CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2016-6121

    Last Modified: 20 Apr 2025

    IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 118383.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2012-2771

    Last Modified: 20 Apr 2025

    Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2773, CVE-2012-2778, CVE-2012-2780, and CVE-2012-2781.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2012-2778

    Last Modified: 20 Apr 2025

    Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2771, CVE-2012-2773, CVE-2012-2780, and CVE-2012-2781.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2012-2781

    Last Modified: 20 Apr 2025

    Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2771, CVE-2012-2773, CVE-2012-2778, and CVE-2012-2780.

    Published: 9 Aug 2017
    5.4
    Medium

    CVE-2014-5144

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Telescope before 0.9.3 allows remote authenticated users to inject arbitrary web script or HTML via crafted markdown.

    Published: 9 Aug 2017
    5.4
    Medium

    CVE-2016-8949

    Last Modified: 20 Apr 2025

    IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 118836.

    Published: 9 Aug 2017
    4.3
    Medium

    CVE-2017-1357

    Last Modified: 20 Apr 2025

    IBM Maximo Asset Management 7.5 and 7.6 could allow an authenticated user to manipulate work orders to forge emails which could be used to conduct further advanced attacks. IBM X-Force ID: 126684.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2012-2773

    Last Modified: 20 Apr 2025

    Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2771, CVE-2012-2778, CVE-2012-2780, and CVE-2012-2781.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2015-0780

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in the GetReRequestData method of the GetStoredResult class in Novell ZENworks Configuration Management (ZCM) allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2015-2311

    Last Modified: 20 Apr 2025

    Integer underflow in Sandstorm Cap'n Proto before 0.4.1.1 and 0.5.x before 0.5.1.1 might allow remote peers to cause a denial of service or possibly obtain sensitive information from memory or execute arbitrary code via a crafted message.

    Published: 9 Aug 2017
    6.5
    Medium

    CVE-2014-9701

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in MantisBT before 1.2.19 and 1.3.x before 1.3.0-beta.2 allows remote attackers to inject arbitrary web script or HTML via the url parameter to permalink_page.php.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2015-0782

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in the ScheduleQuery method of the schedule class in Novell ZENworks Configuration Management (ZCM) allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 9 Aug 2017
    6.5
    Medium

    CVE-2015-0783

    Last Modified: 20 Apr 2025

    The FileViewer class in Novell ZENworks Configuration Management (ZCM) allows remote authenticated users to read arbitrary files via the filename variable.

    Published: 9 Aug 2017
    7.5
    High

    CVE-2015-0784

    Last Modified: 20 Apr 2025

    Rtrlet.class in Novell ZENworks Configuration Management (ZCM) allows remote attackers to obtain Session IDs of logged in users via a value of ShowLogins for the maintenance variable.

    Published: 9 Aug 2017
    7.5
    High

    CVE-2015-0785

    Last Modified: 20 Apr 2025

    com.novell.zenworks.inventory.rtr.actionclasses.wcreports in Novell ZENworks Configuration Management (ZCM) allows remote attackers to read arbitrary folders via the dirname variable.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2015-0786

    Last Modified: 20 Apr 2025

    Stack-based buffer overflow in the logging functionality in the Preboot Policy service in Novell ZENworks Configuration Management (ZCM) allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 9 Aug 2017
    7.5
    High

    CVE-2015-2312

    Last Modified: 20 Apr 2025

    Sandstorm Cap'n Proto before 0.4.1.1 and 0.5.x before 0.5.1.1 allows remote peers to cause a denial of service (CPU and possibly general resource consumption) via a list with a large number of elements.

    Published: 9 Aug 2017
    7.5
    High

    CVE-2015-6498

    Last Modified: 20 Apr 2025

    Alcatel-Lucent Home Device Manager before 4.1.10, 4.2.x before 4.2.2 allows remote attackers to spoof and make calls as target devices.

