CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2018-15861

    Last Modified: 21 Nov 2024

    Unchecked NULL pointer usage in ExprResolveLhs in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file that triggers an xkb_intern_atom failure.

    Published: 26 Jun 2017
    5.5
    Medium

    CVE-2018-15862

    Last Modified: 21 Nov 2024

    Unchecked NULL pointer usage in LookupModMask in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file with invalid virtual modifiers.

    Published: 26 Jun 2017
    5.5
    Medium

    CVE-2017-9869

    Last Modified: 20 Apr 2025

    The II_step_one function in layer2.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file.

    Published: 25 Jun 2017
    5.5
    Medium

    CVE-2017-9868

    Last Modified: 20 Apr 2025

    In Mosquitto through 1.4.12, mosquitto.db (aka the persistence file) is world readable, which allows local users to obtain sensitive MQTT topic information.

    Published: 25 Jun 2017
    8.8
    High

    CVE-2017-9840

    Last Modified: 20 Apr 2025

    Dolibarr ERP/CRM 5.0.3 and prior allows low-privilege users to upload files of dangerous types, which can result in arbitrary code execution within the context of the vulnerable application.

    Published: 25 Jun 2017
    5.5
    Medium

    CVE-2015-9101

    Last Modified: 20 Apr 2025

    The fill_buffer_resample function in util.c in libmp3lame.a in LAME 3.98.4, 3.98.2, 3.98, 3.99, 3.99.1, 3.99.2, 3.99.3, 3.99.4 and 3.99.5 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted audio file.

    Published: 25 Jun 2017
    5.5
    Medium

    CVE-2017-9870

    Last Modified: 20 Apr 2025

    The III_i_stereo function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file that is mishandled in the code for the "block_type == 2" case, a similar issue to CVE-2017-11126.

    Published: 25 Jun 2017
    7.8
    High

    CVE-2017-9871

    Last Modified: 20 Apr 2025

    The III_i_stereo function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted audio file.

    Published: 25 Jun 2017
    7.8
    High

    CVE-2017-9872

    Last Modified: 20 Apr 2025

    The III_dequantize_sample function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted audio file.

    Published: 25 Jun 2017
    8.8
    High

    CVE-2017-9846

    Last Modified: 20 Apr 2025

    Winmail Server 6.1 allows remote code execution by authenticated users who leverage directory traversal in a netdisk.php move_folder_file call to move a .php file from the FTP folder into a web folder.

    Published: 24 Jun 2017
    5.5
    Medium

    CVE-2017-9847

    Last Modified: 20 Apr 2025

    The bdecode function in bdecode.cpp in libtorrent 1.1.3 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.

    Published: 24 Jun 2017
    9.8
    Critical

    CVE-2017-9848

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in C_InfoService.asmx in WebServices in Easysite 7.0 could allow remote attackers to execute arbitrary SQL commands via an XML document containing a crafted ArticleIDs element within a GetArticleHitsArray element.

    Published: 24 Jun 2017
    Unknown

    CVE-2017-9837

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 24 Jun 2017
    4.8
    Medium

    CVE-2017-9836

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Piwigo 2.9.1 allows remote authenticated administrators to inject arbitrary web script or HTML via the virtual_name parameter to /admin.php (i.e., creating a virtual album).

    Published: 24 Jun 2017
    7.8
    High

    CVE-2017-11111

    Last Modified: 20 Apr 2025

    In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

    Published: 24 Jun 2017
    7.5
    High

    CVE-2017-11113

    Last Modified: 20 Apr 2025

    In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data.

    Published: 24 Jun 2017
    6.5
    Medium

    CVE-2017-11526

    Last Modified: 20 Apr 2025

    The ReadOneMNGImage function in coders/png.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted file.

    Published: 24 Jun 2017
    6.5
    Medium

    CVE-2017-11505

    Last Modified: 20 Apr 2025

    The ReadOneJNGImage function in coders/png.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a malformed JNG file.

    Published: 24 Jun 2017
    7.5
    High

    CVE-2017-9833

    Last Modified: 20 Apr 2025

    /cgi-bin/wapopen in Boa 0.94.14rc21 allows the injection of "../.." using the FILECAMERA variable (sent by GET) to read files with root privileges. NOTE: multiple third parties report that this is a system-integrator issue (e.g., a vulnerability on one type of camera) because Boa does not include any wapopen program or any code to read a FILECAMERA variable.

