CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2017-1000085

    Last Modified: 20 Apr 2025

    Subversion Plugin connects to a user-specified Subversion repository as part of form validation (e.g. to retrieve a list of tags). This functionality improperly checked permissions, allowing any user with Item/Build permission (but not Item/Configure) to connect to any web server or Subversion server and send credentials with a known ID, thereby possibly capturing them. Additionally, this functionality did not require POST requests be used, thereby allowing the above to be performed without direct access to Jenkins via Cross-Site Request Forgery attacks.

    Published: 10 Jul 2017
    6.5
    Medium

    CVE-2017-7890

    Last Modified: 20 Apr 2025

    The GIF decoding function gdImageCreateFromGifCtx in gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.31 and 7.x before 7.1.7, does not zero colorMap arrays before use. A specially crafted GIF image could use the uninitialized tables to read ~700 bytes from the top of the stack, potentially disclosing sensitive information.

    Published: 10 Jul 2017
    9.8
    Critical

    CVE-2017-4976

    Last Modified: 20 Apr 2025

    EMC ESRS Policy Manager prior to 6.8 contains an undocumented account (OpenDS admin) with a default password. A remote attacker with the knowledge of the default password may login to the system and gain administrator privileges to the local LDAP directory server.

    Published: 9 Jul 2017
    4.9
    Medium

    CVE-2017-8003

    Last Modified: 20 Apr 2025

    EMC Data Protection Advisor prior to 6.4 contains a path traversal vulnerability. A remote authenticated high privileged user may potentially exploit this vulnerability to access unauthorized information from the underlying OS server by supplying specially crafted strings in input parameters of the application.

    Published: 9 Jul 2017
    8.8
    High

    CVE-2017-8002

    Last Modified: 20 Apr 2025

    EMC Data Protection Advisor prior to 6.4 contains multiple blind SQL injection vulnerabilities. A remote authenticated attacker may potentially exploit these vulnerabilities to gain information about the application by causing execution of arbitrary SQL commands.

    Published: 9 Jul 2017
    8.8
    High

    CVE-2017-12667

    Last Modified: 20 Apr 2025

    ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMATImage in coders\mat.c.

    Published: 9 Jul 2017
    7.8
    High

    CVE-2017-11176

    Last Modified: 20 Apr 2025

    The mq_notify function in the Linux kernel through 4.11.9 does not set the sock pointer to NULL upon entry into the retry logic. During a user-space close of a Netlink socket, it allows attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact.

    Published: 9 Jul 2017
    7.8
    High

    CVE-2017-11110

    Last Modified: 20 Apr 2025

    The ole_init function in ole.c in catdoc 0.95 allows remote attackers to cause a denial of service (heap-based buffer underflow and application crash) or possibly have unspecified other impact via a crafted file, i.e., data is written to memory addresses before the beginning of the tmpBuf buffer.

    Published: 8 Jul 2017
    6.1
    Medium

    CVE-2017-11107

    Last Modified: 20 Apr 2025

    phpLDAPadmin through 1.2.3 has XSS in htdocs/entry_chooser.php via the form, element, rdn, or container parameter.

    Published: 8 Jul 2017
    5.9
    Medium

    CVE-2017-11104

    Last Modified: 20 Apr 2025

    Knot DNS before 2.4.5 and 2.5.x before 2.5.2 contains a flaw within the TSIG protocol implementation that would allow an attacker with a valid key name and algorithm to bypass TSIG authentication if no additional ACL restrictions are set, because of an improper TSIG validity period check.

    Published: 8 Jul 2017
    6.5
    Medium

    CVE-2017-8442

    Last Modified: 20 Apr 2025

    Elasticsearch X-Pack Security versions 5.0.0 to 5.4.3, when enabled, can result in the Elasticsearch _nodes API leaking sensitive configuration information, such as the paths and passphrases of SSL keys that were configured as part of an authentication realm. This could allow an authenticated Elasticsearch user to improperly view these details.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-11099

    Last Modified: 20 Apr 2025

    When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead to a Segmentation Violation in the wav_convert2mono() function in lib/wav.c.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-11097

    Last Modified: 20 Apr 2025

    When SWFTools 0.9.2 processes a crafted file in swfc, it can lead to a NULL Pointer Dereference in the dict_lookup() function in lib/q.c.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-11098

    Last Modified: 20 Apr 2025

    When SWFTools 0.9.2 processes a crafted file in png2swf, it can lead to a Segmentation Violation in the png_load() function in lib/png.c.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-11096

    Last Modified: 20 Apr 2025

    When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_DeleteFilter() function in lib/modules/swffilter.c.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-11100

    Last Modified: 20 Apr 2025

    When SWFTools 0.9.2 processes a crafted file in swfextract, it can lead to a NULL Pointer Dereference in the swf_FoldSprite() function in lib/rxfswf.c.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-11101

    Last Modified: 20 Apr 2025

    When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_Relocate() function in lib/modules/swftools.c.

