|
250951
|
8.8 |
HIGH
Network
|
adobe
|
acrobat_reader_dc acrobat_dc acrobat acrobat_reader
|
An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, and 11.0.22 and earlier versions. T…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-16362
|
2024-11-21 12:16 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250952
|
8.8 |
HIGH
Network
|
adobe
|
acrobat_reader_dc acrobat_dc acrobat acrobat_reader
|
An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, and 11.0.22 and earlier versions. T…
|
CWE-416
Use After Free
|
CVE-2017-16360
|
2024-11-21 12:16 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250953
|
6.1 |
MEDIUM
Network
|
geovap
|
reliance-scada
|
A Cross-site Scripting issue was discovered in Geovap Reliance SCADA Version 4.7.3 Update 2 and prior. This vulnerability could allow an unauthenticated attacker to inject arbitrary code.
|
CWE-79
Cross-site Scripting
|
CVE-2017-16721
|
2024-11-21 12:16 |
2017-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250954
|
7.5 |
HIGH
Network
|
debian canonical x
|
debian_linux ubuntu_linux libxcursor
|
libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack ve…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-16612
|
2024-11-21 12:16 |
2017-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250955
|
5.5 |
MEDIUM
Local
|
debian canonical x
|
debian_linux ubuntu_linux libxfont
|
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be trigge…
|
CWE-59
Link Following
|
CVE-2017-16611
|
2024-11-21 12:16 |
2017-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250956
|
8.8 |
HIGH
Network
|
otrs debian
|
otrs debian_linux
|
Code injection exists in Kernel/System/Spelling.pm in Open Ticket Request System (OTRS) 5 before 5.0.24, 4 before 4.0.26, and 3.3 before 3.3.20. In the agent interface, an authenticated remote attack…
|
CWE-94
Code Injection
|
CVE-2017-16664
|
2024-11-21 12:16 |
2017-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250957
|
9.8 |
CRITICAL
Network
|
openstack debian
|
swauth swift debian_linux
|
An issue was discovered in middleware.py in OpenStack Swauth through 1.2.0 when used with OpenStack Swift through 2.15.1. The Swift object store and proxy server are saving (unhashed) tokens retrieve…
|
CWE-287
Improper Authentication
|
CVE-2017-16613
|
2024-11-21 12:16 |
2017-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250958
|
8.8 |
HIGH
Network
|
busybox debian vmware redlion canonical
|
busybox debian_linux esxi n-tron_702-w_firmware n-tron_702m12-w_firmware ubuntu_linux
|
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and res…
|
CWE-94
Code Injection
|
CVE-2017-16544
|
2024-11-21 12:16 |
2017-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250959
|
9.8 |
CRITICAL
Network
|
qacctv
|
jooan_a5_ip_camera_firmware
|
On Jooan IP Camera A5 2.3.36 devices, an insecure FTP server does not require authentication, which allows remote attackers to read or replace core system files including those used for authenticatio…
|
CWE-287
Improper Authentication
|
CVE-2017-16566
|
2024-11-21 12:16 |
2017-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250960
|
7.5 |
HIGH
Network
|
moxa
|
nport_5110_firmware nport_5130_firmware nport_5150_firmware
|
An Injection issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Version 3.7 …
|
CWE-74
Injection
|
CVE-2017-16719
|
2024-11-21 12:16 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|