    Published: 9 Aug 2017
    8.8
    High

    CVE-2015-7894

    Last Modified: 20 Apr 2025

    The DCMProvider service in Samsung LibQjpeg on a Samsung SM-G925V device running build number LRX22G.G925VVRU1AOE2 allows remote attackers to cause a denial of service (segmentation fault and process crash) and execute arbitrary code via a crafted JPG.

    Published: 9 Aug 2017
    8.8
    High

    CVE-2017-9370

    Last Modified: 20 Apr 2025

    An information disclosure / elevation of privilege vulnerability in the BlackBerry Workspaces Server could potentially allow an attacker who has legitimate access to BlackBerry Workspaces to gain access to another user's workspace by making multiple login requests to the server.

    Published: 9 Aug 2017
    5.9
    Medium

    CVE-2015-5619

    Last Modified: 20 Apr 2025

    Logstash 1.4.x before 1.4.5 and 1.5.x before 1.5.4 with Lumberjack output or the Logstash forwarder does not validate SSL/TLS certificates from the Logstash server, which might allow attackers to obtain sensitive information via a man-in-the-middle attack.

    Published: 9 Aug 2017
    7.5
    High

    CVE-2015-7764

    Last Modified: 20 Apr 2025

    Lemur 0.1.4 does not use sufficient entropy in its IV when encrypting AES in CBC mode.

    Published: 9 Aug 2017
    8.8
    High

    CVE-2017-12754

    Last Modified: 20 Apr 2025

    Stack buffer overflow in httpd in Asuswrt-Merlin firmware 380.67_0RT-AC5300 and earlier for ASUS devices and ASUS firmware for ASUS RT-AC5300, RT_AC1900P, RT-AC68U, RT-AC68P, RT-AC88U, RT-AC66U, RT-AC66U_B1, RT-AC58U, RT-AC56U, RT-AC55U, RT-AC52U, RT-AC51U, RT-N18U, RT-N66U, RT-N56U, RT-AC3200, RT-AC3100, RT_AC1200GU, RT_AC1200G, RT-AC1200, RT-AC53, RT-N12HP, RT-N12HP_B1, RT-N12D1, RT-N12+, RT_N12+_PRO, RT-N16, and RT-N300 devices allows remote attackers to execute arbitrary code on the router by sending a crafted http GET request packet that includes a long delete_offline_client parameter in the url.

    Published: 9 Aug 2017
    4.6
    Medium

    CVE-2017-5695

    Last Modified: 20 Apr 2025

    Data corruption vulnerability in firmware in Intel Solid-State Drive Consumer, Professional, Embedded, Data Center affected firmware versions LSBG200, LSF031C, LSF036C, LBF010C, LSBG100, LSF031C, LSF036C, LBF010C, LSF031P, LSF036P, LBF010P, LSF031P, LSF036P, LBF010P, LSMG200, LSF031E, LSF036E, LSMG100, LSF031E, LSF036E, LSDG200, LSF031D, LSF036D allows local users to cause a denial of service via unspecified vectors.

    Published: 9 Aug 2017
    8.8
    High

    CVE-2016-5716

    Last Modified: 20 Apr 2025

    The console in Puppet Enterprise 2015.x and 2016.x prior to 2016.4.0 includes unsafe string reads that potentially allows for remote code execution on the console node.

    Published: 9 Aug 2017
    4.6
    Medium

    CVE-2017-5694

    Last Modified: 20 Apr 2025

    Data corruption vulnerability in firmware in Intel Solid-State Drive Professional PSF104P, PSF109P allows local users to cause a denial of service via unspecified vectors.

    Published: 9 Aug 2017
    7.4
    High

    CVE-2017-11506

    Last Modified: 20 Apr 2025

    When linking a Nessus scanner or agent to Tenable.io or other manager, Nessus 6.x before 6.11 does not verify the manager's TLS certificate when making the initial outgoing connection. This could allow man-in-the-middle attacks.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2017-7809

    Last Modified: 25 Nov 2025

    A use-after-free vulnerability can occur when an editor DOM node is deleted prematurely during tree traversal while still bound to the document. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.

