6.5
    Medium

    CVE-2017-11552

    Last Modified: 1 Aug 2017

    mpg321.c in mpg321 0.3.2-1 does not properly manage memory for use with libmad 0.15.1b, which allows remote attackers to cause a denial of service (memory corruption seen in a crash in the mad_decoder_run function in decoder.c in libmad) via a crafted MP3 file.

    Source:qflb.wu
    Published:1 Aug 2017
    5.5
    Medium

    CVE-2017-11548

    Last Modified: 31 Jul 2017

    The _tokenize_matrix function in audio_out.c in Xiph.Org libao 1.2.0 allows remote attackers to cause a denial of service (memory corruption) via a crafted MP3 file.

    Source:qflb.wu
    Published:31 Jul 2017
    9.8
    Critical

    CVE-2017-11519

    Last Modified: 20 Apr 2025

    passwd_recovery.lua on the TP-Link Archer C9(UN)_V2_160517 allows an attacker to reset the admin password by leveraging a predictable random number generator seed. This is fixed in C9(UN)_V2_170511.

    Published:21 Jul 2017
    9.8
    Critical

    CVE-2017-11517

    Last Modified: 9 Nov 2017

    Stack-based buffer overflow in GCoreServer.exe in the server in Geutebrueck Gcore 1.3.8.42 and 1.4.2.37 allows remote attackers to execute arbitrary code via a long URI in a GET request.

    Source:Maurice Popp
    Published:21 Jul 2017
    6.1
    Medium

    CVE-2017-11503

    Last Modified: 20 Apr 2025

    PHPMailer 5.2.23 has XSS in the "From Email Address" and "To Email Address" fields of code_generator.php.

    Published:20 Jul 2017
    9.8
    Critical

    CVE-2017-11502

    Last Modified: 15 Feb 2018

    Technicolor DPC3928AD DOCSIS devices allow remote attackers to read arbitrary files via a request starting with "GET /../" on TCP port 4321.

    Source:SecuriTeam
    Published:20 Jul 2017
    7.5
    High

    CVE-2017-11499

    Last Modified: 20 Apr 2025

    Node.js v4.0 through v4.8.3, all versions of v5.x, v6.0 through v6.11.0, v7.0 through v7.10.0, and v8.0 through v8.1.3 was susceptible to hash flooding remote DoS attacks as the HashTable seed was constant across a given released version of Node.js. This was a result of building with V8 snapshots enabled by default which caused the initially randomized seed to be overwritten on startup.

    Published:11 Jul 2017
    9.8
    Critical

    CVE-2017-11494

    Last Modified: 1 Aug 2017

    SQL injection vulnerability in SOL.Connect ISET-mpp meter 1.2.4.2 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter in a login action.

    Source:Andy Tan
    Published:2 Aug 2017
    9.8
    Critical

    CVE-2017-11471

    Last Modified: 15 Feb 2018

    IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatIfGadget/getmetrics.php via the element parameter.

    Source:SecuriTeam
    Published:20 Jul 2017
    9.8
    Critical

    CVE-2017-11470

    Last Modified: 15 Feb 2018

    IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatifGadget/getxenmetrics.php via the element parameter.

    Source:SecuriTeam
    Published:20 Jul 2017
    7.5
    High

    CVE-2017-11469

    Last Modified: 15 Feb 2018

    get2post.php in IDERA Uptime Monitor 7.8 has directory traversal in the file_name parameter.

    Source:SecuriTeam
    Published:20 Jul 2017
    9.8
    Critical

    CVE-2017-11467

    Last Modified: 15 Feb 2018

    OrientDB through 2.2.22 does not enforce privilege requirements during "where" or "fetchplan" or "order by" use, which allows remote attackers to execute arbitrary OS commands via a crafted request.

