CVE Feed

    Dashboard / CVE

    5.9
    Medium

    CVE-2017-11063

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, as a result of a race condition between two userspace processes that interact with the driver concurrently, a null pointer dereference can potentially occur.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-9714

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, an out of bound memory access may happen in limCheckRxRSNIeMatch in case incorrect RSNIE is received from the client in assoc request.

    Published: 10 Oct 2017
    6.1
    Medium

    CVE-2016-10513

    Last Modified: 20 Apr 2025

    Cross Site Scripting (XSS) exists in Piwigo before 2.8.3 via a crafted search expression to include/functions_search.inc.php.

    Published: 10 Oct 2017
    6.5
    Medium

    CVE-2016-10514

    Last Modified: 20 Apr 2025

    url_check_format in include/functions.inc.php in Piwigo before 2.8.3 allows remote attackers to bypass intended access restrictions via a URL that contains a " character, or a URL beginning with a substring other than the http:// or https:// substring.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-11051

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, information disclosure is possible in function __wlan_hdd_cfg80211_testmode since buffer hb_params is not initialized to zero.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-11052

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a specially crafted QCA_NL80211_VENDOR_SUBCMD_NDP cfg80211 vendor command a buffer over-read can occur.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-11055

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a specially crafted QCA_NL80211_VENDOR_SUBCMD_SET_WIFI_CONFIGURATION cfg80211 vendor command, a buffer over-read can occur.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-11056

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while doing sha and cipher operations, a userspace buffer is directly accessed in kernel space potentially leading to a page fault.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-11057

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in compatibility mode, flash_data from 64-bit userspace may cause disclosure of kernel memory or a fault due to using a userspace-provided address.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-11059

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, setting the HMAC key by different threads during SHA operations may potentially lead to a buffer overflow.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-11062

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, currently attributes are not validated in __wlan_hdd_cfg80211_do_acs which can potentially lead to a buffer overread.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-11064

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a buffer overread is observed during processing of ACA_NL80211_VENDOR_SUBCMD_EXTSCAN_PNO_SET_PASSPOINT_LIST and QCA_NL80211_VENDOR_SUBCMD_EXTSCAN_PNO_SET_LIST cfg80211 vendor commands in __wlan_hdd_cfg80211_set_passpoint_list and hdd_extscan_passpoint_fill_network_list function respectively. Android ID: A-36815952. References: QC-CR#2054770, QC-CR#2058447, QC-CR#2066628, QC-CR#2087785

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-11067

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, the Athdiag procfs entry does not have a proper address sanity check which may potentially lead to the use of an out-of-range pointer offset.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-9683

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing a meta image, an integer overflow can occur, if user-defined image offset and size values are too large.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-9706

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, an array out-of-bounds access can potentially occur in a display driver.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-9717

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while parsing Netlink attributes, a buffer overread can occur.

    Published: 10 Oct 2017
    7
    High

    CVE-2017-9697

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition can allow access to already freed memory while reading command registration table entries in diag_dbgfs_read_table.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-9686

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, there is a possible double free/use after free in the SPS driver when debugfs logging is used.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2017-9687

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, two concurrent threads/processes can write the value of "0" to the debugfs file that controls ipa ipc log which will lead to the double-free in ipc_log_context_destroy(). Another issue is the Use-After-Free which can happen due to the race condition when the ipc log is deallocated via the debugfs call during a log print.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-9715

    Last Modified: 20 Apr 2025

    In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a vendor command, a buffer over-read can occur.

    Published: 10 Oct 2017
    4.2
    Medium

    CVE-2017-13675

    Last Modified: 20 Apr 2025

    A denial of service (DoS) attack in Symantec Endpoint Encryption before SEE 11.1.3HF2 allows remote attackers to make a particular machine or network resource unavailable to its intended users by temporarily or indefinitely disrupting services of a specific host within a network.

    Published: 10 Oct 2017
    4.2
    Medium

    CVE-2017-13679

    Last Modified: 20 Apr 2025

    A denial of service (DoS) attack in Symantec Encryption Desktop before SED 10.4.1 MP2HF1 allows remote attackers to make a particular machine or network resource unavailable to its intended users by temporarily or indefinitely disrupting services of a specific host within a network.

    Published: 10 Oct 2017
    6.5
    Medium

    CVE-2017-12623

    Last Modified: 20 Apr 2025

    An authorized user could upload a template which contained malicious code and accessed sensitive files via an XML External Entity (XXE) attack. The fix to properly handle XML External Entities was applied on the Apache NiFi 1.4.0 release. Users running a prior 1.x release should upgrade to the appropriate release.

    Published: 10 Oct 2017
    6.1
    Medium

    CVE-2017-15216

    Last Modified: 20 Apr 2025

    MISP before 2.4.81 has a potential reflected XSS in a quickDelete action that is used to delete a sighting, related to app/View/Sightings/ajax/quickDeleteConfirmationForm.ctp and app/webroot/js/misp.js.

    Published: 10 Oct 2017
    7.4
    High

    CVE-2015-2988

    Last Modified: 20 Apr 2025

    Rakuten card App for iOS 5.2.0 through 5.2.4 does not verify SSL certificates which might allow remote attackers to execute man-in-the-middle attacks.