    Published: 9 Aug 2017
    8.8
    High

    CVE-2017-7556

    Last Modified: 20 Apr 2025

    Hawtio versions up to and including 1.5.3 are vulnerable to CSRF vulnerability allowing remote attackers to trick the user to visit their website containing a malicious script which can be submitted to hawtio server on behalf of the user.

    Published: 9 Aug 2017
    6.5
    Medium

    CVE-2017-1000099

    Last Modified: 20 Apr 2025

    When asking to get a file from a file:// URL, libcurl provides a feature that outputs meta-data about the file using HTTP-like headers. The code doing this would send the wrong buffer to the user (stdout or the application's provide callback), which could lead to other private data from the heap to get inadvertently displayed. The wrong buffer was an uninitialized memory area allocated on the heap and if it turned out to not contain any zero byte, it would continue and display the data following that buffer in memory.

    Published: 9 Aug 2017
    7.8
    High

    CVE-2017-11697

    Last Modified: 20 Apr 2025

    The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted cert8.db file.

    Published: 9 Aug 2017
    7.8
    High

    CVE-2017-11696

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the __hash_open function in lib/dbm/src/hash.c in Mozilla Network Security Services (NSS) allows context-dependent attackers to have unspecified impact using a crafted cert8.db file.

    Published: 9 Aug 2017
    7.8
    High

    CVE-2017-11698

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the __get_page function in lib/dbm/src/h_page.c in Mozilla Network Security Services (NSS) allows context-dependent attackers to have unspecified impact using a crafted cert8.db file.

    Published: 9 Aug 2017
    6.5
    Medium

    CVE-2017-1000101

    Last Modified: 16 Apr 2026

    curl supports "globbing" of URLs, in which a user can pass a numerical range to have the tool iterate over those numbers to do a sequence of transfers. In the globbing function that parses the numerical range, there was an omission that made curl read a byte beyond the end of the URL if given a carefully crafted, or just wrongly written, URL. The URL is stored in a heap based buffer, so it could then be made to wrongly read something else instead of crashing. An example of a URL that triggers the flaw would be `http://ur%20[0-60000000000000000000`.

    Published: 9 Aug 2017
    6.5
    Medium

    CVE-2017-1000100

    Last Modified: 16 Apr 2026

    When doing a TFTP transfer and curl/libcurl is given a URL that contains a very long file name (longer than about 515 bytes), the file name is truncated to fit within the buffer boundaries, but the buffer size is still wrongly updated to use the untruncated length. This too large value is then used in the sendto() call, making curl attempt to send more data than what is actually put into the buffer. The endto() function will then read beyond the end of the heap based buffer. A malicious HTTP(S) server could redirect a vulnerable libcurl-using client to a crafted TFTP URL (if the client hasn't restricted which protocols it allows redirects to) and trick it to send private memory contents to a remote server over UDP. Limit curl's redirect protocols with --proto-redir and libcurl's with CURLOPT_REDIR_PROTOCOLS.

    Published: 9 Aug 2017
    7.8
    High

    CVE-2017-11695

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the alloc_segs function in lib/dbm/src/hash.c in Mozilla Network Security Services (NSS) allows context-dependent attackers to have unspecified impact using a crafted cert8.db file.

    Published: 9 Aug 2017
    9.8
    Critical

    CVE-2017-14952

    Last Modified: 20 Apr 2025

    Double free in i18n/zonemeta.cpp in International Components for Unicode (ICU) for C/C++ through 59.1 allows remote attackers to execute arbitrary code via a crafted string, aka a "redundant UVector entry clean up function call" issue.

    Published: 9 Aug 2017
    6.5
    Medium

    CVE-2017-0174

    Last Modified: 20 Apr 2025

    Windows NetBIOS in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a denial of service vulnerability when it improperly handles NetBIOS packets, aka "Windows NetBIOS Denial of Service Vulnerability".

    Published: 8 Aug 2017
    7.8
    High

    CVE-2017-0250

    Last Modified: 20 Apr 2025

    Microsoft JET Database Engine in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a remote code execution vulnerability due to buffer overflow, aka "Microsoft JET Database Engine Remote Code Execution Vulnerability".

