CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2016-6603

    Last Modified: 20 Apr 2025

    ZOHO WebNMS Framework 5.2 and 5.2 SP1 allows remote attackers to bypass authentication and impersonate arbitrary users via the UserName HTTP header.

    Published: 23 Jan 2017
    7.5
    High

    CVE-2016-6920

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the decode_block function in libavcodec/exr.c in FFmpeg before 3.1.3 allows remote attackers to cause a denial of service (application crash) via vectors involving tile positions.

    Published: 23 Jan 2017
    9.8
    Critical

    CVE-2016-7036

    Last Modified: 20 Apr 2025

    python-jose before 1.3.2 allows attackers to have unspecified impact by leveraging failure to use a constant time comparison for HMAC keys.

    Published: 23 Jan 2017
    8.4
    High

    CVE-2016-7102

    Last Modified: 20 Apr 2025

    ownCloud Desktop before 2.2.3 allows local users to execute arbitrary code and possibly gain privileges via a Trojan library in a "special path" in the C: drive.

    Published: 23 Jan 2017
    8.8
    High

    CVE-2016-7792

    Last Modified: 20 Apr 2025

    Ubiquiti Networks UniFi 5.2.7 does not restrict access to the database, which allows remote attackers to modify the database by directly connecting to it.

    Published: 23 Jan 2017
    9.8
    Critical

    CVE-2016-9081

    Last Modified: 20 Apr 2025

    Joomla! 3.4.4 through 3.6.3 allows attackers to reset username, password, and user group assignments and possibly perform other user account modifications via unspecified vectors.

    Published: 23 Jan 2017
    7.5
    High

    CVE-2017-5371

    Last Modified: 20 Apr 2025

    Odata Server in SAP Adaptive Server Enterprise (ASE) 16 allows remote attackers to cause a denial of service (process crash) via a series of crafted requests, aka SAP Security Note 2330422.

    Published: 23 Jan 2017
    7.5
    High

    CVE-2017-5372

    Last Modified: 20 Apr 2025

    The function msp (aka MSPRuntimeInterface) in the P4 SERVERCORE component in SAP AS JAVA allows remote attackers to obtain sensitive system information by leveraging a missing authorization check for the (1) getInformation, (2) getParameters, (3) getServiceInfo, (4) getStatistic, or (5) getClientStatistic function, aka SAP Security Note 2331908.

    Published: 23 Jan 2017
    7.5
    High

    CVE-2016-7037

    Last Modified: 18 Nov 2025

    The verify function in Encryption/Symmetric.php in Malcolm Fell jwt before 1.0.3 does not use a timing-safe function for hash comparison, which allows attackers to spoof signatures via a timing attack.

    Published: 23 Jan 2017
    9.8
    Critical

    CVE-2016-3147

    Last Modified: 20 Apr 2025

    Buffer overflow in the collector.exe listener of the Landesk Management Suite 10.0.0.271 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large packet.

    Published: 23 Jan 2017
    9.8
    Critical

    CVE-2016-4010

    Last Modified: 20 Apr 2025

    Magento CE and EE before 2.0.6 allows remote attackers to conduct PHP objection injection attacks and execute arbitrary PHP code via crafted serialized shopping cart data.

    Published: 23 Jan 2017
    7.5
    High

    CVE-2016-5697

    Last Modified: 20 Apr 2025

    Ruby-saml before 1.3.0 allows attackers to perform XML signature wrapping attacks via unspecified vectors.

    Published: 23 Jan 2017
    6.1
    Medium

    CVE-2016-6484

    Last Modified: 20 Apr 2025

    CRLF injection vulnerability in Infoblox Network Automation NetMRI before 7.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the contentType parameter in a login action to config/userAdmin/login.tdf.

    Published: 23 Jan 2017
    8.8
    High

    CVE-2017-5570

    Last Modified: 20 Apr 2025

    An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a blind SQL injection within the messageJson.jsp, which can only be exploited by authenticated users via an HTTP POST request and which can be used to dump database data out to a malicious server, using an out-of-band technique such as select_loadfile().

    Published: 23 Jan 2017
    9.8
    Critical

    CVE-2017-5569

    Last Modified: 20 Apr 2025

    An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a blind SQL injection within the template.jsp, which can be exploited without the need of authentication and via an HTTP POST request, and which can be used to dump database data out to a malicious server, using an out-of-band technique such as select_loadfile().

