CVE Feed

    Dashboard / CVE

    8.1
    High

    CVE-2016-1894

    Last Modified: 20 Apr 2025

    NetApp OnCommand Workflow Automation before 3.1P2 allows remote attackers to bypass authentication via unspecified vectors.

    Published: 7 Feb 2017
    9.8
    Critical

    CVE-2016-2403

    Last Modified: 20 Apr 2025

    Symfony before 2.8.6 and 3.x before 3.0.6 allows remote attackers to bypass authentication by logging in with an empty password and valid username, which triggers an unauthenticated bind.

    Published: 7 Feb 2017
    7.5
    High

    CVE-2016-3063

    Last Modified: 20 Apr 2025

    Multiple functions in NetApp OnCommand System Manager before 8.3.2 do not properly escape special characters, which allows remote authenticated users to execute arbitrary API calls via unspecified vectors.

    Published: 7 Feb 2017
    5.3
    Medium

    CVE-2016-3124

    Last Modified: 20 Apr 2025

    The sanitycheck module in SimpleSAMLphp before 1.14.1 allows remote attackers to learn the PHP version on the system via unspecified vectors.

    Published: 7 Feb 2017
    8.1
    High

    CVE-2016-3180

    Last Modified: 20 Apr 2025

    Tor Browser Launcher (aka torbrowser-launcher) before 0.2.4, during the initial run, allows man-in-the-middle attackers to bypass the PGP signature verification and execute arbitrary code via a Trojan horse tar file and a signature file with the valid tarball and signature.

    Published: 7 Feb 2017
    7.5
    High

    CVE-2016-4341

    Last Modified: 20 Apr 2025

    NetApp Clustered Data ONTAP before 8.3.2P7 allows remote attackers to obtain SMB share information via unspecified vectors.

    Published: 7 Feb 2017
    9.8
    Critical

    CVE-2016-6667

    Last Modified: 20 Apr 2025

    NetApp OnCommand Unified Manager for Clustered Data ONTAP 6.3 through 6.4P1 contain a default privileged account, which allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 7 Feb 2017
    6.1
    Medium

    CVE-2016-6096

    Last Modified: 20 Apr 2025

    IBM Tivoli Key Lifecycle Manager 2.0.1, 2.5, and 2.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 7 Feb 2017
    6.2
    Medium

    CVE-2016-6092

    Last Modified: 20 Apr 2025

    IBM Tivoli Key Lifecycle Manager 2.0.1, 2.5, and 2.6 stores user credentials in plain in clear text which can be read by a local user.

    Published: 7 Feb 2017
    4
    Medium

    CVE-2016-6097

    Last Modified: 20 Apr 2025

    IBM Tivoli Key Lifecycle Manager 2.0.1, 2.5, and 2.6 allows web pages to be stored locally which can be read by another user on the system.

    Published: 7 Feb 2017
    7.2
    High

    CVE-2016-6104

    Last Modified: 20 Apr 2025

    IBM Tivoli Key Lifecycle Manager 2.5, and 2.6 could allow a remote attacker to upload arbitrary files, caused by the improper validation of file extensions, which could allow the attacker to execute arbitrary code on the vulnerable system.

    Published: 7 Feb 2017
    5.5
    Medium

    CVE-2016-3020

    Last Modified: 20 Apr 2025

    IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 could allow a remote attacker to bypass security restrictions, caused by improper content validation. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to bypass validation and load a page with malicious content.

    Published: 7 Feb 2017
    4.3
    Medium

    CVE-2016-6094

    Last Modified: 20 Apr 2025

    IBM Tivoli Key Lifecycle Manager 2.0.1, 2.5, and 2.6 generates an error message that includes sensitive information about its environment, users, or associated data.

    Published: 7 Feb 2017
    7.5
    High

    CVE-2016-7164

    Last Modified: 20 Apr 2025

    The construct function in puff.cpp in Libtorrent 1.1.0 allows remote torrent trackers to cause a denial of service (segmentation fault and crash) via a crafted GZIP response.