    Published: 8 Aug 2017
    7.4
    High

    CVE-2010-2245

    Last Modified: 20 Apr 2025

    XML External Entity (XXE) vulnerability in Apache Wink 1.1.1 and earlier allows remote attackers to read arbitrary files or cause a denial of service via a crafted XML document.

    Published: 8 Aug 2017
    9.8
    Critical

    CVE-2010-3845

    Last Modified: 20 Apr 2025

    libapache-authenhook-perl 2.00-04 stores usernames and passwords in plaintext in the vhost error log.

    Published: 8 Aug 2017
    8.8
    High

    CVE-2017-8503

    Last Modified: 20 Apr 2025

    Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to escape from the AppContainer sandbox, aka "Microsoft Edge Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-8642.

    Published: 8 Aug 2017
    7.8
    High

    CVE-2017-8622

    Last Modified: 20 Apr 2025

    Windows Subsystem for Linux in Windows 10 1703 allows an elevation of privilege vulnerability when it fails to properly handle handles NT pipes, aka "Windows Subsystem for Linux Elevation of Privilege Vulnerability".

    Published: 8 Aug 2017
    7.5
    High

    CVE-2017-8633

    Last Modified: 20 Apr 2025

    Windows Error Reporting (WER) in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an elevation of privilege vulnerability, aka "Windows Error Reporting Elevation of Privilege Vulnerability".

    Published: 8 Aug 2017
    5.3
    Medium

    CVE-2017-8637

    Last Modified: 20 Apr 2025

    Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to bypass Arbitrary Code Guard (ACG) due to how Microsoft Edge accesses memory in code compiled by the Edge Just-In-Time (JIT) compiler, aka "Scripting Engine Security Feature Bypass Vulnerability".

    Published: 8 Aug 2017
    7.5
    High

    CVE-2017-8647

    Last Modified: 20 Apr 2025

    Microsoft Edge in Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user due to the way that Microsoft browser JavaScript engines render content when handling objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-8634, CVE-2017-8635, CVE-2017-8636, CVE-2017-8638, CVE-2017-8639, CVE-2017-8640, CVE-2017-8641, CVE-2017-8645, CVE-2017-8646, CVE-2017-8655, CVE-2017-8656, CVE-2017-8657, CVE-2017-8670, CVE-2017-8671, CVE-2017-8672, and CVE-2017-8674.

    Published: 8 Aug 2017
    7.5
    High

    CVE-2017-8655

    Last Modified: 20 Apr 2025

    Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user due to the way that Microsoft browser JavaScript engines render content when handling objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-8634, CVE-2017-8635, CVE-2017-8636, CVE-2017-8638, CVE-2017-8639, CVE-2017-8640, CVE-2017-8641, CVE-2017-8645, CVE-2017-8646, CVE-2017-8647, CVE-2017-8656, CVE-2017-8657, CVE-2017-8670, CVE-2017-8671, CVE-2017-8672, and CVE-2017-8674.

    Published: 8 Aug 2017
    5.5
    Medium

    CVE-2017-8666

    Last Modified: 20 Apr 2025

    Microsoft Win32k in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an information disclosure vulnerability when it fails to properly handle objects in memory, aka "Win32k Information Disclosure Vulnerability".

    Published: 8 Aug 2017
    7.5
    High

    CVE-2017-0293

    Last Modified: 20 Apr 2025

    Microsoft Windows PDF Library in Windows Server 2008 R2 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a remote code execution vulnerability when it improperly handles objects in memory, aka "Windows PDF Remote Code Execution Vulnerability".

    Published: 8 Aug 2017
    7.8
    High

    CVE-2017-8591

    Last Modified: 20 Apr 2025

    Windows Input Method Editor (IME) in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an remote code execution vulnerability when it fails to properly handle objects in memory, aka "Windows IME Remote Code Execution Vulnerability".

    Published: 8 Aug 2017