    Published: 23 Jan 2017
    7.5
    High

    CVE-2017-5182

    Last Modified: 20 Apr 2025

    Remote Manager in Open Enterprise Server (OES) allows unauthenticated remote attackers to read any arbitrary file, via a specially crafted URL, that allows complete directory traversal and total information disclosure. This vulnerability is present on all versions of OES for linux, it applies to OES2015 SP1 before Maintenance Update 11080, OES2015 before Maintenance Update 11079, OES11 SP3 before Maintenance Update 11078, OES11 SP2 before Maintenance Update 11077).

    Published: 23 Jan 2017
    8.1
    High

    CVE-2016-10101

    Last Modified: 20 Apr 2025

    Information Disclosure can occur in Hitek Software's Automize 10.x and 11.x passManager.jsd. Users have the Read attribute, which allows an attacker to recover the encrypted password to access the Password Manager.

    Published: 23 Jan 2017
    8.1
    High

    CVE-2016-10102

    Last Modified: 20 Apr 2025

    hitek.jar in Hitek Software's Automize uses weak encryption when encrypting SSH/SFTP and Encryption profile passwords. This allows an attacker to retrieve the encrypted passwords from sshProfiles.jsd and encryptionProfiles.jsd and decrypt them to recover cleartext passwords. All 10.x up to and including 10.25 and all 11.x up to and including 11.14 are verified to be affected.

    Published: 23 Jan 2017
    8.1
    High

    CVE-2016-10103

    Last Modified: 20 Apr 2025

    Information Disclosure can occur in encryptionProfiles.jsd in Hitek Software's Automize because of the Read attribute being set for Users. This allows an attacker to recover encrypted passwords for GPG Encryption profiles. Verified in all 10.x versions up to and including 10.25, and all 11.x versions up to and including 11.14.

    Published: 23 Jan 2017
    9.8
    Critical

    CVE-2016-10157

    Last Modified: 20 Apr 2025

    Akamai NetSession 1.9.3.1 is vulnerable to DLL Hijacking: it tries to load CSUNSAPI.dll without supplying the complete path. The issue is aggravated because the mentioned DLL is missing from the installation, thus making it possible to hijack the DLL and subsequently inject code within the Akamai NetSession process space.

    Published: 23 Jan 2017
    9.1
    Critical

    CVE-2017-5539

    Last Modified: 20 Apr 2025

    The patch for directory traversal (CVE-2017-5480) in b2evolution version 6.8.4-stable has a bypass vulnerability. An attacker can use ..\/ to bypass the filter rule. Then, this attacker can exploit this vulnerability to delete or read any files on the server. It can also be used to determine whether a file exists.

    Published: 23 Jan 2017
    8.1
    High

    CVE-2017-5554

    Last Modified: 20 Apr 2025

    An issue was discovered in ABOOT in OnePlus 3 and 3T OxygenOS before 4.0.2. The attacker can reboot the device into the fastboot mode, which could be done without any authentication. A physical attacker can press the "Volume Up" button during device boot, where an attacker with ADB access can issue the adb reboot bootloader command. Then, the attacker can put the platform's SELinux in permissive mode, which severely weakens it, by issuing: fastboot oem selinux permissive.

    Published: 23 Jan 2017
    5.9
    Medium

    CVE-2016-10104

    Last Modified: 20 Apr 2025

    Information Disclosure can occur in sshProfiles.jsd in Hitek Software's Automize because of the Read attribute being set for Users. This allows an attacker to recover encrypted passwords for SSH/SFTP profiles. Verified in all 10.x versions up to and including 10.25, and all 11.x versions up to and including 11.14.

    Published: 23 Jan 2017
    7.8
    High

    CVE-2016-10156

    Last Modified: 20 Apr 2025

    A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.

    Published: 23 Jan 2017
    6.7
    Medium

    CVE-2016-9870

    Last Modified: 20 Apr 2025

    EMC Isilon OneFS 8.0.0.0, EMC Isilon OneFS 7.2.1.0 - 7.2.1.2, EMC Isilon OneFS 7.2.0.x, EMC Isilon OneFS 7.1.1.0 - 7.1.1.10, and EMC Isilon OneFS 7.1.0.x is affected by an LDAP injection vulnerability that could potentially be exploited by a malicious user to compromise the system.

