CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2016-9747

    Last Modified: 20 Apr 2025

    IBM RELM 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 22 Jun 2017
    6.5
    Medium

    CVE-2016-9982

    Last Modified: 20 Apr 2025

    IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user to obtain sensitive information such as account lists due to improper access control. IBM X-Force ID: 120274.

    Published: 22 Jun 2017
    9.8
    Critical

    CVE-2017-9424

    Last Modified: 20 Apr 2025

    IdeaBlade Breeze Breeze.Server.NET before 1.6.5 allows remote attackers to execute arbitrary code, related to use of TypeNameHandling in JSON deserialization.

    Published: 22 Jun 2017
    8.1
    High

    CVE-2017-0176

    Last Modified: 20 Apr 2025

    A buffer overflow in Smart Card authentication code in gpkcsp.dll in Microsoft Windows XP through SP3 and Server 2003 through SP2 allows a remote attacker to execute arbitrary code on the target computer, provided that the computer is joined in a Windows domain and has Remote Desktop Protocol connectivity (or Terminal Services) enabled.

    Published: 22 Jun 2017
    9.8
    Critical

    CVE-2012-6706

    Last Modified: 20 Apr 2025

    A VMSF_DELTA memory corruption was discovered in unrar before 5.5.5, as used in Sophos Anti-Virus Threat Detection Engine before 3.37.2 and other products, that can lead to arbitrary code execution. An integer overflow can be caused in DataSize+CurChannel. The result is a negative value of the "DestPos" variable, which allows the attacker to write out of bounds when setting Mem[DestPos].

    Published: 22 Jun 2017
    5.3
    Medium

    CVE-2017-3631

    Last Modified: 20 Apr 2025

    Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Solaris executes to compromise Solaris. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Solaris accessible data as well as unauthorized read access to a subset of Solaris accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Solaris. CVSS 3.0 Base Score 5.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L).

    Published: 22 Jun 2017
    7.8
    High

    CVE-2017-3629

    Last Modified: 20 Apr 2025

    Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Solaris executes to compromise Solaris. Successful attacks of this vulnerability can result in takeover of Solaris. CVSS 3.0 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).

    Published: 22 Jun 2017
    5.3
    Medium

    CVE-2017-3630

    Last Modified: 20 Apr 2025

    Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Solaris executes to compromise Solaris. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Solaris accessible data as well as unauthorized read access to a subset of Solaris accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Solaris. CVSS 3.0 Base Score 5.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L).

    Published: 22 Jun 2017
    9.8
    Critical

    CVE-2017-9807

    Last Modified: 20 Apr 2025

    An issue was discovered in the OpenWebif plugin through 1.2.4 for E2 open devices. The saveConfig function of "plugin/controllers/models/config.py" performs an eval() call on the contents of the "key" HTTP GET parameter. This allows an unauthenticated remote attacker to execute arbitrary Python code or OS commands via api/saveconfig.

    Published: 22 Jun 2017
    7.5
    High

    CVE-2017-10790

    Last Modified: 20 Apr 2025

    The _asn1_check_identifier function in GNU Libtasn1 through 4.12 causes a NULL pointer dereference and crash when reading crafted input that triggers assignment of a NULL value within an asn1_node structure. It may lead to a remote denial of service attack.

    Published: 22 Jun 2017
    8.8
    High

    CVE-2017-11310

    Last Modified: 20 Apr 2025

    The read_user_chunk_callback function in coders\png.c in ImageMagick 7.0.6-1 Q16 2017-06-21 (beta) has memory leak vulnerabilities via crafted PNG files.

    Published: 22 Jun 2017
    5.5
    Medium

    CVE-2017-7518

    Last Modified: 21 Nov 2024

    A flaw was found in the Linux kernel before version 4.12 in the way the KVM module processed the trap flag(TF) bit in EFLAGS during emulation of the syscall instruction, which leads to a debug exception(#DB) being raised in the guest stack. A user/process inside a guest could use this flaw to potentially escalate their privileges inside the guest. Linux guests are not affected by this.

