|
248101
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player_desktop_runtime flash_player enterprise_linux enterprise_linux_desktop enterprise_linux_workstation
|
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when masking display objects. Successful exploitation could lead to arbitrary code execution.
|
CWE-416
Use After Free
|
CVE-2017-3071
|
2024-11-21 12:24 |
2017-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248102
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player_desktop_runtime flash_player enterprise_linux enterprise_linux_desktop enterprise_linux_workstation
|
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the ConvolutionFilter class. Successful exploitation could lead to arbitrary code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2017-3070
|
2024-11-21 12:24 |
2017-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248103
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player_desktop_runtime flash_player enterprise_linux enterprise_linux_desktop enterprise_linux_workstation
|
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the BlendMode class. Successful exploitation could lead to arbitrary code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2017-3069
|
2024-11-21 12:24 |
2017-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248104
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player_desktop_runtime flash_player enterprise_linux enterprise_linux_desktop enterprise_linux_workstation
|
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the Advanced Video Coding engine. Successful exploitation could lead to arbitrary code execut…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-3068
|
2024-11-21 12:24 |
2017-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248105
|
7.5 |
HIGH
Network
|
adobe
|
experience_manager_forms
|
Adobe Experience Manager Forms versions 6.2, 6.1, 6.0 have an information disclosure vulnerability resulting from abuse of the pre-population service in AEM Forms.
|
CWE-200
Information Exposure
|
CVE-2017-3067
|
2024-11-21 12:24 |
2017-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248106
|
6.1 |
MEDIUM
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion 2016 Update 3 and earlier, ColdFusion 11 update 11 and earlier, ColdFusion 10 Update 22 and earlier have a reflected cross-site scripting vulnerability.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3008
|
2024-11-21 12:24 |
2017-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248107
|
7.3 |
HIGH
Network
|
apache
|
hadoop
|
HDFS clients interact with a servlet on the DataNode to browse the HDFS namespace. The NameNode is provided as a query parameter that is not validated in Apache Hadoop before 2.7.0.
|
CWE-20
Improper Input Validation
|
CVE-2017-3162
|
2024-11-21 12:24 |
2017-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248108
|
6.1 |
MEDIUM
Network
|
apache
|
hadoop
|
The HDFS web UI in Apache Hadoop before 2.7.0 is vulnerable to a cross-site scripting (XSS) attack through an unescaped query parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3161
|
2024-11-21 12:24 |
2017-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248109
|
3.3 |
LOW
Local
|
lexmark
|
perceptive_document_filters
|
An exploitable arbitrary read exists in the XLS parsing of the Lexmark Perspective Document Filters conversion functionality. A crafted XLS document can lead to a arbitrary read resulting in memory d…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-2806
|
2024-11-21 12:24 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248110
|
8.1 |
HIGH
Network
|
arm
|
mbed_tls
|
An exploitable free of a stack pointer vulnerability exists in the x509 certificate parsing code of ARM mbed TLS before 1.3.19, 2.x before 2.1.7, and 2.4.x before 2.4.2. A specially crafted x509 cert…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-2784
|
2024-11-21 12:24 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|