CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2016-5312

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in the charting component in Symantec Messaging Gateway before 10.6.2 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the sn parameter to brightmail/servlet/com.ve.kavachart.servlet.ChartStream.

    Published: 14 Apr 2017
    5.4
    Medium

    CVE-2017-7188

    Last Modified: 20 Apr 2025

    Zurmo 3.1.1 Stable allows a Cross-Site Scripting (XSS) attack with a base64-encoded SCRIPT element within a data: URL in the returnUrl parameter to default/toggleCollapse.

    Published: 14 Apr 2017
    7.3
    High

    CVE-2016-1713

    Last Modified: 20 Apr 2025

    Unrestricted file upload vulnerability in the Settings_Vtiger_CompanyDetailsSave_Action class in modules/Settings/Vtiger/actions/CompanyDetailsSave.php in Vtiger CRM 6.4.0 allows remote authenticated users to execute arbitrary code by uploading a crafted image file with an executable extension, then accessing it via a direct request to the file in test/logo/. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-6000.

    Published: 14 Apr 2017
    5.4
    Medium

    CVE-2016-4888

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in ZOHO ManageEngine ServiceDesk Plus before 9.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 Apr 2017
    8.8
    High

    CVE-2016-4889

    Last Modified: 20 Apr 2025

    ZOHO ManageEngine ServiceDesk Plus before 9.0 allows remote authenticated guest users to have unspecified impact by leveraging failure to restrict access to unknown functions.

    Published: 14 Apr 2017
    5.3
    Medium

    CVE-2016-4890

    Last Modified: 20 Apr 2025

    ZOHO ManageEngine ServiceDesk Plus before 9.2 uses an insecure method for generating cookies, which makes it easier for attackers to obtain sensitive password information by leveraging access to a cookie.

    Published: 14 Apr 2017
    7.8
    High

    CVE-2016-6299

    Last Modified: 20 Apr 2025

    The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.

    Published: 14 Apr 2017
    Unknown

    CVE-2017-3447

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was associated with multiple vulnerabilities without being assigned by a CNA. Notes: none

    Published: 14 Apr 2017
    7.2
    High

    CVE-2017-6554

    Last Modified: 20 Apr 2025

    pmmasterd in Quest Privilege Manager before 6.0.0.061, when configured as a policy server, allows remote attackers to write to arbitrary files and consequently execute arbitrary code with root privileges via an ACT_NEWFILESENT action.

    Published: 14 Apr 2017
    8.8
    High

    CVE-2017-7877

    Last Modified: 20 Apr 2025

    CSRF vulnerability in flatCore version 1.4.6 allows remote attackers to modify CMS configurations.

    Published: 14 Apr 2017
    9.1
    Critical

    CVE-2017-7357

    Last Modified: 20 Apr 2025

    Hipchat Server before 2.2.3 allows remote authenticated users with Server Administrator level privileges to execute arbitrary code by importing a file.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7878

    Last Modified: 20 Apr 2025

    SQL Injection vulnerability in flatCore version 1.4.6 allows an attacker to read and write to the users database.

    Published: 14 Apr 2017
    7.5
    High

    CVE-2017-7879

    Last Modified: 20 Apr 2025

    SQL Injection vulnerability in flatCore version 1.4.6 allows an attacker to read the content database.

    Published: 14 Apr 2017
    7.8
    High

    CVE-2017-7690

    Last Modified: 20 Apr 2025

    Proxifier for Mac before 2.19.2, when first run, allows local users to gain privileges by replacing the KLoader binary with a Trojan horse program.

    Published: 14 Apr 2017
    7.5
    High

    CVE-2017-7696

    Last Modified: 20 Apr 2025

    SAP AS JAVA SSO Authentication Library 2.0 through 3.0 allow remote attackers to cause a denial of service (memory consumption) via large values in the width and height parameters to otp_logon_ui_resources/qr, aka SAP Security Note 2389042.

    Published: 14 Apr 2017
    8.8
    High

    CVE-2017-7717

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in the getUserUddiElements method in the ES UDDI component in SAP NetWeaver AS Java 7.4 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka SAP Security Note 2356504.