    Published: 7 Feb 2017
    5.5
    Medium

    CVE-2015-5677

    Last Modified: 20 Apr 2025

    bsnmpd, as used in FreeBSD 9.3, 10.1, and 10.2, uses world-readable permissions on the snmpd.config file, which allows local users to obtain the secret key for USM authentication by reading the file.

    Published: 7 Feb 2017
    7.5
    High

    CVE-2016-1504

    Last Modified: 20 Apr 2025

    dhcpcd before 6.10.0 allows remote attackers to cause a denial of service (invalid read and crash) via vectors related to the option length.

    Published: 7 Feb 2017
    9.8
    Critical

    CVE-2016-6175

    Last Modified: 20 Apr 2025

    Eval injection vulnerability in php-gettext 1.0.12 and earlier allows remote attackers to execute arbitrary PHP code via a crafted plural forms header.

    Published: 7 Feb 2017
    9.8
    Critical

    CVE-2016-7400

    Last Modified: 20 Apr 2025

    Multiple SQL injection vulnerabilities in Exponent CMS before 2.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in an activate_address address controller action, (2) title parameter in a show blog controller action, or (3) content_id parameter in a showComments expComment controller action.

    Published: 7 Feb 2017
    8.8
    High

    CVE-2016-2539

    Last Modified: 20 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in install_modules.php in ATutor before 2.2.2 allows remote attackers to hijack the authentication of users for requests that upload arbitrary files and execute arbitrary PHP code via vectors involving a crafted zip file.

    Published: 7 Feb 2017
    7
    High

    CVE-2017-0553

    Last Modified: 20 Apr 2025

    An elevation of privilege vulnerability in libnl could enable a local malicious application to execute arbitrary code within the context of the Wi-Fi service. This issue is rated as Moderate because it first requires compromising a privileged process and is mitigated by current platform configurations. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32342065. NOTE: this issue also exists in the upstream libnl before 3.3.0 library.

    Published: 7 Feb 2017
    7.5
    High

    CVE-2017-5637

    Last Modified: 20 Apr 2025

    Two four letter word commands "wchp/wchc" are CPU intensive and could cause spike of CPU utilization on Apache ZooKeeper server if abused, which leads to the server unable to serve legitimate client requests. Apache ZooKeeper thru version 3.4.9 and 3.5.2 suffer from this issue, fixed in 3.4.10, 3.5.3, and later.

    Published: 7 Feb 2017
    5
    Medium

    CVE-2017-6435

    Last Modified: 20 Apr 2025

    The parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (memory corruption) via a crafted plist file.

    Published: 7 Feb 2017
    6.5
    Medium

    CVE-2017-6505

    Last Modified: 20 Apr 2025

    The ohci_service_ed_list function in hw/usb/hcd-ohci.c in QEMU (aka Quick Emulator) before 2.9.0 allows local guest OS users to cause a denial of service (infinite loop) via vectors involving the number of link endpoint list descriptors, a different vulnerability than CVE-2017-9330.

    Published: 7 Feb 2017
    7.8
    High

    CVE-2016-8636

    Last Modified: 20 Apr 2025

    Integer overflow in the mem_check_range function in drivers/infiniband/sw/rxe/rxe_mr.c in the Linux kernel before 4.9.10 allows local users to cause a denial of service (memory corruption), obtain sensitive information from kernel memory, or possibly have unspecified other impact via a write or read request involving the "RDMA protocol over infiniband" (aka Soft RoCE) technology.

    Published: 7 Feb 2017
    7.5
    High

    CVE-2017-6214

    Last Modified: 20 Apr 2025

    The tcp_splice_read function in net/ipv4/tcp.c in the Linux kernel before 4.9.11 allows remote attackers to cause a denial of service (infinite loop and soft lockup) via vectors involving a TCP packet with the URG flag.

    Published: 7 Feb 2017
    5.6
    Medium

    CVE-2017-9330

    Last Modified: 20 Apr 2025

    QEMU (aka Quick Emulator) before 2.9.0, when built with the USB OHCI Emulation support, allows local guest OS users to cause a denial of service (infinite loop) by leveraging an incorrect return value, a different vulnerability than CVE-2017-6505.

