|
258351
|
8.1 |
HIGH
Network
|
private_address_check_project
|
private_address_check
|
The private_address_check ruby gem before 0.4.0 is vulnerable to a bypass due to use of Ruby's Resolv.getaddresses method, which is OS-dependent and should not be relied upon for security measures, s…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2017-0904
|
2024-11-21 12:03 |
2017-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258352
|
9.8 |
CRITICAL
Network
|
thoughtbot
|
paperclip
|
Paperclip ruby gem version 3.1.4 and later suffers from a Server-SIde Request Forgery (SSRF) vulnerability in the Paperclip::UriAdapter class. Attackers may be able to access information about intern…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2017-0889
|
2024-11-21 12:03 |
2017-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258353
|
9.8 |
CRITICAL
Network
|
rubygems debian canonical redhat
|
rubygems debian_linux ubuntu_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterp…
|
RubyGems versions between 2.0.0 and 2.6.13 are vulnerable to a possible remote code execution vulnerability. YAML deserialization of gem specifications can bypass class white lists. Specially crafted…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2017-0903
|
2024-11-21 12:03 |
2017-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258354
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An elevation of privilege vulnerability in the Motorola bootloader. Product: Android. Versions: Android kernel. Android ID: A-62345044.
|
NVD-CWE-noinfo
|
CVE-2017-0829
|
2024-11-21 12:03 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258355
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An elevation of privilege vulnerability in the Huawei bootloader. Product: Android. Versions: Android kernel. Android ID: A-34622855.
|
NVD-CWE-noinfo
|
CVE-2017-0828
|
2024-11-21 12:03 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258356
|
7.8 |
HIGH
Local
|
google
|
android
|
An elevation of privilege vulnerability in the MediaTek soc driver. Product: Android. Versions: Android kernel. Android ID: A-62539960. References: M-ALPS03353876, M-ALPS03353861, M-ALPS03353869, M-A…
|
NVD-CWE-noinfo
|
CVE-2017-0827
|
2024-11-21 12:03 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258357
|
7.8 |
HIGH
Local
|
google
|
android
|
An elevation of privilege vulnerability in the HTC bootloader. Product: Android. Versions: Android kernel. Android ID: A-34949781.
|
NVD-CWE-noinfo
|
CVE-2017-0826
|
2024-11-21 12:03 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258358
|
7.5 |
HIGH
Network
|
google
|
android
|
An information disclosure vulnerability in the Broadcom wifi driver. Product: Android. Versions: Android kernel. Android ID: A-37305633. References: B-V2017063002.
|
CWE-200
Information Exposure
|
CVE-2017-0825
|
2024-11-21 12:03 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258359
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An elevation of privilege vulnerability in the Broadcom wifi driver. Product: Android. Versions: Android kernel. Android ID: A-37622847. References: B-V2017063001.
|
NVD-CWE-noinfo
|
CVE-2017-0824
|
2024-11-21 12:03 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258360
|
7.5 |
HIGH
Network
|
google
|
android
|
An information disclosure vulnerability in the Android system (rild). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37896655.
|
CWE-200
Information Exposure
|
CVE-2017-0823
|
2024-11-21 12:03 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|