Search

Found 13,013 results in 644ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2017-11006 critical 9.8 9.8 9y ago In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a Use After Free condition can occur during positioning.
CVE-2017-11005 critical 9.8 9.8 9y ago In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a Use After Free condition can occur during a deinitialization path.
CVE-2017-9709 critical 9.8 9.8 9y ago In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a privilege escalation vulnerability exists in telephony.
CVE-2017-15813 critical 9.8 9.8 9y ago In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a buffer overflow can occur while reading firmware logs.
CVE-2017-14907 critical 9.8 9.8 9y ago In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, cryptographic strength is reduced while deriving disk encryption key.
CVE-2016-1253 critical 9.8 9.8 FIX debian debian debian 9y ago The most package in Debian wheezy before 5.0.0a-2.2, in Debian jessie before 5.0.0a-2.3+deb8u1, and in Debian unstable before 5.0.0a-3 allows remote attackers to execute arbitrary commands via shell …
CVE-2017-16930 critical 9.8 10.0 EXP claymore_dual_miner_project 9y ago The remote management interface on the Claymore Dual GPU miner 10.1 allows an unauthenticated remote attacker to execute arbitrary code due to a stack-based buffer overflow in the request handler. Th…
CVE-2017-14487 critical 9.1 9.1 ohmibod 9y ago The OhMiBod Remote app for Android and iOS allows remote attackers to impersonate users by sniffing network traffic for search responses from the OhMiBod API server and then editing the username, use…
CVE-2017-13664 critical 9.8 9.8 9y ago Password file exposure in firmware in iSmartAlarm CubeOne version 2.2.4.8 and earlier allows attackers to execute arbitrary commands with administrative privileges by retrieving credentials from this…
CVE-2017-15702 critical 9.8 9.8 apache 9y ago Apache Qpid Broker vulnerable to authentication port spoofing
CVE-2017-10903 critical 9.8 9.8 9y ago Improper authentication issue in PTW-WMS1 firmware version 2.000.012 allows remote attackers to log in to the device with root privileges and conduct arbitrary operations via unspecified vectors.
CVE-2017-10902 critical 9.8 9.8 9y ago PTW-WMS1 firmware version 2.000.012 allows remote attackers to execute arbitrary OS commands via unspecified vectors.
CVE-2017-10900 critical 9.8 9.8 9y ago PTW-WMS1 firmware version 2.000.012 allows remote attackers to bypass access restrictions to obtain or delete data on the disk via unspecified vectors.
CVE-2017-10899 critical 9.8 9.8 ark-web 9y ago SQL injection vulnerability in the A-Reserve and A-Reserve for MT cloud versions 3.8.6 and earlier allows an attacker to execute arbitrary SQL commands via unspecified vectors.
CVE-2017-10898 critical 9.8 9.8 ark-web 9y ago SQL injection vulnerability in the A-Member and A-Member for MT cloud versions 3.8.6 and earlier allows an attacker to execute arbitrary SQL commands via unspecified vectors.
CVE-2017-10861 critical 9.1 9.1 qualitysoft 9y ago Directory traversal vulnerability in QND Advance/Standard allows an attacker to read arbitrary files via a specially crafted command.
CVE-2017-17086 critical 9.8 9.8 inedo 9y ago Indeo Otter through 1.7.4 mishandles a "</script>" substring in an initial DP payload, which allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact, as…
CVE-2017-15607 critical 9.8 9.8 inedo 9y ago Inedo Otter before 1.7.4 has directory traversal in filesystem-based rafts via vectors involving '/' characters or initial '.' characters, aka OT-181.
CVE-2017-11284 critical 9.8 9.8 adobe 9y ago Adobe ColdFusion has an Untrusted Data Deserialization vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
CVE-2017-11283 critical 9.8 9.8 adobe 9y ago Adobe ColdFusion has an Untrusted Data Deserialization vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
CVE-2017-11282 critical 9.8 10.0 EXP macos macos linux-kernel rhel adobe 9y ago Adobe Flash Player has an exploitable memory corruption vulnerability in the MP4 atom parser. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlier.
