CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2017-6034

    Last Modified: 4 Jun 2026

    An authentication bypass by capture-replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which may allow an attacker to replay the following commands: run, stop, upload, and download.

    Published: 30 Jun 2017
    6.1
    Medium

    CVE-2017-6018

    Last Modified: 20 Apr 2025

    An open redirect issue was discovered in B. Braun Medical SpaceCom module, which is integrated into the SpaceStation docking station: SpaceStation with SpaceCom module (integrated as part number 8713142U), software versions prior to Version 012U000040, and SpaceStation (part number 8713140U) with installed SpaceCom module (part number 8713160U), software versions prior to Version 012U000040. The web server of the affected product accepts untrusted input which could allow attackers to redirect the request to an unintended URL contained within untrusted input.

    Published: 30 Jun 2017
    9.1
    Critical

    CVE-2017-6026

    Last Modified: 20 Apr 2025

    A Use of Insufficiently Random Values issue was discovered in Schneider Electric Modicon PLCs Modicon M241, firmware versions prior to Version 4.0.5.11, and Modicon M251, firmware versions prior to Version 4.0.5.11. The session numbers generated by the web application are lacking randomization and are shared between several users. This may allow a current session to be compromised.

    Published: 30 Jun 2017
    5.3
    Medium

    CVE-2017-6032

    Last Modified: 20 Apr 2025

    A Violation of Secure Design Principles issue was discovered in Schneider Electric Modicon Modbus Protocol. The Modicon Modbus protocol has a session-related weakness making it susceptible to brute-force attacks.

    Published: 30 Jun 2017
    7.1
    High

    CVE-2017-6038

    Last Modified: 20 Apr 2025

    A Cross-Site Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web application does not sufficiently verify that requests were provided by the user who submitted the request.

    Published: 30 Jun 2017
    5.3
    Medium

    CVE-2017-6040

    Last Modified: 20 Apr 2025

    An Information Exposure issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. Non-sensitive information can be obtained anonymously.

    Published: 30 Jun 2017
    9.8
    Critical

    CVE-2017-6044

    Last Modified: 20 Apr 2025

    An Improper Authorization issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11. Several files and directories can be accessed without authentication, which may allow a remote attacker to perform sensitive functions including arbitrary file upload, file download, and device reboot.

    Published: 30 Jun 2017
    9.8
    Critical

    CVE-2016-9358

    Last Modified: 20 Apr 2025

    A Hard-Coded Passwords issue was discovered in Marel Food Processing Systems M3000 terminal associated with the following systems: A320, A325, A371, A520 Master, A520 Slave, A530, A542, A571, Check Bin Grader, FlowlineQC T376, IPM3 Dual Cam v132, IPM3 Dual Cam v139, IPM3 Single Cam v132, P520, P574, SensorX13 QC flow line, SensorX23 QC Master, SensorX23 QC Slave, Speed Batcher, T374, T377, V36, V36B, and V36C; M3210 terminal associated with the same systems as the M3000 terminal identified above; M3000 desktop software associated with the same systems as the M3000 terminal identified above; MAC4 controller associated with the same systems as the M3000 terminal identified above; SensorX23 X-ray machine; SensorX25 X-ray machine; and MWS2 weighing system. The end user does not have the ability to change system passwords.

    Published: 30 Jun 2017
    7.5
    High

    CVE-2017-6017

    Last Modified: 20 Apr 2025

    A Resource Exhaustion issue was discovered in Schneider Electric Modicon M340 PLC BMXNOC0401, BMXNOE0100, BMXNOE0110, BMXNOE0110H, BMXNOR0200H, BMXP341000, BMXP342000, BMXP3420102, BMXP3420102CL, BMXP342020, BMXP342020H, BMXP342030, BMXP3420302, BMXP3420302H, and BMXP342030H. A remote attacker could send a specially crafted set of packets to the PLC causing it to freeze, requiring the operator to physically press the reset button on the PLC in order to recover.

