CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2017-13754

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the "advanced settings - time server" module in Wibu-Systems CodeMeter before 6.50b allows remote attackers to inject arbitrary web script or HTML via the "server name" field in actions/ChangeConfiguration.html.

    Published: 7 Sept 2017
    9.8
    Critical

    CVE-2017-13771

    Last Modified: 20 Apr 2025

    Lexmark Scan To Network (SNF) 3.2.9 and earlier stores network configuration credentials in plaintext and transmits them in requests, which allows remote attackers to obtain sensitive information via requests to (1) cgi-bin/direct/printer/prtappauth/apps/snfDestServlet or (2) cgi-bin/direct/printer/prtappauth/apps/ImportExportServlet.

    Published: 7 Sept 2017
    8.8
    High

    CVE-2017-11567

    Last Modified: 20 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Mongoose Web Server before 6.9 allows remote attackers to hijack the authentication of users for requests that modify Mongoose.conf via a request to __mg_admin?save. NOTE: this issue can be leveraged to execute arbitrary code remotely.

    Published: 7 Sept 2017
    6.1
    Medium

    CVE-2017-12416

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the GlobalProtect internal and external gateway interface in Palo Alto Networks PAN-OS before 6.1.18, 7.0.x before 7.0.17, 7.1.x before 7.1.12, and 8.0.x before 8.0.3 allows remote attackers to inject arbitrary web script or HTML via vectors related to improper request parameter validation.

    Published: 7 Sept 2017
    8.8
    High

    CVE-2017-14169

    Last Modified: 20 Apr 2025

    In the mxf_read_primer_pack function in libavformat/mxfdec.c in FFmpeg 3.3.3 -> 2.4, an integer signedness error might occur when a crafted file, which claims a large "item_num" field such as 0xffffffff, is provided. As a result, the variable "item_num" turns negative, bypassing the check for a large value.

    Published: 7 Sept 2017
    6.5
    Medium

    CVE-2017-14170

    Last Modified: 20 Apr 2025

    In libavformat/mxfdec.c in FFmpeg 3.3.3 -> 2.4, a DoS in mxf_read_index_entry_array() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted MXF file, which claims a large "nb_index_entries" field in the header but does not contain sufficient backing data, is provided, the loop would consume huge CPU resources, since there is no EOF check inside the loop. Moreover, this big loop can be invoked multiple times if there is more than one applicable data segment in the crafted MXF file.

    Published: 7 Sept 2017
    6.5
    Medium

    CVE-2017-14171

    Last Modified: 20 Apr 2025

    In libavformat/nsvdec.c in FFmpeg 2.4 and 3.3.3, a DoS in nsv_parse_NSVf_header() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted NSV file, which claims a large "table_entries_used" field in the header but does not contain sufficient backing data, is provided, the loop over 'table_entries_used' would consume huge CPU resources, since there is no EOF check inside the loop.

    Published: 7 Sept 2017
    9.8
    Critical

    CVE-2017-12611

    Last Modified: 20 Apr 2025

    In Apache Struts 2.0.0 through 2.3.33 and 2.5 through 2.5.10.1, using an unintentional expression in a Freemarker tag instead of string literals can lead to a RCE attack.

    Published: 7 Sept 2017
    7.5
    High

    CVE-2017-14226

    Last Modified: 20 Apr 2025

    WP1StylesListener.cpp, WP5StylesListener.cpp, and WP42StylesListener.cpp in libwpd 0.10.1 mishandle iterators, which allows remote attackers to cause a denial of service (heap-based buffer over-read in the WPXTableList class in WPXTable.cpp). This vulnerability can be triggered in LibreOffice before 5.3.7. It may lead to suffering a remote attack against a LibreOffice application.

    Published: 7 Sept 2017
    6.5
    Medium

    CVE-2017-14175

    Last Modified: 20 Apr 2025

    In coders/xbm.c in ImageMagick 7.0.6-1 Q16, a DoS in ReadXBMImage() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted XBM file, which claims large rows and columns fields in the header but does not contain sufficient backing data, is provided, the loop over the rows would consume huge CPU resources, since there is no EOF check inside the loop.