CVE-2017-11281 critical 9.8 10.0 EXP macos macos linux-kernel rhel adobe 9y ago Adobe Flash Player has an exploitable memory corruption vulnerability in the text handling function. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlie…
CVE-2017-12372 critical 9.6 9.6 cisco 9y ago A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files.…
CVE-2017-12371 critical 9.6 9.6 cisco 9y ago A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files.…
CVE-2017-12370 critical 9.6 9.6 cisco 9y ago A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files.…
CVE-2017-12369 critical 9.6 9.6 cisco 9y ago A "Cisco WebEx Network Recording Player Out-of-Bounds Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remot…
CVE-2017-12368 critical 9.6 9.6 cisco 9y ago A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files.…
CVE-2017-12367 critical 9.6 9.6 cisco 9y ago A "Cisco WebEx Network Recording Player Denial of Service Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A r…
CVE-2017-17067 critical 9.8 9.8 splunk 9y ago Splunk Web in Splunk Enterprise 7.0.x before 7.0.0.1, 6.6.x before 6.6.3.2, 6.5.x before 6.5.6, 6.4.x before 6.4.9, and 6.3.x before 6.3.12, when the SAML authType is enabled, mishandles SAML, which …
CVE-2017-14591 critical 9.0 9.0 atlassian 9y ago Atlassian Fisheye and Crucible versions less than 4.4.3 and version 4.5.0 are vulnerable to argument injection through filenames in Mercurial repositories, allowing attackers to execute arbitrary cod…
CVE-2017-14189 critical 9.8 9.8 fortinet 9y ago An improper access control vulnerability in Fortinet FortiWebManager 5.8.0 allows anyone that can access the admin webUI to successfully log-in regardless the provided password.
CVE-2017-8818 critical 9.8 9.8 FIX arch archdebian debian haxx 9y ago curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact because too litt…
CVE-2017-8817 critical 9.8 9.8 FIX arch arch slesdebian debian haxx 9y ago The FTP wildcard function in curl and libcurl before 7.57.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) or possibly have unspecified other impact v…
CVE-2017-8816 critical 9.8 9.8 FIX arch arch slesdebian debian haxx 9y ago The NTLM authentication feature in curl and libcurl before 7.57.0 on 32-bit platforms allows attackers to cause a denial of service (integer overflow and resultant buffer overflow, and application cr…
CVE-2017-14378 critical 10.0 10.0 emc 9y ago EMC RSA Authentication Agent API 8.5 for C and RSA Authentication Agent SDK 8.6 for C allow attackers to bypass authentication, aka an "Error Handling Vulnerability."
CVE-2017-14377 critical 9.8 9.8 rsa 9y ago EMC RSA Authentication Agent for Web: Apache Web Server version 8.0 and RSA Authentication Agent for Web: Apache Web Server version 8.0.1 prior to Build 618 have a security vulnerability that could p…
CVE-2017-9315 critical 9.8 9.8 9y ago Customer of Dahua IP camera or IP PTZ could submit relevant device information to receive a time limited temporary password from Dahua authorized dealer to reset the admin password. The algorithm use…
CVE-2017-8020 critical 9.8 9.8 emc 9y ago An issue was discovered in EMC ScaleIO 2.0.1.x. A buffer overflow vulnerability in the SDBG service may potentially allow a remote unauthenticated attacker to execute arbitrary commands with root pri…
CVE-2017-14746 critical 9.8 9.8 FIX arch arch slesdebian debian samba 9y ago Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary code via a crafted SMB1 request.