    Published: 30 Jun 2017
    9.8
    Critical

    CVE-2017-6022

    Last Modified: 20 Apr 2025

    A hard-coded password issue was discovered in Becton, Dickinson and Company (BD) PerformA, Version 2.0.14.0 and prior versions, and KLA Journal Service, Version 1.0.51 and prior versions. They use hard-coded passwords to access the BD Kiestra Database, which could be leveraged to compromise the confidentiality of limited PHI/PII information stored in the BD Kiestra Database.

    Published: 30 Jun 2017
    9.8
    Critical

    CVE-2017-6041

    Last Modified: 20 Apr 2025

    An Unrestricted Upload issue was discovered in Marel Food Processing Systems M3000 terminal associated with the following systems: A320, A325, A371, A520 Master, A520 Slave, A530, A542, A571, Check Bin Grader, FlowlineQC T376, IPM3 Dual Cam v132, IPM3 Dual Cam v139, IPM3 Single Cam v132, P520, P574, SensorX13 QC flow line, SensorX23 QC Master, SensorX23 QC Slave, Speed Batcher, T374, T377, V36, V36B, and V36C; M3210 terminal associated with the same systems as the M3000 terminal identified above; M3000 desktop software associated with the same systems as the M3000 terminal identified above; MAC4 controller associated with the same systems as the M3000 terminal identified above; SensorX23 X-ray machine; SensorX25 X-ray machine; and MWS2 weighing system. This vulnerability allows an attacker to modify the operation and upload firmware changes without detection.

    Published: 30 Jun 2017
    8.8
    High

    CVE-2017-6042

    Last Modified: 20 Apr 2025

    A Cross-Site Request Forgery issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11. Affected devices do not verify if a request was intentionally sent by the logged-in user, which may allow an attacker to trick a client into making an unintentional request to the web server that will be treated as an authentic request.

    Published: 30 Jun 2017
    9.8
    Critical

    CVE-2017-7899

    Last Modified: 20 Apr 2025

    An Information Exposure issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1100 programmable-logic controllers 1763-L16AWA, Series A and B, Version 16.00 and prior versions; 1763-L16BBB, Series A and B, Version 16.00 and prior versions; 1763-L16BWA, Series A and B, Version 16.00 and prior versions; and 1763-L16DWD, Series A and B, Version 16.00 and prior versions and Allen-Bradley MicroLogix 1400 programmable logic controllers 1766-L32AWA, Series A and B, Version 16.00 and prior versions; 1766-L32BWA, Series A and B, Version 16.00 and prior versions; 1766-L32BWAA, Series A and B, Version 16.00 and prior versions; 1766-L32BXB, Series A and B, Version 16.00 and prior versions; 1766-L32BXBA, Series A and B, Version 16.00 and prior versions; and 1766-L32AWAA, Series A and B, Version 16.00 and prior versions. User credentials are sent to the web server using the HTTP GET method, which may result in the credentials being logged. This could make user credentials available for unauthorized retrieval.

    Published: 30 Jun 2017
    5.5
    Medium

    CVE-2017-1000127

    Last Modified: 20 Apr 2025

    Exiv2 0.26 contains a heap buffer overflow in tiff parser

    Published: 30 Jun 2017
    5.5
    Medium

    CVE-2017-1000128

    Last Modified: 20 Apr 2025

    Exiv2 0.26 contains a stack out of bounds read in JPEG2000 parser

    Published: 30 Jun 2017
    5.5
    Medium

    CVE-2017-1000126

    Last Modified: 20 Apr 2025

    exiv2 0.26 contains a Stack out of bounds read in webp parser

    Published: 30 Jun 2017
    6.5
    Medium

    CVE-2017-8443

    Last Modified: 20 Apr 2025

    In Kibana X-Pack security versions prior to 5.4.3 if a Kibana user opens a crafted Kibana URL the result could be a redirect to an improperly initialized Kibana login screen. If the user enters credentials on this screen, the credentials will appear in the URL bar. The credentials could then be viewed by untrusted parties or logged into the Kibana access logs.

