CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2017-14759

    Last Modified: 20 Apr 2025

    OpenText Document Sciences xPression (formerly EMC Document Sciences xPression) v4.5SP1 Patch 13 (older versions might be affected as well) is prone to an XML External Entity vulnerability: /xFramework/services/QuickDoc.QuickDocHttpSoap11Endpoint/. An unauthenticated user is able to read directory listings or system files, or cause SSRF or Denial of Service.

    Published: 2 Oct 2017
    4.9
    Medium

    CVE-2017-9538

    Last Modified: 20 Apr 2025

    The 'Upload logo from external path' function of SolarWinds Network Performance Monitor version 12.0.15300.90 allows remote attackers to cause a denial of service (permanent display of a "Cannot exit above the top directory" error message throughout the entire web application) via a ".." in the path field. In other words, the denial of service is caused by an incorrect implementation of a directory-traversal protection mechanism.

    Published: 2 Oct 2017
    6.1
    Medium

    CVE-2017-12792

    Last Modified: 20 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in NexusPHP 1.5 allow remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the (1) linkname, (2) url, or (3) title parameter in an add action to linksmanage.php.

    Published: 2 Oct 2017
    4.8
    Medium

    CVE-2017-9537

    Last Modified: 20 Apr 2025

    Persistent cross-site scripting (XSS) in the Add Node function of SolarWinds Network Performance Monitor version 12.0.15300.90 allows remote attackers to introduce arbitrary JavaScript into various vulnerable parameters.

    Published: 2 Oct 2017
    9.8
    Critical

    CVE-2017-12620

    Last Modified: 20 Apr 2025

    When loading models or dictionaries that contain XML it is possible to perform an XXE attack, since Apache OpenNLP is a library, this only affects applications that load models or dictionaries from untrusted sources. The versions 1.5.0 to 1.5.3, 1.6.0, 1.7.0 to 1.7.2, 1.8.0 to 1.8.1 of Apache OpenNLP are affected.

    Published: 2 Oct 2017
    5.3
    Medium

    CVE-2014-0043

    Last Modified: 20 Apr 2025

    In Apache Wicket 1.5.10 or 6.13.0, by issuing requests to special urls handled by Wicket, it is possible to check for the existence of particular classes in the classpath and thus check whether a third party library with a known security vulnerability is in use.

    Published: 2 Oct 2017
    8.8
    High

    CVE-2016-6806

    Last Modified: 20 Apr 2025

    Apache Wicket 6.x before 6.25.0, 7.x before 7.5.0, and 8.0.0-M1 provide a CSRF prevention measure that fails to discover some cross origin requests. The mitigation is to not only check the Origin HTTP header, but also take the Referer HTTP header into account when no Origin was provided. Furthermore, not all Wicket server side targets were subjected to the CSRF check. This was also fixed.

    Published: 2 Oct 2017
    6.5
    Medium

    CVE-2017-9797

    Last Modified: 20 Apr 2025

    When an Apache Geode cluster before v1.2.1 is operating in secure mode, an unauthenticated client can enter multi-user authentication mode and send metadata messages. These metadata operations could leak information about application data types. In addition, an attacker could perform a denial of service attack on the cluster.

    Published: 2 Oct 2017
    5.4
    Medium

    CVE-2017-14985

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the EyesOfNetwork web interface (aka eonweb) 5.1-0 allows remote authenticated users to inject arbitrary web script or HTML via the url parameter to module/module_frame/index.php.

    Published: 2 Oct 2017
    4.8
    Medium

    CVE-2017-14983

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the EyesOfNetwork web interface (aka eonweb) 5.1-0 allows remote authenticated administrators to inject arbitrary web script or HTML via the object parameter to module/admin_conf/index.php.

    Published: 2 Oct 2017
    5.4
    Medium

    CVE-2017-14984

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the EyesOfNetwork web interface (aka eonweb) 5.1-0 allows remote authenticated users to inject arbitrary web script or HTML via the bp_name parameter to /module/admin_bp/add_services.php.