    Published: 7 Sept 2017
    6.5
    Medium

    CVE-2017-18028

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.7-1 Q16, a memory exhaustion vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allow remote attackers to cause a denial of service via a crafted file.

    Published: 7 Sept 2017
    6.5
    Medium

    CVE-2017-18258

    Last Modified: 21 Nov 2024

    The xz_head function in xzlib.c in libxml2 before 2.9.6 allows remote attackers to cause a denial of service (memory consumption) via a crafted LZMA file, because the decoder functionality does not restrict memory usage to what is required for a legitimate file.

    Published: 7 Sept 2017
    7.5
    High

    CVE-2017-14227

    Last Modified: 3 Nov 2025

    In MongoDB libbson 1.7.0, the bson_iter_codewscope function in bson-iter.c miscalculates a bson_utf8_validate length argument, which allows remote attackers to cause a denial of service (heap-based buffer over-read in the bson_utf8_validate function in bson-utf8.c), as demonstrated by bson-to-json.c.

    Published: 7 Sept 2017
    6.5
    Medium

    CVE-2017-14172

    Last Modified: 20 Apr 2025

    In coders/ps.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSImage() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "extent" field in the header but does not contain sufficient backing data, is provided, the loop over "length" would consume huge CPU resources, since there is no EOF check inside the loop.

    Published: 7 Sept 2017
    6.5
    Medium

    CVE-2017-14173

    Last Modified: 20 Apr 2025

    In the function ReadTXTImage() in coders/txt.c in ImageMagick 7.0.6-10, an integer overflow might occur for the addition operation "GetQuantumRange(depth)+1" when "depth" is large, producing a smaller value than expected. As a result, an infinite loop would occur for a crafted TXT file that claims a very large "max_value" value.

    Published: 7 Sept 2017
    6.5
    Medium

    CVE-2017-14174

    Last Modified: 20 Apr 2025

    In coders/psd.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSDLayersInternal() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "length" field in the header but does not contain sufficient backing data, is provided, the loop over "length" would consume huge CPU resources, since there is no EOF check inside the loop.

    Published: 7 Sept 2017
    5.9
    Medium

    CVE-2015-2943

    Last Modified: 20 Apr 2025

    Honda Moto LINC 1.6.1 does not verify SSL certificates.

    Published: 6 Sept 2017
    8.8
    High

    CVE-2015-0853

    Last Modified: 20 Apr 2025

    svn-workbench 1.6.2 and earlier on a system with xeyes installed allows local users to execute arbitrary commands by using the "Command Shell" menu item while in the directory trunk/$(xeyes).

    Published: 6 Sept 2017
    4.3
    Medium

    CVE-2015-3160

    Last Modified: 20 Apr 2025

    XML external entity (XXE) vulnerability in bkr/server/jobs.py in Beaker before 20.1 allows remote authenticated users to obtain sensitive information via submitting job XML to the server containing entity references which reference files from the Beaker server's file system.

    Published: 6 Sept 2017
    4.3
    Medium

    CVE-2015-3163

    Last Modified: 20 Apr 2025

    The admin pages for power types and key types in Beaker before 20.1 do not have any access controls, which allows remote authenticated users to modify power types and key types via navigating to $BEAKER/powertypes and $BEAKER/keytypes respectively.

    Published: 6 Sept 2017
    9.8
    Critical

    CVE-2015-7241

    Last Modified: 20 Apr 2025

    XML External Entity (XXE) vulnerability in SAP Netweaver before 7.01.

    Published: 6 Sept 2017
    7.8
    High

    CVE-2015-2210

    Last Modified: 20 Apr 2025

    The help window in Epicor CRS Retail Store before 3.2.03.01.008 allows local users to execute arbitrary code by injecting Javascript into the window source to create a button that spawns a command shell.

