|
249921
|
8.8 |
HIGH
Network
|
reddit_terminal_viewer_project
|
reddit_terminal_viewer
|
scripts/inspect_webbrowser.py in Reddit Terminal Viewer (RTV) 1.19.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote att…
|
CWE-74
Injection
|
CVE-2017-17516
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249922
|
8.8 |
HIGH
Network
|
ecmwf debian
|
metview debian_linux
|
etc/ObjectList in Metview 4.7.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection …
|
CWE-74
Injection
|
CVE-2017-17515
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249923
|
8.8 |
HIGH
Network
|
nip2_project debian
|
nip2 debian_linux
|
boxes.c in nip2 8.4.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks vi…
|
CWE-74
Injection
|
CVE-2017-17514
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249924
|
8.8 |
HIGH
Network
|
tug
|
tex_live
|
TeX Live through 20170524 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attack…
|
CWE-74
Injection
|
CVE-2017-17513
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249925
|
8.8 |
HIGH
Network
|
kildclient debian
|
kildclient debian_linux
|
KildClient 3.1.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a c…
|
CWE-74
Injection
|
CVE-2017-17511
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249926
|
7.5 |
HIGH
Network
|
pandasecurity
|
panda_global_protection
|
Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c04 \\.\PSMEMDriver DeviceIoControl request.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-17684
|
2024-11-21 12:18 |
2017-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249927
|
7.5 |
HIGH
Network
|
pandasecurity
|
panda_global_protection
|
Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c44 \\.\PSMEMDriver DeviceIoControl request.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-17683
|
2024-11-21 12:18 |
2017-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249928
|
6.5 |
MEDIUM
Network
|
imagemagick debian canonical
|
imagemagick debian_linux ubuntu_linux
|
In ImageMagick 7.0.7-12 Q16, a large loop vulnerability was found in the function ExtractPostscript in coders/wpg.c, which allows attackers to cause a denial of service (CPU exhaustion) via a crafted…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-17682
|
2024-11-21 12:18 |
2017-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249929
|
6.5 |
MEDIUM
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
In ImageMagick 7.0.7-12 Q16, an infinite loop vulnerability was found in the function ReadPSDChannelZip in coders/psd.c, which allows attackers to cause a denial of service (CPU exhaustion) via a cra…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-17681
|
2024-11-21 12:18 |
2017-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249930
|
6.5 |
MEDIUM
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in the function ReadXPMImage in coders/xpm.c, which allows attackers to cause a denial of service via a crafted xpm image file.
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-17680
|
2024-11-21 12:18 |
2017-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|