CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2015-4407

    Last Modified: 20 Apr 2025

    Buffer overflow on Hikvision NVR DS-76xxNI-E1/2 and DS-77xxxNI-E4 devices before 3.4.0 allows remote authenticated users to cause a denial of service (service interruption) via a crafted HTTP request, aka the PSIA issue.

    Published: 13 Mar 2017
    6.5
    Medium

    CVE-2015-4409

    Last Modified: 20 Apr 2025

    Buffer overflow on Hikvision NVR DS-76xxNI-E1/2 and DS-77xxxNI-E4 devices before 3.4.0 allows remote authenticated users to cause a denial of service (service interruption) via a crafted HTTP request, aka the SDK issue.

    Published: 13 Mar 2017
    6.5
    Medium

    CVE-2015-4408

    Last Modified: 20 Apr 2025

    Buffer overflow on Hikvision NVR DS-76xxNI-E1/2 and DS-77xxxNI-E4 devices before 3.4.0 allows remote authenticated users to cause a denial of service (service interruption) via a crafted HTTP request, aka the ISAPI issue.

    Published: 13 Mar 2017
    9.8
    Critical

    CVE-2017-5619

    Last Modified: 20 Apr 2025

    An issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1. Attackers can login with the hashed password itself (e.g., from the DB) instead of the valid password string.

    Published: 13 Mar 2017
    8.8
    High

    CVE-2017-6081

    Last Modified: 20 Apr 2025

    A CSRF issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1. To exploit the vulnerability, an attacker can send cross-domain requests directly to the REST API for users with a valid session cookie.

    Published: 13 Mar 2017
    6.1
    Medium

    CVE-2017-5621

    Last Modified: 20 Apr 2025

    An issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1. XSS can be triggered via malicious HTML in a chat message or the content of a ticket article, when using either the REST API or the WebSocket API.

    Published: 13 Mar 2017
    9.8
    Critical

    CVE-2017-5674

    Last Modified: 20 Apr 2025

    A vulnerability in a custom-built GoAhead web server used on Foscam, Vstarcam, and multiple white-label IP camera models allows an attacker to craft a malformed HTTP ("GET system.ini HTTP/1.1\n\n" - note the lack of "/" in the path field of the request) request that will disclose the configuration file with the login password.

    Published: 13 Mar 2017
    8.8
    High

    CVE-2017-5675

    Last Modified: 20 Apr 2025

    A command-injection vulnerability exists in a web application on a custom-built GoAhead web server used on Foscam, Vstarcam, and multiple white-label IP camera models. The mail-sending form in the mail.htm page allows an attacker to inject a command into the receiver1 field in the form; it will be executed with root privileges.

    Published: 13 Mar 2017
    8.8
    High

    CVE-2017-6180

    Last Modified: 20 Apr 2025

    Keekoon KK002 devices 1.8.12 HD have a Cross Site Request Forgery Vulnerability affecting goform/formChnUserPwd and goform/formUserMng (and the entire set of other pages).

    Published: 13 Mar 2017
    6.1
    Medium

    CVE-2017-5620

    Last Modified: 20 Apr 2025

    An XSS issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1. Attachments are opened in a new tab instead of getting downloaded. This creates an attack vector of executing code in the domain of the application.

    Published: 13 Mar 2017
    9.8
    Critical

    CVE-2017-6080

    Last Modified: 20 Apr 2025

    An issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, caused by lack of a protection mechanism involving HTTP Access-Control headers. To exploit the vulnerability, an attacker can send cross-domain requests directly to the REST API for users with a valid session cookie and receive the result.

    Published: 13 Mar 2017
    7.5
    High

    CVE-2016-8747

    Last Modified: 16 Apr 2026

    An information disclosure issue was discovered in Apache Tomcat 8.5.7 to 8.5.9 and 9.0.0.M11 to 9.0.0.M15 in reverse-proxy configurations. Http11InputBuffer.java allows remote attackers to read data that was intended to be associated with a different request.

