CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2017-15250

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to a "Read Access Violation starting at PDF!xmlParserInputRead+0x0000000000132e19."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15251

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .pdf file, related to "Data from Faulting Address controls Code Flow starting at PDF!xmlParserInputRead+0x00000000000e7326."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15252

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .pdf file, related to a "Read Access Violation on Block Data Move starting at PDF!xmlListWalk+0x00000000000158cb."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15253

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .pdf file, related to a "User Mode Write AV starting at PDF!xmlGetGlobalState+0x000000000007dff2."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15254

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to a "Read Access Violation starting at PDF!xmlGetGlobalState+0x000000000007dfa5."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15257

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .pdf file, related to "Data from Faulting Address controls Code Flow starting at PDF!xmlParserInputRead+0x000000000009174a."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15258

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to a "Read Access Violation starting at PDF!xmlParserInputRead+0x0000000000161a9c."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15259

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to "Data from Faulting Address controls Branch Selection starting at PDF!xmlParserInputRead+0x000000000011624a."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15260

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to "Data from Faulting Address may be used as a return value starting at PDF!xmlParserInputRead+0x0000000000129a59."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15261

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to a "Possible Stack Corruption starting at PDF!xmlGetGlobalState+0x0000000000057b35."

    Published: 11 Oct 2017
    7.8
    High

    CVE-2017-15264

    Last Modified: 20 Apr 2025

    IrfanView version 4.44 (32bit) allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .tif file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at image00000000_00400000+0x00000000000236e4."

    Published: 11 Oct 2017
    8.8
    High

    CVE-2017-2887

    Last Modified: 20 Apr 2025

    An exploitable buffer overflow vulnerability exists in the XCF property handling functionality of SDL_image 2.0.1. A specially crafted xcf file can cause a stack-based buffer overflow resulting in potential code execution. An attacker can provide a specially crafted XCF file to trigger this vulnerability.

    Published: 11 Oct 2017
    5.5
    Medium

    CVE-2017-15266

    Last Modified: 20 Apr 2025

    In GNU Libextractor 1.4, there is a Divide-By-Zero in EXTRACTOR_wav_extract_method in wav_extractor.c via a zero sample rate.

    Published: 11 Oct 2017
    7.5
    High

    CVE-2017-15267

    Last Modified: 20 Apr 2025

    In GNU Libextractor 1.4, there is a NULL Pointer Dereference in flac_metadata in flac_extractor.c.

    Published: 11 Oct 2017
    9.8
    Critical

    CVE-2017-15220

    Last Modified: 20 Apr 2025

    Flexense VX Search Enterprise 10.1.12 is vulnerable to a buffer overflow via an empty POST request to a long URI beginning with a /../ substring. This allows remote attackers to execute arbitrary code.

    Published: 11 Oct 2017
    9.8
    Critical

    CVE-2013-6924

    Last Modified: 20 Apr 2025

    Seagate BlackArmor NAS devices with firmware sg2000-2000.1331 allow remote attackers to execute arbitrary commands via shell metacharacters in the ip parameter to backupmgt/getAlias.php.

    Published: 11 Oct 2017
    5.4
    Medium

    CVE-2017-7352

    Last Modified: 20 Apr 2025

    Stored Cross-site scripting (XSS) vulnerability in Pure Storage Purity 4.7.5 allows remote authenticated users to inject arbitrary web script or HTML via the "host" parameter on the 'System > Configuration > SNMP > Add SNMP Trap Manager' screen.

    Published: 11 Oct 2017
    7.5
    High

    CVE-2017-15235

    Last Modified: 20 Apr 2025

    The File Manager (gollem) module 3.0.11 in Horde Groupware 5.2.21 allows remote attackers to bypass Horde authentication for file downloads via a crafted fn parameter that corresponds to the exact filename.

    Published: 11 Oct 2017
    7.5
    High

    CVE-2017-15236

    Last Modified: 20 Apr 2025

    Tiandy IP cameras 5.56.17.120 do not properly restrict a certain proprietary protocol, which allows remote attackers to read settings via a crafted request to TCP port 3001, as demonstrated by config* files and extendword.txt.

    Published: 11 Oct 2017
    8.8
    High

    CVE-2017-15238

    Last Modified: 20 Apr 2025

    ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26 has a use-after-free issue when the height or width is zero, related to ReadJNGImage.