    Published: 24 Jun 2017
    9.8
    Critical

    CVE-2017-10684

    Last Modified: 20 Apr 2025

    In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.

    Published: 24 Jun 2017
    9.8
    Critical

    CVE-2017-10685

    Last Modified: 20 Apr 2025

    In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.

    Published: 24 Jun 2017
    7.8
    High

    CVE-2017-10686

    Last Modified: 20 Apr 2025

    In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm. The related heap is allocated in the token() function and freed in the detoken() function (called by pp_getline()) - it is used again at multiple positions later that could cause multiple damages. For example, it causes a corrupted double-linked list in detoken(), a double free or corruption in delete_Token(), and an out-of-bounds write in detoken(). It has a high possibility to lead to a remote code execution attack.

    Published: 24 Jun 2017
    7.5
    High

    CVE-2017-11112

    Last Modified: 20 Apr 2025

    In ncurses 6.0, there is an attempted 0xffffffffffffffff access in the append_acs function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data.

    Published: 24 Jun 2017
    6.5
    Medium

    CVE-2017-11527

    Last Modified: 20 Apr 2025

    The ReadDPXImage function in coders/dpx.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.

    Published: 24 Jun 2017
    6.5
    Medium

    CVE-2017-11528

    Last Modified: 20 Apr 2025

    The ReadDIBImage function in coders/dib.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory leak) via a crafted file.

    Published: 24 Jun 2017
    6.5
    Medium

    CVE-2017-11529

    Last Modified: 20 Apr 2025

    The ReadMATImage function in coders/mat.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory leak) via a crafted file.

    Published: 24 Jun 2017
    6.5
    Medium

    CVE-2017-11530

    Last Modified: 20 Apr 2025

    The ReadEPTImage function in coders/ept.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.

    Published: 24 Jun 2017
    7.5
    High

    CVE-2017-9829

    Last Modified: 20 Apr 2025

    '/cgi-bin/admin/downloadMedias.cgi' of the web service in most of the VIVOTEK Network Cameras is vulnerable, which allows remote attackers to read any file on the camera's Linux filesystem via a crafted HTTP request containing ".." sequences. This vulnerability is already verified on VIVOTEK Network Camera IB8369/FD8164/FD816BA; most others have similar firmware that may be affected.

    Published: 23 Jun 2017
    9.8
    Critical

    CVE-2017-9828

    Last Modified: 20 Apr 2025

    '/cgi-bin/admin/testserver.cgi' of the web service in most of the VIVOTEK Network Cameras is vulnerable to shell command injection, which allows remote attackers to execute any shell command as root via a crafted HTTP request. This vulnerability is already verified on VIVOTEK Network Camera IB8369/FD8164/FD816BA; most others have similar firmware that may be affected. An attack uses shell metacharacters in the senderemail parameter.

    Published: 23 Jun 2017
    6.5
    Medium

    CVE-2017-1193

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 could allow user to obtain sensitive information using an HTTP GET request. IBM X-Force ID: 123667.

    Published: 23 Jun 2017
    8.8
    High

    CVE-2017-1347

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 126462.

    Published: 23 Jun 2017
    5.4
    Medium

    CVE-2017-1348

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 126524.

    Published: 23 Jun 2017
    5.5
    Medium

    CVE-2016-5893

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 115336.

    Published: 23 Jun 2017
    6.5
    Medium

    CVE-2017-1131

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user to obtain sensitive information by using unsupported, specially crafted HTTP commands. IBM X-Force ID: 121375.

    Published: 23 Jun 2017
    5.4
    Medium

    CVE-2017-1132

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 121418.

    Published: 23 Jun 2017
    5.5
    Medium

    CVE-2017-1302

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 could allow a local user view sensitive information due to improper access controls. IBM X-Force ID: 125456.

    Published: 23 Jun 2017
    5.5
    Medium

    CVE-2017-1349

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 stores potentially sensitive information from HTTP sessions that could be read by a local user. IBM X-Force ID: 126525.

    Published: 23 Jun 2017
    5.4
    Medium

    CVE-2017-3948

    Last Modified: 20 Apr 2025

    Cross Site Scripting (XSS) in IMG Tags in the ePO extension in McAfee Data Loss Prevention Endpoint (DLP Endpoint) 10.0.x allows authenticated users to inject arbitrary web script or HTML via injecting malicious JavaScript into a user's browsing session.