    Published: 22 Jun 2017
    7.5
    High

    CVE-2017-11424

    Last Modified: 20 Apr 2025

    In PyJWT 1.5.0 and below the `invalid_strings` check in `HMACAlgorithm.prepare_key` does not account for all PEM encoded public keys. Specifically, the PKCS1 PEM encoded format would be allowed because it is prefaced with the string `-----BEGIN RSA PUBLIC KEY-----` which is not accounted for. This enables symmetric/asymmetric key confusion attacks against users using the PKCS1 PEM encoded public keys, which would allow an attacker to craft JWTs from scratch.

    Published: 22 Jun 2017
    6.5
    Medium

    CVE-2017-9815

    Last Modified: 20 Apr 2025

    In LibTIFF 4.0.7, the TIFFReadDirEntryLong8Array function in libtiff/tif_dirread.c mishandles a malloc operation, which allows attackers to cause a denial of service (memory leak within the function _TIFFmalloc in tif_unix.c) via a crafted file.

    Published: 22 Jun 2017
    7.5
    High

    CVE-2016-7508

    Last Modified: 20 Apr 2025

    Multiple SQL injection vulnerabilities in GLPI 0.90.4 allow an authenticated remote attacker to execute arbitrary SQL commands by using a certain character when the database is configured to use Big5 Asian encoding.

    Published: 21 Jun 2017
    8.8
    High

    CVE-2017-3218

    Last Modified: 20 Apr 2025

    Samsung Magician 5.0 fails to validate TLS certificates for HTTPS software update traffic. Prior to version 5.0, Samsung Magician uses HTTP for software updates.

    Published: 21 Jun 2017
    8.8
    High

    CVE-2017-3219

    Last Modified: 20 Apr 2025

    Acronis True Image up to and including version 2017 Build 8053 performs software updates using HTTP. Downloaded updates are only verified using a server-provided MD5 hash.

    Published: 21 Jun 2017
    7.2
    High

    CVE-2017-4988

    Last Modified: 20 Apr 2025

    EMC Isilon OneFS 8.0.1.0, 8.0.0 - 8.0.0.3, 7.2.0 - 7.2.1.4, 7.1.x is affected by a privilege escalation vulnerability that could potentially be exploited by attackers to compromise the affected system.

    Published: 21 Jun 2017
    9.8
    Critical

    CVE-2017-4989

    Last Modified: 20 Apr 2025

    In EMC Avamar Server Software 7.3.1-125, 7.3.0-233, 7.3.0-226, 7.2.1-32, 7.2.1-31, 7.2.0-401, an unauthenticated remote attacker may potentially bypass the authentication process to gain access to the system maintenance page. This may be exploited by an attacker to view sensitive information, perform software updates, or run maintenance workflows.

    Published: 21 Jun 2017
    9.8
    Critical

    CVE-2017-4990

    Last Modified: 20 Apr 2025

    In EMC Avamar Server Software 7.4.1-58, 7.4.0-242, 7.3.1-125, 7.3.0-233, 7.3.0-226, an unauthorized attacker may leverage the file upload feature of the system maintenance page to load a maliciously crafted file to any directory which could allow the attacker to execute arbitrary code on the Avamar Server system.

    Published: 21 Jun 2017
    9.8
    Critical

    CVE-2016-8731

    Last Modified: 20 Apr 2025

    Hard-coded FTP credentials (r:r) are included in the Foscam C1 running firmware 1.9.1.12. Knowledge of these credentials would allow remote access to any cameras found on the internet that do not have port 50021 blocked by an intermediate device.

    Published: 21 Jun 2017
    7.5
    High

    CVE-2017-6043

    Last Modified: 20 Apr 2025

    A Resource Consumption issue was discovered in Trihedral VTScada Versions prior to 11.2.26. The client does not properly validate the input or limit the amount of resources that are utilized by an attacker, which can be used to consume more resources than are available.

