CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2017-11717

    Last Modified: 20 Apr 2025

    MetInfo through 5.3.17 accepts the same CAPTCHA response for 120 seconds, which makes it easier for remote attackers to bypass intended challenge requirements by modifying the client-server data stream, as demonstrated by the login/findpass page.

    Published: 28 Jul 2017
    6.1
    Medium

    CVE-2017-11718

    Last Modified: 20 Apr 2025

    There is URL Redirector Abuse in MetInfo through 5.3.17 via the gourl parameter to member/login.php.

    Published: 28 Jul 2017
    7.8
    High

    CVE-2017-11719

    Last Modified: 20 Apr 2025

    The dnxhd_decode_header function in libavcodec/dnxhddec.c in FFmpeg 3.0 through 3.3.2 allows remote attackers to cause a denial of service (out-of-array access) or possibly have unspecified other impact via a crafted DNxHD file.

    Published: 28 Jul 2017
    8.8
    High

    CVE-2017-11646

    Last Modified: 20 Apr 2025

    NetComm Wireless 4GT101W routers with Hardware: 0.01 / Software: V1.1.8.8 / Bootloader: 1.1.3 are vulnerable to CSRF attacks, as demonstrated by using administration.html to disable the firewall. They does not contain any token that can mitigate CSRF vulnerabilities within the device.

    Published: 28 Jul 2017
    8.7
    High

    CVE-2017-2589

    Last Modified: 21 Nov 2024

    It was discovered that the hawtio servlet 1.4 uses a single HttpClient instance to proxy requests with a persistent cookie store (cookies are stored locally and are not passed between the client and the end URL) which means all clients using that proxy are sharing the same cookies.

    Published: 28 Jul 2017
    4.7
    Medium

    CVE-2017-14159

    Last Modified: 20 Apr 2025

    slapd in OpenLDAP 2.4.45 and earlier creates a PID file after dropping privileges to a non-root account, which might allow local users to kill arbitrary processes by leveraging access to this non-root account for PID file modification before a root script executes a "kill `cat /pathname`" command, as demonstrated by openldap-initscript.

    Published: 28 Jul 2017
    7.5
    High

    CVE-2017-11692

    Last Modified: 20 Apr 2025

    The function "Token& Scanner::peek" in scanner.cpp in yaml-cpp 0.5.3 and earlier allows remote attackers to cause a denial of service (assertion failure and application exit) via a '!2' string.

    Published: 28 Jul 2017
    6.3
    Medium

    CVE-2017-12847

    Last Modified: 20 Apr 2025

    Nagios Core before 4.3.3 creates a nagios.lock PID file after dropping privileges to a non-root account, which might allow local users to kill arbitrary processes by leveraging access to this non-root account for nagios.lock modification before a root script executes a "kill `cat /pathname/nagios.lock`" command.

    Published: 28 Jul 2017
    7.5
    High

    CVE-2016-10399

    Last Modified: 20 Apr 2025

    Sendio versions before 8.2.1 were affected by a Local File Inclusion vulnerability that allowed an unauthenticated, remote attacker to read potentially sensitive system files via a specially crafted URL.

    Published: 27 Jul 2017
    7.8
    High

    CVE-2017-8870

    Last Modified: 20 Apr 2025

    Buffer overflow in AudioCoder 0.8.46 allows remote attackers to execute arbitrary code via a crafted .m3u file.

    Published: 27 Jul 2017
    7.8
    High

    CVE-2016-10402

    Last Modified: 20 Apr 2025

    Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM via a section header with a very large relative virtual address in a PE file, causing an integer overflow and heap-based buffer underflow.

    Published: 27 Jul 2017
    7.8
    High

    CVE-2017-8869

    Last Modified: 20 Apr 2025

    Buffer overflow in MediaCoder 0.8.48.5888 allows remote attackers to execute arbitrary code via a crafted .m3u file.

    Published: 27 Jul 2017
    7.5
    High

    CVE-2017-11665

    Last Modified: 20 Apr 2025

    The ff_amf_get_field_value function in libavformat/rtmppkt.c in FFmpeg 3.3.2 allows remote RTMP servers to cause a denial of service (Segmentation Violation and application crash) via a crafted stream.