    Published: 7 Feb 2017
    9.8
    Critical

    CVE-2017-5677

    Last Modified: 20 Apr 2025

    PEAR HTML_AJAX 0.3.0 through 0.5.7 has a PHP Object Injection Vulnerability in the PHP Serializer. It allows remote code execution. In one viewpoint, the root cause is an incorrect regular expression.

    Published: 6 Feb 2017
    5.3
    Medium

    CVE-2016-9772

    Last Modified: 20 Apr 2025

    OpenAFS 1.6.19 and earlier allows remote attackers to obtain sensitive directory information via vectors involving the (1) client cache partition, (2) fileserver vice partition, or (3) certain RPC responses.

    Published: 6 Feb 2017
    9.8
    Critical

    CVE-2016-7446

    Last Modified: 20 Apr 2025

    Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete patch for CVE-2016-2317.

    Published: 6 Feb 2017
    7.5
    High

    CVE-2016-7448

    Last Modified: 20 Apr 2025

    The Utah RLE reader in GraphicsMagick before 1.3.25 allows remote attackers to cause a denial of service (CPU consumption or large memory allocations) via vectors involving the header information and the file size.

    Published: 6 Feb 2017
    9.8
    Critical

    CVE-2016-7447

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via unknown vectors.

    Published: 6 Feb 2017
    7.5
    High

    CVE-2016-7449

    Last Modified: 20 Apr 2025

    The TIFFGetField function in coders/tiff.c in GraphicsMagick 1.3.24 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a file containing an "unterminated" string.

    Published: 6 Feb 2017
    7.5
    High

    CVE-2016-7800

    Last Modified: 20 Apr 2025

    Integer underflow in the parse8BIM function in coders/meta.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM chunk, which triggers a heap-based buffer overflow.

    Published: 6 Feb 2017
    6.1
    Medium

    CVE-2017-5367

    Last Modified: 20 Apr 2025

    Multiple reflected XSS vulnerabilities exist within form and link input parameters of ZoneMinder v1.30 and v1.29, an open-source CCTV server web application, which allows a remote attacker to execute malicious scripts within an authenticated client's browser. The URL is /zm/index.php and sample parameters could include action=login&view=postlogin[XSS] view=console[XSS] view=groups[XSS] view=events&filter[terms][1][cnj]=and[XSS] view=events&filter%5Bterms%5D%5B1%5D%5Bcnj%5D=and[XSS] view=events&filter%5Bterms%5D%5B1%5D%5Bcnj%5D=[XSS]and view=events&limit=1%22%3E%3C/a%3E[XSS] (among others).

    Published: 6 Feb 2017
    8.8
    High

    CVE-2017-5368

    Last Modified: 20 Apr 2025

    ZoneMinder v1.30 and v1.29, an open-source CCTV server web application, is vulnerable to CSRF (Cross Site Request Forgery) which allows a remote attack to make changes to the web application as the current logged in victim. If the victim visits a malicious web page, the attacker can silently and automatically create a new admin user within the web application for remote persistence and further attacks. The URL is /zm/index.php and sample parameters could include action=user uid=0 newUser[Username]=attacker1 newUser[Password]=Password1234 conf_password=Password1234 newUser[System]=Edit (among others).

    Published: 6 Feb 2017
    5.5
    Medium

    CVE-2017-5595

    Last Modified: 20 Apr 2025

    A file disclosure and inclusion vulnerability exists in web/views/file.php in ZoneMinder 1.x through v1.30.0 because of unfiltered user-input being passed to readfile(), which allows an authenticated attacker to read local system files (e.g., /etc/passwd) in the context of the web server user (www-data). The attack vector is a .. (dot dot) in the path parameter within a zm/index.php?view=file&path= request.