    Published: 10 Oct 2017
    5.4
    Medium

    CVE-2015-6521

    Last Modified: 20 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in ATutor LMS version 2.2.

    Published: 10 Oct 2017
    7.4
    High

    CVE-2015-5639

    Last Modified: 20 Apr 2025

    niconico App for iOS before 6.38 does not verify SSL certificates which could allow remote attackers to execute man-in-the-middle attacks.

    Published: 10 Oct 2017
    7.8
    High

    CVE-2015-5675

    Last Modified: 20 Apr 2025

    The sys_amd64 IRET Handler in the kernel in FreeBSD 9.3 and 10.1 allows local users to gain privileges or cause a denial of service (kernel panic).

    Published: 10 Oct 2017
    7.5
    High

    CVE-2015-7503

    Last Modified: 20 Apr 2025

    Zend Framework before 2.4.9, zend-framework/zend-crypt 2.4.x before 2.4.9, and 2.5.x before 2.5.2 allows remote attackers to recover the RSA private key.

    Published: 10 Oct 2017
    5.9
    Medium

    CVE-2015-7778

    Last Modified: 20 Apr 2025

    Gurunavi App for iOS before 6.0.0 does not verify SSL certificates which could allow remote attackers to perform man-in-the-middle attacks.

    Published: 10 Oct 2017
    9.8
    Critical

    CVE-2008-7315

    Last Modified: 20 Apr 2025

    UI-Dialog 1.09 and earlier allows remote attackers to execute arbitrary commands.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2015-2856

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in the template function in function.inc in Accellion File Transfer Appliance devices before FTA_9_11_210 allows remote attackers to read arbitrary files via a .. (dot dot) in the statecode cookie.

    Published: 10 Oct 2017
    9.8
    Critical

    CVE-2017-12860

    Last Modified: 20 Apr 2025

    The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-screen - ensuring only those who can view it are streaming.In addition to the password, each projector has a hardcoded "backdoor" code (2270), which authenticates to all devices.

    Published: 10 Oct 2017
    9.8
    Critical

    CVE-2017-12861

    Last Modified: 20 Apr 2025

    The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-screen - ensuring only those who can view it are streaming.All Epson projectors supporting the "EasyMP" software are vulnerable to a brute-force vulnerability, allowing any attacker on the network to remotely control and stream to the vulnerable device

    Published: 10 Oct 2017
    9.9
    Critical

    CVE-2017-13706

    Last Modified: 20 Apr 2025

    XML external entity (XXE) vulnerability in the import package functionality of the deployment module in Lansweeper before 6.0.100.67 allows remote authenticated users to obtain sensitive information, cause a denial of service, conduct server-side request forgery (SSRF) attacks, conduct internal port scans, or have unspecified other impact via an XML request, aka bug #572705.

    Published: 10 Oct 2017
    7.5
    High

    CVE-2017-14943

    Last Modified: 20 Apr 2025

    Trapeze TransitMaster is vulnerable to information disclosure (emails / hashed passwords) via a modified userID field in JSON data to ManageSubscriber.aspx/GetSubscriber. NOTE: this software is independently deployed at multiple municipal transit systems; it is not found exclusively on the "webwatch.(REDACTED).com" server mentioned in the reference.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15207

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit tasks of a private project of another user.

    Published: 10 Oct 2017
    5.4
    Medium

    CVE-2017-15214

    Last Modified: 20 Apr 2025

    Stored XSS vulnerability in Flyspray 1.0-rc4 before 1.0-rc6 allows an authenticated user to inject JavaScript to gain administrator privileges and also to execute JavaScript against other users (including unauthenticated users), via the name, title, or id parameter to plugins/dokuwiki/lib/plugins/changelinks/syntax.php.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15200

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can add a new task to a private project of another user.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15208

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can remove automatic actions from a private project of another user.

    Published: 10 Oct 2017
    6.1
    Medium

    CVE-2017-15215

    Last Modified: 20 Apr 2025

    Reflected XSS vulnerability in Shaarli v0.9.1 allows an unauthenticated attacker to inject JavaScript via the searchtags parameter to index.php. If the victim is an administrator, an attacker can (for example) take over the admin session or change global settings or add/delete links. It is also possible to execute JavaScript against unauthenticated users.

    Published: 10 Oct 2017
    4.8
    Medium

    CVE-2017-15188

    Last Modified: 20 Apr 2025

    A persistent (stored) XSS vulnerability in the EyesOfNetwork web interface (aka eonweb) 5.1-0 allows remote authenticated administrators to inject arbitrary web script or HTML via the hosts array parameter to module/admin_device/index.php.

    Published: 10 Oct 2017
    6.1
    Medium

    CVE-2017-15194

    Last Modified: 20 Apr 2025

    include/global_session.php in Cacti 1.1.25 has XSS related to (1) the URI or (2) the refresh page.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15195

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit swimlanes of a private project of another user.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15196

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can remove columns from a private project of another user.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15197

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can add a new category to a private project of another user.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15198

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit a category of a private project of another user.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15199

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit metadata of a private project of another user, as demonstrated by Name, Email, Identifier, and Description.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15201

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit tags of a private project of another user.

    Published: 10 Oct 2017
    4.3
    Medium

    CVE-2017-15202

    Last Modified: 20 Apr 2025

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit columns of a private project of another user.

    Published: 10 Oct 2017