    Published: 23 Jan 2017
    9.8
    Critical

    CVE-2017-5575

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in inc/lib/Options.class.php in GeniXCMS before 1.0.0 allows remote attackers to execute arbitrary SQL commands via the modules parameter.

    Published: 23 Jan 2017
    5.4
    Medium

    CVE-2017-5553

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in plugins/markdown_plugin/_markdown.plugin.php in b2evolution before 6.8.5 allows remote authenticated users to inject arbitrary web script or HTML via a javascript: URL.

    Published: 23 Jan 2017
    9.8
    Critical

    CVE-2017-5574

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in register.php in GeniXCMS before 1.0.0 allows unauthenticated users to execute arbitrary SQL commands via the activation parameter.

    Published: 23 Jan 2017
    6.1
    Medium

    CVE-2016-8213

    Last Modified: 20 Apr 2025

    EMC Documentum WebTop Version 6.8, prior to P18 and Version 6.8.1, prior to P06; and EMC Documentum TaskSpace version 6.7SP3, prior to P02; and EMC Documentum Capital Projects Version 1.9, prior to P30 and Version 1.10, prior to P17; and EMC Documentum Administrator Version 7.0, Version 7.1, and Version 7.2 prior to P18 contain a Stored Cross-Site Scripting Vulnerability that could potentially be exploited by malicious users to compromise the affected system.

    Published: 23 Jan 2017
    5.9
    Medium

    CVE-2017-5544

    Last Modified: 20 Apr 2025

    An issue was discovered on FiberHome Fengine S5800 switches V210R240. An unauthorized attacker can access the device's SSH service, using a password cracking tool to establish SSH connections quickly. This will trigger an increase in the SSH login timeout (each of the login attempts will occupy a connection slot for a longer time). Once this occurs, legitimate login attempts via SSH/telnet will be refused, resulting in a denial of service; you must restart the device.

    Published: 23 Jan 2017
    8.1
    High

    CVE-2017-5556

    Last Modified: 20 Apr 2025

    The ConvertToPDF plugin in Foxit Reader before 8.2 and PhantomPDF before 8.2 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG image. The vulnerability could lead to information disclosure; an attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the current process.

    Published: 23 Jan 2017
    7.5
    High

    CVE-2017-5596

    Last Modified: 20 Apr 2025

    In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the ASTERIX dissector could go into an infinite loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-asterix.c by changing a data type to avoid an integer overflow.

    Published: 23 Jan 2017
    7.5
    High

    CVE-2017-5597

    Last Modified: 20 Apr 2025

    In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the DHCPv6 dissector could go into a large loop, triggered by packet injection or a malformed capture file. This was addressed in epan/dissectors/packet-dhcpv6.c by changing a data type to avoid an integer overflow.

    Published: 23 Jan 2017
    6.5
    Medium

    CVE-2017-5857

    Last Modified: 20 Apr 2025

    Memory leak in the virgl_cmd_resource_unref function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (host memory consumption) via a large number of VIRTIO_GPU_CMD_RESOURCE_UNREF commands sent without detaching the backing storage beforehand.

    Published: 23 Jan 2017
    5.4
    Medium

    CVE-2017-2594

    Last Modified: 21 Nov 2024

    hawtio before versions 2.0-beta-1, 2.0-beta-2 2.0-m1, 2.0-m2, 2.0-m3, and 1.5 is vulnerable to a path traversal that leads to a NullPointerException with a full stacktrace. An attacker could use this flaw to gather undisclosed information from within hawtio's root.

    Published: 23 Jan 2017
    7.5
    High

    CVE-2017-5495

    Last Modified: 20 Apr 2025

    All versions of Quagga, 0.93 through 1.1.0, are vulnerable to an unbounded memory allocation in the telnet 'vty' CLI, leading to a Denial-of-Service of Quagga daemons, or even the entire host. When Quagga daemons are configured with their telnet CLI enabled, anyone who can connect to the TCP ports can trigger this vulnerability, prior to authentication. Most distributions restrict the Quagga telnet interface to local access only by default. The Quagga telnet interface 'vty' input buffer grows automatically, without bound, so long as a newline is not entered. This allows an attacker to cause the Quagga daemon to allocate unbounded memory by sending very long strings without a newline. Eventually the daemon is terminated by the system, or the system itself runs out of memory. This is fixed in Quagga 1.1.1 and Free Range Routing (FRR) Protocol Suite 2017-01-10.