    Published: 13 Mar 2017
    6.1
    Medium

    CVE-2017-6807

    Last Modified: 20 Apr 2025

    mod_auth_mellon before 0.13.1 is vulnerable to a Cross-Site Session Transfer attack, where a user with access to one web site running on a server can copy their session cookie to a different web site on the same server to get access to that site.

    Published: 13 Mar 2017
    9.8
    Critical

    CVE-2017-5626

    Last Modified: 20 Apr 2025

    OxygenOS before version 4.0.2, on OnePlus 3 and 3T, has two hidden fastboot oem commands (4F500301 and 4F500302) that allow the attacker to lock/unlock the bootloader, disregarding the 'OEM Unlocking' checkbox, without user confirmation and without a factory reset. This allows for persistent code execution with high privileges (kernel/root) with complete access to user data.

    Published: 12 Mar 2017
    6.1
    Medium

    CVE-2017-6820

    Last Modified: 20 Apr 2025

    rcube_utils.php in Roundcube before 1.1.8 and 1.2.x before 1.2.4 is susceptible to a cross-site scripting vulnerability via a crafted Cascading Style Sheets (CSS) token sequence within an SVG element.

    Published: 12 Mar 2017
    9.8
    Critical

    CVE-2017-5624

    Last Modified: 20 Apr 2025

    An issue was discovered in OxygenOS before 4.0.3 for OnePlus 3 and 3T. The attacker can persistently make the (locked) bootloader start the platform with dm-verity disabled, by issuing the 'fastboot oem disable_dm_verity' command. Having dm-verity disabled, the kernel will not verify the system partition (and any other dm-verity protected partition), which may allow for persistent code execution and privilege escalation.

    Published: 12 Mar 2017
    8.8
    High

    CVE-2017-6823

    Last Modified: 20 Apr 2025

    Fiyo CMS 2.0.6.1 allows remote authenticated users to gain privileges via a modified level parameter to dapur/ in an app=user&act=edit action.

    Published: 12 Mar 2017
    7.5
    High

    CVE-2017-6444

    Last Modified: 20 Apr 2025

    The MikroTik Router hAP Lite 6.25 has no protection mechanism for unsolicited TCP ACK packets in the case of a fast network connection, which allows remote attackers to cause a denial of service (CPU consumption) by sending many ACK packets. After the attacker stops the exploit, the CPU usage is 100% and the router requires a reboot for normal operation.

    Published: 12 Mar 2017
    6.1
    Medium

    CVE-2017-6815

    Last Modified: 20 Apr 2025

    In WordPress before 4.7.3 (wp-includes/pluggable.php), control characters can trick redirect URL validation.

    Published: 12 Mar 2017
    4.9
    Medium

    CVE-2017-6816

    Last Modified: 20 Apr 2025

    In WordPress before 4.7.3 (wp-admin/plugins.php), unintended files can be deleted by administrators using the plugin deletion functionality.

    Published: 12 Mar 2017
    5.4
    Medium

    CVE-2017-6817

    Last Modified: 20 Apr 2025

    In WordPress before 4.7.3 (wp-includes/embed.php), there is authenticated Cross-Site Scripting (XSS) in YouTube URL Embeds.

    Published: 12 Mar 2017
    6.1
    Medium

    CVE-2017-6818

    Last Modified: 20 Apr 2025

    In WordPress before 4.7.3 (wp-admin/js/tags-box.js), there is cross-site scripting (XSS) via taxonomy term names.

    Published: 12 Mar 2017
    6.5
    Medium

    CVE-2017-6819

    Last Modified: 20 Apr 2025

    In WordPress before 4.7.3, there is cross-site request forgery (CSRF) in Press This (wp-admin/includes/class-wp-press-this.php), leading to excessive use of server resources. The CSRF can trigger an outbound HTTP request for a large file that is then parsed by Press This.

    Published: 12 Mar 2017
    5.4
    Medium

    CVE-2017-6814

    Last Modified: 20 Apr 2025

    In WordPress before 4.7.3, there is authenticated Cross-Site Scripting (XSS) via Media File Metadata. This is demonstrated by both (1) mishandling of the playlist shortcode in the wp_playlist_shortcode function in wp-includes/media.php and (2) mishandling of meta information in the renderTracks function in wp-includes/js/mediaelement/wp-playlist.js.

