CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2014-9925

    Last Modified: 20 Apr 2025

    In HDR in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9926

    Last Modified: 20 Apr 2025

    In GNSS in all Android releases from CAF using the Linux kernel, a Use After Free vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9927

    Last Modified: 20 Apr 2025

    In UIM in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9928

    Last Modified: 20 Apr 2025

    In GERAN in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9942

    Last Modified: 20 Apr 2025

    In Boot in all Android releases from CAF using the Linux kernel, a Use of Uninitialized Variable vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9944

    Last Modified: 20 Apr 2025

    In the Secure File System in all Android releases from CAF using the Linux kernel, an Integer Overflow to Buffer Overflow vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9945

    Last Modified: 20 Apr 2025

    In TrustZone in all Android releases from CAF using the Linux kernel, an Improper Authorization vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9946

    Last Modified: 20 Apr 2025

    In Core Kernel in all Android releases from CAF using the Linux kernel, a Use After Free vulnerability could potentially exist.

    Published: 6 Jun 2017
    5.5
    Medium

    CVE-2014-9947

    Last Modified: 20 Apr 2025

    In TrustZone in all Android releases from CAF using the Linux kernel, an Information Exposure vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9948

    Last Modified: 20 Apr 2025

    In TrustZone in all Android releases from CAF using the Linux kernel, an Improper Validation of Array Index vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2014-9952

    Last Modified: 20 Apr 2025

    In the Secure File System in all Android releases from CAF using the Linux kernel, a capture-replay vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2015-9006

    Last Modified: 20 Apr 2025

    In Resource Power Manager (RPM) in all Android releases from CAF using the Linux kernel, an Improper Access Control vulnerability could potentially exist.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2015-9007

    Last Modified: 20 Apr 2025

    In TrustZone in all Android releases from CAF using the Linux kernel, a Double Free vulnerability could potentially exist.

    Published: 6 Jun 2017
    6.7
    Medium

    CVE-2017-8083

    Last Modified: 20 Apr 2025

    CompuLab Intense PC and MintBox 2 devices with BIOS before 2017-05-21 do not use the CloseMnf protection mechanism for write protection of flash memory regions, which allows local users to install a firmware rootkit by leveraging administrative privileges.

    Published: 6 Jun 2017
    6.1
    Medium

    CVE-2017-9332

    Last Modified: 20 Apr 2025

    The smarty_self function in modules/module_smarty.php in PivotX 2.3.11 mishandles the URI, allowing XSS via vectors involving quotes in the self Smarty tag.

    Published: 6 Jun 2017
    7.8
    High

    CVE-2017-9835

    Last Modified: 20 Apr 2025

    The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document. This is related to a lack of an integer overflow check in base/gsalloc.c.

    Published: 6 Jun 2017
    7.5
    High

    CVE-2017-5664

    Last Modified: 20 Apr 2025

    The error page mechanism of the Java Servlet Specification requires that, when an error occurs and an error page is configured for the error that occurred, the original request and response are forwarded to the error page. This means that the request is presented to the error page with the original HTTP method. If the error page is a static file, expected behaviour is to serve content of the file as if processing a GET request, regardless of the actual HTTP method. The Default Servlet in Apache Tomcat 9.0.0.M1 to 9.0.0.M20, 8.5.0 to 8.5.14, 8.0.0.RC1 to 8.0.43 and 7.0.0 to 7.0.77 did not do this. Depending on the original request this could lead to unexpected and undesirable results for static error pages including, if the DefaultServlet is configured to permit writes, the replacement or removal of the custom error page. Notes for other user provided error pages: (1) Unless explicitly coded otherwise, JSPs ignore the HTTP method. JSPs used as error pages must must ensure that they handle any error dispatch as a GET request, regardless of the actual method. (2) By default, the response generated by a Servlet does depend on the HTTP method. Custom Servlets used as error pages must ensure that they handle any error dispatch as a GET request, regardless of the actual method.

    Published: 6 Jun 2017
    8.8
    High

    CVE-2017-9443

    Last Modified: 20 Apr 2025

    BigTree CMS through 4.2.18 allows remote authenticated users to conduct SQL injection attacks via a crafted tables object in manifest.json in an uploaded package. This issue exists in core\admin\modules\developer\extensions\install\process.php and core\admin\modules\developer\packages\install\process.php. NOTE: the vendor states "You must implicitly trust any package or extension you install as they all have the ability to write PHP files.

    Published: 5 Jun 2017
    6.1
    Medium

    CVE-2017-9420

    Last Modified: 20 Apr 2025

    Cross site scripting (XSS) vulnerability in the Spiffy Calendar plugin before 3.3.0 for WordPress allows remote attackers to inject arbitrary JavaScript via the yr parameter.

