|
248451
|
6.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The nested_vmx_check_vmptr function in arch/x86/kvm/vmx.c in the Linux kernel through 4.9.8 improperly emulates the VMXON instruction, which allows KVM L1 guest OS users to cause a denial of service …
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-2596
|
2024-11-21 12:23 |
2017-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248452
|
8.4 |
HIGH
Local
|
linux
|
linux_kernel
|
The load_segment_descriptor implementation in arch/x86/kvm/emulate.c in the Linux kernel before 4.9.5 improperly emulates a "MOV SS, NULL selector" instruction, which allows guest OS users to cause a…
|
NVD-CWE-noinfo
|
CVE-2017-2583
|
2024-11-21 12:23 |
2017-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248453
|
6.1 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 3.x, there is XSS in the assignment submission page.
|
CWE-79
Cross-site Scripting
|
CVE-2017-2578
|
2024-11-21 12:23 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248454
|
5.3 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 2.x and 3.x, there is incorrect sanitization of attributes in forums.
|
CWE-20
Improper Input Validation
|
CVE-2017-2576
|
2024-11-21 12:23 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248455
|
7.1 |
HIGH
Local
|
linux
|
linux_kernel
|
arch/x86/kvm/emulate.c in the Linux kernel through 4.9.3 allows local users to obtain sensitive information from kernel memory or cause a denial of service (use-after-free) via a crafted application …
|
CWE-200 CWE-416
Information Exposure Use After Free
|
CVE-2017-2584
|
2024-11-21 12:23 |
2017-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248456
|
4.7 |
MEDIUM
Network
|
zimbra
|
zm-ajax
|
A vulnerability has been found in Zimbra zm-ajax up to 8.8.1 and classified as problematic. Affected by this vulnerability is the function XFormItem.prototype.setError of the file WebRoot/js/ajax/dwt…
|
-
|
CVE-2017-20188
|
2024-11-21 12:22 |
2024-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248457
|
6.1 |
MEDIUM
Network
|
share_on_diaspora_project
|
share_on_diaspora
|
A vulnerability classified as problematic was found in ciubotaru share-on-diaspora 0.7.9. This vulnerability affects unknown code of the file new_window.php. The manipulation of the argument title/ur…
|
-
|
CVE-2017-20176
|
2024-11-21 12:22 |
2023-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248458
|
9.8 |
CRITICAL
Network
|
contentmap_project
|
contentmap
|
A vulnerability was found in AlexRed contentmap. It has been rated as critical. Affected by this issue is the function Load of the file contentmap.php. The manipulation of the argument contentid lead…
|
-
|
CVE-2017-20173
|
2024-11-21 12:22 |
2023-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248459
|
9.8 |
CRITICAL
Network
|
apersistence_project
|
apersistence
|
A vulnerability classified as critical has been found in PrivateSky apersistence. This affects an unknown part of the file db/sql/mysqlUtils.js. The manipulation leads to sql injection. The identifie…
|
CWE-89
SQL Injection
|
CVE-2017-20171
|
2024-11-21 12:22 |
2023-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248460
|
- |
|
-
|
-
|
A vulnerability was found in Zimbra zm-admin-ajax up to 8.8.1. It has been classified as problematic. This affects the function XFormItem.prototype.setError of the file WebRoot/js/ajax/dwt/xforms/XFo…
|
-
|
CVE-2017-20191
|
2024-11-21 12:22 |
2024-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|