    Published: 6 Feb 2017
    9.8
    Critical

    CVE-2017-5879

    Last Modified: 20 Apr 2025

    An issue was discovered in Exponent CMS 2.4.1. This is a blind SQL injection that can be exploited by un-authenticated users via an HTTP GET request and which can be used to dump database data out to a malicious server, using an out-of-band technique, such as select_loadfile(). The vulnerability affects source_selector.php and the following parameter: src.

    Published: 6 Feb 2017
    5.4
    Medium

    CVE-2017-5875

    Last Modified: 20 Apr 2025

    XSS was discovered in dotCMS 3.7.0, with an authenticated attack against the /myAccount addressID parameter.

    Published: 6 Feb 2017
    6.1
    Medium

    CVE-2017-5876

    Last Modified: 20 Apr 2025

    XSS was discovered in dotCMS 3.7.0, with an unauthenticated attack against the /news-events/events date parameter.

    Published: 6 Feb 2017
    6.1
    Medium

    CVE-2017-5877

    Last Modified: 20 Apr 2025

    XSS was discovered in dotCMS 3.7.0, with an unauthenticated attack against the /about-us/locations/index direction parameter.

    Published: 6 Feb 2017
    9.8
    Critical

    CVE-2015-2794

    Last Modified: 24 Apr 2026

    The installation wizard in DotNetNuke (DNN) before 7.4.1 allows remote attackers to reinstall the application and gain SuperUser access via a direct request to Install/InstallWizard.aspx.

    Published: 6 Feb 2017
    7.5
    High

    CVE-2016-9578

    Last Modified: 21 Nov 2024

    A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An attacker able to connect to the SPICE server could send crafted messages which would cause the process to crash.

    Published: 6 Feb 2017
    3.3
    Low

    CVE-2017-2587

    Last Modified: 21 Nov 2024

    A memory allocation vulnerability was found in netpbm before 10.61. A maliciously crafted SVG file could cause the application to crash.

    Published: 6 Feb 2017
    3.3
    Low

    CVE-2017-2586

    Last Modified: 21 Nov 2024

    A null pointer dereference vulnerability was found in netpbm before 10.61. A maliciously crafted SVG file could cause the application to crash.

    Published: 6 Feb 2017
    7.5
    High

    CVE-2016-9577

    Last Modified: 21 Nov 2024

    A vulnerability was discovered in SPICE before 0.13.90 in the server's protocol handling. An authenticated attacker could send crafted messages to the SPICE server causing a heap overflow leading to a crash or possible code execution.

    Published: 6 Feb 2017
    6.8
    Medium

    CVE-2017-2614

    Last Modified: 21 Nov 2024

    When updating a password in the rhvm database the ovirt-aaa-jdbc-tool tools before 1.1.3 fail to correctly check for the current password if it is expired. This would allow access to an attacker with access to change the password on accounts with expired passwords, gaining access to those accounts.

    Published: 6 Feb 2017
    5.5
    Medium

    CVE-2017-5986

    Last Modified: 20 Apr 2025

    Race condition in the sctp_wait_for_sndbuf function in net/sctp/socket.c in the Linux kernel before 4.9.11 allows local users to cause a denial of service (assertion failure and panic) via a multithreaded application that peels off an association in a certain buffer-full state.

    Published: 6 Feb 2017
    9.8
    Critical

    CVE-2016-10098

    Last Modified: 20 Apr 2025

    An issue was discovered on SendQuick Entera and Avera devices before 2HF16. Multiple Command Injection vulnerabilities allow attackers to execute arbitrary system commands.

    Published: 5 Feb 2017
    6.2
    Medium

    CVE-2017-5137

    Last Modified: 20 Apr 2025

    An issue was discovered on SendQuick Entera and Avera devices before 2HF16. An attacker could request and download the SMS logs from an unauthenticated perspective.

    Published: 5 Feb 2017
    7.5
    High

    CVE-2017-5136

    Last Modified: 20 Apr 2025

    An issue was discovered on SendQuick Entera and Avera devices before 2HF16. The application failed to check the access control of the request which could result in an attacker being able to shutdown the system.

    Published: 5 Feb 2017