9.8
    Critical

    CVE-2017-15976

    Last Modified: 30 Oct 2017

    ZeeBuddy 2x allows SQL Injection via the admin/editadgroup.php groupid parameter, a different vulnerability than CVE-2008-3604.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15975

    Last Modified: 30 Oct 2017

    Vastal I-Tech Dating Zone 0.9.9 allows SQL Injection via the 'product_id' to add_to_cart.php, a different vulnerability than CVE-2008-4461.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15974

    Last Modified: 30 Oct 2017

    tPanel 2009 allows SQL injection for Authentication Bypass via 'or 1=1 or ''=' to login.php.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15973

    Last Modified: 30 Oct 2017

    Sokial Social Network Script 1.0 allows SQL Injection via the id parameter to admin/members_view.php.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15972

    Last Modified: 30 Oct 2017

    SoftDatepro Dating Social Network 1.3 allows SQL Injection via the viewprofile.php profid parameter, the viewmessage.php sender_id parameter, or the /admin Email field, a related issue to CVE-2017-15971.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15971

    Last Modified: 30 Oct 2017

    Same Sex Dating Software Pro 1.0 allows SQL Injection via the viewprofile.php profid parameter, the viewmessage.php sender_id parameter, or the /admin Email field, a related issue to CVE-2017-15972.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15970

    Last Modified: 30 Oct 2017

    PHP CityPortal 2.0 allows SQL Injection via the nid parameter to index.php in a page=news action, or the cat parameter.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15969

    Last Modified: 30 Oct 2017

    PG All Share Video 1.0 allows SQL Injection via the PATH_INFO to search/tag, friends/index, users/profile, or video_catalog/category.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15968

    Last Modified: 30 Oct 2017

    MyBuilder Clone 1.0 allows SQL Injection via the phpsqlsearch_genxml.php subcategory parameter.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15967

    Last Modified: 30 Oct 2017

    Mailing List Manager Pro 3.0 allows SQL Injection via the edit parameter to admin/users in a sort=login action, or the edit parameter to admin/template.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15966

    Last Modified: 30 Oct 2017

    The Zh YandexMap (aka com_zhyandexmap) component 6.1.1.0 for Joomla! allows SQL Injection via the placemarklistid parameter to index.php.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15965

    Last Modified: 30 Oct 2017

    The NS Download Shop (aka com_ns_downloadshop) component 2.2.6 for Joomla! allows SQL Injection via the id parameter in an invoice.create action.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15964

    Last Modified: 30 Oct 2017

    Job Board Script Software allows SQL Injection via the PATH_INFO to a /job-details URI.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15963

    Last Modified: 30 Oct 2017

    iTech Gigs Script 1.21 allows SQL Injection via the browse-scategory.php sc parameter or the service-provider.php ser parameter.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15962

    Last Modified: 30 Oct 2017

    iStock Management System 1.0 allows Arbitrary File Upload via user/profile.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15961

    Last Modified: 30 Oct 2017

    iProject Management System 1.0 allows SQL Injection via the ID parameter to index.php.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15960

    Last Modified: 30 Oct 2017

    Article Directory Script 3.0 allows SQL Injection via the id parameter to author.php or category.php.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15959

    Last Modified: 30 Oct 2017

    Adult Script Pro 2.2.4 allows SQL Injection via the PATH_INFO to a /download URI, a different vulnerability than CVE-2007-6576.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    9.8
    Critical

    CVE-2017-15958

    Last Modified: 30 Oct 2017

    D-Park Pro Domain Parking Script 1.0 allows SQL Injection via the username to admin/loginform.php.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    8.8
    High

    CVE-2017-15957

    Last Modified: 8 Dec 2017

    my_profile.php in Ingenious School Management System 2.3.0 allows a student or teacher to upload an arbitrary file.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    7.5
    High

    CVE-2017-15956

    Last Modified: 30 Oct 2017

    ConverTo Video Downloader & Converter 1.4.1 allows Arbitrary File Download via the token parameter to download.php.

    Source:Ihsan Sencan
    Published:29 Oct 2017
    7.8
    High

    CVE-2017-15950

    Last Modified: 29 Mar 2021

    Flexense SyncBreeze Enterprise version 10.1.16 is vulnerable to a buffer overflow that can be exploited for arbitrary code execution. The flaw is triggered by providing a long input into the "Destination directory" field, either within an XML document or through use of passive mode.

    Source:Filipe Oliveira
    Published:31 Oct 2017
    9.8
    Critical

    CVE-2017-15944

    Last Modified: 8 May 2018

    Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers to execute arbitrary code via vectors involving the management interface.