    Published: 11 Oct 2017
    8.8
    High

    CVE-2017-1000393

    Last Modified: 21 Nov 2024

    Jenkins 2.73.1 and earlier, 2.83 and earlier users with permission to create or configure agents in Jenkins could configure a launch method called 'Launch agent via execution of command on master'. This allowed them to run arbitrary shell commands on the master node whenever the agent was supposed to be launched. Configuration of this launch method now requires the Run Scripts permission typically only granted to administrators.

    Published: 11 Oct 2017
    5.9
    Medium

    CVE-2017-1000396

    Last Modified: 21 Nov 2024

    Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks. This library is widely used as a transitive dependency in Jenkins plugins. The fix for CVE-2012-6153 was backported to the version of commons-httpclient that is bundled in core and made available to plugins.

    Published: 11 Oct 2017
    5.9
    Medium

    CVE-2017-1000402

    Last Modified: 21 Nov 2024

    Jenkins Swarm Plugin Client 3.4 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verified SSL certificates, making it susceptible to man-in-the-middle attacks.

    Published: 11 Oct 2017
    7
    High

    CVE-2017-15265

    Last Modified: 20 Apr 2025

    Race condition in the ALSA subsystem in the Linux kernel before 4.13.8 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted /dev/snd/seq ioctl calls, related to sound/core/seq/seq_clientmgr.c and sound/core/seq/seq_ports.c.

    Published: 11 Oct 2017
    4.3
    Medium

    CVE-2017-1000398

    Last Modified: 21 Nov 2024

    The remote API in Jenkins 2.73.1 and earlier, 2.83 and earlier at /computer/(agent-name)/api showed information about tasks (typically builds) currently running on that agent. This included information about tasks that the current user otherwise has no access to, e.g. due to lack of Item/Read permission. This has been fixed, and the API now only shows information about accessible tasks.

    Published: 11 Oct 2017
    7.5
    High

    CVE-2017-5721

    Last Modified: 20 Apr 2025

    Insufficient input validation in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to execute arbitrary code via manipulation of memory.

    Published: 11 Oct 2017
    7.5
    High

    CVE-2017-1000394

    Last Modified: 21 Nov 2024

    Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-fileupload library with the denial-of-service vulnerability known as CVE-2016-3092. The fix for that vulnerability has been backported to the version of the library bundled with Jenkins.

    Published: 11 Oct 2017
    4.3
    Medium

    CVE-2017-1000395

    Last Modified: 21 Nov 2024

    Jenkins 2.73.1 and earlier, 2.83 and earlier provides information about Jenkins user accounts which is generally available to anyone with Overall/Read permissions via the /user/(username)/api remote API. This included e.g. Jenkins users' email addresses if the Mailer Plugin is installed. The remote API now no longer includes information beyond the most basic (user ID and name) unless the user requesting it is a Jenkins administrator.

    Published: 11 Oct 2017
    4.3
    Medium

    CVE-2017-1000399

    Last Modified: 21 Nov 2024

    The Jenkins 2.73.1 and earlier, 2.83 and earlier remote API at /queue/item/(ID)/api showed information about tasks in the queue (typically builds waiting to start). This included information about tasks that the current user otherwise has no access to, e.g. due to lack of Item/Read permission. This has been fixed, and the API endpoint is now only available for tasks that the current user has access to.

    Published: 11 Oct 2017
    4.3
    Medium

    CVE-2017-1000400

    Last Modified: 21 Nov 2024

    The Jenkins 2.73.1 and earlier, 2.83 and earlier remote API at /job/(job-name)/api contained information about upstream and downstream projects. This included information about tasks that the current user otherwise has no access to, e.g. due to lack of Item/Read permission. This has been fixed, and the API now only lists upstream and downstream projects that the current user has access to.

    Published: 11 Oct 2017
    2.2
    Low

    CVE-2017-1000401

    Last Modified: 21 Nov 2024

    The Jenkins 2.73.1 and earlier, 2.83 and earlier default form control for passwords and other secrets, <f:password/>, supports form validation (e.g. for API keys). The form validation AJAX requests were sent via GET, which could result in secrets being logged to a HTTP access log in non-default configurations of Jenkins, and made available to users with access to these log files. Form validation for <f:password/> is now always sent via POST, which is typically not logged.

    Published: 11 Oct 2017
    6
    Medium

    CVE-2017-15289

    Last Modified: 20 Apr 2025

    The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.

