CVE Feed

    Dashboard / CVE

    5.3
    Medium

    CVE-2016-6083

    Last Modified: 20 Apr 2025

    IBM Tivoli Monitoring V6 could allow an unauthenticated user to access SOAP queries that could contain sensitive information. IBM X-Force ID: 117696.

    Published: 27 Jun 2017
    7.3
    High

    CVE-2017-1297

    Last Modified: 20 Apr 2025

    IBM DB2 for Linux, UNIX and Windows 9.2, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) is vulnerable to a stack-based buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code. IBM X-Force ID: 125159.

    Published: 27 Jun 2017
    8.8
    High

    CVE-2017-2843

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD Camera running application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 27 Jun 2017
    8.8
    High

    CVE-2017-2841

    Last Modified: 20 Apr 2025

    An exploitable command injection vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 27 Jun 2017
    8.8
    High

    CVE-2017-2842

    Last Modified: 20 Apr 2025

    In the web management interface in Foscam C1 Indoor HD Camera running application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9222

    Last Modified: 20 Apr 2025

    The mp4ff_parse_tag function in common/mp4ff/mp4meta.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9253

    Last Modified: 20 Apr 2025

    The mp4ff_read_stsd function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9255

    Last Modified: 20 Apr 2025

    The mp4ff_read_stsc function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9218

    Last Modified: 20 Apr 2025

    The mp4ff_read_stsd function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9219

    Last Modified: 20 Apr 2025

    The mp4ff_read_stsc function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (memory allocation error and application crash) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9220

    Last Modified: 20 Apr 2025

    The mp4ff_read_stco function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (memory allocation error) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9221

    Last Modified: 20 Apr 2025

    The mp4ff_read_mdhd function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9256

    Last Modified: 20 Apr 2025

    The mp4ff_read_stco function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9257

    Last Modified: 20 Apr 2025

    The mp4ff_read_ctts function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9223

    Last Modified: 20 Apr 2025

    The mp4ff_read_stts function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted mp4 file.

    Published: 27 Jun 2017
    5.5
    Medium

    CVE-2017-9254

    Last Modified: 20 Apr 2025

    The mp4ff_read_stts function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

    Published: 27 Jun 2017
    7.5
    High

    CVE-2017-11145

    Last Modified: 20 Apr 2025

    In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, an error in the date extension's timelib_meridian parsing code could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: the correct fix is in the e8b7698f5ee757ce2c8bd10a192a491a498f891c commit, not the bd77ac90d3bdf31ce2a5251ad92e9e75 gist.

    Published: 27 Jun 2017
    9.8
    Critical

    CVE-2017-10672

    Last Modified: 20 Apr 2025

    Use-after-free in the XML-LibXML module through 2.0129 for Perl allows remote attackers to execute arbitrary code by controlling the arguments to a replaceChild call.

    Published: 27 Jun 2017
    7.5
    High

    CVE-2017-8797

    Last Modified: 20 Apr 2025

    The NFSv4 server in the Linux kernel before 4.11.3 does not properly validate the layout type when processing the NFSv4 pNFS GETDEVICEINFO or LAYOUTGET operand in a UDP packet from a remote attacker. This type value is uninitialized upon encountering certain error conditions. This value is used as an array index for dereferencing, which leads to an OOPS and eventually a DoS of knfsd and a soft-lockup of the whole system.

    Published: 27 Jun 2017
    7.5
    High

    CVE-2017-9445

    Last Modified: 20 Apr 2025

    In systemd through 233, certain sizes passed to dns_packet_new in systemd-resolved can cause it to allocate a buffer that's too small. A malicious DNS server can exploit this via a response with a specially crafted TCP payload to trick systemd-resolved into allocating a buffer that's too small, and subsequently write arbitrary data beyond the end of it.

    Published: 27 Jun 2017
    7.5
    High

    CVE-2017-7458

    Last Modified: 20 Apr 2025

    The NetworkInterface::getHost function in NetworkInterface.cpp in ntopng before 3.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty field that should have contained a hostname or IP address.

    Published: 26 Jun 2017
    5.5
    Medium

    CVE-2017-9954

    Last Modified: 20 Apr 2025

    The getvalue function in tekhex.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted tekhex file, as demonstrated by mishandling within the nm program.

    Published: 26 Jun 2017
    5.5
    Medium

    CVE-2017-9955

    Last Modified: 20 Apr 2025

    The get_build_id function in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file in which a certain size field is larger than a corresponding data field, as demonstrated by mishandling within the objdump program.

    Published: 26 Jun 2017
    7.5
    High

    CVE-2017-9953

    Last Modified: 20 Apr 2025

    There is an invalid free in Image::printIFDStructure that leads to a Segmentation fault in Exiv2 0.26. A crafted input will lead to a remote denial of service attack.

