|
255901
|
7.5 |
HIGH
Network
|
onosproject
|
onos
|
Linux foundation ONOS 1.9.0 is vulnerable to a DoS.
|
NVD-CWE-noinfo
|
CVE-2017-1000079
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255902
|
6.1 |
MEDIUM
Network
|
onosproject
|
onos
|
Linux foundation ONOS 1.9 is vulnerable to XSS in the device. registration
|
CWE-79
Cross-site Scripting
|
CVE-2017-1000078
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255903
|
9.8 |
CRITICAL
Network
|
creolabs
|
gravity
|
Creolabs Gravity version 1.0 is vulnerable to a stack overflow in the memcmp function
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000075
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255904
|
9.8 |
CRITICAL
Network
|
creolabs
|
gravity
|
Creolabs Gravity version 1.0 is vulnerable to a stack overflow in the string_repeat() function.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000074
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255905
|
9.8 |
CRITICAL
Network
|
jenkins
|
jenkins
|
The re-key admin monitor was introduced in Jenkins 1.498 and re-encrypted all secrets in JENKINS_HOME with a new key. It also created a backup directory with all old secrets, and the key used to encr…
|
CWE-200
Information Exposure
|
CVE-2017-1000362
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255906
|
9.8 |
CRITICAL
Network
|
creolabs
|
gravity
|
Creolabs Gravity version 1.0 is vulnerable to a heap overflow in an undisclosed component that can result in arbitrary code execution.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000073
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255907
|
9.8 |
CRITICAL
Network
|
creolabs
|
gravity
|
Creolabs Gravity version 1.0 is vulnerable to a Double Free in gravity_value resulting potentially leading to modification of unexpected memory locations
|
CWE-415
Double Free
|
CVE-2017-1000072
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255908
|
8.1 |
HIGH
Network
|
apereo
|
phpcas
|
Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.
|
CWE-287
Improper Authentication
|
CVE-2017-1000071
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255909
|
6.1 |
MEDIUM
Network
|
oauth2_proxy_project
|
oauth2_proxy
|
The Bitly oauth2_proxy in version 2.1 and earlier was affected by an open redirect vulnerability during the start and termination of the 2-legged OAuth flow. This issue was caused by improper input v…
|
CWE-601
Open Redirect
|
CVE-2017-1000070
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255910
|
8.8 |
HIGH
Network
|
oauth2_proxy_project
|
oauth2_proxy
|
CSRF in Bitly oauth2_proxy 2.1 during authentication flow
|
CWE-352
Origin Validation Error
|
CVE-2017-1000069
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|