    Published: 11 Oct 2017
    5.5
    Medium

    CVE-2017-15370

    Last Modified: 20 Apr 2025

    There is a heap-based buffer overflow in the ImaExpandS function of ima_rw.c in Sound eXchange (SoX) 14.4.2. A Crafted input will lead to a denial of service attack during conversion of an audio file.

    Published: 11 Oct 2017
    5.5
    Medium

    CVE-2017-15371

    Last Modified: 20 Apr 2025

    There is a reachable assertion abort in the function sox_append_comment() in formats.c in Sound eXchange (SoX) 14.4.2. A Crafted input will lead to a denial of service attack during conversion of an audio file.

    Published: 11 Oct 2017
    5.5
    Medium

    CVE-2017-15372

    Last Modified: 20 Apr 2025

    There is a stack-based buffer overflow in the lsx_ms_adpcm_block_expand_i function of adpcm.c in Sound eXchange (SoX) 14.4.2. A Crafted input will lead to a denial of service attack during conversion of an audio file.

    Published: 11 Oct 2017
    8.4
    High

    CVE-2017-5700

    Last Modified: 20 Apr 2025

    Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator and User passwords via access to password storage.

    Published: 11 Oct 2017
    7.1
    High

    CVE-2017-5701

    Last Modified: 20 Apr 2025

    Insecure platform configuration in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows an attacker with physical presence to run arbitrary code via unauthorized firmware modification during BIOS Recovery.

    Published: 11 Oct 2017
    7.5
    High

    CVE-2017-5722

    Last Modified: 20 Apr 2025

    Incorrect policy enforcement in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows attackers with local or physical access to bypass enforcement of integrity protections via manipulation of firmware storage.

    Published: 11 Oct 2017
    9.8
    Critical

    CVE-2017-15226

    Last Modified: 20 Apr 2025

    Zyxel NBG6716 V1.00(AAKG.9)C0 devices allow command injection in the ozkerz component because beginIndex and endIndex are used directly in a popen call.

    Published: 10 Oct 2017
    6.5
    Medium

    CVE-2017-1538

    Last Modified: 20 Apr 2025

    IBM Financial Transaction Manager for ACH Services for Multi-Platform 3.0.2 could allow an authenticated user to obtain sensitive information from an undocumented URL. IBM X-Force ID: 130735.

    Published: 10 Oct 2017
    6.1
    Medium

    CVE-2017-1503

    Last Modified: 20 Apr 2025

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to HTTP response splitting attacks. A remote attacker could exploit this vulnerability using specially-crafted URL to cause the server to return a split response, once the URL is clicked. This would allow the attacker to perform further attacks, such as Web cache poisoning, cross-site scripting, and possibly obtain sensitive information. IBM X-Force ID: 129578.

    Published: 10 Oct 2017
    5.4
    Medium

    CVE-2017-15219

    Last Modified: 20 Apr 2025

    The dotCMS 4.1.1 application is vulnerable to Stored Cross-Site Scripting (XSS) affecting a vanity-urls Title field, a containers Description field, and a templates Description field.

    Published: 10 Oct 2017
    9.8
    Critical

    CVE-2017-8994

    Last Modified: 20 Apr 2025

    A input validation vulnerability in HPE Operations Orchestration product all versions prior to 10.80, allows for the execution of code remotely.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-11048

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a display driver function, a Use After Free condition can occur.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-11050

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when the pktlogconf tool gives a pktlog buffer of size less than the minimal possible source data size in the host driver, a buffer overflow can potentially occur.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-11053

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when qos map set IE of length less than 16 is received in association response or in qos map configure action frame, a buffer overflow can potentially occur in ConvertQosMapsetFrame().

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-11054

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a specially crafted cfg80211 vendor command, a buffer over-read can occur.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-11061

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing cfg80211 vendor sub command QCA_NL80211_VENDOR_SUBCMD_ROAM, a buffer over-read can occur.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-11046

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when an audio driver ioctl handler is called, a kernel out-of-bounds write can potentially occur.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-11060

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a buffer overread is observed during processing of ACA_NL80211_VENDOR_SUBCMD_EXTSCAN_PNO_SET_PASSPOINT_LIST and QCA_NL80211_VENDOR_SUBCMD_EXTSCAN_PNO_SET_LIST cfg80211 vendor commands in __wlan_hdd_cfg80211_set_passpoint_list and hdd_extscan_passpoint_fill_network_list function respectively. Android ID: A-36817548. References: QC-CR#2058447, QC-CR#2054770.

    Published: 10 Oct 2017