    Published: 2 Oct 2017
    7.5
    High

    CVE-2017-8018

    Last Modified: 20 Apr 2025

    EMC AppSync host plug-in versions 3.5 and below (Windows platform only) includes a denial of service (DoS) vulnerability that could potentially be exploited by malicious users to compromise the affected system.

    Published: 2 Oct 2017
    9.8
    Critical

    CVE-2017-8021

    Last Modified: 20 Apr 2025

    EMC Elastic Cloud Storage (ECS) before 3.1 is affected by an undocumented account vulnerability that could potentially be leveraged by malicious users to compromise the affected system.

    Published: 2 Oct 2017
    9.8
    Critical

    CVE-2017-13997

    Last Modified: 20 Apr 2025

    A Missing Authentication for Critical Function issue was discovered in Schneider Electric InduSoft Web Studio v8.0 SP2 or prior, and InTouch Machine Edition v8.0 SP2 or prior. InduSoft Web Studio provides the capability for an HMI client to trigger script execution on the server for the purposes of performing customized calculations or actions. A remote malicious entity could bypass the server authentication and trigger the execution of an arbitrary command. The command is executed under high privileges and could lead to a complete compromise of the server.

    Published: 2 Oct 2017
    5.4
    Medium

    CVE-2017-14981

    Last Modified: 20 Apr 2025

    Cross-Site Scripting (XSS) was discovered in ATutor before 2.2.3. The vulnerability exists due to insufficient filtration of data (url in /mods/_standard/rss_feeds/edit_feed.php). An attacker could inject arbitrary HTML and script code into a browser in the context of the vulnerable website.

    Published: 2 Oct 2017
    7.5
    High

    CVE-2017-14495

    Last Modified: 20 Apr 2025

    Memory leak in dnsmasq before 2.78, when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial of service (memory consumption) via vectors involving DNS response creation.

    Published: 2 Oct 2017
    9.8
    Critical

    CVE-2017-14492

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted IPv6 router advertisement request.

    Published: 2 Oct 2017
    7.5
    High

    CVE-2017-14949

    Last Modified: 20 Apr 2025

    Restlet Framework before 2.3.12 allows remote attackers to access arbitrary files via a crafted REST API HTTP request that conducts an XXE attack, because only general external entities (not parameter external entities) are properly considered. This is related to XmlRepresentation, DOMRepresentation, SaxRepresentation, and JacksonRepresentation.

    Published: 2 Oct 2017
    9.8
    Critical

    CVE-2017-14491

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.

    Published: 2 Oct 2017
    9.8
    Critical

    CVE-2017-14493

    Last Modified: 20 Apr 2025

    Stack-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DHCPv6 request.

    Published: 2 Oct 2017
    5.9
    Medium

    CVE-2017-14494

    Last Modified: 20 Apr 2025

    dnsmasq before 2.78, when configured as a relay, allows remote attackers to obtain sensitive memory information via vectors involving handling DHCPv6 forwarded requests.

    Published: 2 Oct 2017
    7.5
    High

    CVE-2017-14496

    Last Modified: 20 Apr 2025

    Integer underflow in the add_pseudoheader function in dnsmasq before 2.78 , when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial of service via a crafted DNS request.

    Published: 2 Oct 2017
    7.5
    High

    CVE-2017-16227

    Last Modified: 20 Apr 2025

    The aspath_put function in bgpd/bgp_aspath.c in Quagga before 1.2.2 allows remote attackers to cause a denial of service (session drop) via BGP UPDATE messages, because AS_PATH size calculation for long paths counts certain bytes twice and consequently constructs an invalid message.

    Published: 2 Oct 2017
    6.1
    Medium

    CVE-2017-14957

    Last Modified: 20 Apr 2025

    Stored XSS vulnerability via a comment in inc/conv.php in BlogoText before 3.7.6 allows an unauthenticated attacker to inject JavaScript. If the victim is an administrator, an attacker can (for example) change global settings or create/delete posts. It is also possible to execute JavaScript against unauthenticated users of the blog.

    Published: 1 Oct 2017
    7.2
    High

    CVE-2017-14958

    Last Modified: 20 Apr 2025

    lib.php in PivotX 2.3.11 does not properly block uploads of dangerous file types by admin users, which allows remote PHP code execution via an upload of a .php file.

