CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2017-2821

    Last Modified: 20 Apr 2025

    An exploitable use-after-free exists in the PDF parsing functionality of Lexmark Perspective Document Filters 11.3.0.2400 and 11.4.0.2452. A crafted PDF document can lead to a use-after-free resulting in direct code execution.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-2807

    Last Modified: 20 Apr 2025

    An exploitable buffer overflow vulnerability exists in the tag parsing functionality of Ledger-CLI 3.1.1. A specially crafted journal file can cause an integer underflow resulting in code execution. An attacker can construct a malicious journal file to trigger this vulnerability.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-2822

    Last Modified: 20 Apr 2025

    An exploitable code execution vulnerability exists in the image rendering functionality of Lexmark Perceptive Document Filters 11.3.0.2400. A specifically crafted PDF can cause a function call on a corrupted DCTStream to occur, resulting in user controlled data being written to the stack. A maliciously crafted PDF file can be used to trigger this vulnerability.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-14158

    Last Modified: 20 Apr 2025

    Scrapy 1.4 allows remote attackers to cause a denial of service (memory consumption) via large files because arbitrarily many files are read into memory, which is especially problematic if the files are then individually written in a separate thread to a slow storage resource, as demonstrated by interaction between dataReceived (in core/downloader/handlers/http11.py) and S3FilesStore.

    Published: 5 Sept 2017
    9.8
    Critical

    CVE-2016-3086

    Last Modified: 20 Apr 2025

    The YARN NodeManager in Apache Hadoop 2.6.x before 2.6.5 and 2.7.x before 2.7.3 can leak the password for credential store provider used by the NodeManager to YARN Applications.

    Published: 5 Sept 2017
    9.8
    Critical

    CVE-2017-14145

    Last Modified: 20 Apr 2025

    HelpDEZk 1.1.1 has SQL Injection in app\modules\admin\controllers\loginController.php via the admin/login/getWarningInfo/id/ PATH_INFO, related to the selectWarning function.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-14149

    Last Modified: 20 Apr 2025

    GoAhead 3.4.0 through 3.6.5 has a NULL Pointer Dereference in the websDecodeUrl function in http.c, leading to a crash for a "POST / HTTP/1.1" request.

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-14146

    Last Modified: 20 Apr 2025

    HelpDEZk 1.1.1 allows remote authenticated users to execute arbitrary PHP code by uploading a .php attachment and then requesting it in the helpdezk\app\uploads\helpdezk\attachments\ directory.

    Published: 5 Sept 2017
    6.5
    Medium

    CVE-2017-14166

    Last Modified: 20 Apr 2025

    libarchive 3.3.2 allows remote attackers to cause a denial of service (xml_data heap-based buffer over-read and application crash) via a crafted xar archive, related to the mishandling of empty strings in the atol8 function in archive_read_support_format_xar.c.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-15010

    Last Modified: 20 Apr 2025

    A ReDoS (regular expression denial of service) flaw was found in the tough-cookie module before 2.3.3 for Node.js. An attacker that is able to make an HTTP request using a specially crafted cookie may cause the application to consume an excessive amount of CPU.

    Published: 5 Sept 2017
    5.3
    Medium

    CVE-2017-16137

    Last Modified: 21 Nov 2024

    The debug module is vulnerable to regular expression denial of service when untrusted user input is passed into the o formatter. It takes around 50k characters to block for 2 seconds making this a low severity issue.

    Published: 5 Sept 2017
    5.5
    Medium

    CVE-2017-1000249

    Last Modified: 20 Apr 2025

    An issue in file() was introduced in commit 9611f31313a93aa036389c5f3b15eea53510d4d1 (Oct 2016) lets an attacker overwrite a fixed 20 bytes stack buffer with a specially crafted .notes section in an ELF binary. This was fixed in commit 35c94dc6acc418f1ad7f6241a6680e5327495793 (Aug 2017).

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-5113

    Last Modified: 20 Apr 2025

    Math overflow in Skia in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 5 Sept 2017
    4.3
    Medium

    CVE-2017-5118

    Last Modified: 20 Apr 2025

    Blink in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, failed to correctly propagate CSP restrictions to javascript scheme pages, which allowed a remote attacker to bypass content security policy via a crafted HTML page.

    Published: 5 Sept 2017
    6.5
    Medium

    CVE-2017-5120

    Last Modified: 20 Apr 2025

    Inappropriate use of www mismatch redirects in browser navigation in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, allowed a remote attacker to potentially downgrade HTTPS requests to HTTP via a crafted HTML page. In other words, Chrome could transmit cleartext even though the user had entered an https URL, because of a misdesigned workaround for cases where the domain name in a URL almost matches the domain name in an X.509 server certificate (but differs in the initial "www." substring).

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-9804

    Last Modified: 20 Apr 2025

    In Apache Struts 2.3.7 through 2.3.33 and 2.5 through 2.5.12, if an application allows entering a URL in a form field and built-in URLValidator is used, it is possible to prepare a special URL which will be used to overload server process when performing validation of the URL. NOTE: this vulnerability exists because of an incomplete fix for S2-047 / CVE-2017-7672.

