|
256191
|
6.1 |
MEDIUM
Network
|
plotly
|
plotly.js
|
Plotly, Inc. plotly.js versions prior to 1.16.0 are vulnerable to an XSS issue.
|
CWE-79
Cross-site Scripting
|
CVE-2017-1000006
|
2024-11-21 12:03 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256192
|
6.1 |
MEDIUM
Network
|
phpminiadmin_project
|
phpminiadmin
|
PHPMiniAdmin version 1.9.160630 is vulnerable to stored XSS in the name of databases, tables and columns resulting in potential account takeover and scraping of data (stealing data).
|
CWE-79
Cross-site Scripting
|
CVE-2017-1000005
|
2024-11-21 12:03 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256193
|
9.8 |
CRITICAL
Network
|
atutor
|
atutor
|
ATutor version 2.2.1 and earlier are vulnerable to a SQL injection in the Assignment Dropbox, BasicLTI, Blog Post, Blog, Group Course Email, Course Alumni, Course Enrolment, Group Membership, Course …
|
CWE-89
SQL Injection
|
CVE-2017-1000004
|
2024-11-21 12:03 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256194
|
9.8 |
CRITICAL
Network
|
atutor
|
atutor
|
ATutor versions 2.2.1 and earlier are vulnerable to an incorrect access control check vulnerability in the Social Application component resulting in privilege escalation. ATutor versions 2.2.1 and ea…
|
CWE-269
Improper Privilege Management
|
CVE-2017-1000003
|
2024-11-21 12:03 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256195
|
9.8 |
CRITICAL
Network
|
atutor
|
atutor
|
ATutor versions 2.2.1 and earlier are vulnerable to a directory traversal and file extension check bypass in the Course component resulting in code execution. ATutor versions 2.2.1 and earlier are vu…
|
CWE-22
Path Traversal
|
CVE-2017-1000002
|
2024-11-21 12:03 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256196
|
7.5 |
HIGH
Network
|
fedoraproject
|
fedmsg
|
FedMsg 0.18.1 and older is vulnerable to a message validation flaw resulting in message validation not being enabled if configured to be on.
|
CWE-20
Improper Input Validation
|
CVE-2017-1000001
|
2024-11-21 12:03 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256197
|
7.8 |
HIGH
Local
|
google
|
android
|
A elevation of privilege vulnerability in the MediaTek networking driver. Product: Android. Versions: Android kernel. Android ID: A-36099953. References: M-ALPS03206781.
|
NVD-CWE-noinfo
|
CVE-2017-0711
|
2024-11-21 12:03 |
2017-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256198
|
7.8 |
HIGH
Local
|
google
|
android
|
A elevation of privilege vulnerability in the Upstream Linux tcb. Product: Android. Versions: Android kernel. Android ID: A-34951864.
|
NVD-CWE-noinfo
|
CVE-2017-0710
|
2024-11-21 12:03 |
2017-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256199
|
3.3 |
LOW
Local
|
google
|
android
|
A information disclosure vulnerability in the HTC sensor hub driver. Product: Android. Versions: Android kernel. Android ID: A-35468048.
|
CWE-200
Information Exposure
|
CVE-2017-0709
|
2024-11-21 12:03 |
2017-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256200
|
5.5 |
MEDIUM
Local
|
google
|
android
|
A information disclosure vulnerability in the HTC sound driver. Product: Android. Versions: Android kernel. Android ID: A-35384879.
|
CWE-200
Information Exposure
|
CVE-2017-0708
|
2024-11-21 12:03 |
2017-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|