    Published: 14 Apr 2017
    6.1
    Medium

    CVE-2017-7871

    Last Modified: 20 Apr 2025

    trollepierre/tdm before 2017-04-13 is vulnerable to a reflected XSS in tdm-master/webhook.php (challenge parameter).

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7875

    Last Modified: 20 Apr 2025

    In wallpaper.c in feh before v2.18.3, if a malicious client pretends to be the E17 window manager, it is possible to trigger an out-of-boundary heap write while receiving an IPC message. An integer overflow leads to a buffer overflow and/or a double free.

    Published: 14 Apr 2017
    5.5
    Medium

    CVE-2016-5309

    Last Modified: 20 Apr 2025

    The RAR file parser component in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection: Network (ATP); Symantec Email Security.Cloud; Symantec Data Center Security: Server; Symantec Endpoint Protection (SEP) for Windows before 12.1.6 MP5; Symantec Endpoint Protection (SEP) for Mac; Symantec Endpoint Protection (SEP) for Linux before 12.1.6 MP6; Symantec Endpoint Protection for Small Business Enterprise (SEP SBE/SEP.Cloud); Symantec Endpoint Protection Cloud (SEPC) for Windows/Mac; Symantec Endpoint Protection Small Business Edition 12.1; CSAPI before 10.0.4 HF02; Symantec Protection Engine (SPE) before 7.0.5 HF02, 7.5.x before 7.5.4 HF02, 7.5.5 before 7.5.5 HF01, and 7.8.x before 7.8.0 HF03; Symantec Mail Security for Domino (SMSDOM) before 8.0.9 HF2.1, 8.1.x before 8.1.2 HF2.3, and 8.1.3 before 8.1.3 HF2.2; Symantec Mail Security for Microsoft Exchange (SMSMSE) before 6.5.8_3968140 HF2.3, 7.x before 7.0_3966002 HF2.1, and 7.5.x before 7.5_3966008 VHF2.2; Symantec Protection for SharePoint Servers (SPSS) before SPSS_6.0.3_To_6.0.5_HF_2.5 update, 6.0.6 before 6.0.6 HF_2.6, and 6.0.7 before 6.0.7_HF_2.7; Symantec Messaging Gateway (SMG) before 10.6.2; Symantec Messaging Gateway for Service Providers (SMG-SP) before 10.5 patch 260 and 10.6 before patch 259; Symantec Web Gateway; and Symantec Web Security.Cloud allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted RAR file that is mishandled during decompression.

    Published: 14 Apr 2017
    5.5
    Medium

    CVE-2016-5310

    Last Modified: 20 Apr 2025

    The RAR file parser component in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection: Network (ATP); Symantec Email Security.Cloud; Symantec Data Center Security: Server; Symantec Endpoint Protection (SEP) for Windows before 12.1.6 MP5; Symantec Endpoint Protection (SEP) for Mac; Symantec Endpoint Protection (SEP) for Linux before 12.1.6 MP6; Symantec Endpoint Protection for Small Business Enterprise (SEP SBE/SEP.Cloud); Symantec Endpoint Protection Cloud (SEPC) for Windows/Mac; Symantec Endpoint Protection Small Business Edition 12.1; CSAPI before 10.0.4 HF02; Symantec Protection Engine (SPE) before 7.0.5 HF02, 7.5.x before 7.5.4 HF02, 7.5.5 before 7.5.5 HF01, and 7.8.x before 7.8.0 HF03; Symantec Mail Security for Domino (SMSDOM) before 8.0.9 HF2.1, 8.1.x before 8.1.2 HF2.3, and 8.1.3 before 8.1.3 HF2.2; Symantec Mail Security for Microsoft Exchange (SMSMSE) before 6.5.8_3968140 HF2.3, 7.x before 7.0_3966002 HF2.1, and 7.5.x before 7.5_3966008 VHF2.2; Symantec Protection for SharePoint Servers (SPSS) before SPSS_6.0.3_To_6.0.5_HF_2.5 update, 6.0.6 before 6.0.6 HF_2.6, and 6.0.7 before 6.0.7_HF_2.7; Symantec Messaging Gateway (SMG) before 10.6.2; Symantec Messaging Gateway for Service Providers (SMG-SP) before 10.5 patch 260 and 10.6 before patch 259; Symantec Web Gateway; and Symantec Web Security.Cloud allows remote attackers to cause a denial of service (memory corruption) via a crafted RAR file that is mishandled during decompression.