    Published: 1 Oct 2017
    5.5
    Medium

    CVE-2017-18200

    Last Modified: 21 Nov 2024

    The f2fs implementation in the Linux kernel before 4.14 mishandles reference counts associated with f2fs_wait_discard_bios calls, which allows local users to cause a denial of service (BUG), as demonstrated by fstrim.

    Published: 1 Oct 2017
    7.5
    High

    CVE-2017-14797

    Last Modified: 20 Apr 2025

    Lack of Transport Encryption in the public API in Philips Hue Bridge BSB002 SW 1707040932 allows remote attackers to read API keys (and consequently bypass the pushlink protection mechanism, and obtain complete control of the connected accessories) by leveraging the ability to sniff HTTP traffic on the local intranet network.

    Published: 30 Sept 2017
    8.8
    High

    CVE-2017-18209

    Last Modified: 21 Nov 2024

    In the GetOpenCLCachedFilesDirectory function in magick/opencl.c in ImageMagick 7.0.7, a NULL pointer dereference vulnerability occurs because a memory allocation result is not checked, related to GetOpenCLCacheDirectory.

    Published: 30 Sept 2017
    6.5
    Medium

    CVE-2017-18250

    Last Modified: 21 Nov 2024

    An issue was discovered in ImageMagick 7.0.7. A NULL pointer dereference vulnerability was found in the function LogOpenCLBuildFailure in MagickCore/opencl.c, which allows attackers to cause a denial of service via a crafted file.

    Published: 30 Sept 2017
    7.5
    High

    CVE-2017-14977

    Last Modified: 20 Apr 2025

    The FoFiTrueType::getCFFBlock function in FoFiTrueType.cc in Poppler 0.59.0 has a NULL pointer dereference vulnerability due to lack of validation of a table pointer, which allows an attacker to launch a denial of service attack.

    Published: 30 Sept 2017
    6.5
    Medium

    CVE-2017-15232

    Last Modified: 20 Apr 2025

    libjpeg-turbo 1.5.2 has a NULL Pointer Dereference in jdpostct.c and jquant1.c via a crafted JPEG file.

    Published: 30 Sept 2017
    9.8
    Critical

    CVE-2017-18210

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.7, a NULL pointer dereference vulnerability was found in the function BenchmarkOpenCLDevices in MagickCore/opencl.c because a memory allocation result is not checked.

    Published: 30 Sept 2017
    6.5
    Medium

    CVE-2017-14941

    Last Modified: 20 Apr 2025

    Jaspersoft JasperReports 4.7 suffers from a saved credential disclosure vulnerability, which allows a remote authenticated user to retrieve stored Data Source passwords by accessing flow.html and reading the HTML source code of the page reached in an Edit action for a Data Source connector.

    Published: 30 Sept 2017
    9.8
    Critical

    CVE-2017-18211

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.7, a NULL pointer dereference vulnerability was found in the function saveBinaryCLProgram in magick/opencl.c because a program-lookup result is not checked, related to CacheOpenCLKernel.

    Published: 30 Sept 2017
    6.5
    Medium

    CVE-2017-18251

    Last Modified: 21 Nov 2024

    An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerability was found in the function ReadPCDImage in coders/pcd.c, which allow remote attackers to cause a denial of service via a crafted file.

    Published: 30 Sept 2017
    6.5
    Medium

    CVE-2017-18252

    Last Modified: 21 Nov 2024

    An issue was discovered in ImageMagick 7.0.7. The MogrifyImageList function in MagickWand/mogrify.c allows attackers to cause a denial of service (assertion failure and application exit in ReplaceImageInList) via a crafted file.

    Published: 30 Sept 2017
    6.5
    Medium

    CVE-2017-18253

    Last Modified: 21 Nov 2024

    An issue was discovered in ImageMagick 7.0.7. A NULL pointer dereference vulnerability was found in the function LoadOpenCLDevices in MagickCore/opencl.c, which allows attackers to cause a denial of service via a crafted file.