    Published: 5 Sept 2017
    6.1
    Medium

    CVE-2017-12794

    Last Modified: 20 Apr 2025

    In Django 1.10.x before 1.10.8 and 1.11.x before 1.11.5, HTML autoescaping was disabled in a portion of the template for the technical 500 debug page. Given the right circumstances, this allowed a cross-site scripting attack. This vulnerability shouldn't affect most production sites since you shouldn't run with "DEBUG = True" (which makes this page accessible) in your production settings.

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-5111

    Last Modified: 20 Apr 2025

    A use after free in PDFium in Google Chrome prior to 61.0.3163.79 for Linux, Windows, and Mac allowed a remote attacker to potentially exploit memory corruption via a crafted PDF file.

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-5112

    Last Modified: 20 Apr 2025

    Heap buffer overflow in WebGL in Google Chrome prior to 61.0.3163.79 for Windows allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-5115

    Last Modified: 20 Apr 2025

    Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Windows allowed a remote attacker to potentially exploit object corruption via a crafted HTML page.

    Published: 5 Sept 2017
    6.5
    Medium

    CVE-2017-5117

    Last Modified: 20 Apr 2025

    Use of an uninitialized value in Skia in Google Chrome prior to 61.0.3163.79 for Linux and Windows allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

    Published: 5 Sept 2017
    8.1
    High

    CVE-2017-9805

    Last Modified: 21 Apr 2026

    The REST Plugin in Apache Struts 2.1.1 through 2.3.x before 2.3.34 and 2.5.x before 2.5.13 uses an XStreamHandler with an instance of XStream for deserialization without any type filtering, which can lead to Remote Code Execution when deserializing XML payloads.

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-14167

    Last Modified: 20 Apr 2025

    Integer overflow in the load_multiboot function in hw/i386/multiboot.c in QEMU (aka Quick Emulator) allows local guest OS users to execute arbitrary code on the host via crafted multiboot header address values, which trigger an out-of-bounds write.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-16138

    Last Modified: 21 Nov 2024

    The mime module < 1.4.1, 2.0.1, 2.0.2 is vulnerable to regular expression denial of service when a mime lookup is performed on untrusted user input.

    Published: 5 Sept 2017
    5.5
    Medium

    CVE-2017-18226

    Last Modified: 21 Nov 2024

    The Gentoo net-im/jabberd2 package through 2.6.1 sets the ownership of /var/run/jabber to the jabber account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script executes a "kill -TERM `cat /var/run/jabber/filename.pid`" command.

    Published: 5 Sept 2017
    4.3
    Medium

    CVE-2017-5119

    Last Modified: 20 Apr 2025

    Use of an uninitialized value in Skia in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-5114

    Last Modified: 20 Apr 2025

    Inappropriate use of partition alloc in PDFium in Google Chrome prior to 61.0.3163.79 for Linux, Windows, and Mac, and 61.0.3163.81 for Android, allowed a remote attacker to potentially exploit memory corruption via a crafted PDF file.

    Published: 5 Sept 2017
    8.8
    High

    CVE-2017-5116

    Last Modified: 20 Apr 2025

    Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-9793

    Last Modified: 20 Apr 2025

    The REST Plugin in Apache Struts 2.1.x, 2.3.7 through 2.3.33 and 2.5 through 2.5.12 is using an outdated XStream library which is vulnerable and allow perform a DoS attack using malicious request with specially crafted XML payload.

    Published: 5 Sept 2017
    7.5
    High

    CVE-2017-14137

    Last Modified: 20 Apr 2025

    ReadWEBPImage in coders/webp.c in ImageMagick 7.0.6-5 has an issue where memory allocation is excessive because it depends only on a length field in a header.

    Published: 4 Sept 2017
    9.8
    Critical

    CVE-2017-14135

    Last Modified: 20 Apr 2025

    enigma2-plugins/blob/master/webadmin/src/WebChilds/Script.py in the webadmin plugin for opendreambox 2.0.0 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the command parameter to the /script URI.

    Published: 4 Sept 2017
    6.5
    Medium

    CVE-2017-14139

    Last Modified: 20 Apr 2025

    ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMSLImage in coders/msl.c.

    Published: 4 Sept 2017
    9.8
    Critical

    CVE-2017-14138

    Last Modified: 20 Apr 2025

    ImageMagick 7.0.6-5 has a memory leak vulnerability in ReadWEBPImage in coders/webp.c because memory is not freed in certain error cases, as demonstrated by VP8 errors.

    Published: 4 Sept 2017
    8.8
    High

    CVE-2017-14123

    Last Modified: 20 Apr 2025

    Zoho ManageEngine Firewall Analyzer 12200 has an unrestricted File Upload vulnerability in the "Group Chat" section. Any user can upload files with any extensions. By uploading a PHP file to the server, an attacker can cause it to execute in the server context, as demonstrated by /itplus/FileStorage/302/shell.jsp.

    Published: 4 Sept 2017
    6.1
    Medium

    CVE-2017-14126

    Last Modified: 20 Apr 2025

    The Participants Database plugin before 1.7.5.10 for WordPress has XSS.