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-9442

    Last Modified: 20 Apr 2025

    BigTree CMS through 4.2.18 allows remote authenticated users to execute arbitrary code by uploading a crafted package containing a PHP web shell, related to extraction of a ZIP archive to filename patterns such as cache/package/xxx/yyy.php. This issue exists in core\admin\modules\developer\extensions\install\unpack.php and core\admin\modules\developer\packages\install\unpack.php. NOTE: the vendor states "You must implicitly trust any package or extension you install as they all have the ability to write PHP files.

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-9444

    Last Modified: 20 Apr 2025

    BigTree CMS through 4.2.18 has CSRF related to the core\admin\modules\users\profile\update.php script (modify user information), the index.php/admin/developer/packages/delete/ URI (remove packages), the index.php/admin/developer/upgrade/ignore/?versions= URI, and the index.php/admin/developer/upgrade/set-ftp-directory/ URI.

    Published: 5 Jun 2017
    2.7
    Low

    CVE-2017-9441

    Last Modified: 20 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in BigTree CMS through 4.2.18 allow remote authenticated users to inject arbitrary web script or HTML by uploading a crafted package, triggering mishandling of the (1) title or (2) version or (3) author_name parameter in manifest.json. This issue exists in core\admin\modules\developer\extensions\install\unpack.php and core\admin\modules\developer\packages\install\unpack.php. NOTE: the vendor states "You must implicitly trust any package or extension you install as they all have the ability to write PHP files.

    Published: 5 Jun 2017
    7.5
    High

    CVE-2017-9438

    Last Modified: 20 Apr 2025

    libyara/re.c in the regexp module in YARA 3.5.0 allows remote attackers to cause a denial of service (stack consumption) via a crafted rule (involving hex strings) that is mishandled in the _yr_re_emit function, a different vulnerability than CVE-2017-9304.

    Published: 5 Jun 2017
    6.1
    Medium

    CVE-2017-8839

    Last Modified: 20 Apr 2025

    XSS via orig_url exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The affected script is guest/preview.cgi.

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-9437

    Last Modified: 20 Apr 2025

    Openbravo Business Suite 3.0 is affected by SQL injection. This vulnerability could allow remote authenticated attackers to inject arbitrary SQL code.

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-8438

    Last Modified: 20 Apr 2025

    Elastic X-Pack Security versions 5.0.0 to 5.4.0 contain a privilege escalation bug in the run_as functionality. This bug prevents transitioning into the specified user specified in a run_as request. If a role has been created using a template that contains the _user properties, the behavior of run_as will be incorrect. Additionally if the run_as user specified does not exist, the transition will not happen.

    Published: 5 Jun 2017
    4.3
    Medium

    CVE-2017-8441

    Last Modified: 20 Apr 2025

    Elastic X-Pack Security versions prior to 5.4.1 and 5.3.3 did not always correctly apply Document Level Security to index aliases. This bug could allow a user with restricted permissions to view data they should not have access to when performing certain operations against an index alias.

    Published: 5 Jun 2017
    6.1
    Medium

    CVE-2017-8838

    Last Modified: 20 Apr 2025

    XSS via syncid exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The affected script is cgi-bin/HASync/hasync.cgi.

    Published: 5 Jun 2017
    5.3
    Medium

    CVE-2017-9434

    Last Modified: 20 Apr 2025

    Crypto++ (aka cryptopp) through 5.6.5 contains an out-of-bounds read vulnerability in zinflate.cpp in the Inflator filter.

    Published: 5 Jun 2017
    9.8
    Critical

    CVE-2017-9435

    Last Modified: 20 Apr 2025

    Dolibarr ERP/CRM before 5.0.3 is vulnerable to a SQL injection in user/index.php (search_supervisor and search_statut parameters).

    Published: 5 Jun 2017
    9.8
    Critical

    CVE-2017-9436

    Last Modified: 20 Apr 2025

    TeamPass before 2.1.27.4 is vulnerable to a SQL injection in users.queries.php.

    Published: 5 Jun 2017
    9.8
    Critical

    CVE-2017-8835

    Last Modified: 20 Apr 2025

    SQL injection exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. An attack vector is the bauth cookie to cgi-bin/MANGA/admin.cgi. One impact is enumeration of user accounts by observing whether a session ID can be retrieved from the sessions database.

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-8836

    Last Modified: 20 Apr 2025

    CSRF exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The CGI scripts in the administrative interface are affected. This allows an attacker to execute commands, if a logged in user visits a malicious website. This can for example be used to change the credentials of the administrative webinterface.