    Published: 14 Apr 2017
    8.6
    High

    CVE-2016-7051

    Last Modified: 20 Apr 2025

    XmlMapper in the Jackson XML dataformat component (aka jackson-dataformat-xml) before 2.7.8 and 2.8.x before 2.8.4 allows remote attackers to conduct server-side request forgery (SSRF) attacks via vectors related to a DTD.

    Published: 14 Apr 2017
    8.8
    High

    CVE-2017-1205

    Last Modified: 20 Apr 2025

    IBM Platform LSF 10.1 contains an unspecified vulnerability that could allow a local user to escalate their privileges and obtain root access. IBM X-Force ID: 123741.

    Published: 14 Apr 2017
    5.4
    Medium

    CVE-2016-8927

    Last Modified: 20 Apr 2025

    IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 118540.

    Published: 14 Apr 2017
    4.3
    Medium

    CVE-2017-1152

    Last Modified: 20 Apr 2025

    IBM Financial Transaction Manager 3.0.1 and 3.0.2 does not properly update the SESSIONID with each request, which could allow a user to obtain the ID in further attacks against the system. IBM X-Force ID: 122293.

    Published: 14 Apr 2017
    8.8
    High

    CVE-2015-6568

    Last Modified: 20 Apr 2025

    Wolf CMS before 0.8.3.1 allows unrestricted file rename and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanager) does not prevent a change of a file extension to ".php" after originally using the parameter "filename" for uploading a JPEG image. Exploitation requires a registered user who has access to upload functionality.

    Published: 14 Apr 2017
    8.8
    High

    CVE-2015-6567

    Last Modified: 20 Apr 2025

    Wolf CMS before 0.8.3.1 allows unrestricted file upload and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanager) does not validate the parameter "filename" properly. Exploitation requires a registered user who has access to upload functionality.

    Published: 14 Apr 2017
    6.5
    Medium

    CVE-2016-8925

    Last Modified: 20 Apr 2025

    IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could allow a remote attacker to include arbitrary files which could allow the attacker to read any file on the system. IBM X-Force ID: 118538.

    Published: 14 Apr 2017
    4.3
    Medium

    CVE-2016-8926

    Last Modified: 20 Apr 2025

    IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could allow a remote attacker to read system files or data that is restricted to authorized users. IBM X-Force ID: 118539.

    Published: 14 Apr 2017
    Unknown

    CVE-2016-1000259

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10326. Reason: This candidate is a reservation duplicate of CVE-2016-10326. Notes: All CVE users should reference CVE-2016-10326 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 14 Apr 2017
    7.5
    High

    CVE-2017-7408

    Last Modified: 20 Apr 2025

    Palo Alto Networks Traps ESM Console before 3.4.4 allows attackers to cause a denial of service by leveraging improper validation of requests to revoke a Traps agent license.

    Published: 14 Apr 2017
    8
    High

    CVE-2015-8356

    Last Modified: 20 Apr 2025

    Multiple SQL injection vulnerabilities in the mcart.xls module 6.5.2 and earlier for Bitrix allow remote authenticated users to execute arbitrary SQL commands via the (1) xls_profile parameter to admin/mcart_xls_import.php or the (2) xls_iblock_id, (3) xls_iblock_section_id, (4) firstRow, (5) titleRow, (6) firstColumn, (7) highestColumn, (8) sku_iblock_id, or (9) xls_iblock_section_id_new parameter to admin/mcart_xls_import_step_2.php.

    Published: 14 Apr 2017
    Unknown

    CVE-2016-1000258

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10325. Reason: This candidate is a reservation duplicate of CVE-2016-10325. Notes: All CVE users should reference CVE-2016-10325 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 14 Apr 2017
    4.3
    Medium

    CVE-2017-7217

    Last Modified: 20 Apr 2025

    The Management Web Interface in Palo Alto Networks PAN-OS before 7.0.14 and 7.1.x before 7.1.9 allows remote attackers to write to export files via unspecified parameters.