    Published: 30 Jun 2017
    7.5
    High

    CVE-2017-10683

    Last Modified: 20 Apr 2025

    In mpg123 1.25.0, there is a heap-based buffer over-read in the convert_latin1 function in libmpg123/id3.c. A crafted input will lead to a remote denial of service attack.

    Published: 29 Jun 2017
    7.5
    High

    CVE-2017-10687

    Last Modified: 20 Apr 2025

    In LibSass 3.4.5, there is a heap-based buffer over-read in the function json_mkstream() in sass_context.cpp. A crafted input will lead to a remote denial of service attack.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-10678

    Last Modified: 20 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Piwigo through 2.9.1 allows remote attackers to hijack the authentication of users for requests to delete permalinks via a crafted request.

    Published: 29 Jun 2017
    7.5
    High

    CVE-2017-10679

    Last Modified: 20 Apr 2025

    Piwigo through 2.9.1 allows remote attackers to obtain sensitive information about the descriptive name of a permalink by examining the redirect URL that is returned in a request for the permalink ID number of a private album. The permalink ID numbers are easily guessed.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-10680

    Last Modified: 20 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Piwigo through 2.9.1 allows remote attackers to hijack the authentication of users for requests to change a private album to public via a crafted request.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-10681

    Last Modified: 20 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Piwigo through 2.9.1 allows remote attackers to hijack the authentication of users for requests to unlock albums via a crafted request.

    Published: 29 Jun 2017
    9.8
    Critical

    CVE-2017-10682

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in the administrative backend in Piwigo through 2.9.1 allows remote users to execute arbitrary SQL commands via the cat_false or cat_true parameter in the comments or status page to cat_options.php.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-2849

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during NTP server configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-2845

    Last Modified: 20 Apr 2025

    An exploitable command injection vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can allow for a user to inject arbitrary shell characters during the SMTP configuration tests resulting in command execution

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-2846

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during manual network configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-2847

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during manual network configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-2848

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during manual network configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 29 Jun 2017
    7.2
    High

    CVE-2017-2851

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can cause a buffer overflow.

    Published: 29 Jun 2017
    9.8
    Critical

    CVE-2017-4997

    Last Modified: 20 Apr 2025

    EMC VASA Provider Virtual Appliance versions 8.3.x and prior has an unauthenticated remote code execution vulnerability that could potentially be exploited by malicious users to compromise the affected system.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-2844

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 29 Jun 2017
    8.8
    High

    CVE-2017-2850

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary characters in the pureftpd.passwd file during a username change, which in turn allows for bypassing chroot restrictions in the FTP server. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 29 Jun 2017
    6.4
    Medium

    CVE-2017-3749

    Last Modified: 20 Apr 2025

    On Lenovo VIBE mobile phones, the Idea Friend Android application allows private data to be backed up and restored via Android Debug Bridge, which allows tampering leading to privilege escalation in conjunction with CVE-2017-3748 and CVE-2017-3750.

    Published: 29 Jun 2017
    7.8
    High

    CVE-2017-3748

    Last Modified: 20 Apr 2025

    On Lenovo VIBE mobile phones, improper access controls on the nac_server component can be abused in conjunction with CVE-2017-3749 and CVE-2017-3750 to elevate privileges to the root user (commonly known as 'rooting' or "jail breaking" a device).

    Published: 29 Jun 2017
    5.5
    Medium

    CVE-2017-3747

    Last Modified: 20 Apr 2025

    Privilege escalation vulnerability in Lenovo Nerve Center for Windows 10 on Desktop systems (Lenovo Nerve Center for notebook systems is not affected) that could allow an attacker with local privileges on a system to alter registry keys.

    Published: 29 Jun 2017
    6.4
    Medium

    CVE-2017-3750

    Last Modified: 20 Apr 2025

    On Lenovo VIBE mobile phones, the Lenovo Security Android application allows private data to be backed up and restored via Android Debug Bridge, which allows tampering leading to privilege escalation in conjunction with CVE-2017-3748 and CVE-2017-3749.