    Source:SecuriTeam
    Published:20 Jul 2017
    7.5
    High

    CVE-2017-11456

    Last Modified: 15 Feb 2018

    Geneko GWR routers allow directory traversal sequences starting with a /../ substring, as demonstrated by unauthenticated read access to the configuration file.

    Source:SecuriTeam
    Published:19 Jul 2017
    9.8
    Critical

    CVE-2017-11435

    Last Modified: 3 Oct 2017

    The Humax Wi-Fi Router model HG100R-* 2.0.6 is prone to an authentication bypass vulnerability via specially crafted requests to the management console. The bug is exploitable remotely when the router is configured to expose the management console. The router is not validating the session token while returning answers for some methods in url '/api'. An attacker can use this vulnerability to retrieve sensitive information such as private/public IP addresses, SSID names, and passwords.

    Source:Kivson
    Published:19 Jul 2017
    7.7
    High

    CVE-2017-11427

    Last Modified: 21 Nov 2024

    OneLogin PythonSAML 2.3.0 and earlier may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attacker may be able to manipulate the SAML data without invalidating the cryptographic signature, allowing the attack to potentially bypass authentication to SAML service providers.

    Published:17 Apr 2019
    8.8
    High

    CVE-2017-11398

    Last Modified: 22 Dec 2017

    A session hijacking via log disclosure vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an unauthenticated attacker to hijack active user sessions to perform authenticated requests on a vulnerable system.

    Source:CoreLabs
    Published:19 Jan 2018
    9.8
    Critical

    CVE-2017-11394

    Last Modified: 11 Oct 2017

    Proxy command injection vulnerability in Trend Micro OfficeScan 11 and XG (12) allows remote attackers to execute arbitrary code on vulnerable installations. The specific flaw can be exploited by parsing the T parameter within Proxy.php. Formerly ZDI-CAN-4544.

    Source:Mehmet Ince
    Published:3 Aug 2017
    9.8
    Critical

    CVE-2017-11366

    Last Modified: 20 Apr 2025

    components/filemanager/class.filemanager.php in Codiad before 2.8.4 is vulnerable to remote command execution because shell commands can be embedded in parameter values, as demonstrated by search_file_type.

    Published:21 Aug 2017
    5.5
    Medium

    CVE-2017-11359

    Last Modified: 31 Jul 2017

    The wavwritehdr function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted snd file, during conversion to a wav file.

    Source:qflb.wu
    Published:30 Jul 2017
    5.5
    Medium

    CVE-2017-11358

    Last Modified: 31 Jul 2017

    The read_samples function in hcom.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted hcom file.

    Source:qflb.wu
    Published:30 Jul 2017
    9.8
    Critical

    CVE-2017-11357

    Last Modified: 26 Jan 2018

    Progress Telerik UI for ASP.NET AJAX before R2 2017 SP2 does not properly restrict user input to RadAsyncUpload, which allows remote attackers to perform arbitrary file uploads or execute arbitrary code.

    Source:Paul Taylor
    Published:23 Aug 2017
    6.5
    Medium

    CVE-2017-11356

    Last Modified: 18 Jul 2017

    The application distribution export functionality in PEGA Platform 7.2 ML0 and earlier allows remote authenticated users with certain privileges to obtain sensitive configuration information by leveraging a missing access control.

    Source:Daniel Correa
    Published:2 Aug 2017
    6.1
    Medium

    CVE-2017-11355

    Last Modified: 18 Jul 2017

    Multiple cross-site scripting (XSS) vulnerabilities in PEGA Platform 7.2 ML0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO to the main page; the (2) beanReference parameter to the JavaBean viewer page; or the (3) pyTableName to the System database schema modification page.

    Source:Daniel Correa
    Published:2 Aug 2017
    9.8
    Critical

    CVE-2017-11346

    Last Modified: 24 Jul 2017

    Zoho ManageEngine Desktop Central before build 100092 allows remote attackers to execute arbitrary code via vectors involving the upload of help desk videos.