    Published: 27 Jul 2017
    9.8
    Critical

    CVE-2017-11673

    Last Modified: 20 Apr 2025

    Reporter.exe in Acunetix 8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed PRE file, related to a "User Mode Write AV starting at reporter!madTraceProcess."

    Published: 27 Jul 2017
    8.8
    High

    CVE-2017-11679

    Last Modified: 20 Apr 2025

    Cross-Site Request Forgery (CSRF) exists in Hashtopus 1.5g via the password parameter to admin.php in an a=config action.

    Published: 27 Jul 2017
    8.8
    High

    CVE-2017-11681

    Last Modified: 20 Apr 2025

    Incorrect Access Control vulnerability in Hashtopussy 0.4.0 allows remote authenticated users to execute actions that should only be available for administrative roles, as demonstrated by an action=createVoucher request to agents.php.

    Published: 27 Jul 2017
    5.4
    Medium

    CVE-2017-11691

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in auth_profile.php in Cacti 1.1.13 allows remote attackers to inject arbitrary web script or HTML via specially crafted HTTP Referer headers.

    Published: 27 Jul 2017
    8.8
    High

    CVE-2017-11675

    Last Modified: 20 Apr 2025

    The traverseStrictSanitize function in admin_dir/includes/classes/AdminRequestSanitizer.php in ZenCart 1.5.5e mishandles key strings, which allows remote authenticated users to execute arbitrary PHP code by placing that code into an invalid array index of the admin_name array parameter to admin_dir/login.php, if there is an export of an error-log entry for that invalid array index.

    Published: 27 Jul 2017
    6.1
    Medium

    CVE-2017-11677

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Hashtopus 1.5g allows remote attackers to inject arbitrary web script or HTML via the query string to admin.php.

    Published: 27 Jul 2017
    8.8
    High

    CVE-2017-11678

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in Hashtopus 1.5g allows remote authenticated users to execute arbitrary SQL commands via the format parameter in admin.php.

    Published: 27 Jul 2017
    8.8
    High

    CVE-2017-11680

    Last Modified: 20 Apr 2025

    Cross-Site Request Forgery (CSRF) exists in Hashtopussy 0.4.0, allowing an admin password change via users.php.

    Published: 27 Jul 2017
    6.1
    Medium

    CVE-2017-11682

    Last Modified: 20 Apr 2025

    Stored Cross-site scripting vulnerability in Hashtopussy 0.4.0 allows remote attackers to inject arbitrary web script or HTML via the (1) version, (2) url, or (3) rootdir parameter in hashcat.php.

    Published: 27 Jul 2017
    7.5
    High

    CVE-2017-11684

    Last Modified: 20 Apr 2025

    There is an illegal address access in the build_table function in libavcodec/bitstream.c of Libav 12.1 that will lead to remote denial of service via crafted input.

    Published: 27 Jul 2017
    6.1
    Medium

    CVE-2017-11685

    Last Modified: 20 Apr 2025

    Multiple Reflective cross-site scripting (XSS) vulnerabilities in search and display of event data in Zoho ManageEngine Event Log Analyzer 11.4 and 11.5 allow remote attackers to inject arbitrary web script or HTML, as demonstrated by the fName parameter.

    Published: 27 Jul 2017
    6.1
    Medium

    CVE-2017-11686

    Last Modified: 20 Apr 2025

    Zoho ManageEngine Event Log Analyzer 11.4 and 11.5 allows remote attackers to obtain an authenticated user's password via XSS vulnerabilities or sniffing non-SSL traffic on the network, because the password is represented in a cookie with a reversible encoding method.

    Published: 27 Jul 2017
    6.1
    Medium

    CVE-2017-11687

    Last Modified: 20 Apr 2025

    Multiple Persistent cross-site scripting (XSS) vulnerabilities in Event log parsing and Display functions in Zoho ManageEngine Event Log Analyzer 11.4 and 11.5 allow remote attackers to inject arbitrary web script or HTML via syslog.

