CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2017-11202

    Last Modified: 20 Apr 2025

    FineCMS through 2017-07-12 allows XSS in visitors.php because JavaScript in visited URLs is not restricted either during logging or during the reading of logs, a different vulnerability than CVE-2017-11180.

    Published: 13 Jul 2017
    7.8
    High

    CVE-2017-1000083

    Last Modified: 20 Apr 2025

    backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.

    Published: 13 Jul 2017
    6.5
    Medium

    CVE-2017-11336

    Last Modified: 20 Apr 2025

    There is a heap-based buffer over-read in the Image::printIFDStructure function in image.cpp in Exiv2 0.26. A Crafted input will lead to a remote denial of service attack.

    Published: 13 Jul 2017
    4.4
    Medium

    CVE-2017-11334

    Last Modified: 20 Apr 2025

    The address_space_write_continue function in exec.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds access and guest instance crash) by leveraging use of qemu_map_ram_ptr to access guest ram block area.

    Published: 13 Jul 2017
    9.8
    Critical

    CVE-2017-11465

    Last Modified: 20 Apr 2025

    The parser_yyerror function in the UTF-8 parser in Ruby 2.4.1 allows attackers to cause a denial of service (invalid write or read) or possibly have unspecified other impact via a crafted Ruby script, related to the parser_tokadd_utf8 function in parse.y. NOTE: this might have security relevance as a bypass of a $SAFE protection mechanism.

    Published: 13 Jul 2017
    6.5
    Medium

    CVE-2017-11337

    Last Modified: 20 Apr 2025

    There is an invalid free in the Action::TaskFactory::cleanup function of actions.cpp in Exiv2 0.26. A crafted input will lead to a remote denial of service attack.

    Published: 13 Jul 2017
    6.5
    Medium

    CVE-2017-11368

    Last Modified: 20 Apr 2025

    In MIT Kerberos 5 (aka krb5) 1.7 and later, an authenticated attacker can cause a KDC assertion failure by sending invalid S4U2Self or S4U2Proxy requests.

    Published: 13 Jul 2017
    9.8
    Critical

    CVE-2017-11174

    Last Modified: 20 Apr 2025

    In install/page_dbsettings.php in the Core distribution of XOOPS 2.5.8.1, unfiltered data passed to CREATE and ALTER SQL queries caused SQL Injection in the database settings page, related to use of GBK in CHARACTER SET and COLLATE clauses.

    Published: 12 Jul 2017
    8.8
    High

    CVE-2017-11193

    Last Modified: 20 Apr 2025

    Pulse Connect Secure 8.3R1 has CSRF in diag.cgi. In the panel, the diag.cgi file is responsible for running commands such as ping, ping6, traceroute, traceroute6, nslookup, arp, and Portprobe. These functions do not have any protections against CSRF. That can allow an attacker to run these commands against any IP if they can get an admin to visit their malicious CSRF page.

    Published: 12 Jul 2017
    6.1
    Medium

    CVE-2017-11194

    Last Modified: 20 Apr 2025

    Pulse Connect Secure 8.3R1 has Reflected XSS in adminservercacertdetails.cgi. In the admin panel, the certid parameter of adminservercacertdetails.cgi is reflected in the application's response and is not properly sanitized, allowing an attacker to inject tags. An attacker could come up with clever payloads to make the system run commands such as ping, ping6, traceroute, nslookup, arp, etc.

    Published: 12 Jul 2017
    6.1
    Medium

    CVE-2017-11195

    Last Modified: 20 Apr 2025

    Pulse Connect Secure 8.3R1 has Reflected XSS in launchHelp.cgi. The helpLaunchPage parameter is reflected in an IFRAME element, if the value contains two quotes. It properly sanitizes quotes and tags, so one cannot simply close the src with a quote and inject after that. However, an attacker can use javascript: or data: to abuse this.

    Published: 12 Jul 2017
    8.8
    High

    CVE-2017-11196

    Last Modified: 20 Apr 2025

    Pulse Connect Secure 8.3R1 has CSRF in logout.cgi. The logout function of the admin panel is not protected by any CSRF tokens, thus allowing an attacker to logout a user by making them visit a malicious web page.

    Published: 12 Jul 2017
    5.4
    Medium

    CVE-2016-8946

    Last Modified: 20 Apr 2025

    IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 118833.

    Published: 12 Jul 2017
    7.8
    High

    CVE-2017-2863

    Last Modified: 20 Apr 2025

    An out-of-bounds write vulnerability exists in the PDF parsing functionality of Infix 7.1.5. A specially crafted PDF file can cause a vulnerability resulting in potential memory corruption. An attacker can send the victim a specific PDF file to trigger this vulnerability.

    Published: 12 Jul 2017
    5.4
    Medium

    CVE-2016-8953

    Last Modified: 20 Apr 2025

    IBM Emptoris Sourcing 9.5.x through 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 118840.