    Published: 21 Jun 2017
    8.8
    High

    CVE-2017-2813

    Last Modified: 20 Apr 2025

    An exploitable integer overflow vulnerability exists in the JPEG 2000 parser functionality of IrfanView 4.44. A specially crafted jpeg2000 image can cause an integer overflow leading to wrong memory allocation resulting in arbitrary code execution. Vulnerability can be triggered by viewing the image in via the application or by using thumbnailing feature of IrfanView.

    Published: 21 Jun 2017
    7.5
    High

    CVE-2017-6045

    Last Modified: 20 Apr 2025

    An Information Exposure issue was discovered in Trihedral VTScada Versions prior to 11.2.26. Some files are exposed within the web server application to unauthenticated users. These files may contain sensitive configuration information.

    Published: 21 Jun 2017
    9.8
    Critical

    CVE-2017-6050

    Last Modified: 20 Apr 2025

    A SQL Injection issue was discovered in Ecava IntegraXor Versions 5.2.1231.0 and prior. The application fails to properly validate user input, which may allow for an unauthenticated attacker to remotely execute arbitrary code in the form of SQL queries.

    Published: 21 Jun 2017
    6.1
    Medium

    CVE-2017-6053

    Last Modified: 20 Apr 2025

    A Cross-Site Scripting issue was discovered in Trihedral VTScada Versions prior to 11.2.26. A cross-site scripting vulnerability may allow JavaScript code supplied by the attacker to execute within the user's browser.

    Published: 21 Jun 2017
    6.8
    Medium

    CVE-2017-7918

    Last Modified: 20 Apr 2025

    An Improper Access Control issue was discovered in Cambium Networks ePMP. After a valid user has used SNMP configuration export, an attacker is able to remotely trigger device configuration backups using specific MIBs. These backups lack proper access control and may allow access to sensitive information and possibly allow for configuration changes.

    Published: 21 Jun 2017
    7.6
    High

    CVE-2017-7922

    Last Modified: 20 Apr 2025

    An Improper Privilege Management issue was discovered in Cambium Networks ePMP. The privileges for SNMP community strings are not properly restricted, which may allow an attacker to gain access to sensitive information and possibly allow for configuration changes.

    Published: 21 Jun 2017
    8.8
    High

    CVE-2017-9774

    Last Modified: 20 Apr 2025

    Remote Code Execution was found in Horde_Image 2.x before 2.5.0 via a crafted GET request. Exploitation requires authentication.

    Published: 21 Jun 2017
    5.3
    Medium

    CVE-2017-1117

    Last Modified: 20 Apr 2025

    IBM WebSphere MQ 8.0 and 9.0 could allow an authenticated user to cause a denial of service to the MQXR channel when trace is enabled. IBM X-Force ID: 121155.

    Published: 21 Jun 2017
    5.7
    Medium

    CVE-2017-9773

    Last Modified: 20 Apr 2025

    Denial of Service was found in Horde_Image 2.x before 2.5.0 via a crafted URL to the "Null" image driver.

    Published: 21 Jun 2017
    6.1
    Medium

    CVE-2017-9781

    Last Modified: 20 Apr 2025

    A cross site scripting (XSS) vulnerability exists in Check_MK versions 1.4.0x prior to 1.4.0p6, allowing an unauthenticated remote attacker to inject arbitrary HTML or JavaScript via the _username parameter when attempting authentication to webapi.py, which is returned unencoded with content type text/html.

    Published: 21 Jun 2017
    6.2
    Medium

    CVE-2017-1304

    Last Modified: 20 Apr 2025

    IBM has identified a vulnerability with IBM Spectrum Scale/GPFS utilized on the Elastic Storage Server (ESS)/GPFS Storage Server (GSS) during testing of an unsupported configuration, where users applications are running on an active ESS I/O server node and utilize direct I/O to perform a read or a write to a Spectrum Scale file. This vulnerability may result in the use of an incorrect memory address, leading to a Spectrum Scale/GPFS daemon failure with a Signal 11, and possibly leading to denial of service or undetected data corruption. IBM X-Force ID: 125458.