    Published: 14 Apr 2017
    7.8
    High

    CVE-2017-7218

    Last Modified: 20 Apr 2025

    The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to gain privileges via unspecified request parameters.

    Published: 14 Apr 2017
    7.5
    High

    CVE-2017-7455

    Last Modified: 20 Apr 2025

    Moxa MXView 2.8 allows remote attackers to read web server's private key file, no access control.

    Published: 14 Apr 2017
    7.5
    High

    CVE-2017-7456

    Last Modified: 20 Apr 2025

    Moxa MXView 2.8 allows remote attackers to cause a Denial of Service by sending overly long junk payload for the MXView client login credentials.

    Published: 14 Apr 2017
    5
    Medium

    CVE-2017-7457

    Last Modified: 20 Apr 2025

    XML External Entity via ".AOP" files used by Moxa MX-AOPC Server 1.5 result in remote file disclosure.

    Published: 14 Apr 2017
    7.8
    High

    CVE-2017-7643

    Last Modified: 20 Apr 2025

    Proxifier for Mac before 2.19 allows local users to gain privileges via the first parameter to the KLoader setuid program.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7860

    Last Modified: 20 Apr 2025

    Google gRPC before 2017-02-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the parse_unix function in core/ext/client_channel/parse_address.c.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7866

    Last Modified: 20 Apr 2025

    FFmpeg before 2017-01-23 has an out-of-bounds write caused by a stack-based buffer overflow related to the decode_zbuf function in libavcodec/pngdec.c.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7859

    Last Modified: 20 Apr 2025

    FFmpeg before 2017-03-05 has an out-of-bounds write caused by a heap-based buffer overflow related to the ff_h264_slice_context_init function in libavcodec/h264dec.c.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7861

    Last Modified: 20 Apr 2025

    Google gRPC before 2017-02-22 has an out-of-bounds write related to the gpr_free function in core/lib/support/alloc.c.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7862

    Last Modified: 20 Apr 2025

    FFmpeg before 2017-02-07 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame function in libavcodec/pictordec.c.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7863

    Last Modified: 20 Apr 2025

    FFmpeg before 2017-02-04 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame_common function in libavcodec/pngdec.c.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7865

    Last Modified: 20 Apr 2025

    FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in libavcodec/interplayvideo.c and the avcodec_align_dimensions2 function in libavcodec/utils.c.

    Published: 14 Apr 2017
    7.5
    High

    CVE-2017-7869

    Last Modified: 20 Apr 2025

    GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integer overflow and heap-based buffer overflow related to the cdk_pkt_read function in opencdk/read-packet.c. This issue (which is a subset of the vendor's GNUTLS-SA-2017-3 report) is fixed in 3.5.10.

    Published: 14 Apr 2017
    7.5
    High

    CVE-2017-7645

    Last Modified: 20 Apr 2025

    The NFSv2/NFSv3 server in the nfsd subsystem in the Linux kernel through 4.10.11 allows remote attackers to cause a denial of service (system crash) via a long RPC reply, related to net/sunrpc/svc.c, fs/nfsd/nfs3xdr.c, and fs/nfsd/nfsxdr.c.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2017-7882

    Last Modified: 20 Apr 2025

    LibreOffice before 2017-03-14 has an out-of-bounds write related to the HWPFile::TagsRead function in hwpfilter/source/hwpfile.cxx.

    Published: 14 Apr 2017
    9.8
    Critical

    CVE-2016-6818

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in SAP Business Intelligence platform before January 2017 allows remote attackers to obtain sensitive information, modify data, cause a denial of service (data deletion), or launch administrative operations or possibly OS commands via a crafted SQL query. The vendor response is SAP Security Note 2361633.

    Published: 13 Apr 2017
    5.3
    Medium

    CVE-2016-8724

    Last Modified: 20 Apr 2025

    An exploitable information disclosure vulnerability exists in the serviceAgent functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. A specially crafted TCP query will allow an attacker to retrieve potentially sensitive information.

    Published: 13 Apr 2017