|
255231
|
7.8 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a graphics driver ioctl handler, the lack of copy_from_user() function calls may res…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11047
|
2024-11-21 12:07 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255232
|
7.0 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a camera driver function, a race condition exists which can lead to a Use After Free…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2017-11045
|
2024-11-21 12:07 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255233
|
7.0 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a KGSL driver function, a race condition exists which can lead to a Use After Free c…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2017-11044
|
2024-11-21 12:07 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255234
|
7.5 |
HIGH
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion has an XML external entity (XXE) injection vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
|
CWE-611
XXE
|
CVE-2017-11286
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255235
|
6.1 |
MEDIUM
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion has a cross-site scripting (XSS) vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
|
CWE-79
Cross-site Scripting
|
CVE-2017-11285
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255236
|
9.8 |
CRITICAL
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion has an Untrusted Data Deserialization vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2017-11284
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255237
|
9.8 |
CRITICAL
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion has an Untrusted Data Deserialization vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2017-11283
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255238
|
9.8 |
CRITICAL
Network
|
adobe redhat
|
flash_player enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Adobe Flash Player has an exploitable memory corruption vulnerability in the MP4 atom parser. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlier.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11282
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255239
|
9.8 |
CRITICAL
Network
|
adobe redhat
|
flash_player enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Adobe Flash Player has an exploitable memory corruption vulnerability in the text handling function. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11281
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255240
|
9.8 |
CRITICAL
Network
|
belden
|
tofino_xenon_security_appliance_firmware
|
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. Design flaws in OPC classic and in custom netfilter modules allow an attacker to remotely activat…
|
CWE-20
Improper Input Validation
|
CVE-2017-11402
|
2024-11-21 12:07 |
2017-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|