    Published: 30 Sept 2017
    6.5
    Medium

    CVE-2017-18254

    Last Modified: 21 Nov 2024

    An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerability was found in the function WriteGIFImage in coders/gif.c, which allow remote attackers to cause a denial of service via a crafted file.

    Published: 30 Sept 2017
    4.3
    Medium

    CVE-2017-9794

    Last Modified: 20 Apr 2025

    When a cluster is operating in secure mode, a user with read privileges for specific data regions can use the gfsh command line utility to execute queries. In Apache Geode before 1.2.1, the query results may contain data from another user's concurrently executing gfsh query, potentially revealing data that the user is not authorized to view.

    Published: 29 Sept 2017
    8.8
    High

    CVE-2015-9233

    Last Modified: 20 Apr 2025

    The cp-contact-form-with-paypal (aka CP Contact Form with PayPal) plugin before 1.1.6 for WordPress has CSRF with resultant XSS, related to cp_contactformpp.php and cp_contactformpp_admin_int_list.inc.php.

    Published: 29 Sept 2017
    7.2
    High

    CVE-2015-9234

    Last Modified: 20 Apr 2025

    The cp-contact-form-with-paypal (aka CP Contact Form with PayPal) plugin before 1.1.6 for WordPress has SQL injection via the cp_contactformpp_id parameter to cp_contactformpp.php.

    Published: 29 Sept 2017
    7.8
    High

    CVE-2017-14946

    Last Modified: 20 Apr 2025

    Artifex GSView 6.0 Beta on Windows allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to "Data from Faulting Address controls Branch Selection starting at mupdfnet64!mIncrementalSaveFile+0x000000000000344e."

    Published: 29 Sept 2017
    7.8
    High

    CVE-2017-14947

    Last Modified: 20 Apr 2025

    Artifex GSView 6.0 Beta on Windows allows attackers to execute arbitrary code or cause a denial of service via a crafted .xps file, related to a "Read Access Violation on Block Data Move starting at mupdfnet64!mIncrementalSaveFile+0x0000000000193359."

    Published: 29 Sept 2017
    7.8
    High

    CVE-2017-13684

    Last Modified: 20 Apr 2025

    Unisys Libra 64xx and 84xx and FS601 class systems with MCP-FIRMWARE before 43.211 allow remote authenticated users to cause a denial of service (program crash) or have unspecified other impact via vectors related to incorrect literal handling, which trigger CPM stack corruption.

    Published: 29 Sept 2017
    5.9
    Medium

    CVE-2017-14582

    Last Modified: 20 Apr 2025

    The Zoho Site24x7 Mobile Network Poller application before 1.1.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a self-signed certificate.

    Published: 29 Sept 2017
    7.8
    High

    CVE-2017-14945

    Last Modified: 20 Apr 2025

    Artifex GSView 6.0 Beta on Windows allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to "Possible Stack Corruption starting at KERNELBASE!RaiseException+0x0000000000000068."

    Published: 29 Sept 2017
    9.8
    Critical

    CVE-2017-14351

    Last Modified: 20 Apr 2025

    A potential security vulnerability has been identified in HP UCMDB Configuration Manager versions 10.10, 10.11, 10.20, 10.21, 10.22, 10.23. These vulnerabilities could be remotely exploited to allow code execution.

    Published: 29 Sept 2017
    6.1
    Medium

    CVE-2017-14352

    Last Modified: 20 Apr 2025

    A potential security vulnerability has been identified in HP UCMDB Configuration Manager versions 10.10, 10.11, 10.20, 10.21, 10.22, 10.23. These vulnerabilities could be remotely exploited to allow cross-site scripting.

    Published: 29 Sept 2017
    9.8
    Critical

    CVE-2017-14942

    Last Modified: 20 Apr 2025

    Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication, via a direct request for cgi-bin/DownloadCfg/RouterCfm.cfg containing an admin:language=pt cookie.

    Published: 29 Sept 2017
    7.5
    High

    CVE-2017-14944

    Last Modified: 20 Apr 2025

    Inedo ProGet before 4.7.14 does not properly address dangerous package IDs during package addition, aka PG-1060.

    Published: 29 Sept 2017