    Source:Philip Pettersson
    Published:11 Dec 2017
    7.5
    High

    CVE-2017-15921

    Last Modified: 27 Oct 2017

    In Watchdog Anti-Malware 2.74.186.150 and Online Security Pro 2.74.186.150, the zam32.sys driver contains a NULL pointer dereference vulnerability that gets triggered when sending an operation to ioctl 0x80002010. This is due to the input buffer being NULL or the input buffer size being 0 as they are not validated.

    Source:Parvez Anwar
    Published:30 Oct 2017
    7.5
    High

    CVE-2017-15920

    Last Modified: 27 Oct 2017

    In Watchdog Anti-Malware 2.74.186.150 and Online Security Pro 2.74.186.150, the zam32.sys driver contains a NULL pointer dereference vulnerability that gets triggered when sending an operation to ioctl 0x80002054. This is due to the input buffer being NULL or the input buffer size being 0 as they are not validated.

    Source:Parvez Anwar
    Published:30 Oct 2017
    7.8
    High

    CVE-2017-15918

    Last Modified: 6 Dec 2017

    Sera 1.2 stores the user's login password in plain text in their home directory. This makes privilege escalation trivial and also exposes the user and system keychains to local attacks.

    Source:Mark Wadham
    Published:1 Nov 2017
    8.8
    High

    CVE-2017-15889

    Last Modified: 25 May 2020

    Command injection vulnerability in smart.cgi in Synology DiskStation Manager (DSM) before 5.2-5967-5 allows remote authenticated users to execute arbitrary commands via disk field.

    Source:Metasploit
    Published:4 Dec 2017
    7
    High

    CVE-2017-15884

    Last Modified: 6 Dec 2017

    In HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.0, a local attacker or malware can silently subvert the plugin update process in order to escalate to root privileges.

    Source:Mark Wadham
    Published:31 Oct 2017
    8.8
    High

    CVE-2017-15879

    Last Modified: 25 Oct 2017

    CSV Injection (aka Excel Macro Injection or Formula Injection) exists in admin/server/api/download.js and lib/list/getCSVData.js in KeystoneJS before 4.0.0-beta.7 via a value that is mishandled in a CSV export.

    Source:Ishaq Mohammed
    Published:24 Oct 2017
    6.1
    Medium

    CVE-2017-15878

    Last Modified: 25 Oct 2017

    A cross-site scripting (XSS) vulnerability exists in fields/types/markdown/MarkdownType.js in KeystoneJS before 4.0.0-beta.7 via the Contact Us feature.

    Source:Ishaq Mohammed
    Published:24 Oct 2017
    8.8
    High

    CVE-2017-15808

    Last Modified: 3 Dec 2025

    In phpMyFaq before 2.9.9, there is CSRF in admin/ajax.config.php.

    Source:CodeSecLab
    Published:23 Oct 2017
    8.1
    High

    CVE-2017-15806

    Last Modified: 16 Nov 2017

    The send function in the ezcMailMtaTransport class in Zeta Components Mail before 1.8.2 does not properly restrict the set of characters used in the ezcMail returnPath property, which might allow remote attackers to execute arbitrary code via a crafted email address, as demonstrated by one containing "-X/path/to/wwwroot/file.php."

    Source:MalwareBenchmark
    Published:15 Nov 2017
    8.8
    High

    CVE-2017-15735

    Last Modified: 3 Dec 2025

    In phpMyFAQ before 2.9.9, there is Cross-Site Request Forgery (CSRF) for modifying a glossary.

    Source:CodeSecLab
    Published:21 Oct 2017
    8.8
    High

    CVE-2017-15734

    Last Modified: 3 Dec 2025

    In phpMyFAQ before 2.9.9, there is Cross-Site Request Forgery (CSRF) in admin/stat.main.php.

    Source:CodeSecLab
    Published:21 Oct 2017
    8.8
    High

    CVE-2017-15730

    Last Modified: 30 Oct 2017

    In phpMyFAQ before 2.9.9, there is Cross-Site Request Forgery (CSRF) in admin/stat.ratings.php.

    Source:Nikhil Mittal
    Published:21 Oct 2017
    5.4
    Medium

    CVE-2017-15727

    Last Modified: 30 Oct 2017

    In phpMyFAQ before 2.9.9, there is Stored Cross-site Scripting (XSS) via an HTML attachment.

    Source:Nikhil Mittal
    Published:21 Oct 2017
    6.1
    Medium

    CVE-2017-15717

    Last Modified: 21 Nov 2024

    A flaw in the way URLs are escaped and encoded in the org.apache.sling.xss.impl.XSSAPIImpl#getValidHref and org.apache.sling.xss.impl.XSSFilterImpl#isValidHref allows special crafted URLs to pass as valid, although they carry XSS payloads. The affected versions are Apache Sling XSS Protection API 1.0.4 to 1.0.18, Apache Sling XSS Protection API Compat 1.1.0 and Apache Sling XSS Protection API 2.0.0.