CVE-2017-14586 critical 9.8 9.8 atlassian 9y ago The Hipchat for Mac desktop client is vulnerable to client-side remote code execution via video call link parsing. Hipchat for Mac desktop clients at or above version 4.0 and before version 4.30 are …
CVE-2017-1001003 critical 9.8 9.8 mathjs_project 9y ago Arbitrary Code Execution in mathjs
CVE-2017-1001002 critical 9.8 9.8 mathjs 9y ago Arbitrary Code Execution in mathjs
CVE-2017-1000214 critical 9.8 9.8 gitphp_project 9y ago GitPHP by xiphux is vulnerable to OS Command Injections
CVE-2017-8045 critical 9.8 9.8 pivotal_software 9y ago Deserialization of Untrusted Data in Spring AMQP
CVE-2017-16943 critical 9.8 9.8 FIX arch archdebian debian exim 9y ago The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via vectors involving BD…
CVE-2017-16935 critical 9.8 10.0 EXP ametys 9y ago Ametys before 4.0.3 requires authentication only for URIs containing a /cms/ substring, which allows remote attackers to bypass intended access restrictions via a direct request to /plugins/core-ui/s…
CVE-2017-16934 critical 9.8 10.0 EXP dbltek 9y ago The web server on DBL DBLTek devices allows remote attackers to execute arbitrary OS commands by obtaining the admin password via a frame.html?content=/dev/mtdblock/5 request, and then using this pas…
CVE-2017-16931 critical 9.8 9.8 FIX slesdebian debian xmlsoft 9y ago parser.c in libxml2 before 2.9.5 mishandles parameter-entity references because the NEXTL macro calls the xmlParserHandlePEReference function in the case of a '%' character in a DTD name.
CVE-2017-13701 critical 9.8 9.8 9y ago An issue was discovered on MOXA EDS-G512E 5.1 build 16072215 devices. The backup file contains sensitive information in a insecure way. There is no salt for password hashing. Indeed passwords are sto…
CVE-2017-15088 critical 9.8 9.8 FIX arch arch slesdebian debian mit 9y ago plugins/preauth/pkinit/pkinit_crypto_openssl.c in MIT Kerberos 5 (aka krb5) through 1.15.2 mishandles Distinguished Name (DN) fields, which allows remote attackers to execute arbitrary code or cause …
CVE-2017-8129 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packe…
CVE-2017-8128 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packe…
CVE-2017-8126 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packets to exploit…
CVE-2017-8124 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packets to exploit…
CVE-2017-8123 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packets to exploit…
CVE-2017-8122 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packets to exploit…
CVE-2017-8120 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packe…
CVE-2017-8119 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packe…
CVE-2017-8117 critical 9.8 9.8 huawei 9y ago The UMA product with software V200R001 and V300R001 has a privilege elevation vulnerability due to insufficient validation or improper processing of parameters. An attacker could craft specific packe…
CVE-2017-2738 critical 9.8 9.8 9y ago VCM5010 with software versions earlier before V100R002C50SPC100 has an authentication bypass vulnerability. This is due to improper implementation of authentication for accessing web pages. An unauth…
CVE-2017-13071 critical 9.8 9.8 qnap 9y ago QNAP has already patched this vulnerability. This security concern allows a remote attacker to run arbitrary commands on the QNAP Video Station 5.1.3 (for QTS 4.3.3), 5.2.0 (for QTS 4.3.4), and earli…
CVE-2017-8864 critical 9.8 9.8 9y ago Client-side enforcement using JavaScript of server-side security options on the Cohu 3960HD allows an attacker to manipulate options sent to the camera and cause malfunction or code execution, as dem…
CVE-2017-8862 critical 9.8 9.8 9y ago The webupgrade function on the Cohu 3960HD does not verify the firmware upgrade files or process, allowing an attacker to upload a specially crafted postinstall.sh file that will be executed with "ro…
CVE-2017-8861 critical 9.8 9.8 9y ago Missing authentication for the remote configuration port 1236/tcp on the Cohu 3960HD allows an attacker to change configuration parameters such as IP address and username/password via specially craft…
CVE-2017-16926 critical 9.8 9.8 FIX debian debian ohcount_project 9y ago Ohcount 3.0.0 is prone to a command injection via specially crafted filenames containing shell metacharacters, which can be exploited by an attacker (providing a source tree for Ohcount processing) t…
CVE-2015-3934 critical 9.8 10.0 EXP fiyo 9y ago Multiple SQL injection vulnerabilities in Fiyo CMS 2.0_1.9.1 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to apps/app_article/controller/rating.php or (2) user pa…
CVE-2017-5719 critical 9.8 9.8 intel 9y ago A vulnerability in the Intel Deep Learning Training Tool Beta 1 allows a network attacker to remotely execute code as a local user.
