|
249701
|
6.5 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
The backend component in Open-Xchange OX App Suite before 7.6.3-rev35, 7.8.x before 7.8.2-rev38, 7.8.3 before 7.8.3-rev41, and 7.8.4 before 7.8.4-rev19 allows remote authenticated users to save arbit…
|
CWE-79
Cross-site Scripting
|
CVE-2017-17062
|
2024-11-21 12:17 |
2018-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249702
|
7.5 |
HIGH
Network
|
huawei
|
hg255s-10_firmware
|
Huawei HG255s-10 V100R001C163B025SP02 has a path traversal vulnerability due to insufficient validation of the received HTTP requests, a remote attacker may access the local files on the device witho…
|
CWE-22
Path Traversal
|
CVE-2017-17309
|
2024-11-21 12:17 |
2018-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249703
|
7.8 |
HIGH
Local
|
huawei
|
mate_9_pro_fimware
|
Due to insufficient parameters verification GPU driver of Mate 9 Pro Huawei smart phones with the versions before LON-AL00B 8.0.0.356(C00) has an arbitrary memory free vulnerability. An attacker can …
|
CWE-20
Improper Input Validation
|
CVE-2017-17173
|
2024-11-21 12:17 |
2018-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249704
|
7.3 |
HIGH
Local
|
huawei
|
lyo-l21
|
Huawei smart phones LYO-L21 with software LYO-L21C479B107, LYO-L21C479B107 have a privilege escalation vulnerability. An authenticated, local attacker can crafts malformed packets after tricking a us…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2017-17172
|
2024-11-21 12:17 |
2018-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249705
|
6.5 |
MEDIUM
Network
|
opcfoundation
|
local_discovery_server
|
OPC Foundation Local Discovery Server (LDS) 1.03.370 required a security update to resolve multiple vulnerabilities that allow attackers to trigger a crash by placing invalid data into the configurat…
|
CWE-20
Improper Input Validation
|
CVE-2017-17443
|
2024-11-21 12:17 |
2018-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249706
|
4.2 |
MEDIUM
Local
|
huawei
|
mate_8_firmware p9_firmware p9_plus_firmware
|
Some Huawei smart phones have the denial of service (DoS) vulnerability due to the improper processing of malicious parameters. An attacker may trick a target user into installing a malicious APK and…
|
CWE-20
Improper Input Validation
|
CVE-2017-17171
|
2024-11-21 12:17 |
2018-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249707
|
5.3 |
MEDIUM
Network
|
huawei
|
dp300_firmware rp200_firmware te30_firmware te40_firmware te50_firmware te60_firmware
|
Huawei DP300 V500R002C00; RP200 V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; TE50 V500R002C00; V600R006C00; TE60 V100R001C10; V500R002C00; V600R006C00 have …
|
CWE-20
Improper Input Validation
|
CVE-2017-17315
|
2024-11-21 12:17 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249708
|
4.6 |
MEDIUM
Physics
|
huawei
|
berlin-l21hn_firmware prague-al00a_firmware prague-al00b_firmware prague-al00c_firmware prague-l31_firmware prague-tl00a_firmware prague-tl10a_firmware
|
Some Huawei smart phones with the versions before Berlin-L21HNC185B381; the versions before Prague-AL00AC00B223; the versions before Prague-AL00BC00B223; the versions before Prague-AL00CC00B223; the …
|
CWE-20
Improper Input Validation
|
CVE-2017-17158
|
2024-11-21 12:17 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249709
|
6.1 |
MEDIUM
Network
|
atlassian
|
application_links
|
The invalidRedirectUrl template in Atlassian Application Links before version 5.2.7, from version 5.3.0 before version 5.3.4 and from version 5.4.0 before version 5.4.3 allows remote attackers to inj…
|
CWE-79
Cross-site Scripting
|
CVE-2017-16860
|
2024-11-21 12:17 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249710
|
8.8 |
HIGH
Network
|
dlink
|
dcs-5009_firmware dcs-5010_firmware dcs-5020l_firmware
|
On D-Link DCS-5009 devices with firmware 1.08.11 and earlier, DCS-5010 devices with firmware 1.14.09 and earlier, and DCS-5020L devices with firmware before 1.15.01, command injection in alphapd (bin…
|
CWE-78
OS Command
|
CVE-2017-17020
|
2024-11-21 12:17 |
2018-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|