    Published: 5 Jun 2017
    9.8
    Critical

    CVE-2017-8837

    Last Modified: 20 Apr 2025

    Cleartext password storage exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The files in question are /etc/waipass and /etc/roapass. In case one of these devices is compromised, the attacker can gain access to passwords and abuse them to compromise further systems.

    Published: 5 Jun 2017
    5.3
    Medium

    CVE-2017-8840

    Last Modified: 20 Apr 2025

    Debug information disclosure exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. A direct request to cgi-bin/HASync/hasync.cgi?debug=1 shows Master LAN Address, Serial Number, HA Group ID, Virtual IP, and Submitted syncid.

    Published: 5 Jun 2017
    8.1
    High

    CVE-2017-8841

    Last Modified: 20 Apr 2025

    Arbitrary file deletion exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The attack methodology is absolute path traversal in cgi-bin/MANGA/firmware_process.cgi via the upfile.path parameter.

    Published: 5 Jun 2017
    9.8
    Critical

    CVE-2017-9430

    Last Modified: 20 Apr 2025

    Stack-based buffer overflow in dnstracer through 1.9 allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a command line with a long name argument that is mishandled in a strcpy call for argv[0]. An example threat model is a web application that launches dnstracer with an untrusted name string.

    Published: 5 Jun 2017
    9.8
    Critical

    CVE-2017-9432

    Last Modified: 20 Apr 2025

    Document Liberation Project libstaroffice before 2017-04-07 has an out-of-bounds write caused by a stack-based buffer overflow related to the DatabaseName::read function in lib/StarWriterStruct.cxx.

    Published: 5 Jun 2017
    9.8
    Critical

    CVE-2017-9431

    Last Modified: 20 Apr 2025

    Google gRPC before 2017-04-05 has an out-of-bounds write caused by a heap-based buffer overflow related to core/lib/iomgr/error.c.

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-5070

    Last Modified: 21 Apr 2026

    Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-5073

    Last Modified: 20 Apr 2025

    Use after free in print preview in Blink in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

    Published: 5 Jun 2017
    4.3
    Medium

    CVE-2017-5083

    Last Modified: 20 Apr 2025

    Inappropriate implementation in Blink in Google Chrome prior to 59.0.3071.86 for Mac, Windows, and Linux, and 59.0.3071.92 for Android, allowed a remote attacker to display UI on a non attacker controlled tab via a crafted HTML page.

    Published: 5 Jun 2017
    6.1
    Medium

    CVE-2017-5085

    Last Modified: 20 Apr 2025

    Inappropriate implementation in Bookmarks in Google Chrome prior to 59 for iOS allowed a remote attacker who convinced the user to perform certain operations to run JavaScript on chrome:// pages via a crafted bookmark.

    Published: 5 Jun 2017
    4.3
    Medium

    CVE-2017-1000243

    Last Modified: 20 Apr 2025

    Jenkins Favorite Plugin 2.1.4 and older does not perform permission checks when changing favorite status, allowing any user to set any other user's favorites

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-1000244

    Last Modified: 20 Apr 2025

    Jenkins Favorite Plugin version 2.2.0 and older is vulnerable to CSRF resulting in data modification

    Published: 5 Jun 2017
    9.8
    Critical

    CVE-2017-16931

    Last Modified: 20 Apr 2025

    parser.c in libxml2 before 2.9.5 mishandles parameter-entity references because the NEXTL macro calls the xmlParserHandlePEReference function in the case of a '%' character in a DTD name.

    Published: 5 Jun 2017
    6.3
    Medium

    CVE-2017-5071

    Last Modified: 20 Apr 2025

    Insufficient validation of untrusted input in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows and Mac, and 59.0.3071.92 for Android allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

    Published: 5 Jun 2017
    6.5
    Medium

    CVE-2017-5072

    Last Modified: 20 Apr 2025

    Inappropriate implementation in Omnibox in Google Chrome prior to 59.0.3071.92 for Android allowed a remote attacker to perform domain spoofing with RTL characters via a crafted URL page.

    Published: 5 Jun 2017
    6.5
    Medium

    CVE-2017-5076

    Last Modified: 20 Apr 2025

    Insufficient Policy Enforcement in Omnibox in Google Chrome prior to 59.0.3071.86 for Mac, Windows, and Linux, and 59.0.3071.92 for Android, allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

    Published: 5 Jun 2017
    8.8
    High

    CVE-2017-5080

    Last Modified: 20 Apr 2025

    A use after free in credit card autofill in Google Chrome prior to 59.0.3071.86 for Linux and Windows allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

    Published: 5 Jun 2017