    Published:10 Jan 2018
    8.1
    High

    CVE-2017-15715

    Last Modified: 21 Nov 2024

    In Apache httpd 2.4.0 to 2.4.29, the expression specified in <FilesMatch> could match '$' to a newline character in a malicious filename, rather than matching only the end of the filename. This could be exploited in environments where uploads of some files are are externally blocked, but only by matching the trailing portion of the filename.

    Published:24 Mar 2018
    9.8
    Critical

    CVE-2017-15708

    Last Modified: 20 Apr 2025

    In Apache Synapse, by default no authentication is required for Java Remote Method Invocation (RMI). So Apache Synapse 3.0.1 or all previous releases (3.0.0, 2.1.0, 2.0.0, 1.2, 1.1.2, 1.1.1) allows remote code execution attacks that can be performed by injecting specially crafted serialized objects. And the presence of Apache Commons Collections 3.2.1 (commons-collections-3.2.1.jar) or previous versions in Synapse distribution makes this exploitable. To mitigate the issue, we need to limit RMI access to trusted users only. Further upgrading to 3.0.1 version will eliminate the risk of having said Commons Collection version. In Synapse 3.0.1, Commons Collection has been updated to 3.2.2 version.

    Published:11 Dec 2017
    8.8
    High

    CVE-2017-15700

    Last Modified: 20 Apr 2025

    A flaw in the org.apache.sling.auth.core.AuthUtil#isRedirectValid method in Apache Sling Authentication Service 1.4.0 allows an attacker, through the Sling login form, to trick a victim to send over their credentials.

    Published:18 Dec 2017
    6.1
    Medium

    CVE-2017-15687

    Last Modified: 23 Oct 2017

    DOM Based Cross Site Scripting (XSS) exists in Logitech Media Server 7.7.1, 7.7.2, 7.7.3, 7.7.5, 7.7.6, 7.9.0, and 7.9.1 via a crafted URI.

    Source:Thiago Sena
    Published:23 Oct 2017
    7.5
    High

    CVE-2017-15667

    Last Modified: 27 Dec 2017

    In Flexense SysGauge Server 3.6.18, the Control Protocol suffers from a denial of service. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9221.

    Source:Ahmad Mahfouz
    Published:28 Dec 2017
    7.5
    High

    CVE-2017-15665

    Last Modified: 8 Jan 2018

    In Flexense DiskBoss Enterprise 8.5.12, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 8094.

    Source:Ahmad Mahfouz
    Published:10 Jan 2018
    7.5
    High

    CVE-2017-15664

    Last Modified: 8 Jan 2018

    In Flexense Sync Breeze Enterprise v10.1.16, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9121.

    Source:Ahmad Mahfouz
    Published:10 Jan 2018
    7.5
    High

    CVE-2017-15663

    Last Modified: 8 Jan 2018

    In Flexense Disk Pulse Enterprise v10.1.18, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9120.

    Source:Ahmad Mahfouz
    Published:10 Jan 2018
    7.5
    High

    CVE-2017-15662

    Last Modified: 8 Jan 2018

    In Flexense VX Search Enterprise v10.1.12, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9123.

    Source:Ahmad Mahfouz
    Published:10 Jan 2018
    7.8
    High

    CVE-2017-15649

    Last Modified: 12 Dec 2018

    net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls that trigger mishandling of packet_fanout data structures, because of a race condition (involving fanout_add and packet_do_bind) that leads to a use-after-free, a different vulnerability than CVE-2017-6346.

    Source:SecuriTeam
    Published:20 Sept 2017
    7.5
    High

    CVE-2017-15647

    Last Modified: 15 Feb 2018

    On FiberHome routers, Directory Traversal exists in /cgi-bin/webproc via the getpage parameter in conjunction with a crafted var:page value.

    Source:SecuriTeam
    Published:19 Oct 2017
    6.1
    Medium

    CVE-2017-15646

    Last Modified: 10 Dec 2017

    Webmin before 1.860 has XSS with resultant remote code execution. Under the 'Others/File Manager' menu, there is a 'Download from remote URL' option to download a file from a remote server. After setting up a malicious server, one can wait for a file download request and then send an XSS payload that will lead to Remote Code Execution, as demonstrated by an OS command in the value attribute of a name='cmd' input element.

    Source:hyp3rlinx
    Published:19 Oct 2017
    8.8
    High

    CVE-2017-15645

    Last Modified: 10 Dec 2017

    CSRF exists in Webmin 1.850. By sending a GET request to at/create_job.cgi containing dir=/&cmd= in the URI, an attacker to execute arbitrary commands.

    Source:hyp3rlinx
    Published:19 Oct 2017