|
247981
|
8.8 |
HIGH
Network
|
libsdl canonical debian
|
simple_directmedia_layer ubuntu_linux debian_linux
|
An exploitable integer overflow vulnerability exists when creating a new RGB Surface in SDL 2.0.5. A specially crafted file can cause an integer overflow resulting in too little memory being allocate…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-2888
|
2024-11-21 12:24 |
2017-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247982
|
8.8 |
HIGH
Network
|
libsdl debian
|
sdl_image debian_linux
|
An exploitable buffer overflow vulnerability exists in the XCF property handling functionality of SDL_image 2.0.1. A specially crafted xcf file can cause a stack-based buffer overflow resulting in po…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2887
|
2024-11-21 12:24 |
2017-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247983
|
7.8 |
HIGH
Local
|
pl32
|
photoline
|
An memory corruption vulnerability exists in the .SVG parsing functionality of Computerinsel Photoline 20.02. A specially crafted .SVG file can cause a vulnerability resulting in memory corruption, w…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2920
|
2024-11-21 12:24 |
2017-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247984
|
7.8 |
HIGH
Local
|
pl32
|
photoline
|
An memory corruption vulnerability exists in the .GIF parsing functionality of Computerinsel Photoline 20.02. A specially crafted .GIF file can cause a vulnerability resulting in potential code execu…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2880
|
2024-11-21 12:24 |
2017-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247985
|
7.8 |
HIGH
Local
|
ansible-vault_project
|
ansible-vault
|
An exploitable vulnerability exists in the yaml loading functionality of ansible-vault before 1.0.5. A specially crafted vault can execute arbitrary python commands resulting in command execution. An…
|
CWE-94
Code Injection
|
CVE-2017-2809
|
2024-11-21 12:24 |
2017-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247986
|
8.8 |
HIGH
Network
|
libofx_project debian
|
libofx debian_linux
|
An exploitable buffer overflow vulnerability exists in the tag parsing functionality of LibOFX 0.9.11. A specially crafted OFX file can cause a write out of bounds resulting in a buffer overflow on t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2816
|
2024-11-21 12:24 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247987
|
5.4 |
MEDIUM
Network
|
apache
|
brooklyn
|
In Apache Brooklyn before 0.10.0, the REST server is vulnerable to cross-site scripting where one authenticated user can cause scripts to run in the browser of another user authorized to access the f…
|
CWE-79
Cross-site Scripting
|
CVE-2017-3165
|
2024-11-21 12:24 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247988
|
6.1 |
MEDIUM
Network
|
fortinet
|
fortios
|
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.6.0 and earlier allows attackers to execute unauthorized code or commands via the Replacement Message HTML for SSL-VPN.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3133
|
2024-11-21 12:24 |
2017-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247989
|
6.1 |
MEDIUM
Network
|
fortinet
|
fortios
|
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.6.0 and earlier allows attackers to Execute unauthorized code or commands via the action input during the activation of a FortiToke…
|
CWE-79
Cross-site Scripting
|
CVE-2017-3132
|
2024-11-21 12:24 |
2017-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247990
|
5.4 |
MEDIUM
Network
|
fortinet
|
fortios
|
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.4.0 through 5.4.4 and 5.6.0 allows attackers to execute unauthorized code or commands via the filter input in "Applications" under …
|
CWE-79
Cross-site Scripting
|
CVE-2017-3131
|
2024-11-21 12:24 |
2017-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|