    Published: 6 Sept 2017
    4.8
    Medium

    CVE-2015-3161

    Last Modified: 20 Apr 2025

    The search bar code in bkr/server/widgets.py in Beaker before 20.1 does not escape </script> tags in string literals when producing JSON.

    Published: 6 Sept 2017
    5.4
    Medium

    CVE-2015-3162

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the edit comment dialog in bkr/server/widgets.py in Beaker 20.1 allows remote authenticated users to inject arbitrary web script or HTML via writing a crafted comment on an acked or nacked canceled job.

    Published: 6 Sept 2017
    8.8
    High

    CVE-2015-3450

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in libaxl 0.6.9 allows attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted XML document.

    Published: 6 Sept 2017
    7.5
    High

    CVE-2015-3454

    Last Modified: 20 Apr 2025

    TelescopeJS before 0.15 leaks user bcrypt password hashes in websocket messages, which might allow remote attackers to obtain password hashes via a cross-site scripting attack.

    Published: 6 Sept 2017
    7.5
    High

    CVE-2015-5705

    Last Modified: 20 Apr 2025

    Argument injection vulnerability in devscripts before 2.15.7 allows remote attackers to write to arbitrary files via a crafted symlink and crafted filename.

    Published: 6 Sept 2017
    8.1
    High

    CVE-2015-5947

    Last Modified: 20 Apr 2025

    SuiteCRM before 7.2.3 allows remote attackers to execute arbitrary code.

    Published: 6 Sept 2017
    8.1
    High

    CVE-2015-5948

    Last Modified: 20 Apr 2025

    Race condition in SuiteCRM before 7.2.3 allows remote attackers to execute arbitrary code. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-5947.

    Published: 6 Sept 2017
    9.8
    Critical

    CVE-2015-5959

    Last Modified: 20 Apr 2025

    Froxlor before 0.9.33.2 with the default configuration/setup might allow remote attackers to obtain the database password by reading /logs/sql-error.log.

    Published: 6 Sept 2017
    5.3
    Medium

    CVE-2015-6250

    Last Modified: 20 Apr 2025

    simple-php-captcha before commit 9d65a945029c7be7bb6bc893759e74c5636be694 allows remote attackers to automatically generate the captcha response by running the same code on the client-side.

    Published: 6 Sept 2017
    5.3
    Medium

    CVE-2015-7225

    Last Modified: 20 Apr 2025

    Tinfoil Devise-two-factor before 2.0.0 does not strictly follow section 5.2 of RFC 6238 and does not "burn" a successfully validated one-time password (aka OTP), which allows remote or physically proximate attackers with a target user's login credentials to log in as said user by obtaining the OTP through performing a man-in-the-middle attack between the provider and verifier, or shoulder surfing, and replaying the OTP in the current time-step.

    Published: 6 Sept 2017
    7.5
    High

    CVE-2015-7294

    Last Modified: 20 Apr 2025

    ldapauth-fork before 2.3.3 allows remote attackers to perform LDAP injection attacks via a crafted username.

    Published: 6 Sept 2017
    5.9
    Medium

    CVE-2015-8316

    Last Modified: 20 Apr 2025

    Array index error in LightDM (aka Light Display Manager) 1.14.3, 1.16.x before 1.16.6 when the XDMCP server is enabled allows remote attackers to cause a denial of service (process crash) via an XDMCP request packet with no address.

    Published: 6 Sept 2017
    6.5
    Medium

    CVE-2017-14165

    Last Modified: 20 Apr 2025

    The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has an issue where memory allocation is excessive because it depends only on a length field in a header. This may lead to remote denial of service in the MagickMalloc function in magick/memory.c.

    Published: 6 Sept 2017
    5.5
    Medium

    CVE-2017-12474

    Last Modified: 20 Apr 2025

    The AP4_AtomSampleTable::GetSample function in Core/Ap4AtomSampleTable.cpp in Bento4 mp42ts before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted mp4 file.