    Published: 27 Jul 2017
    5.5
    Medium

    CVE-2017-9545

    Last Modified: 20 Apr 2025

    The next_text function in src/libmpg123/id3.c in mpg123 1.24.0 allows remote attackers to cause a denial of service (buffer over-read) via a crafted mp3 file.

    Published: 27 Jul 2017
    5.5
    Medium

    CVE-2017-11674

    Last Modified: 20 Apr 2025

    Reporter.exe in Acunetix 8 allows remote attackers to cause a denial of service (application crash) via a malformed PRE file, related to a "Read Access Violation starting at reporter!madTraceProcess."

    Published: 27 Jul 2017
    6.5
    Medium

    CVE-2017-11724

    Last Modified: 20 Apr 2025

    The ReadMATImage function in coders/mat.c in ImageMagick through 6.9.9-3 and 7.x through 7.0.6-3 has memory leaks involving the quantum_info and clone_info data structures.

    Published: 27 Jul 2017
    8.8
    High

    CVE-2017-7510

    Last Modified: 21 Nov 2024

    In ovirt-engine 4.1, if a host was provisioned with cloud-init, the root password could be revealed through the REST interface.

    Published: 27 Jul 2017
    8.2
    High

    CVE-2017-3224

    Last Modified: 21 Nov 2024

    Open Shortest Path First (OSPF) protocol implementations may improperly determine Link State Advertisement (LSA) recency for LSAs with MaxSequenceNumber. According to RFC 2328 section 13.1, for two instances of the same LSA, recency is determined by first comparing sequence numbers, then checksums, and finally MaxAge. In a case where the sequence numbers are the same, the LSA with the larger checksum is considered more recent, and will not be flushed from the Link State Database (LSDB). Since the RFC does not explicitly state that the values of links carried by a LSA must be the same when prematurely aging a self-originating LSA with MaxSequenceNumber, it is possible in vulnerable OSPF implementations for an attacker to craft a LSA with MaxSequenceNumber and invalid links that will result in a larger checksum and thus a 'newer' LSA that will not be flushed from the LSDB. Propagation of the crafted LSA can result in the erasure or alteration of the routing tables of routers within the routing domain, creating a denial of service condition or the re-routing of traffic on the network. CVE-2017-3224 has been reserved for Quagga and downstream implementations (SUSE, openSUSE, and Red Hat packages).

    Published: 27 Jul 2017
    8.1
    High

    CVE-2017-11667

    Last Modified: 20 Apr 2025

    OpenProject before 6.1.6 and 7.x before 7.0.3 mishandles session expiry, which allows remote attackers to perform APIv3 requests indefinitely by leveraging a hijacked session.

    Published: 26 Jul 2017
    6.1
    Medium

    CVE-2017-11666

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in js/ViewerPanel.js in the file previewer plugin in Kopano WebApp versions 3.3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via a specially crafted previewable file.

    Published: 26 Jul 2017
    6.1
    Medium

    CVE-2017-11612

    Last Modified: 20 Apr 2025

    In Joomla! before 3.7.4, inadequate filtering of potentially malicious HTML tags leads to XSS vulnerabilities in various components.

    Published: 26 Jul 2017
    8.6
    High

    CVE-2017-11615

    Last Modified: 20 Apr 2025

    A sandbox escape in the Lua interface in Wube Factorio before 0.15.31 allows remote game servers or user-assisted attackers to execute arbitrary C code by including and loading a C library.

    Published: 26 Jul 2017
    7.5
    High

    CVE-2017-11658

    Last Modified: 20 Apr 2025

    In the WP Rocket plugin 2.9.3 for WordPress, the Local File Inclusion mitigation technique is to trim traversal characters (..) -- however, this is insufficient to stop remote attacks and can be bypassed by using 0x00 bytes, as demonstrated by a .%00.../.%00.../ attack.

    Published: 26 Jul 2017
    9
    Critical

    CVE-2017-5691

    Last Modified: 20 Apr 2025

    Incorrect check in Intel processors from 6th and 7th Generation Intel Core Processor Families, Intel Xeon E3-1500M v5 and v6 Product Families, and Intel Xeon E3-1200 v5 and v6 Product Families allows compromised system firmware to impact SGX security via incorrect early system state.