    Published: 7 Jul 2017
    7.5
    High

    CVE-2017-11102

    Last Modified: 20 Apr 2025

    The ReadOneJNGImage function in coders/png.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (application crash) during JNG reading via a zero-length color_image data structure.

    Published: 7 Jul 2017
    8.6
    High

    CVE-2017-9627

    Last Modified: 20 Apr 2025

    An Uncontrolled Resource Consumption issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The uncontrolled resource consumption vulnerability could allow an attacker to exhaust the memory resources of the machine, causing a denial of service.

    Published: 7 Jul 2017
    7
    High

    CVE-2014-7953

    Last Modified: 20 Apr 2025

    Race condition in the bindBackupAgent method in the ActivityManagerService in Android 4.4.4 allows local users with adb shell access to execute arbitrary code or any valid package as system by running "pm install" with the target apk, and simultaneously running a crafted script to process logcat's output looking for a dexopt line, which once found should execute bindBackupAgent with the uid member of the ApplicationInfo parameter set to 1000.

    Published: 7 Jul 2017
    4.6
    Medium

    CVE-2014-7954

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in the doSendObjectInfo method in frameworks/av/media/mtp/MtpServer.cpp in Android 4.4.4 allows physically proximate attackers with a direct connection to the target Android device to upload files outside of the sdcard via a .. (dot dot) in a name parameter of an MTP request.

    Published: 7 Jul 2017
    8.1
    High

    CVE-2017-6868

    Last Modified: 20 Apr 2025

    An Improper Authentication issue was discovered in Siemens SIMATIC CP 44x-1 RNA, all versions prior to 1.4.1. An unauthenticated remote attacker may be able to perform administrative actions on the Communication Process (CP) of the RNA series module, if network access to Port 102/TCP is available and the configuration file for the CP is stored on the RNA's CPU.

    Published: 7 Jul 2017
    9.8
    Critical

    CVE-2017-9629

    Last Modified: 20 Apr 2025

    A Stack-Based Buffer Overflow issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The stack-based buffer overflow vulnerability has been identified, which may allow a remote attacker to execute arbitrary code in the context of a highly privileged account.

    Published: 7 Jul 2017
    7.5
    High

    CVE-2017-9631

    Last Modified: 20 Apr 2025

    A Null Pointer Dereference issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The null pointer dereference vulnerability could allow an attacker to crash the logger process, causing a denial of service for logging and log-viewing (applications that use the Wonderware ArchestrA Logger continue to run when the Wonderware ArchestrA Logger service is unavailable).

    Published: 7 Jul 2017
    7.5
    High

    CVE-2015-3297

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in node/utils/Minify.js in Etherpad 1.1.1 through 1.5.2 allows remote attackers to read arbitrary files by leveraging replacement of backslashes with slashes in the path parameter of HTTP API requests.

    Published: 7 Jul 2017
    7.3
    High

    CVE-2017-10994

    Last Modified: 20 Apr 2025

    Foxit Reader before 8.3.1 and PhantomPDF before 8.3.1 have an Arbitrary Write vulnerability, which allows remote attackers to execute arbitrary code via a crafted document.

    Published: 7 Jul 2017
    6.1
    Medium

    CVE-2017-10991

    Last Modified: 20 Apr 2025

    The WP Statistics plugin through 12.0.9 for WordPress has XSS in the rangestart and rangeend parameters on the wps_referrers_page page.