    Source:Kacper Szurek
    Published:16 Jul 2017
    5.5
    Medium

    CVE-2017-11333

    Last Modified: 31 Jul 2017

    The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.

    Source:qflb.wu
    Published:30 Jul 2017
    5.5
    Medium

    CVE-2017-11332

    Last Modified: 31 Jul 2017

    The startread function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted wav file.

    Source:qflb.wu
    Published:30 Jul 2017
    5.5
    Medium

    CVE-2017-11331

    Last Modified: 31 Jul 2017

    The wav_open function in oggenc/audio.c in Xiph.Org vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (memory allocation error) via a crafted wav file.

    Source:qflb.wu
    Published:30 Jul 2017
    5.5
    Medium

    CVE-2017-11330

    Last Modified: 31 Jul 2017

    The DivFixppCore::avi_header_fix function in DivFix++Core.cpp in DivFix++ v0.34 allows remote attackers to cause a denial of service (invalid memory write and application crash) via a crafted avi file.

    Source:qflb.wu
    Published:31 Jul 2017
    8.2
    High

    CVE-2017-11322

    Last Modified: 2 Oct 2017

    The chroothole_client executable in UCOPIA Wireless Appliance before 5.1.8 allows remote attackers to gain root privileges via a dollar sign ($) metacharacter in the argument to chroothole_client.

    Source:Sysdream
    Published:2 Oct 2017
    7.2
    High

    CVE-2017-11321

    Last Modified: 2 Oct 2017

    The restricted shell interface in UCOPIA Wireless Appliance before 5.1.8 allows remote authenticated users to gain 'admin' privileges via shell metacharacters in the less command.

    Source:Sysdream
    Published:2 Oct 2017
    6.1
    Medium

    CVE-2017-11320

    Last Modified: 8 Aug 2017

    Persistent XSS through the SSID of nearby Wi-Fi devices on Technicolor TC7337 routers 08.89.17.20.00 allows an attacker to cause DNS Poisoning and steal credentials from the router.

    Source:Geolado giolado
    Published:3 Aug 2017
    8.8
    High

    CVE-2017-11319

    Last Modified: 5 Dec 2017

    Perspective ICM Investigation & Case 5.1.1.16 allows remote authenticated users to modify access level permissions and consequently gain privileges by leveraging insufficient validation methods and missing cross server side checking mechanisms.

    Source:Konstantinos Alexiou
    Published:11 Dec 2017
    9.8
    Critical

    CVE-2017-11317

    Last Modified: 26 Jan 2018

    Telerik.Web.UI in Progress Telerik UI for ASP.NET AJAX before R1 2017 and R2 before R2 2017 SP2 uses weak RadAsyncUpload encryption, which allows remote attackers to perform arbitrary file uploads or execute arbitrary code.

    Source:Paul Taylor
    Published:23 Aug 2017
    9.6
    Critical

    CVE-2017-11309

    Last Modified: 26 Nov 2017

    Buffer overflow in the SoftConsole client in Avaya IP Office before 10.1.1 allows remote servers to execute arbitrary code via a long response.

    Source:hyp3rlinx
    Published:9 Nov 2017
    9.8
    Critical

    CVE-2017-11282

    Last Modified: 27 Sept 2017

    Adobe Flash Player has an exploitable memory corruption vulnerability in the MP4 atom parser. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlier.

    Source:Google Security Research
    Published:12 Sept 2017
    9.8
    Critical

    CVE-2017-11281

    Last Modified: 27 Sept 2017

    Adobe Flash Player has an exploitable memory corruption vulnerability in the text handling function. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlier.

    Source:Google Security Research
    Published:12 Sept 2017
    7.8
    High

    CVE-2017-11197

    Last Modified: 27 Sept 2017

    In CyberArk Viewfinity 5.5.10.95 and 6.x before 6.1.1.220, a low privilege user can escalate to an administrative user via a bug within the "add printer" option.