    Published: 26 Jul 2017
    7.5
    High

    CVE-2017-11655

    Last Modified: 20 Apr 2025

    A memory leak was found in the way SIPcrack 0.2 handled processing of SIP traffic, because a lines array was mismanaged. A remote attacker could potentially use this flaw to crash long-running sipdump network sniffing sessions.

    Published: 26 Jul 2017
    5.9
    Medium

    CVE-2017-11654

    Last Modified: 20 Apr 2025

    An out-of-bounds read and write flaw was found in the way SIPcrack 0.2 processed SIP traffic, because 0x00 termination of a payload array was mishandled. A remote attacker could potentially use this flaw to crash the sipdump process by generating specially crafted SIP traffic.

    Published: 26 Jul 2017
    7.5
    High

    CVE-2017-11630

    Last Modified: 20 Apr 2025

    dapur\apps\app_config\controller\backuper.php in Fiyo CMS 2.0.7 allows remote attackers to delete arbitrary files via directory traversal sequences in the file parameter in a type=database request, a different vulnerability than CVE-2017-8853.

    Published: 26 Jul 2017
    8.8
    High

    CVE-2017-11638

    Last Modified: 20 Apr 2025

    GraphicsMagick 1.3.26 has a segmentation violation in the WriteMAPImage() function in coders/map.c when processing a non-colormapped image, a different vulnerability than CVE-2017-11642.

    Published: 26 Jul 2017
    6.1
    Medium

    CVE-2017-11629

    Last Modified: 20 Apr 2025

    dayrui FineCms through 5.0.10 has Cross Site Scripting (XSS) in controllers/api.php via the function parameter in a c=api&m=data2 request.

    Published: 26 Jul 2017
    9.8
    Critical

    CVE-2017-11636

    Last Modified: 20 Apr 2025

    GraphicsMagick 1.3.26 has a heap overflow in the WriteRGBImage() function in coders/rgb.c when processing multiple frames that have non-identical widths.

    Published: 26 Jul 2017
    9.8
    Critical

    CVE-2017-11637

    Last Modified: 20 Apr 2025

    GraphicsMagick 1.3.26 has a NULL pointer dereference in the WritePCLImage() function in coders/pcl.c during writes of monochrome images.

    Published: 26 Jul 2017
    9.8
    Critical

    CVE-2017-11641

    Last Modified: 20 Apr 2025

    GraphicsMagick 1.3.26 has a Memory Leak in the PersistCache function in magick/pixel_cache.c during writing of Magick Persistent Cache (MPC) files.

    Published: 26 Jul 2017
    8.8
    High

    CVE-2017-11642

    Last Modified: 20 Apr 2025

    GraphicsMagick 1.3.26 has a NULL pointer dereference in the WriteMAPImage() function in coders/map.c when processing a non-colormapped image, a different vulnerability than CVE-2017-11638.

    Published: 26 Jul 2017
    9.8
    Critical

    CVE-2017-11643

    Last Modified: 20 Apr 2025

    GraphicsMagick 1.3.26 has a heap overflow in the WriteCMYKImage() function in coders/cmyk.c when processing multiple frames that have non-identical widths.

    Published: 26 Jul 2017
    6.1
    Medium

    CVE-2017-11651

    Last Modified: 20 Apr 2025

    NexusPHP V1.5 has XSS via a javascript: or data: URL in a UBBCode url tag.

    Published: 26 Jul 2017
    7
    High

    CVE-2017-6005

    Last Modified: 20 Apr 2025

    Waves MaxxAudio, as installed on Dell laptops, adds a "WavesSysSvc" Windows service with File Version 1.1.6.0. This service has a vulnerability known as Unquoted Service Path. This could potentially allow an authorized but non-privileged local user to execute arbitrary code with elevated privileges on the system.

    Published: 26 Jul 2017
    9.8
    Critical

    CVE-2017-11631

    Last Modified: 20 Apr 2025

    dapur/app/app_user/controller/status.php in Fiyo CMS 2.0.7 has SQL injection via the id parameter.

    Published: 26 Jul 2017