    Published: 23 Jun 2017
    Unknown

    CVE-2017-8813

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-8831. Reason: This candidate is a duplicate of CVE-2017-8831. A typo caused the wrong ID to be used. Notes: All CVE users should reference CVE-2017-8831 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 23 Jun 2017
    6.1
    Medium

    CVE-2017-9356

    Last Modified: 20 Apr 2025

    Sitecore.NET 7.1 through 7.2 has a Cross Site Scripting Vulnerability via the searchStr parameter to the /Search-Results URI.

    Published: 23 Jun 2017
    5.5
    Medium

    CVE-2017-13694

    Last Modified: 20 Apr 2025

    The acpi_ps_complete_final_op() function in drivers/acpi/acpica/psobject.c in the Linux kernel through 4.12.9 does not flush the node and node_ext caches and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR protection mechanism (in the kernel through 4.9) via a crafted ACPI table.

    Published: 23 Jun 2017
    6.5
    Medium

    CVE-2017-11525

    Last Modified: 20 Apr 2025

    The ReadCINImage function in coders/cin.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.

    Published: 23 Jun 2017
    9.8
    Critical

    CVE-2017-9772

    Last Modified: 20 Apr 2025

    Insufficient sanitisation in the OCaml compiler versions 4.04.0 and 4.04.1 allows external code to be executed with raised privilege in binaries marked as setuid, by setting the CAML_CPLUGINS, CAML_NATIVE_CPLUGINS, or CAML_BYTE_CPLUGINS environment variable.

    Published: 23 Jun 2017
    9.8
    Critical

    CVE-2017-2781

    Last Modified: 20 Apr 2025

    An exploitable heap buffer overflow vulnerability exists in the X509 certificate parsing functionality of InsideSecure MatrixSSL 3.8.7b. A specially crafted x509 certificate can cause a buffer overflow on the heap resulting in remote code execution. To trigger this vulnerability, a specially crafted x509 certificate must be presented to the vulnerable client or server application when initiating secure connection.

    Published: 22 Jun 2017
    7.5
    High

    CVE-2017-0897

    Last Modified: 20 Apr 2025

    ExpressionEngine version 2.x < 2.11.8 and version 3.x < 3.5.5 create an object signing token with weak entropy. Successfully guessing the token can lead to remote code execution.

    Published: 22 Jun 2017
    9.8
    Critical

    CVE-2017-2780

    Last Modified: 20 Apr 2025

    An exploitable heap buffer overflow vulnerability exists in the X509 certificate parsing functionality of InsideSecure MatrixSSL 3.8.7b. A specially crafted x509 certificate can cause a buffer overflow on the heap resulting in remote code execution. To trigger this vulnerability, a specially crafted x509 certificate must be presented to the vulnerable client or server application when initiating secure connection.

    Published: 22 Jun 2017
    6.5
    Medium

    CVE-2017-2782

    Last Modified: 20 Apr 2025

    An integer overflow vulnerability exists in the X509 certificate parsing functionality of InsideSecure MatrixSSL 3.8.7b. A specially crafted x509 certificate can cause a length counter to overflow, leading to a controlled out of bounds copy operation. To trigger this vulnerability, a specially crafted x509 certificate must be presented to the vulnerable client or server application when initiating secure connection

    Published: 22 Jun 2017
    9.8
    Critical

    CVE-2015-9098

    Last Modified: 20 Apr 2025

    In Redgate SQL Monitor before 3.10 and 4.x before 4.2, a remote attacker can gain unauthenticated access to the Base Monitor, resulting in the ability to execute arbitrary SQL commands on any monitored Microsoft SQL Server machines. If the Base Monitor is connecting to these machines using an account with SQL admin privileges, then code execution on the operating system can result in full system compromise (if Microsoft SQL Server is running with local administrator privileges).

    Published: 22 Jun 2017
    5.3
    Medium

    CVE-2016-9983

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user with special privileges to view files that they should not have access to. IBM X-Force ID: 120275.

    Published: 22 Jun 2017
    4.3
    Medium

    CVE-2017-1326

    Last Modified: 20 Apr 2025

    IBM Sterling File Gateway does not properly restrict user requests based on permission level. This allows for users to update data related to other users, by manipulating the parameters passed in the POST request. IBM X-Force ID: 126060.

    Published: 22 Jun 2017