|
252451
|
7.5 |
HIGH
Network
|
moxa
|
nport_5110_firmware nport_5130_firmware nport_5150_firmware
|
A Resource Exhaustion issue was discovered in Moxa NPort 5110 Version 2.2, NPort 5110 Version 2.4, NPort 5110 Version 2.6, NPort 5110 Version 2.7, NPort 5130 Version 3.7 and prior, and NPort 5150 Ver…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-14028
|
2024-11-21 12:12 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252452
|
8.8 |
HIGH
Network
|
libbpg_project
|
libbpg
|
The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.7 and other products, miscalculates a memcpy destination address, which allows remote attackers to cause a denial…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-14034
|
2024-11-21 12:12 |
2017-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252453
|
7.8 |
HIGH
Local
|
pivotal_software
|
grootfs
|
Cloud Foundry Foundation GrootFS release 0.3.x versions prior to 0.30.0 do not validate DiffIDs, allowing specially crafted images to poison the grootfs volume cache. For example, this could allow an…
|
CWE-20
Improper Input Validation
|
CVE-2017-14388
|
2024-11-21 12:12 |
2017-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252454
|
7.5 |
HIGH
Network
|
hp
|
content_manager
|
A potential security vulnerability has been identified in HPE Content Manager Workgroup Service v9.00. The vulnerability could be remotely exploited to allow Denial of Service (DoS).
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-14360
|
2024-11-21 12:12 |
2017-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252455
|
7.8 |
HIGH
Local
|
trihedral
|
vtscada
|
An Improper Access Control issue was discovered in Trihedral VTScada 11.3.03 and prior. A local, non-administrator user has privileges to read and write to the file system of the target machine.
|
CWE-269
Improper Privilege Management
|
CVE-2017-14031
|
2024-11-21 12:12 |
2017-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252456
|
7.8 |
HIGH
Local
|
trihedral
|
vtscada
|
An Uncontrolled Search Path Element issue was discovered in Trihedral VTScada 11.3.03 and prior. The program will execute specially crafted malicious dll files placed on the target machine.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2017-14029
|
2024-11-21 12:12 |
2017-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252457
|
5.4 |
MEDIUM
Network
|
hp
|
performance_center
|
A potential security vulnerability has been identified in HPE Performance Center versions 12.20. The vulnerability could be remotely exploited to allow cross-site scripting.
|
CWE-79
Cross-site Scripting
|
CVE-2017-14359
|
2024-11-21 12:12 |
2017-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252458
|
7.8 |
HIGH
Local
|
emc
|
appsync
|
EMC AppSync Server prior to 3.5.0.1 contains database accounts with hardcoded passwords that could potentially be exploited by malicious users to compromise the affected system.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-14376
|
2024-11-21 12:12 |
2017-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252459
|
9.8 |
CRITICAL
Network
|
emc dell
|
vmax_emanagement vasa solutions_enabler emc_unisphere
|
EMC Unisphere for VMAX Virtual Appliance (vApp) versions prior to 8.4.0.15, EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.15, EMC VASA Virtual Appliance versions prior to 8.4.0.512,…
|
CWE-290
Authentication Bypass by Spoofing
|
CVE-2017-14375
|
2024-11-21 12:12 |
2017-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252460
|
8.8 |
HIGH
Network
|
mahara
|
mahara
|
An issue was discovered in Mahara before 15.04.14, 16.x before 16.04.8, 16.10.x before 16.10.5, and 17.x before 17.04.3. When one closes the browser without logging out of Mahara, the value in the us…
|
CWE-384
Session Fixation
|
CVE-2017-14163
|
2024-11-21 12:12 |
2017-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|