    Published: 26 Jun 2017
    6.6
    Medium

    CVE-2017-6325

    Last Modified: 20 Apr 2025

    The Symantec Messaging Gateway can encounter a file inclusion vulnerability, which is a type of vulnerability that is most commonly found to affect web applications that rely on a scripting run time. This issue is caused when an application builds a path to executable code using an attacker-controlled variable in a way that allows the attacker to control which file is executed at run time. This file inclusion vulnerability subverts how an application loads code for execution. Successful exploitation of a file inclusion vulnerability will result in remote code execution on the web server that runs the affected web application.

    Published: 26 Jun 2017
    7.3
    High

    CVE-2017-6324

    Last Modified: 20 Apr 2025

    The Symantec Messaging Gateway, when processing a specific email attachment, can allow a malformed or corrupted Word file with a potentially malicious macro through despite the administrator having the 'disarm' functionality enabled. This constitutes a 'bypass' of the disarm functionality resident to the application.

    Published: 26 Jun 2017
    10
    Critical

    CVE-2017-6326

    Last Modified: 20 Apr 2025

    The Symantec Messaging Gateway can encounter an issue of remote code execution, which describes a situation whereby an individual may obtain the ability to execute commands remotely on a target machine or in a target process.

    Published: 26 Jun 2017
    7.8
    High

    CVE-2017-9949

    Last Modified: 20 Apr 2025

    The grub_memmove function in shlr/grub/kern/misc.c in radare2 1.5.0 allows remote attackers to cause a denial of service (stack-based buffer underflow and application crash) or possibly have unspecified other impact via a crafted binary file, possibly related to a buffer underflow in fs/ext2.c in GNU GRUB 2.02.

    Published: 26 Jun 2017
    8.8
    High

    CVE-2016-8493

    Last Modified: 20 Apr 2025

    In FortiClientWindows 5.4.1 and 5.4.2, an attacker may escalate privilege via a FortiClientNamedPipe vulnerability.

    Published: 26 Jun 2017
    Unknown

    CVE-2016-8498

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none

    Published: 26 Jun 2017
    7
    High

    CVE-2017-7496

    Last Modified: 20 Apr 2025

    fedora-arm-installer up to and including 1.99.16 is vulnerable to local privilege escalation due to lack of checking the error condition of mount operation failure on unsafely created temporary directories.

    Published: 26 Jun 2017
    8.8
    High

    CVE-2017-9948

    Last Modified: 20 Apr 2025

    A stack buffer overflow vulnerability has been discovered in Microsoft Skype 7.2, 7.35, and 7.36 before 7.37, involving MSFTEDIT.DLL mishandling of remote RDP clipboard content within the message box.

    Published: 26 Jun 2017
    6.1
    Medium

    CVE-2017-9145

    Last Modified: 20 Apr 2025

    TikiFilter.php in Tiki Wiki CMS Groupware 12.x through 16.x does not properly validate the imgsize or lang parameter to prevent XSS.

    Published: 26 Jun 2017
    Unknown

    CVE-2017-9504

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-9741. Reason: This candidate is a reservation duplicate of CVE-2017-9741. Notes: All CVE users should reference CVE-2017-9741 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 26 Jun 2017
    Unknown

    CVE-2017-6383

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-7855. Reason: This candidate is a reservation duplicate of CVE-2017-7855. Notes: All CVE users should reference CVE-2017-7855 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 26 Jun 2017
    6.5
    Medium

    CVE-2017-9936

    Last Modified: 20 Apr 2025

    In LibTIFF 4.0.8, there is a memory leak in tif_jbig.c. A crafted TIFF document can lead to a memory leak resulting in a remote denial of service attack.

    Published: 26 Jun 2017
    8.8
    High

    CVE-2017-9935

    Last Modified: 20 Apr 2025

    In LibTIFF 4.0.8, there is a heap-based buffer overflow in the t2p_write_pdf function in tools/tiff2pdf.c. This heap overflow could lead to different damages. For example, a crafted TIFF document can lead to an out-of-bounds read in TIFFCleanup, an invalid free in TIFFClose or t2p_free, memory corruption in t2p_readwrite_pdf_image, or a double free in t2p_free. Given these possibilities, it probably could cause arbitrary code execution.

    Published: 26 Jun 2017
    6.5
    Medium

    CVE-2017-9937

    Last Modified: 20 Apr 2025

    In LibTIFF 4.0.8, there is a memory malloc failure in tif_jbig.c. A crafted TIFF document can lead to an abort resulting in a remote denial of service attack.

    Published: 26 Jun 2017
    8
    High

    CVE-2017-6662

    Last Modified: 20 Apr 2025

    A vulnerability in the web-based user interface of Cisco Prime Infrastructure (PI) and Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker read and write access to information stored in the affected system as well as perform remote code execution. The attacker must have valid user credentials. The vulnerability is due to improper handling of XML External Entity (XXE) entries when parsing an XML file. An attacker could exploit this vulnerability by convincing the administrator of an affected system to import a crafted XML file with malicious entries which could allow the attacker to read and write files and execute remote code within the application, aka XML Injection. Cisco Prime Infrastructure software releases 1.1 through 3.1.6 are vulnerable. Cisco EPNM software releases 1.2, 2.0, and 2.1 are vulnerable. Cisco Bug IDs: CSCvc23894 CSCvc49561.