    Published: 12 Jul 2017
    6.1
    Medium

    CVE-2016-8947

    Last Modified: 20 Apr 2025

    IBM Emptoris Sourcing 9.5.x through 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 118834

    Published: 12 Jul 2017
    5.4
    Medium

    CVE-2016-8948

    Last Modified: 20 Apr 2025

    IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 118835.

    Published: 12 Jul 2017
    5.4
    Medium

    CVE-2016-8950

    Last Modified: 20 Apr 2025

    IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 118837.

    Published: 12 Jul 2017
    6.5
    Medium

    CVE-2017-1285

    Last Modified: 20 Apr 2025

    IBM WebSphere MQ 9.0.1 and 9.0.2 could allow an authenticated user with authority to send a specially crafted message that would cause a channel to remain in a running state but not process messages. IBM X-Force ID: 125146.

    Published: 12 Jul 2017
    6.1
    Medium

    CVE-2017-1321

    Last Modified: 20 Apr 2025

    IBM InfoSphere Information Server 9.1, 11.3, and 11.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 125916.

    Published: 12 Jul 2017
    5.4
    Medium

    CVE-2016-6114

    Last Modified: 20 Apr 2025

    IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 118352.

    Published: 12 Jul 2017
    7.5
    High

    CVE-2017-9844

    Last Modified: 2 May 2025

    SAP NetWeaver 7400.12.21.30308 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted serialized Java object in a request to metadatauploader, aka SAP Security Note 2399804. NOTE: The vendor states that the devserver package of Visual Composer deserializes a malicious object that may cause legitimate users accessing a service, either by crashing or flooding the service.

    Published: 12 Jul 2017
    7.5
    High

    CVE-2017-9845

    Last Modified: 20 Apr 2025

    disp+work 7400.12.21.30308 in SAP NetWeaver 7.40 allows remote attackers to cause a denial of service (resource consumption) via a crafted DIAG request, aka SAP Security Note 2405918.

    Published: 12 Jul 2017
    6.5
    Medium

    CVE-2017-11189

    Last Modified: 20 Apr 2025

    unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash), which could be relevant if unrarlib is used as library code for a long-running application. NOTE: one of the several test cases in the references may be the same as what was separately reported as CVE-2017-14121.

    Published: 12 Jul 2017
    7.8
    High

    CVE-2017-11190

    Last Modified: 20 Apr 2025

    unrarlib.c in unrar-free 0.0.1, when _DEBUG_LOG mode is enabled, might allow remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via an RAR archive containing a long filename.

    Published: 12 Jul 2017
    2.7
    Low

    CVE-2017-9843

    Last Modified: 20 Apr 2025

    SAP NetWeaver AS ABAP 7.40 allows remote authenticated users with certain privileges to cause a denial of service (process crash) via vectors involving disp+work.exe, aka SAP Security Note 2406841.

    Published: 12 Jul 2017
    7.5
    High

    CVE-2017-9977

    Last Modified: 20 Apr 2025

    AVG AntiVirus for MacOS with scan engine before 4668 might allow remote attackers to bypass malware detection by leveraging failure to scan inside disk image (aka DMG) files.

    Published: 12 Jul 2017
    9.8
    Critical

    CVE-2017-4052

    Last Modified: 20 Apr 2025

    Authentication Bypass vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to change or update any configuration settings, or gain administrator functionality via a crafted HTTP request parameter.

    Published: 12 Jul 2017
    8.8
    High

    CVE-2017-4057

    Last Modified: 20 Apr 2025

    Privilege Escalation vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to gain elevated privileges via the GUI or GUI terminal commands.

    Published: 12 Jul 2017
    8.8
    High

    CVE-2017-4054

    Last Modified: 20 Apr 2025

    Command Injection vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to execute a command of their choice via a crafted HTTP request parameter.

    Published: 12 Jul 2017
    7.5
    High

    CVE-2017-4055

    Last Modified: 20 Apr 2025

    Exploitation of Authentication vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to bypass ATD detection via loose enforcement of authentication and authorization.

    Published: 12 Jul 2017
    9.8
    Critical

    CVE-2017-4053

    Last Modified: 20 Apr 2025

    Command Injection vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to execute a command of their choice via a crafted HTTP request parameter.

    Published: 12 Jul 2017
    9.8
    Critical

    CVE-2017-11187

    Last Modified: 20 Apr 2025

    phpMyFAQ before 2.9.8 does not properly mitigate brute-force attacks that try many passwords in attempted logins quickly.

    Published: 12 Jul 2017
    9.8
    Critical

    CVE-2017-11167

    Last Modified: 20 Apr 2025

    FineCMS 2.1.0 allows remote attackers to execute arbitrary PHP code by using a URL Manager "Add Site" action to enter this code after a ', sequence in a domain name, as demonstrated by the ',phpinfo() input value.

