|
246961
|
9.1 |
CRITICAL
Network
|
opensuse
|
cryptctl
|
In cryptctl before version 2.0 a malicious server could send RPC requests that could overwrite files outside of the cryptctl key database.
|
CWE-20
Improper Input Validation
|
CVE-2017-9270
|
2024-11-21 12:35 |
2018-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246962
|
9.8 |
CRITICAL
Network
|
opensuse
|
libzypp
|
In libzypp before August 2018 GPG keys attached to YUM repositories were not correctly pinned, allowing malicious repository mirrors to silently downgrade to unsigned repositories with potential mali…
|
CWE-20
Improper Input Validation
|
CVE-2017-9269
|
2024-11-21 12:35 |
2018-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246963
|
6.5 |
MEDIUM
Network
|
opensuse
|
open_build_service
|
In the open build service before 201707022 the wipetrigger and rebuild actions checked the wrong project for permissions, allowing authenticated users to cause operations on projects where they did n…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-9268
|
2024-11-21 12:35 |
2018-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246964
|
5.4 |
MEDIUM
Network
|
microfocus
|
project_and_portfolio_management
|
A Remote Cross-Site Scripting vulnerability in HPE Project and Portfolio Management (PPM) version v9.30, v9.31, v9.32, v9.40 was found.
|
CWE-79
Cross-site Scripting
|
CVE-2017-8993
|
2024-11-21 12:35 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246965
|
5.3 |
MEDIUM
Local
|
hp
|
xp_storage_hitachi_global_link_manager
|
HPE XP Storage using Hitachi Global Link Manager (HGLM) has a local authenticated information disclosure vulnerability in HGLM version HGLM 6.3.0-00 to 8.5.2-00.
|
CWE-200
Information Exposure
|
CVE-2017-8985
|
2024-11-21 12:35 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246966
|
8.8 |
HIGH
Network
|
hp
|
intelligent_management_center
|
A remote code execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0506P03 was found.
|
NVD-CWE-noinfo
|
CVE-2017-8984
|
2024-11-21 12:35 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246967
|
8.8 |
HIGH
Network
|
hp
|
intelligent_management_center
|
A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P4 was found.
|
CWE-20
Improper Input Validation
|
CVE-2017-8983
|
2024-11-21 12:35 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246968
|
7.5 |
HIGH
Network
|
hp
|
intelligent_management_center
|
A Remote Authentication Restriction Bypass vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P4 was found.
|
NVD-CWE-noinfo
|
CVE-2017-8982
|
2024-11-21 12:35 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246969
|
9.8 |
CRITICAL
Network
|
hp
|
intelligent_management_center
|
A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0506 was found.
|
CWE-20
Improper Input Validation
|
CVE-2017-8981
|
2024-11-21 12:35 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246970
|
7.5 |
HIGH
Network
|
hp
|
intelligent_management_center
|
A Remote Disclosure of Information vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P2 was found.
|
CWE-200
Information Exposure
|
CVE-2017-8980
|
2024-11-21 12:35 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|