|
255281
|
5.3 |
MEDIUM
Adjacent
|
debian freebsd canonical opensuse redhat w1.fi suse
|
debian_linux freebsd ubuntu_linux leap enterprise_linux_server enterprise_linux_desktop hostapd wpa_supplicant linux_enterprise_server linux_enterprise_desktop openstack…
|
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the group key handshake, allowing an attacker within radio range to replay frames from access points…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2017-13080
|
2024-11-21 12:10 |
2017-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255282
|
5.3 |
MEDIUM
Adjacent
|
debian freebsd canonical opensuse redhat w1.fi suse
|
debian_linux freebsd ubuntu_linux leap enterprise_linux_server enterprise_linux_desktop hostapd wpa_supplicant linux_enterprise_server linux_enterprise_desktop openstack…
|
Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integrity Group Temporal Key (IGTK) during the four-way handshake, allowing an attacker within radio rang…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2017-13079
|
2024-11-21 12:10 |
2017-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255283
|
5.3 |
MEDIUM
Adjacent
|
debian freebsd canonical opensuse redhat w1.fi suse
|
debian_linux freebsd ubuntu_linux leap enterprise_linux_server enterprise_linux_desktop hostapd wpa_supplicant linux_enterprise_server linux_enterprise_desktop openstack…
|
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the four-way handshake, allowing an attacker within radio range to replay frames from access points …
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2017-13078
|
2024-11-21 12:10 |
2017-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255284
|
6.8 |
MEDIUM
Adjacent
|
debian freebsd canonical opensuse redhat w1.fi suse
|
debian_linux freebsd ubuntu_linux leap enterprise_linux_server enterprise_linux_desktop hostapd wpa_supplicant linux_enterprise_server linux_enterprise_desktop openstack…
|
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the four-way handshake, allowing an attacker within radio range to replay, dec…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2017-13077
|
2024-11-21 12:10 |
2017-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255285
|
5.3 |
MEDIUM
Network
|
silverstripe
|
silverstripe
|
Response discrepancy in the login and password reset forms in SilverStripe CMS before 3.5.5 and 3.6.x before 3.6.1 allows remote attackers to enumerate users via timing attacks.
|
CWE-200
Information Exposure
|
CVE-2017-12849
|
2024-11-21 12:10 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255286
|
9.8 |
CRITICAL
Network
|
epson
|
easymp
|
The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-screen - ensuring only t…
|
CWE-521
Weak Password Requirements
|
CVE-2017-12861
|
2024-11-21 12:10 |
2017-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255287
|
9.8 |
CRITICAL
Network
|
epson
|
easymp
|
The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-screen - ensuring only t…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-12860
|
2024-11-21 12:10 |
2017-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255288
|
9.8 |
CRITICAL
Network
|
qnap
|
music_station
|
QNAP discovered a number of command injection vulnerabilities found in Music Station versions 4.8.6 (for QTS 4.2.x), 5.0.7 (for QTS 4.3.x), and earlier. If exploited, these vulnerabilities may allow …
|
CWE-77
Command Injection
|
CVE-2017-13069
|
2024-11-21 12:10 |
2017-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255289
|
7.5 |
HIGH
Network
|
qnap
|
qts_helpdesk
|
QNAP has already patched this vulnerability. This security concern allows a remote attacker to perform an SQL injection on the application and obtain Helpdesk application information. A remote attack…
|
CWE-89
SQL Injection
|
CVE-2017-13068
|
2024-11-21 12:10 |
2017-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255290
|
7.8 |
HIGH
Local
|
myscada
|
mypro
|
An Unquoted Search Path issue was discovered in mySCADA myPRO Versions 7.0.26 and prior. Application services utilize unquoted search path elements, which could allow an attacker to execute arbitrary…
|
CWE-428
Unquoted Search Path or Element
|
CVE-2017-12730
|
2024-11-21 12:10 |
2017-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|