    Published: 26 Jun 2017
    9.8
    Critical

    CVE-2017-9466

    Last Modified: 20 Apr 2025

    The executable httpd on the TP-Link WR841N V8 router before TL-WR841N(UN)_V8_170210 contained a design flaw in the use of DES for block encryption. This resulted in incorrect access control, which allowed attackers to gain read-write access to system settings through the protected router configuration service tddp via the LAN and Ath0 (Wi-Fi) interfaces.

    Published: 26 Jun 2017
    5.5
    Medium

    CVE-2017-9928

    Last Modified: 20 Apr 2025

    In lrzip 0.631, a stack buffer overflow was found in the function get_fileinfo in lrzip.c:979, which allows attackers to cause a denial of service via a crafted file.

    Published: 26 Jun 2017
    5.5
    Medium

    CVE-2017-9929

    Last Modified: 20 Apr 2025

    In lrzip 0.631, a stack buffer overflow was found in the function get_fileinfo in lrzip.c:1074, which allows attackers to cause a denial of service via a crafted file.

    Published: 26 Jun 2017
    7.8
    High

    CVE-2017-6669

    Last Modified: 20 Apr 2025

    Multiple buffer overflow vulnerabilities exist in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files. An attacker could exploit these vulnerabilities by providing a user with a malicious ARF file via email or URL and convincing the user to launch the file. Exploitation of these vulnerabilities could cause an affected player to crash and, in some cases, could allow arbitrary code execution on the system of a targeted user. The Cisco WebEx Network Recording Player is an application that is used to play back WebEx meeting recordings that have been recorded on the computer of an online meeting attendee. The player can be automatically installed when the user accesses a recording file that is hosted on a WebEx server. The following client builds are affected by this vulnerability: Cisco WebEx Business Suite (WBS29) client builds prior to T29.13.130, Cisco WebEx Business Suite (WBS30) client builds prior to T30.17, Cisco WebEx Business Suite (WBS31) client builds prior to T31.10. Cisco Bug IDs: CSCvc47758 CSCvc51227 CSCvc51242.

    Published: 26 Jun 2017
    7.5
    High

    CVE-2017-6678

    Last Modified: 20 Apr 2025

    A vulnerability in the ingress UDP packet processing functionality of Cisco Virtualized Packet Core-Distributed Instance (VPC-DI) Software 19.2 through 21.0 could allow an unauthenticated, remote attacker to cause both control function (CF) instances on an affected system to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient handling of user-supplied data by the affected software. An attacker could exploit this vulnerability by sending crafted UDP packets to the distributed instance (DI) network addresses of both CF instances on an affected system. A successful exploit could allow the attacker to cause an unhandled error condition on the affected system, which would cause the CF instances to reload and consequently cause the entire VPC to reload, resulting in the disconnection of all subscribers and a DoS condition on the affected system. This vulnerability can be exploited via IPv4 traffic only. Cisco Bug IDs: CSCvc01665 CSCvc35565.

    Published: 26 Jun 2017
    6.1
    Medium

    CVE-2017-7416

    Last Modified: 20 Apr 2025

    ntopng before 3.0 allows XSS because GET and POST parameters are improperly validated.

    Published: 26 Jun 2017
    7.5
    High

    CVE-2017-7459

    Last Modified: 20 Apr 2025

    ntopng before 3.0 allows HTTP Response Splitting.

    Published: 26 Jun 2017
    9.8
    Critical

    CVE-2017-9615

    Last Modified: 20 Apr 2025

    Password exposure in Cognito Software Moneyworks 8.0.3 and earlier allows attackers to gain administrator access to all data, because verbose logging writes the administrator password to a world-readable file.

    Published: 26 Jun 2017
    5.5
    Medium

    CVE-2018-15863

    Last Modified: 21 Nov 2024

    Unchecked NULL pointer usage in ResolveStateAndPredicate in xkbcomp/compat.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file with a no-op modmask expression.

    Published: 26 Jun 2017
    5.5
    Medium

    CVE-2018-15864

    Last Modified: 21 Nov 2024

    Unchecked NULL pointer usage in resolve_keysym in xkbcomp/parser.y in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because a map access attempt can occur for a map that was never created.

    Published: 26 Jun 2017
    7.8
    High

    CVE-2017-7482

    Last Modified: 21 Nov 2024

    In the Linux kernel before version 4.12, Kerberos 5 tickets decoded when using the RXRPC keys incorrectly assumes the size of a field. This could lead to the size-remaining variable wrapping and the data pointer going over the end of the buffer. This could possibly lead to memory corruption and possible privilege escalation.

    Published: 26 Jun 2017