|
251991
|
9.8 |
CRITICAL
Network
|
netiq
|
access_manager
|
In NetIQ Access Manager 4.3 and 4.4, a bug exists in Identity Server when accessing a basic SSO connector and downloading the BasicSSO connector plugins on IE11 where an attacker can execute arbitrar…
|
NVD-CWE-noinfo
|
CVE-2017-14803
|
2024-11-21 12:13 |
2018-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251992
|
6.1 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The printable searchrequest issue resource in Atlassian Jira before version 7.2.12 and from version 7.3.0 before 7.6.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site …
|
CWE-79
Cross-site Scripting
|
CVE-2017-14594
|
2024-11-21 12:13 |
2018-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251993
|
8.8 |
HIGH
Network
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, by calling an IPA ioctl and searching for routing/filer/hdr rule handle from ipa_idr po…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-14879
|
2024-11-21 12:13 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251994
|
7.8 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the pp_pgc_get_config() graphics driver function, a kernel memory overwrite can pote…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-14873
|
2024-11-21 12:13 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251995
|
7.5 |
HIGH
Network
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while updating the recovery message for eMMC devices, 1088 bytes of stack memory can po…
|
CWE-200
Information Exposure
|
CVE-2017-14870
|
2024-11-21 12:13 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251996
|
7.5 |
HIGH
Network
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while performing update of FOTA partition, uninitialized data can be pushed to storage.
|
CWE-200
Information Exposure
|
CVE-2017-14869
|
2024-11-21 12:13 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251997
|
7.5 |
HIGH
Network
|
opentext
|
document_sciences_xpression
|
xDashboard in OpenText Document Sciences xPression (formerly EMC Document Sciences xPression) v4.5SP1 Patch 13 has SQL Injection.
|
CWE-89
SQL Injection
|
CVE-2017-14960
|
2024-11-21 12:13 |
2018-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251998
|
8.6 |
HIGH
Network
|
redlion
|
hmi_panel_firmware
|
Red Lion HMI panels allow remote attackers to cause a denial of service (software exception) via an HTTP POST request to a long URI that does not exist, as demonstrated by version HMI 2.41 PLC 2.42.
|
NVD-CWE-noinfo
|
CVE-2017-14855
|
2024-11-21 12:13 |
2017-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251999
|
7.8 |
HIGH
Local
|
ikarussecurity
|
anti.virus
|
In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x83000084, a related issue to CVE-2017-17114.
|
CWE-787
Out-of-bounds Write
|
CVE-2017-14969
|
2024-11-21 12:13 |
2017-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252000
|
7.8 |
HIGH
Local
|
ikarussecurity
|
anti.virus
|
In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x830000c4, a related issue to CVE-2017-17113.
|
CWE-20
Improper Input Validation
|
CVE-2017-14968
|
2024-11-21 12:13 |
2017-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|