    Published: 23 Jan 2017
    5.5
    Medium

    CVE-2017-18257

    Last Modified: 21 Nov 2024

    The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow and loop) via crafted use of the open and fallocate system calls with an FS_IOC_FIEMAP ioctl.

    Published: 22 Jan 2017
    5.5
    Medium

    CVE-2017-9060

    Last Modified: 20 Apr 2025

    Memory leak in the virtio_gpu_set_scanout function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (memory consumption) via a large number of "VIRTIO_GPU_CMD_SET_SCANOUT:" commands.

    Published: 22 Jan 2017
    5.5
    Medium

    CVE-2017-6851

    Last Modified: 20 Apr 2025

    The jas_matrix_bindsub function in jas_seq.c in JasPer 2.0.10 allows remote attackers to cause a denial of service (invalid read) via a crafted image.

    Published: 21 Jan 2017
    5.9
    Medium

    CVE-2014-9754

    Last Modified: 20 Apr 2025

    The hardware VPN client in Viprinet MultichannelVPN Router 300 version 2013070830/2013080900 does not validate the remote VPN endpoint identity (through the checking of the endpoint's SSL key) before initiating the exchange, which allows an attacker to perform a Man in the Middle attack.

    Published: 20 Jan 2017
    6.1
    Medium

    CVE-2014-2045

    Last Modified: 20 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in the old and new interfaces in Viprinet Multichannel VPN Router 300 allow remote attackers to inject arbitrary web script or HTML via the username when (1) logging in or (2) creating an account in the old interface, (3) username when creating an account in the new interface, (4) hostname in the old interface, (5) inspect parameter in the config module, (6) commands parameter in the atcommands tool, or (7) host parameter in the ping tool.

    Published: 20 Jan 2017
    7.5
    High

    CVE-2014-9755

    Last Modified: 20 Apr 2025

    The hardware VPN client in Viprinet MultichannelVPN Router 300 version 2013070830/2013080900 does not validate the remote VPN endpoint identity (through the checking of the endpoint's SSL key) before initiating the exchange, which allows remote attackers to perform a replay attack.

    Published: 20 Jan 2017
    7.8
    High

    CVE-2016-6253

    Last Modified: 20 Apr 2025

    mail.local in NetBSD versions 6.0 through 6.0.6, 6.1 through 6.1.5, and 7.0 allows local users to change ownership of or append data to arbitrary files on the target system via a symlink attack on the user mailbox.

    Published: 20 Jan 2017
    7.5
    High

    CVE-2016-10143

    Last Modified: 20 Apr 2025

    A vulnerability in Tiki Wiki CMS 15.2 could allow a remote attacker to read arbitrary files on a targeted system via a crafted pathname in a banner URL field.

    Published: 20 Jan 2017
    5.4
    Medium

    CVE-2016-5013

    Last Modified: 20 Apr 2025

    In Moodle 2.x and 3.x, text injection can occur in email headers, potentially leading to outbound spam.

    Published: 20 Jan 2017
    5.4
    Medium

    CVE-2016-5014

    Last Modified: 20 Apr 2025

    In Moodle 2.x and 3.x, an unenrolled user still receives event monitor notifications even though they can no longer access the course.

    Published: 20 Jan 2017
    5.3
    Medium

    CVE-2016-8642

    Last Modified: 20 Apr 2025

    In Moodle 2.x and 3.x, the question engine allows access to files that should not be available.

    Published: 20 Jan 2017
    4.3
    Medium

    CVE-2016-8643

    Last Modified: 20 Apr 2025

    In Moodle 2.x and 3.x, non-admin site managers may accidentally edit admins via web services.

    Published: 20 Jan 2017
    5.3
    Medium

    CVE-2016-8644

    Last Modified: 20 Apr 2025

    In Moodle 2.x and 3.x, the capability to view course notes is checked in the wrong context.

    Published: 20 Jan 2017
    6.1
    Medium

    CVE-2017-2578

    Last Modified: 20 Apr 2025

    In Moodle 3.x, there is XSS in the assignment submission page.

    Published: 20 Jan 2017