|
250381
|
9.8 |
CRITICAL
Network
|
quest
|
netvault_backup
|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is not required to exploit this vulnerability. The …
|
CWE-89
SQL Injection
|
CVE-2017-17415
|
2024-11-21 12:17 |
2018-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250382
|
9.8 |
CRITICAL
Network
|
quest
|
netvault_backup
|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is not required to exploit this vulnerability. The …
|
CWE-89
SQL Injection
|
CVE-2017-17414
|
2024-11-21 12:17 |
2018-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250383
|
9.8 |
CRITICAL
Network
|
quest
|
netvault_backup
|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is not required to exploit this vulnerability. The …
|
CWE-89
SQL Injection
|
CVE-2017-17413
|
2024-11-21 12:17 |
2018-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250384
|
9.8 |
CRITICAL
Network
|
quest
|
netvault_backup
|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is not required to exploit this vulnerability. The …
|
CWE-89
SQL Injection
|
CVE-2017-17412
|
2024-11-21 12:17 |
2018-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250385
|
9.8 |
CRITICAL
Network
|
konakart
|
konakart
|
Path traversal vulnerability in the administrative panel in KonaKart eCommerce Platform version 8.7 and earlier could allow an attacker to download system files, as well as upload specially crafted J…
|
CWE-22
Path Traversal
|
CVE-2017-17108
|
2024-11-21 12:17 |
2018-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250386
|
9.8 |
CRITICAL
Network
|
atlassian
|
fisheye crucible
|
It was possible for double OGNL evaluation in certain redirect action and in WebWork URL and Anchor tags in JSP files to occur. An attacker who can access the web interface of Fisheye or Crucible or …
|
NVD-CWE-noinfo
|
CVE-2017-16861
|
2024-11-21 12:17 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250387
|
5.9 |
MEDIUM
Network
|
linux
|
linux_kernel
|
The "stub_send_ret_submit()" function (drivers/usb/usbip/stub_tx.c) in the Linux Kernel before version 4.14.8, 4.9.71, 4.1.49, and 4.4.107 allows attackers to cause a denial of service (NULL pointer …
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-16914
|
2024-11-21 12:17 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250388
|
5.9 |
MEDIUM
Network
|
linux
|
linux_kernel
|
The "stub_recv_cmd_submit()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, and 4.4.114 when handling CMD_SUBMIT packets allows attackers to cause a denial …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-16913
|
2024-11-21 12:17 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250389
|
5.9 |
MEDIUM
Network
|
linux
|
linux_kernel
|
The "get_pipe()" function (drivers/usb/usbip/stub_rx.c) in the Linux Kernel before version 4.14.8, 4.9.71, and 4.4.114 allows attackers to cause a denial of service (out-of-bounds read) via a special…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-16912
|
2024-11-21 12:17 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250390
|
4.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The vhci_hcd driver in the Linux Kernel before version 4.14.8 and 4.4.114 allows allows local attackers to disclose kernel memory addresses. Successful exploitation requires that a USB device is atta…
|
CWE-200
Information Exposure
|
CVE-2017-16911
|
2024-11-21 12:17 |
2018-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|