the service-provider.php ser parameter.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15964

    Last Modified: 20 Apr 2025

    Job Board Script Software allows SQL Injection via the PATH_INFO to a /job-details URI.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15965

    Last Modified: 20 Apr 2025

    The NS Download Shop (aka com_ns_downloadshop) component 2.2.6 for Joomla! allows SQL Injection via the id parameter in an invoice.create action.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15966

    Last Modified: 20 Apr 2025

    The Zh YandexMap (aka com_zhyandexmap) component 6.1.1.0 for Joomla! allows SQL Injection via the placemarklistid parameter to index.php.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15968

    Last Modified: 20 Apr 2025

    MyBuilder Clone 1.0 allows SQL Injection via the phpsqlsearch_genxml.php subcategory parameter.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15970

    Last Modified: 20 Apr 2025

    PHP CityPortal 2.0 allows SQL Injection via the nid parameter to index.php in a page=news action, or the cat parameter.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15971

    Last Modified: 20 Apr 2025

    Same Sex Dating Software Pro 1.0 allows SQL Injection via the viewprofile.php profid parameter, the viewmessage.php sender_id parameter, or the /admin Email field, a related issue to CVE-2017-15972.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15972

    Last Modified: 20 Apr 2025

    SoftDatepro Dating Social Network 1.3 allows SQL Injection via the viewprofile.php profid parameter, the viewmessage.php sender_id parameter, or the /admin Email field, a related issue to CVE-2017-15971.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15973

    Last Modified: 20 Apr 2025

    Sokial Social Network Script 1.0 allows SQL Injection via the id parameter to admin/members_view.php.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15974

    Last Modified: 20 Apr 2025

    tPanel 2009 allows SQL injection for Authentication Bypass via 'or 1=1 or ''=' to login.php.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-15975

    Last Modified: 20 Apr 2025

    Vastal I-Tech Dating Zone 0.9.9 allows SQL Injection via the 'product_id' to add_to_cart.php, a different vulnerability than CVE-2008-4461.

    Published: 29 Oct 2017
    5.5
    Medium

    CVE-2006-5331

    Last Modified: 20 Apr 2025

    The altivec_unavailable_exception function in arch/powerpc/kernel/traps.c in the Linux kernel before 2.6.19 on 64-bit systems mishandles the case where CONFIG_ALTIVEC is defined and the CPU actually supports Altivec, but the Altivec support was not detected by the kernel, which allows local users to cause a denial of service (panic) by triggering execution of an Altivec instruction.

    Published: 29 Oct 2017
    9.8
    Critical

    CVE-2017-16228

    Last Modified: 20 Apr 2025

    Dulwich before 0.18.5, when an SSH subprocess is used, allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-12976, CVE-2017-1000116, and CVE-2017-1000117.

    Published: 29 Oct 2017
    5.5
    Medium

    CVE-2017-15953

    Last Modified: 20 Apr 2025

    bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to a heap-based buffer overflow and crash when processing a malformed CUE (.cue) file.

    Published: 28 Oct 2017
    5.5
    Medium

    CVE-2017-15954

    Last Modified: 20 Apr 2025

    bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to a heap-based buffer overflow (with a resultant invalid free) and crash when processing a malformed CUE (.cue) file.

    Published: 28 Oct 2017
    5.5
    Medium

    CVE-2017-15955

    Last Modified: 20 Apr 2025

    bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to an "Access violation near NULL on destination operand" and crash when processing a malformed CUE (.cue) file.

    Published: 28 Oct 2017
    9.8
    Critical

    CVE-2017-15946

    Last Modified: 20 Apr 2025

    In the com_tag component 1.7.6 for Joomla!, a SQL injection vulnerability is located in the `tag` parameter to index.php. The request method to execute is GET.

    Published: 28 Oct 2017
    5.4
    Medium

    CVE-2017-15947

    Last Modified: 20 Apr 2025

    Simple ASC Content Management System v1.2 has XSS in the location field in the sign function, related to guestbook.asp, formgb.asp, and msggb.asp.

    Published: 28 Oct 2017
    7.2
    High

    CVE-2017-15949

    Last Modified: 20 Apr 2025

    Xavier PHP Management Panel 2.4 allows SQL injection via the usertoedit parameter to admin/adminuseredit.php or the log_id parameter to admin/editgroup.php.

    Published: 28 Oct 2017
    6.6
    Medium

    CVE-2017-16645

    Last Modified: 20 Apr 2025

    The ims_pcu_get_cdc_union_desc function in drivers/input/misc/ims-pcu.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (ims_pcu_parse_cdc_data out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.

    Published: 28 Oct 2017
    4.8
    Medium

    CVE-2017-15948

    Last Modified: 16 Jan 2026

    Perch Content Management System 3.0.3 allows unrestricted file upload (with resultant XSS) via the Asset Title field in conjunction with the Select File field. This is exploitable with a Limited Admin account.

    Published: 28 Oct 2017
    7.8
    High

    CVE-2017-15945

    Last Modified: 20 Apr 2025

    The installation scripts in the Gentoo dev-db/mysql, dev-db/mariadb, dev-db/percona-server, dev-db/mysql-cluster, and dev-db/mariadb-galera packages before 2017-09-29 have chown calls for user-writable directory trees, which allows local users to gain privileges by leveraging access to the mysql account for creation of a link.

    Published: 27 Oct 2017
    5.4
    Medium

    CVE-2017-15934

    Last Modified: 20 Apr 2025

    Artica Pandora FMS version 7.0 is vulnerable to stored Cross-Site Scripting in the map name parameter.

    Published: 27 Oct 2017
    7.5
    High

    CVE-2017-15582

    Last Modified: 20 Apr 2025

    In net.MCrypt in the "Diary with lock" (aka WriteDiary) application 4.72 for Android, hardcoded SecretKey and iv variables are used for the AES parameters, which makes it easier for attackers to obtain the cleartext of stored diary entries.

    Published: 27 Oct 2017
    5.4
    Medium

    CVE-2017-15936

    Last Modified: 20 Apr 2025

    In Artica Pandora FMS version 7.0, an Attacker with write Permission can create an agent with an XSS Payload; when a user enters the agent definitions page, the script will get executed.

    Published: 27 Oct 2017
    6.5
    Medium

    CVE-2017-15937

    Last Modified: 20 Apr 2025

    Artica Pandora FMS version 7.0 leaks a full installation pathname via GET data when intercepting the main page's graph requisition. This also implies that general OS information is leaked (e.g., a /var/www pathname typically means Linux or UNIX).

    Published: 27 Oct 2017
    7.5
    High

    CVE-2017-15581

    Last Modified: 20 Apr 2025

    In the "Diary with lock" (aka WriteDiary) application 4.72 for Android, neither HTTPS nor other encryption is used for transmitting data, despite the documentation that the product is intended for "a personal journal of ... secrets and feelings," which allows remote attackers to obtain sensitive information by sniffing the network during LoginActivity or NoteActivity execution.

    Published: 27 Oct 2017
    7.2
    High

    CVE-2017-15935

    Last Modified: 20 Apr 2025

    Artica Pandora FMS version 7.0 is vulnerable to remote PHP code execution through the manager files function. This is only exploitable by administrators who upload a PHP file.

    Published: 27 Oct 2017
    5.3
    Medium

    CVE-2015-1835

    Last Modified: 20 Apr 2025

    Apache Cordova Android before 3.7.2 and 4.x before 4.0.2, when an application does not set explicit values in config.xml, allows remote attackers to modify undefined secondary configuration variables (preferences) via a crafted intent: URL.

    Published: 27 Oct 2017