|
249431
|
5.4 |
MEDIUM
Network
|
atlassian
|
jira
|
The Trello board importer resource in Atlassian Jira before version 7.6.1 allows remote attackers who can convince a Jira administrator to import their Trello board to inject arbitrary HTML or JavaSc…
|
CWE-79
Cross-site Scripting
|
CVE-2017-18097
|
2024-11-21 12:19 |
2018-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249432
|
5.5 |
MEDIUM
Local
|
linux debian
|
linux_kernel debian_linux
|
The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow and loop) via crafted use of the open and fallocate s…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-18257
|
2024-11-21 12:19 |
2018-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249433
|
7.2 |
HIGH
Network
|
atlassian
|
application_links
|
The OAuth status rest resource in Atlassian Application Links before version 5.2.7, from 5.3.0 before 5.3.4 and from 5.4.0 before 5.4.3 allows remote attackers with administrative rights to access th…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2017-18096
|
2024-11-21 12:19 |
2018-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249434
|
6.5 |
MEDIUM
Network
|
brave
|
brave_browser
|
Brave Browser before 0.13.0 allows remote attackers to cause a denial of service (resource consumption) via a long alert() argument in JavaScript code, because window dialogs are mishandled.
|
NVD-CWE-noinfo
|
CVE-2017-18256
|
2024-11-21 12:19 |
2018-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249435
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, in MMCP, a downlink message is not b…
|
CWE-20
Improper Input Validation
|
CVE-2017-18147
|
2024-11-21 12:19 |
2018-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249436
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
The perf_cpu_time_max_percent_handler function in kernel/events/core.c in the Linux kernel before 4.11 allows local users to cause a denial of service (integer overflow) or possibly have unspecified …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-18255
|
2024-11-21 12:19 |
2018-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249437
|
6.5 |
MEDIUM
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerability was found in the function WriteGIFImage in coders/gif.c, which allow remote attackers to cause a denial of service via a craf…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-18254
|
2024-11-21 12:19 |
2018-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249438
|
6.5 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
An issue was discovered in ImageMagick 7.0.7. A NULL pointer dereference vulnerability was found in the function LoadOpenCLDevices in MagickCore/opencl.c, which allows attackers to cause a denial of …
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-18253
|
2024-11-21 12:19 |
2018-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249439
|
6.5 |
MEDIUM
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
An issue was discovered in ImageMagick 7.0.7. The MogrifyImageList function in MagickWand/mogrify.c allows attackers to cause a denial of service (assertion failure and application exit in ReplaceIma…
|
CWE-617
Reachable Assertion
|
CVE-2017-18252
|
2024-11-21 12:19 |
2018-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249440
|
6.5 |
MEDIUM
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerability was found in the function ReadPCDImage in coders/pcd.c, which allow remote attackers to cause a denial of service via a craft…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-18251
|
2024-11-21 12:19 |
2018-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|