|
251821
|
8.8 |
HIGH
Network
|
atlassian
|
sourcetree
|
Sourcetree for Windows had several argument and command injection bugs in Mercurial and Git repository handling. An attacker with permission to commit to a repository linked in Sourcetree for Windows…
|
NVD-CWE-noinfo CWE-77
Command Injection
|
CVE-2017-14593
|
2024-11-21 12:13 |
2018-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251822
|
8.8 |
HIGH
Network
|
atlassian
|
sourcetree
|
Sourcetree for macOS had several argument and command injection bugs in Mercurial and Git repository handling. An attacker with permission to commit to a repository linked in Sourcetree for macOS is …
|
NVD-CWE-noinfo CWE-77
Command Injection
|
CVE-2017-14592
|
2024-11-21 12:13 |
2018-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251823
|
9.8 |
CRITICAL
Network
|
netiq
|
access_manager
|
In NetIQ Access Manager 4.3 and 4.4, a bug exists in Identity Server when accessing a basic SSO connector and downloading the BasicSSO connector plugins on IE11 where an attacker can execute arbitrar…
|
NVD-CWE-noinfo
|
CVE-2017-14803
|
2024-11-21 12:13 |
2018-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251824
|
6.1 |
MEDIUM
Network
|
atlassian
|
jira jira_server
|
The printable searchrequest issue resource in Atlassian Jira before version 7.2.12 and from version 7.3.0 before 7.6.1 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site …
|
CWE-79
Cross-site Scripting
|
CVE-2017-14594
|
2024-11-21 12:13 |
2018-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251825
|
8.8 |
HIGH
Network
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, by calling an IPA ioctl and searching for routing/filer/hdr rule handle from ipa_idr po…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-14879
|
2024-11-21 12:13 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251826
|
7.8 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the pp_pgc_get_config() graphics driver function, a kernel memory overwrite can pote…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-14873
|
2024-11-21 12:13 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251827
|
7.5 |
HIGH
Network
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while updating the recovery message for eMMC devices, 1088 bytes of stack memory can po…
|
CWE-200
Information Exposure
|
CVE-2017-14870
|
2024-11-21 12:13 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251828
|
7.5 |
HIGH
Network
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while performing update of FOTA partition, uninitialized data can be pushed to storage.
|
CWE-200
Information Exposure
|
CVE-2017-14869
|
2024-11-21 12:13 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251829
|
7.5 |
HIGH
Network
|
opentext
|
document_sciences_xpression
|
xDashboard in OpenText Document Sciences xPression (formerly EMC Document Sciences xPression) v4.5SP1 Patch 13 has SQL Injection.
|
CWE-89
SQL Injection
|
CVE-2017-14960
|
2024-11-21 12:13 |
2018-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251830
|
8.6 |
HIGH
Network
|
redlion
|
hmi_panel_firmware
|
Red Lion HMI panels allow remote attackers to cause a denial of service (software exception) via an HTTP POST request to a long URI that does not exist, as demonstrated by version HMI 2.41 PLC 2.42.
|
NVD-CWE-noinfo
|
CVE-2017-14855
|
2024-11-21 12:13 |
2017-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|