|
248021
|
6.5 |
MEDIUM
Network
|
hp
|
matrix_operating_environment
|
A remote clickjacking vulnerability in HPE Matrix Operating Environment version v7.6 was found.
|
CWE-20
Improper Input Validation
|
CVE-2017-5780
|
2024-11-21 12:28 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248022
|
7.8 |
HIGH
Local
|
intel
|
graphics_driver
|
Pointer dereference in subsystem in Intel Graphics Driver 15.40.x.x, 15.45.x.x, 15.46.x.x allows unprivileged user to elevate privileges via local access.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-5727
|
2024-11-21 12:28 |
2018-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248023
|
5.5 |
MEDIUM
Local
|
intel
|
minnowboard_3_firmware
|
Input validation error in Intel MinnowBoard 3 Firmware versions prior to 0.65 allow local attacker to cause denial of service via UEFI APIs.
|
CWE-20
Improper Input Validation
|
CVE-2017-5699
|
2024-11-21 12:28 |
2018-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248024
|
7.8 |
HIGH
Local
|
intel
|
graphics_driver
|
Untrusted search path in Intel Graphics Driver 15.40.x.x, 15.45.x.x, and 21.20.x.x allows unprivileged user to elevate privileges via local access.
|
CWE-426
Untrusted Search Path
|
CVE-2017-5696
|
2024-11-21 12:28 |
2018-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248025
|
9.8 |
CRITICAL
Network
|
newsbee_project
|
newsbee
|
SQL injection vulnerability in NewsBee CMS allow remote attackers to execute arbitrary SQL commands.
|
CWE-89
SQL Injection
|
CVE-2017-5971
|
2024-11-21 12:28 |
2018-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248026
|
5.6 |
MEDIUM
Local
|
intel arm
|
core_i7 core_i5 core_i3 xeon_e7 xeon_silver xeon_gold xeon_platinum xeon_phi core_m3 core_m7 core_m5 core_m xeon_e5 xeon_e3 xeon pentium_n pentium_j
|
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel a…
|
CWE-200
Information Exposure
|
CVE-2017-5754
|
2024-11-21 12:28 |
2018-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248027
|
5.6 |
MEDIUM
Local
|
intel canonical debian oracle synology opensuse suse arm pepperl-fuchs netapp phoenixcontact siemens vmware
|
core_i7 core_i5 core_i3 xeon_e7 xeon_silver xeon_gold xeon_platinum xeon_phi core_m3 core_m7 core_m5 core_m xeon_e5 xeon_e3 xeon pentium_n pentium_j
|
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2017-5753
|
2024-11-21 12:28 |
2018-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248028
|
5.6 |
MEDIUM
Local
|
intel arm canonical netapp siemens debian oracle
|
core_i7 core_i5 core_i3 xeon_e7 xeon_silver xeon_gold xeon_platinum xeon_phi core_m3 core_m7 core_m5 core_m xeon_e5 xeon_e3 xeon pentium_n pentium_j
|
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel a…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2017-5715
|
2024-11-21 12:28 |
2018-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248029
|
9.8 |
CRITICAL
Network
|
apache hp
|
flex_blazeds xp_command_view_advanced_edition
|
Previous versions of Apache Flex BlazeDS (4.7.2 and earlier) did not restrict which types were allowed for AMF(X) object deserialization by default. During the deserialization process code is execute…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2017-5641
|
2024-11-21 12:28 |
2017-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248030
|
8.8 |
HIGH
Network
|
apache
|
fineract
|
In Apache Fineract 0.4.0-incubating, 0.5.0-incubating, and 0.6.0-incubating, an authenticated user with client/loan/center/staff/group read permissions is able to inject malicious SQL into SELECT que…
|
CWE-89
SQL Injection
|
CVE-2017-5663
|
2024-11-21 12:28 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|