    Published: 7 Jul 2017
    5.5
    Medium

    CVE-2017-0326

    Last Modified: 20 Apr 2025

    An information disclosure vulnerability in the NVIDIA Video Driver due to an out-of-bounds read function in the Tegra Display Controller driver could result in possible information disclosure. This issue is rated as Moderate. Product: Android. Version: N/A. Android ID: A-33718700. References: N-CVE-2017-0326.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-0340

    Last Modified: 20 Apr 2025

    An elevation of privilege vulnerability in the NVIDIA Libnvparser component due to a memcpy into a fixed sized buffer with a user-controlled size could lead to a memory corruption and possible remote code execution. This issue is rated as High. Product: Android. Version: N/A. Android ID: A-33968204. References: N-CVE-2017-0340.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-2188

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in Installer of Denshinouhin Check System (for Ministry of Agriculture, Forestry and Fisheries Nouson Seibi Jigyou) 2014 March Edition (Ver.9.0.001.001) [Updated on 2017 June 9], (Ver.8.0.001.001) [Updated on 2016 May 31] and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-2215

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in Installer of "Setup file of advance preparation" (jizen_setup.exe) (The version which was available on the website prior to 2017 June 12) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Jul 2017
    6.1
    Medium

    CVE-2017-2222

    Last Modified: 20 Apr 2025

    Cross-site scripting vulnerability in WP-Members prior to version 3.1.8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-2229

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in Douroshisetu Kihon Data Sakusei System Ver1.0.2 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Jul 2017
    9.8
    Critical

    CVE-2017-2236

    Last Modified: 20 Apr 2025

    Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and earlier, Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and earlier uses hard-coded credentials, which may allow attackers to perform operations on device with administrative privileges.

    Published: 7 Jul 2017
    5.4
    Medium

    CVE-2017-2144

    Last Modified: 20 Apr 2025

    Cybozu Garoon 3.0.0 to 4.2.4 may allow an attacker to lock another user's file through a specially crafted page.

    Published: 7 Jul 2017
    5.4
    Medium

    CVE-2017-2145

    Last Modified: 20 Apr 2025

    Session fixation vulnerability in Cybozu Garoon 4.0.0 to 4.2.4 allows remote attackers to perform arbitrary operations via unspecified vectors.

    Published: 7 Jul 2017
    4.8
    Medium

    CVE-2017-2146

    Last Modified: 20 Apr 2025

    Cross-site scripting vulnerability in Cybozu Garoon 3.0.0 to 4.2.4 allows remote attackers to inject arbitrary web script or HTML via application menu.

    Published: 7 Jul 2017
    8
    High

    CVE-2017-2183

    Last Modified: 20 Apr 2025

    HOME SPOT CUBE2 firmware V101 and earlier allows authenticated attackers to execute arbitrary OS commands via Clock Settings.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-2184

    Last Modified: 20 Apr 2025

    Buffer overflow in HOME SPOT CUBE2 firmware V101 and earlier allows an attacker to execute arbitrary code via WebUI.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-2185

    Last Modified: 20 Apr 2025

    HOME SPOT CUBE2 firmware V101 and earlier allows authenticated attackers to execute arbitrary OS commands via WebUI.

    Published: 7 Jul 2017
    8.8
    High

    CVE-2017-2186

    Last Modified: 20 Apr 2025

    HOME SPOT CUBE2 firmware V101 and earlier allows an attacker to bypass authentication to load malicious firmware via WebUI.

    Published: 7 Jul 2017
    6.1
    Medium

    CVE-2017-2194

    Last Modified: 20 Apr 2025

    Cross-site scripting vulnerability in Source code security studying tool iCodeChecker allows an attacker to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-2208

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in Installer of Electronic tendering and bid opening system available prior to June 12, 2017 allows an attacker to execute arbitrary code via a specially crafted executable file in an unspecified directory.

    Published: 7 Jul 2017
    6.1
    Medium

    CVE-2017-2216

    Last Modified: 20 Apr 2025

    Cross-site scripting vulnerability in WordPress Download Manager prior to version 2.9.50 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Jul 2017
    6.1
    Medium

    CVE-2017-2217

    Last Modified: 20 Apr 2025

    Open redirect vulnerability in WordPress Download Manager prior to version 2.9.51 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-2218

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in Installer of QuickTime for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-2220

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in Installer of CASL II simulator (self-extract format) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Jul 2017
    9.8
    Critical

    CVE-2017-2225

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in EbidSettingChecker.exe (version 1.0.0.0) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-2226

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in Setup file of advance preparation for e-Tax software (WEB version) (1.17.1) and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Jul 2017
    7.8
    High

    CVE-2017-2227

    Last Modified: 20 Apr 2025

    Untrusted search path vulnerability in The installer of Charamin OMP Version 1.1.7.4 and earlier, Version 1.2.0.0 Beta and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 7 Jul 2017