    Published: 6 Sept 2017
    5.5
    Medium

    CVE-2017-12475

    Last Modified: 20 Apr 2025

    The AP4_Processor::Process function in Core/Ap4Processor.cpp in Bento4 mp4encrypt before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted mp4 file.

    Published: 6 Sept 2017
    5.5
    Medium

    CVE-2017-12476

    Last Modified: 20 Apr 2025

    The AP4_AvccAtom::InspectFields function in Core/Ap4AvccAtom.cpp in Bento4 mp4dump before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted mp4 file.

    Published: 6 Sept 2017
    6.5
    Medium

    CVE-2017-18027

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c, which allow remote attackers to cause a denial of service via a crafted file.

    Published: 6 Sept 2017
    8.8
    High

    CVE-2017-14224

    Last Modified: 20 Apr 2025

    A heap-based buffer overflow in WritePCXImage in coders/pcx.c in ImageMagick 7.0.6-8 Q16 allows remote attackers to cause a denial of service or code execution via a crafted file.

    Published: 6 Sept 2017
    8.1
    High

    CVE-2017-1458

    Last Modified: 20 Apr 2025

    IBM QRadar Network Security 5.4 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 128377.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-1491

    Last Modified: 20 Apr 2025

    IBM QRadar Network Security 5.4 supports interaction between multiple actors and allows those actors to negotiate which algorithm should be used as a protection mechanism such as encryption or authentication, but it does not select the strongest algorithm that is available to both parties. IBM X-Force ID: 128689.

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-1097

    Last Modified: 20 Apr 2025

    IBM Emptoris Strategic Supply Management Platform 10.0.0.x through 10.1.1.x is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 120657.

    Published: 5 Sept 2017
    6.5
    Medium

    CVE-2017-1129

    Last Modified: 20 Apr 2025

    IBM Notes 8.5 and 9.0 is vulnerable to a denial of service. If a user is persuaded to click on a malicious link, it could cause the Notes client to hang and have to be restarted. IBM X-Force ID: 121370.

    Published: 5 Sept 2017
    6.5
    Medium

    CVE-2017-1130

    Last Modified: 20 Apr 2025

    IBM Notes 8.5 and 9.0 is vulnerable to a denial of service. If a user is persuaded to click on a malicious link, it would open up many file select dialog boxes which would cause the client hang and have to be restarted. IBM X-Force ID: 121371.

    Published: 5 Sept 2017
    6.1
    Medium

    CVE-2017-1457

    Last Modified: 20 Apr 2025

    IBM QRadar Network Security 5.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 128376.

    Published: 5 Sept 2017
    4.4
    Medium

    CVE-2017-5698

    Last Modified: 20 Apr 2025

    Intel Active Management Technology, Intel Standard Manageability, and Intel Small Business Technology firmware versions 11.0.25.3001 and 11.0.26.3000 anti-rollback will not prevent upgrading to firmware version 11.6.x.1xxx which is vulnerable to CVE-2017-5689 and can be performed by a local user with administrative privileges.

    Published: 5 Sept 2017
    Unknown

    CVE-2017-5716

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-12865. Reason: This candidate is a reservation duplicate of CVE-2017-12865. Notes: All CVE users should reference CVE-2017-12865 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-2779

    Last Modified: 20 Apr 2025

    An exploitable memory corruption vulnerability exists in the RSRC segment parsing functionality of LabVIEW 2017, LabVIEW 2016, LabVIEW 2015, and LabVIEW 2014. A specially crafted Virtual Instrument (VI) file can cause an attacker controlled looping condition resulting in an arbitrary null write. An attacker controlled VI file can be used to trigger this vulnerability and can potentially result in code execution.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-2808

    Last Modified: 20 Apr 2025

    An exploitable use-after-free vulnerability exists in the account parsing component of the Ledger-CLI 3.1.1. A specially crafted ledger file can cause a use-after-free vulnerability resulting in arbitrary code execution. An attacker can convince a user to load a journal file to trigger this vulnerability.

    Published: 5 Sept 2017