    Published: 29 Jun 2017
    4.7
    Medium

    CVE-2017-8554

    Last Modified: 20 Apr 2025

    The kernel in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an authenticated attacker to obtain memory contents via a specially crafted application.

    Published: 29 Jun 2017
    7
    High

    CVE-2017-8579

    Last Modified: 20 Apr 2025

    The DirectX component in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an authenticated attacker to run arbitrary code in kernel mode via a specially crafted application, aka "DirectX Elevation of Privilege Vulnerability."

    Published: 29 Jun 2017
    8.1
    High

    CVE-2017-8613

    Last Modified: 20 Apr 2025

    Azure AD Connect Password writeback, if misconfigured during enablement, allows an attacker to reset passwords and gain unauthorized access to arbitrary on-premises AD privileged user accounts aka "Azure AD Connect Elevation of Privilege Vulnerability."

    Published: 29 Jun 2017
    6.5
    Medium

    CVE-2017-1310

    Last Modified: 20 Apr 2025

    IBM Informix Dynamic Server 12.1 could allow an authenticated user to cause a buffer overflow that would write large assertion fail files to the server. Done enough times, this could use large parts of the file system and cause the server to crash. IBM X-Force ID: 125569.

    Published: 29 Jun 2017
    7
    High

    CVE-2017-8576

    Last Modified: 20 Apr 2025

    The graphics component in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an authenticated attacker to run arbitrary code in kernel mode via a specially crafted application, aka "Microsoft Graphics Component Elevation of Privilege Vulnerability."

    Published: 29 Jun 2017
    5.5
    Medium

    CVE-2017-8575

    Last Modified: 20 Apr 2025

    The kernel in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an authenticated attacker to obtain information via a specially crafted application, aka "Microsoft Graphics Component Information Disclosure Vulnerability."

    Published: 29 Jun 2017
    7.8
    High

    CVE-2017-8558

    Last Modified: 20 Apr 2025

    The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on 32-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703 does not properly scan a specially crafted file leading to memory corruption. aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability".

    Published: 29 Jun 2017
    7.8
    High

    CVE-2017-10671

    Last Modified: 20 Apr 2025

    Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in sthttpd before 2.27.1 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a crafted filename.

    Published: 29 Jun 2017
    6.1
    Medium

    CVE-2017-10673

    Last Modified: 20 Apr 2025

    admin/profile.php in GetSimple CMS 3.x has XSS in a name field.

    Published: 29 Jun 2017
    7.5
    High

    CVE-2016-10042

    Last Modified: 20 Apr 2025

    Authorization Bypass in the Web interface of Arcadyan SLT-00 Star* (aka Swisscom Internet-Box) devices before R7.7 allows unauthorized reconfiguration of the static routing table via an unauthenticated HTTP request, leading to denial of service and information disclosure.

    Published: 29 Jun 2017
    7.5
    High

    CVE-2017-3143

    Last Modified: 21 Nov 2024

    An attacker who is able to send and receive messages to an authoritative DNS server and who has knowledge of a valid TSIG key name for the zone and service being targeted may be able to manipulate BIND into accepting an unauthorized dynamic update. Affects BIND 9.4.0->9.8.8, 9.9.0->9.9.10-P1, 9.10.0->9.10.5-P1, 9.11.0->9.11.1-P1, 9.9.3-S1->9.9.10-S2, 9.10.5-S1->9.10.5-S2.

    Published: 29 Jun 2017
    7.5
    High

    CVE-2017-10688

    Last Modified: 20 Apr 2025

    In LibTIFF 4.0.8, there is a assertion abort in the TIFFWriteDirectoryTagCheckedLong8Array function in tif_dirwrite.c. A crafted input will lead to a remote denial of service attack.

    Published: 29 Jun 2017
    6.1
    Medium

    CVE-2017-10667

    Last Modified: 20 Apr 2025

    In index.php in Zen Cart 1.6.0, the products_id parameter can cause XSS.

    Published: 29 Jun 2017