    Source:geoda
    Published:3 May 2023
    7.8
    High

    CVE-2017-11176

    Last Modified: 8 Oct 2018

    The mq_notify function in the Linux kernel through 4.11.9 does not set the sock pointer to NULL upon entry into the retry logic. During a user-space close of a Netlink socket, it allows attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact.

    Source:Lexfo
    Published:9 Jul 2017
    9.8
    Critical

    CVE-2017-11165

    Last Modified: 13 Jul 2017

    dataTaker DT80 dEX 1.50.012 allows remote attackers to obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI.

    Source:Nassim Asrir
    Published:12 Jul 2017
    7.5
    High

    CVE-2017-11155

    Last Modified: 8 Aug 2017

    An information exposure vulnerability in index.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to obtain sensitive system information via unspecified vectors.

    Source:Kacper Szurek
    Published:8 Aug 2017
    7.2
    High

    CVE-2017-11154

    Last Modified: 8 Aug 2017

    Unrestricted file upload vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to create arbitrary PHP scripts via the type parameter.

    Source:Kacper Szurek
    Published:8 Aug 2017
    9.8
    Critical

    CVE-2017-11153

    Last Modified: 8 Aug 2017

    Deserialization vulnerability in synophoto_csPhotoMisc.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to gain administrator privileges via a crafted serialized payload.

    Source:Kacper Szurek
    Published:8 Aug 2017
    7.5
    High

    CVE-2017-11152

    Last Modified: 8 Aug 2017

    Directory traversal vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to write arbitrary files via the path parameter.

    Source:Kacper Szurek
    Published:8 Aug 2017
    9.8
    Critical

    CVE-2017-11151

    Last Modified: 8 Aug 2017

    A vulnerability in synotheme_upload.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to upload arbitrary files without authentication via the logo_upload action.

    Source:Kacper Szurek
    Published:8 Aug 2017
    9.8
    Critical

    CVE-2017-11120

    Last Modified: 27 Sept 2017

    On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, an attacker can craft a malformed RRM neighbor report frame to trigger an internal buffer overflow in the Wi-Fi firmware, aka B-V2017061204.

    Source:Google Security Research
    Published:27 Sept 2017
    7.5
    High

    CVE-2017-10974

    Last Modified: 7 Jul 2017

    Yaws 1.91 allows Unauthenticated Remote File Disclosure via HTTP Directory Traversal with /%5C../ to port 8080. NOTE: this CVE is only about use of an initial /%5C sequence to defeat traversal protection mechanisms; the initial /%5C sequence was apparently not discussed in earlier research on this product.

    Source:hyp3rlinx
    Published:7 Jul 2017
    8.8
    High

    CVE-2017-10952

    Last Modified: 20 Apr 2025

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.2.0.2051. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the saveAs JavaScript function. The issue results from the lack of proper validation of user-supplied data, which can lead to writing arbitrary files into attacker controlled locations. An attacker can leverage this vulnerability to execute code under the context of the current process. Was ZDI-CAN-4518.

    Published:29 Aug 2017
    6.5
    Medium

    CVE-2017-10803

    Last Modified: 15 Feb 2018

    In Odoo 8.0, Odoo Community Edition 9.0 and 10.0, and Odoo Enterprise Edition 9.0 and 10.0, insecure handling of anonymization data in the Database Anonymization module allows remote authenticated privileged users to execute arbitrary Python code, because unpickle is used.

    Source:SecuriTeam
    Published:4 Jul 2017
    Unknown

    CVE-2017-10797

    https://github.com/n4xh4ck5/CVE-2017-10797

    7.5
    High

    CVE-2017-10688

    Last Modified: 6 Jul 2017

    In LibTIFF 4.0.8, there is a assertion abort in the TIFFWriteDirectoryTagCheckedLong8Array function in tif_dirwrite.c. A crafted input will lead to a remote denial of service attack.

    Source:team OWL337
    Published:29 Jun 2017