    Published: 12 Mar 2017
    6.1
    Medium

    CVE-2017-6809

    Last Modified: 20 Apr 2025

    paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.donate.php (id parameter).

    Published: 11 Mar 2017
    8.1
    High

    CVE-2017-6466

    Last Modified: 20 Apr 2025

    F-Secure Software Updater 2.20, as distributed in several F-Secure products, downloads installation packages over plain http and does not perform file integrity validation after download. Man-in-the-middle attackers can replace the file with their own executable which will be executed under the SYSTEM account. Note that when Software Updater is configured to install updates automatically, it checks if the downloaded file is digitally signed by default, but does not check the author of the signature. When running in manual mode (default), no signature check is performed.

    Published: 11 Mar 2017
    9.9
    Critical

    CVE-2017-6513

    Last Modified: 20 Apr 2025

    The WHMCS Reseller Module V2 2.0.2 in Softaculous Virtualizor before 2.9.1.0 does not verify the user correctly, which allows remote authenticated users to control other virtual machines managed by Virtualizor by accessing a modified URL.

    Published: 11 Mar 2017
    6.1
    Medium

    CVE-2017-6808

    Last Modified: 20 Apr 2025

    paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.faq.php (id parameter).

    Published: 11 Mar 2017
    6.1
    Medium

    CVE-2017-6811

    Last Modified: 20 Apr 2025

    paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.shop.php (id parameter).

    Published: 11 Mar 2017
    6.1
    Medium

    CVE-2017-6812

    Last Modified: 20 Apr 2025

    paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.vote.php (id parameter).

    Published: 11 Mar 2017
    8.8
    High

    CVE-2010-4314

    Last Modified: 20 Apr 2025

    Remote attackers can use the iPrint web-browser ActiveX plugin in Novell iPrint Client before 5.42 for Windows XP/Vista/Win7 to execute code by overflowing the "name" parameter.

    Published: 11 Mar 2017
    6.1
    Medium

    CVE-2017-6810

    Last Modified: 20 Apr 2025

    paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.fplinks.php (linkid parameter).

    Published: 11 Mar 2017
    8.8
    High

    CVE-2016-8714

    Last Modified: 20 Apr 2025

    An exploitable buffer overflow vulnerability exists in the LoadEncoding functionality of the R programming language version 3.3.0. A specially crafted R script can cause a buffer overflow resulting in a memory corruption. An attacker can send a malicious R script to trigger this vulnerability.

    Published: 10 Mar 2017
    9.8
    Critical

    CVE-2017-6506

    Last Modified: 20 Apr 2025

    In Azure Data Expert Ultimate 2.2.16, the SMTP verification function suffers from a buffer overflow vulnerability, leading to remote code execution. The attack vector is a crafted SMTP daemon that sends a long 220 (aka "Service ready") string.

    Published: 10 Mar 2017
    10
    Critical

    CVE-2017-2785

    Last Modified: 20 Apr 2025

    An exploitable buffer overflow exists in the psnotifyd application of the Pharos PopUp printer client version 9.0. A specially crafted packet can be sent to the victim's computer and can lead to a heap based buffer overflow resulting in remote code execution. This client is always listening, has root privileges, and requires no user interaction to exploit.

    Published: 10 Mar 2017
    7.5
    High

    CVE-2017-2786

    Last Modified: 20 Apr 2025

    A denial of service vulnerability exists in the psnotifyd application of the Pharos PopUp printer client version 9.0. A specially crafted packet can be sent to the victim's computer and can lead to an out of bounds read causing a crash and a denial of service.

    Published: 10 Mar 2017
    9
    Critical

    CVE-2017-2787

    Last Modified: 20 Apr 2025

    A buffer overflows exists in the psnotifyd application of the Pharos PopUp printer client version 9.0. A specially crafted packet can be sent to the victim's computer and can lead to a heap based buffer overflow resulting in potential remote code execution. This client is always listening, has root privileges, and requires no user interaction to exploit.

