|
251581
|
7.8 |
HIGH
Local
|
netapp
|
service_level_manager oncommand_api_services
|
All versions of OnCommand API Services prior to 2.1 and NetApp Service Level Manager prior to 1.0RC4 log a privileged database user account password. All users are urged to move to a fixed version. S…
|
CWE-200
Information Exposure
|
CVE-2017-15518
|
2024-11-21 12:14 |
2018-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251582
|
8.8 |
HIGH
Network
|
infinispan
|
infinispan
|
It was found that the Hotrod client in Infinispan before 9.2.0.CR1 would unsafely read deserialized data on information from the cache. An authenticated attacker could inject a malicious object into …
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2017-15089
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251583
|
6.8 |
MEDIUM
Physics
|
huawei
|
honor_v9_play_firmware
|
The 'Find Phone' function in Huawei Honor V9 play smart phones with versions earlier than Jimmy-AL00AC00B135 has an authentication bypass vulnerability. Due to improper authentication realization in …
|
CWE-287
Improper Authentication
|
CVE-2017-15351
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251584
|
5.5 |
MEDIUM
Local
|
huawei
|
mate_9_pro_firmware
|
Huawei Mate 9 Pro mobile phones with software of versions earlier than LON-AL00BC00B235 have a use after free (UAF) vulnerability. An attacker tricks a user into installing a malicious application, a…
|
CWE-416
Use After Free
|
CVE-2017-15347
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251585
|
5.3 |
MEDIUM
Adjacent
|
huawei
|
lon-l29d_firmware
|
Huawei Smartphones with software LON-L29DC721B186 have a denial of service vulnerability. An attacker could make an loop exit condition that cannot be reached by sending the crafted 3GPP message. Suc…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-15345
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251586
|
7.5 |
HIGH
Network
|
huawei
|
ar120-s_firmware ar1200_firmware ar3200_firmware
|
Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20, V200R008C30 has an integer overflow vulnerability. The software doe…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-15344
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251587
|
7.5 |
HIGH
Network
|
huawei
|
ar120-s_firmware ar1200_firmware ar3200_firmware
|
Huawei AR3200 with software V200R006C10, V200R006C11, V200R007C00, V200R007C01, V200R007C02, V200R008C00, V200R008C10, V200R008C20, V200R008C30 has an integer overflow vulnerability. The software doe…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-15343
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251588
|
7.5 |
HIGH
Network
|
huawei
|
dp300_firmware te60_firmware tp3106_firmware espace_u1981_firmware
|
Huawei DP300 V500R002C00, TE60 V600R006C00, TP3106 V100R002C00, eSpace U1981 V200R003C30SPC100 have a denial of service vulnerability. The software does not correctly calculate the rest size in a buf…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15342
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251589
|
7.5 |
HIGH
Network
|
huawei
|
ar3200_firmware te40_firmware te50_firmware te60_firmware
|
Huawei AR3200 V200R008C20, V200R008C30, TE40 V600R006C00, TE50 V600R006C00, TE60 V600R006C00 have a denial of service vulnerability. The software decodes X.509 certificate in an improper way. A remot…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-15341
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251590
|
5.5 |
MEDIUM
Local
|
huawei
|
tag-al00_firmware
|
Huawei smartphones with software of TAG-AL00C92B168 have an information disclosure vulnerability. An attacker tricks the user to install a crafted application, this application simulate click action …
|
NVD-CWE-noinfo
|
CVE-2017-15340
|
2024-11-21 12:14 |
2018-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|