CVE-2017-16920 critical 9.8 9.8 finecms 9y ago v5/config/system.php in dayrui FineCms 5.2.0 has a default SYS_KEY value and does not require key regeneration for each installation, which allows remote attackers to upload arbitrary .php files via …
CVE-2017-16613 critical 9.8 9.8 debian debian openstack 9y ago An issue was discovered in middleware.py in OpenStack Swauth through 1.2.0 when used with OpenStack Swift through 2.15.1. The Swift object store and proxy server are saving (unhashed) tokens retrieve…
CVE-2017-16840 critical 9.8 9.8 FIX arch archdebian debian ffmpeg 9y ago The VC-2 Video Compression encoder in FFmpeg 3.0 and 3.4 allows remote attackers to cause a denial of service (out-of-bounds read) because of incorrect buffer padding for non-Haar wavelets, related t…
CVE-2017-16903 critical 9.8 9.8 lvyecms_project 9y ago LvyeCMS through 3.1 allows remote attackers to upload and execute arbitrary PHP code via directory traversal sequences in the dir parameter, in conjunction with PHP code in the content parameter, wit…
CVE-2017-16896 critical 9.8 9.8 FIX debian debian tt-rss 9y ago A SQL injection in classes/handler/public.php in the forgotpass component of Tiny Tiny RSS 17.4 exists via the login parameter.
CVE-2017-11402 critical 9.8 9.8 9y ago An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. Design flaws in OPC classic and in custom netfilter modules allow an attacker to remotely activat…
CVE-2017-11401 critical 9.8 9.8 9y ago An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. Improper handling of the mbap.length field of ModBus packets in the ModBus DPI filter allows an a…
CVE-2017-16566 critical 9.8 9.8 9y ago On Jooan IP Camera A5 2.3.36 devices, an insecure FTP server does not require authentication, which allows remote attackers to read or replace core system files including those used for authenticatio…
CVE-2017-16845 critical 10.0 10.0 FIX slesdebian debianubuntu ubuntu qemu 9y ago hw/input/ps2.c in Qemu does not validate 'rptr' and 'count' values during guest migration, leading to out-of-bounds access.
CVE-2017-1000215 critical 9.8 9.8 FIX slesdebian debian xrootd 9y ago ROOT xrootd version 4.6.0 and below is vulnerable to an unauthenticated shell command injection resulting in remote code execution
CVE-2017-1000169 critical 9.8 9.8 quickerbb_project 9y ago QuickerBB version <= 0.7.2 is vulnerable to arbitrary file writes which can lead to remote code execution. This can lead to the complete takeover of the server hosting QuickerBB.