    Published: 10 Mar 2017
    9.8
    Critical

    CVE-2017-5859

    Last Modified: 20 Apr 2025

    On Cambium Networks cnPilot R200/201 devices before 4.3, there is a vulnerability involving the certificate of the device and its RSA keys, aka RBN-183.

    Published: 10 Mar 2017
    7.5
    High

    CVE-2017-6427

    Last Modified: 20 Apr 2025

    A Buffer Overflow was discovered in EvoStream Media Server 1.7.1. A crafted HTTP request with a malicious header will cause a crash. An example attack methodology may include a long message-body in a GET request.

    Published: 10 Mar 2017
    5.5
    Medium

    CVE-2017-6596

    Last Modified: 20 Apr 2025

    partclone.chkimg in partclone 0.2.89 is prone to a heap-based buffer overflow vulnerability due to insufficient validation of the partclone image header. An attacker may be able to launch a 'Denial of Service attack' in the context of the user running the affected application.

    Published: 10 Mar 2017
    7.5
    High

    CVE-2017-6801

    Last Modified: 20 Apr 2025

    An issue was discovered in ytnef before 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse() in libytnef.

    Published: 10 Mar 2017
    7.5
    High

    CVE-2017-6802

    Last Modified: 20 Apr 2025

    An issue was discovered in ytnef before 1.9.2. There is a potential heap-based buffer over-read on incoming Compressed RTF Streams, related to DecompressRTF() in libytnef.

    Published: 10 Mar 2017
    Unknown

    CVE-2017-6804

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 10 Mar 2017
    7.5
    High

    CVE-2017-6800

    Last Modified: 20 Apr 2025

    An issue was discovered in ytnef before 1.9.2. An invalid memory access (heap-based buffer over-read) can occur during handling of LONG data types, related to MAPIPrint() in libytnef.

    Published: 10 Mar 2017
    6.1
    Medium

    CVE-2017-6799

    Last Modified: 20 Apr 2025

    A cross-site scripting (XSS) vulnerability in view_filters_page.php in MantisBT before 2.2.1 allows remote attackers to inject arbitrary JavaScript via the 'view_type' parameter.

    Published: 10 Mar 2017
    10
    Critical

    CVE-2017-2788

    Last Modified: 20 Apr 2025

    A buffer overflows exists in the psnotifyd application of the Pharos PopUp printer client version 9.0. A specially crafted packet can be sent to the victim's computer and can lead to a heap based buffer overflow resulting in potential remote code execution. This client is always listening, has root privileges, and requires no user interaction to exploit.

    Published: 10 Mar 2017
    7.8
    High

    CVE-2017-6798

    Last Modified: 20 Apr 2025

    Trend Micro Endpoint Sensor 1.6 before b1290 has a DLL hijacking vulnerability that allows remote attackers to execute arbitrary code, aka Trend Micro Vulnerability Identifier 2015-0208.

    Published: 10 Mar 2017
    7.5
    High

    CVE-2017-5872

    Last Modified: 20 Apr 2025

    The TCP/IP networking module in Unisys ClearPath MCP systems with TCP-IP-SW 57.1 before 57.152, 58.1 before 58.142, or 59.1 before 59.172, when running a TLS 1.2 service, allows remote attackers to cause a denial of service (network connectivity disruption) via a client hello with a signature_algorithms extension above those defined in RFC 5246, which triggers a full memory dump.

    Published: 10 Mar 2017
    5.5
    Medium

    CVE-2017-6355

    Last Modified: 20 Apr 2025

    Integer overflow in the vrend_create_shader function in vrend_renderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (process crash) via crafted pkt_length and offlen values, which trigger an out-of-bounds access.

    Published: 10 Mar 2017
    7.5
    High

    CVE-2017-4960

    Last Modified: 20 Apr 2025

    An issue was discovered in Cloud Foundry release v247 through v252, UAA stand-alone release v3.9.0 through v3.11.0, and UAA Bosh Release v21 through v26. There is a potential to subject the UAA OAuth clients to a denial of service attack.

    Published: 10 Mar 2017