    Published: 21 Jun 2017
    7.5
    High

    CVE-2017-2831

    Last Modified: 20 Apr 2025

    An exploitable buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can cause a buffer overflow resulting in overwriting arbitrary data. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 21 Jun 2017
    9.8
    Critical

    CVE-2017-2805

    Last Modified: 20 Apr 2025

    An exploitable stack-based buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera. A specially crafted http request can cause a stack-based buffer overflow resulting in overwriting arbitrary data on the stack frame. An attacker can simply send an http request to the device to trigger this vulnerability.

    Published: 21 Jun 2017
    6.5
    Medium

    CVE-2017-2829

    Last Modified: 20 Apr 2025

    An exploitable directory traversal vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can cause the application to read a file from disk but a failure to adequately filter characters results in allowing an attacker to specify a file outside of a directory. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 21 Jun 2017
    7.5
    High

    CVE-2017-2830

    Last Modified: 20 Apr 2025

    An exploitable buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can cause a buffer overflow resulting in overwriting arbitrary data. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 21 Jun 2017
    8.8
    High

    CVE-2017-2827

    Last Modified: 20 Apr 2025

    An exploitable command injection vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can allow for a user to inject arbitrary shell characters during account creation resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 21 Jun 2017
    8.8
    High

    CVE-2017-2828

    Last Modified: 20 Apr 2025

    An exploitable command injection vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can allow for a user to inject arbitrary shell characters during account creation resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability.

    Published: 21 Jun 2017
    5.5
    Medium

    CVE-2017-9129

    Last Modified: 20 Apr 2025

    The wav_open_read function in frontend/input.c in Freeware Advanced Audio Coder (FAAC) 1.28 allows remote attackers to cause a denial of service (large loop) via a crafted wav file.

    Published: 21 Jun 2017
    9.8
    Critical

    CVE-2017-9771

    Last Modified: 20 Apr 2025

    install\save.php in WebsiteBaker v2.10.0 allows remote attackers to execute arbitrary PHP code via the database_username, database_host, or database_password parameter.

    Published: 21 Jun 2017
    5.5
    Medium

    CVE-2017-9130

    Last Modified: 20 Apr 2025

    The faacEncOpen function in libfaac/frame.c in Freeware Advanced Audio Coder (FAAC) 1.28 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted wav file.

    Published: 21 Jun 2017
    7.5
    High

    CVE-2017-7508

    Last Modified: 20 Apr 2025

    OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.

    Published: 21 Jun 2017
    6.5
    Medium

    CVE-2017-7522

    Last Modified: 20 Apr 2025

    OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with an embedded NULL character.

    Published: 21 Jun 2017
    7.5
    High

    CVE-2017-9814

    Last Modified: 20 Apr 2025

    cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) because of mishandling of an unexpected malloc(0) call.

    Published: 21 Jun 2017
    4.3
    Medium

    CVE-2017-7514

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) flaw was found in how the failed action entry is processed in Red Hat Satellite before version 5.8.0. A user able to specify a failed action could exploit this flaw to perform XSS attacks against other Satellite users.

    Published: 21 Jun 2017
    7.4
    High

    CVE-2017-7520

    Last Modified: 20 Apr 2025

    OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.

    Published: 21 Jun 2017
    5.9
    Medium

    CVE-2017-7521

    Last Modified: 20 Apr 2025

    OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to memory exhaustion caused by memory leaks and double-free issue in extract_x509_extension().

    Published: 21 Jun 2017
    7.5
    High

    CVE-2017-7524

    Last Modified: 20 Apr 2025

    tpm2-tools versions before 1.1.1 are vulnerable to a password leak due to transmitting password in plaintext from client to server when generating HMAC.

    Published: 21 Jun 2017
    7.8
    High

    CVE-2017-9776

    Last Modified: 20 Apr 2025

    Integer overflow leading to Heap buffer overflow in JBIG2Stream.cc in pdftocairo in Poppler before 0.56 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document.

    Published: 21 Jun 2017