CVE-2017-1000192 critical 9.8 9.8 cygnux 9y ago Cygnux sysPass version 2.1.7 and older is vulnerable to a Local File Inclusion in the functionality of javascript files inclusion. The attacker can read the configuration files that contain the login…
CVE-2017-1000212 critical 9.8 9.8 alchemist-elixir 9y ago alchemist.vim vulnerable to remote code execution
CVE-2017-1000206 critical 9.8 9.8 FIX debian debian htslib 9y ago samtools htslib library version 1.4.0 and earlier is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execution
CVE-2017-16872 critical 9.8 9.8 debian debian teluu 9y ago An issue was discovered in Teluu pjproject (pjlib and pjlib-util) in PJSIP before 2.7.1. Parsing the numeric header fields in a SIP message (like cseq, ttl, port, etc.) all had the potential to overf…
CVE-2017-1000158 critical 9.8 9.8 FIX slesdebian debian python 9y ago CPython (aka Python) up to 2.7.13 is vulnerable to an integer overflow in the PyString_DecodeEscape function in stringobject.c, resulting in heap-based buffer overflow (and possible arbitrary code ex…
CVE-2017-1000232 critical 9.8 9.8 FIX slesdebian debian nlnetlabs 9y ago A double-free vulnerability in str2host.c in ldns 1.7.0 have unspecified impact and attack vectors.
CVE-2017-1000231 critical 9.8 9.8 FIX slesdebian debian nlnetlabs 9y ago A double-free vulnerability in parse.c in ldns 1.7.0 have unspecified impact and attack vectors.
CVE-2017-1000228 critical 9.8 9.8 FIX debian debian ejs 9y ago nodejs ejs versions older than 2.5.3 is vulnerable to remote code execution due to weak input validation in ejs.renderFile() function
CVE-2017-1000173 critical 9.8 9.8 creolabs 9y ago Creolabs Gravity Version: 1.0 Heap Overflow Potential Code Execution. By creating a large loop whiling pushing data to a buffer, we can break out of the bounds checking of that buffer. When list.join…
CVE-2017-1000172 critical 9.8 9.8 creolabs 9y ago Creolabs Gravity Version: 1.0 Use-After-Free Possible code execution. An example of a Heap-Use-After-Free after the 'sublexer' pointer has been freed. Line 542 of gravity_lexer.c. 'lexer' is being us…
CVE-2017-1000197 critical 9.8 9.8 octobercms 9y ago October CMS build 412 is vulnerable to file path modification in asset move functionality resulting in creating creating malicious files on the server.
CVE-2017-1000196 critical 9.8 9.8 octobercms 9y ago October CMS build 412 is vulnerable to PHP code execution in the asset manager functionality resulting in site compromise and possibly other applications on the server.
CVE-2017-1000194 critical 9.8 9.8 octobercms 9y ago October CMS File Upload Vulnerability
CVE-2017-1000220 critical 9.8 9.8 pidusage_project 9y ago PIDUsage Enables OS Command Injection
CVE-2017-1000210 critical 9.8 9.8 altran 9y ago picoTCP (versions 1.7.0 - 1.5.0) is vulnerable to stack buffer overflow resulting in code execution or denial of service attack
CVE-2017-1000219 critical 9.8 9.8 windows-cpu_project 9y ago Command Execution in windows-cpu
CVE-2017-1000218 critical 9.8 9.8 hfiref0x 9y ago LightFTP version 1.1 is vulnerable to a buffer overflow in the "writelogentry" function resulting a denial of services or a remote code execution.
CVE-2017-0854 critical 9.1 9.1 9y ago An information disclosure vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63873837.
CVE-2017-0853 critical 9.1 9.1 9y ago An information disclosure vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63121644.
CVE-2017-0847 critical 9.8 9.8 9y ago An elevation of privilege vulnerability in the Android media framework (mediaanalytics). Product: Android. Versions: 8.0. Android ID: A-65540999.
CVE-2017-16851 critical 9.8 9.8 zohocorp 9y ago Zoho ManageEngine Applications Manager 13 before build 13530 allows SQL injection via the /MyPage.do widgetid parameter.
CVE-2017-16850 critical 9.8 9.8 zohocorp 9y ago Zoho ManageEngine Applications Manager 13 before build 13530 allows SQL injection via the /showresource.do resourceid parameter in a getResourceProfiles action.