|
248941
|
5.5 |
MEDIUM
Local
|
linux canonical
|
linux_kernel ubuntu_linux
|
In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before 4.11.3, local users could cause a denial of service by division-by-zero in the serial device layer by trying to set ve…
|
CWE-369
Divide By Zero
|
CVE-2017-18360
|
2024-11-21 12:19 |
2019-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248942
|
7.5 |
HIGH
Network
|
postgis debian
|
postgis debian_linux
|
PostGIS 2.x before 2.3.3, as used with PostgreSQL, allows remote attackers to cause a denial of service via crafted ST_AsX3D function input, as demonstrated by an abnormal server termination for "SEL…
|
CWE-20
Improper Input Validation
|
CVE-2017-18359
|
2024-11-21 12:19 |
2019-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248943
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_820_firmware sd_820a_firmware sd_835_firmware sd…
|
Improper access control on secure display buffers in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 820, SD 82…
|
NVD-CWE-noinfo
|
CVE-2017-18331
|
2024-11-21 12:19 |
2019-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248944
|
9.8 |
CRITICAL
Network
|
qualcomm
|
mdm9635m_firmware mdm9645_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware sd_835_firmware sd_845_firmware sd_850_firmware
|
AGPS session failure in GNSS module due to cyphersuites are hardcoded and needed manual update everytime in snapdragon mobile and snapdragon wear in versions MDM9635M, MDM9645, MDM9650, MDM9655, MSM8…
|
CWE-310
Cryptographic Issues
|
CVE-2017-18160
|
2024-11-21 12:19 |
2019-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248945
|
5.5 |
MEDIUM
Local
|
qualcomm
|
mdm9607_firmware mdm9635m_firmware mdm9640_firmware mdm9645_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware<…
|
Security keys are logged when any WCDMA call is configured or reconfigured in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MD…
|
CWE-200
Information Exposure
|
CVE-2017-18332
|
2024-11-21 12:19 |
2019-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248946
|
6.1 |
MEDIUM
Network
|
limesurvey
|
limesurvey
|
LimeSurvey before 2.72.4 has Stored XSS by using the Continue Later (aka Resume later) feature to enter an email address, which is mishandled in the admin panel.
|
CWE-79
Cross-site Scripting
|
CVE-2017-18358
|
2024-11-21 12:19 |
2019-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248947
|
6.5 |
MEDIUM
Network
|
shopware
|
shopware
|
Shopware before 5.3.4 has a PHP Object Instantiation issue via the sort parameter to the loadPreviewAction() method of the Shopware_Controllers_Backend_ProductStream controller, with resultant XXE vi…
|
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
|
CVE-2017-18357
|
2024-11-21 12:19 |
2019-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248948
|
8.8 |
HIGH
Network
|
woocommerce
|
woocommerce
|
In the Automattic WooCommerce plugin before 3.2.4 for WordPress, an attack is possible after gaining access to the target site with a user account that has at least Shop manager privileges. The attac…
|
CWE-94
Code Injection
|
CVE-2017-18356
|
2024-11-21 12:19 |
2019-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248949
|
5.5 |
MEDIUM
Local
|
qualcomm
|
mdm9650_firmware mdm9655_firmware sd_835_firmware sda660_firmware
|
Security keys used by the terminal and NW for a session could be leaked in snapdragon mobile in versions MDM9650, MDM9655, SD 835, SDA660.
|
CWE-200
Information Exposure
|
CVE-2017-18321
|
2024-11-21 12:19 |
2019-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248950
|
7.8 |
HIGH
Local
|
qualcomm
|
ipq8074_firmware mdm9206_firmware mdm9607_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware…
|
Buffer overflow in AES-CCM and AES-GCM encryption via initialization vector in snapdragon automobile, snapdragon mobile and snapdragon wear in versions IPQ8074, MDM9206, MDM9607, MDM9635M, MDM9640, M…
|
NVD-CWE-noinfo
|
CVE-2017-18330
|
2024-11-21 12:19 |
2019-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|