    Published: 4 Sept 2017
    9.8
    Critical

    CVE-2017-14127

    Last Modified: 20 Apr 2025

    Command Injection in the Ping Module in the Web Interface on Technicolor TD5336 OI_Fw_v7 devices allows remote attackers to execute arbitrary OS commands as root via shell metacharacters in the pingAddr parameter to mnt_ping.cgi.

    Published: 4 Sept 2017
    8.8
    High

    CVE-2017-14482

    Last Modified: 20 Apr 2025

    GNU Emacs before 25.3 allows remote attackers to execute arbitrary code via email with crafted "Content-Type: text/enriched" data containing an x-display XML element that specifies execution of shell commands, related to an unsafe text/enriched extension in lisp/textmodes/enriched.el, and unsafe Gnus support for enriched and richtext inline MIME objects in lisp/gnus/mm-view.el. In particular, an Emacs user can be instantly compromised by reading a crafted email message (or Usenet news article).

    Published: 4 Sept 2017
    7.5
    High

    CVE-2017-14120

    Last Modified: 20 Apr 2025

    unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a directory traversal vulnerability for RAR v2 archives: pathnames of the form ../[filename] are unpacked into the upper directory.

    Published: 3 Sept 2017
    8.8
    High

    CVE-2017-14118

    Last Modified: 20 Apr 2025

    In the EyesOfNetwork web interface (aka eonweb) 5.1-0, module\tool_all\tools\interface.php does not properly restrict exec calls, which allows remote attackers to execute arbitrary commands via shell metacharacters in the host_list parameter to module/tool_all/select_tool.php.

    Published: 3 Sept 2017
    8.8
    High

    CVE-2017-14119

    Last Modified: 20 Apr 2025

    In the EyesOfNetwork web interface (aka eonweb) 5.1-0, module\tool_all\tools\snmpwalk.php does not properly restrict popen calls, which allows remote attackers to execute arbitrary commands via shell metacharacters in a parameter.

    Published: 3 Sept 2017
    5.5
    Medium

    CVE-2017-14121

    Last Modified: 20 Apr 2025

    The DecodeNumber function in unrarlib.c in unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a NULL pointer dereference flaw triggered by a crafted RAR archive. NOTE: this may be the same as one of the several test cases in the CVE-2017-11189 references.

    Published: 3 Sept 2017
    9.1
    Critical

    CVE-2017-14122

    Last Modified: 20 Apr 2025

    unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a stack-based buffer over-read in unrarlib.c, related to ExtrFile and stricomp.

    Published: 3 Sept 2017
    8.1
    High

    CVE-2017-14116

    Last Modified: 20 Apr 2025

    The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG599 device, when IP Passthrough mode is not used, configures WAN access to a caserver https service with the tech account and an empty password, which allows remote attackers to obtain root privileges by establishing a session on port 49955 and then installing new software, such as BusyBox with "nc -l" support.

    Published: 3 Sept 2017
    5.9
    Medium

    CVE-2017-14117

    Last Modified: 20 Apr 2025

    The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589 and NVG599 devices, when IP Passthrough mode is not used, configures an unauthenticated proxy service on WAN TCP port 49152, which allows remote attackers to establish arbitrary TCP connections to intranet hosts by sending \x2a\xce\x01 followed by other predictable values.

    Published: 3 Sept 2017
    8.1
    High

    CVE-2017-10793

    Last Modified: 20 Apr 2025

    The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589, NVG599, and unspecified other devices, when IP Passthrough mode is not used, configures an sbdc.ha WAN TCP service on port 61001 with the bdctest account and the bdctest password, which allows remote attackers to obtain sensitive information (such as the Wi-Fi password) by leveraging knowledge of a hardware identifier, related to the Bulk Data Collection (BDC) mechanism defined in Broadband Forum technical reports.

    Published: 3 Sept 2017
    8.1
    High

    CVE-2017-14115

    Last Modified: 20 Apr 2025

    The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589 and NVG599 devices, when IP Passthrough mode is not used, configures ssh-permanent-enable WAN SSH logins to the remotessh account with the 5SaP9I26 password, which allows remote attackers to access a "Terminal shell v1.0" service, and subsequently obtain unrestricted root privileges, by establishing an SSH session and then entering certain shell metacharacters and BusyBox commands.

    Published: 3 Sept 2017
    9.8
    Critical

    CVE-2017-14624

    Last Modified: 20 Apr 2025

    ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function PostscriptDelegateMessage in coders/ps.c.

    Published: 3 Sept 2017
    8.8
    High

    CVE-2017-15015

    Last Modified: 20 Apr 2025

    ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in PDFDelegateMessage in coders/pdf.c.

    Published: 3 Sept 2017
    9.8
    Critical

    CVE-2017-14625

    Last Modified: 20 Apr 2025

    ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function sixel_output_create in coders/sixel.c.

    Published: 3 Sept 2017
    9.8
    Critical

    CVE-2017-14532

    Last Modified: 20 Apr 2025

    ImageMagick 7.0.7-0 has a NULL Pointer Dereference in TIFFIgnoreTags in coders/tiff.c.

    Published: 3 Sept 2017