    Published: 12 Jul 2017
    6.1
    Medium

    CVE-2017-7678

    Last Modified: 20 Apr 2025

    In Apache Spark before 2.2.0, it is possible for an attacker to take advantage of a user's trust in the server to trick them into visiting a link that points to a shared Spark cluster and submits data including MHTML to the Spark master, or history server. This data, which could contain a script, would then be reflected back to the user and could be evaluated and executed by MS Windows-based clients. It is not an attack on Spark itself, but on the user, who may then execute the script inadvertently when viewing elements of the Spark web UIs.

    Published: 12 Jul 2017
    9.8
    Critical

    CVE-2017-11165

    Last Modified: 30 Apr 2026

    dataTaker DT80 dEX 1.50.012 allows remote attackers to obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI.

    Published: 12 Jul 2017
    5.4
    Medium

    CVE-2017-11181

    Last Modified: 20 Apr 2025

    In Rise Ultimate Project Manager v1.8, XSS vulnerabilities were found in the Messaging section. Subject and Message fields are vulnerable.

    Published: 12 Jul 2017
    7.5
    High

    CVE-2017-11178

    Last Modified: 20 Apr 2025

    In FineCMS through 2017-07-11, application/core/controller/style.php allows remote attackers to write to arbitrary files via the contents and filename parameters in a route=style action. For example, this can be used to overwrite a .php file because the file extension is not checked.

    Published: 12 Jul 2017
    6.1
    Medium

    CVE-2017-11179

    Last Modified: 20 Apr 2025

    FineCMS through 2017-07-11 has stored XSS in route=admin when modifying user information, and in route=register when registering a user account.

    Published: 12 Jul 2017
    6.1
    Medium

    CVE-2017-11180

    Last Modified: 20 Apr 2025

    FineCMS through 2017-07-11 has stored XSS in the logging functionality, as demonstrated by an XSS payload in (1) the User-Agent header of an HTTP request or (2) the username entered on the login screen.

    Published: 12 Jul 2017
    7.5
    High

    CVE-2017-11188

    Last Modified: 20 Apr 2025

    The ReadDPXImage function in coders\dpx.c in ImageMagick 7.0.6-0 has a large loop vulnerability that can cause CPU exhaustion via a crafted DPX file, related to lack of an EOF check.

    Published: 12 Jul 2017
    6.1
    Medium

    CVE-2017-7535

    Last Modified: 21 Nov 2024

    foreman before version 1.16.0 is vulnerable to a stored XSS in organizations/locations assignment to hosts. Exploiting this requires a user to actively assign hosts to an organization that contains html in its name which is visible to the user prior to taking action.

    Published: 12 Jul 2017
    5.4
    Medium

    CVE-2017-11182

    Last Modified: 20 Apr 2025

    In Rise Ultimate Project Manager v1.8, XSS vulnerabilities were found in the My Profile section. All input fields are vulnerable.

    Published: 12 Jul 2017
    7.8
    High

    CVE-2017-8570

    Last Modified: 22 Apr 2026

    Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Microsoft Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-0243.

    Published: 11 Jul 2017
    6.5
    Medium

    CVE-2017-0170

    Last Modified: 20 Apr 2025

    Windows Performance Monitor in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an information disclosure vulnerability due to the way it parses XML input, aka "Windows Performance Monitor Information Disclosure Vulnerability".

    Published: 11 Jul 2017
    7.8
    High

    CVE-2017-0243

    Last Modified: 20 Apr 2025

    Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Microsoft Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8570.

    Published: 11 Jul 2017
    5.5
    Medium

    CVE-2017-8557

    Last Modified: 20 Apr 2025

    Windows System Information Console in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an information disclosure vulnerability improperly parses XML input containing a reference to an external entity, aka "Windows System Information Console Information Disclosure Vulnerability".

    Published: 11 Jul 2017
    8.1
    High

    CVE-2017-8563

    Last Modified: 20 Apr 2025

    Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an elevation of privilege vulnerability due to Kerberos falling back to NT LAN Manager (NTLM) Authentication Protocol as the default authentication protocol, aka "Windows Elevation of Privilege Vulnerability".

    Published: 11 Jul 2017
    7
    High

    CVE-2017-8573

    Last Modified: 20 Apr 2025

    Graphics in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation of privilege vulnerability when it fails to properly handle objects in memory, aka "Microsoft Graphics Component Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-8574 and CVE-2017-8556.

    Published: 11 Jul 2017
    7.5
    High

    CVE-2017-8585

    Last Modified: 20 Apr 2025

    Microsoft .NET Framework 4.6, 4.6.1, 4.6.2, and 4.7 allow an attacker to send specially crafted requests to a .NET web application, resulting in denial of service, aka .NET Denial of Service Vulnerability.

    Published: 11 Jul 2017