|
255481
|
6.1 |
MEDIUM
Network
|
phpsocial
|
phpsocial
|
phpSocial (formerly phpDolphin) before 3.0.1 has XSS in the PATH_INFO to the search/tag/ URI.
|
CWE-79
Cross-site Scripting
|
CVE-2017-10801
|
2024-11-21 12:06 |
2017-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255482
|
7.8 |
HIGH
Local
|
apport_project
|
apport
|
An issue was discovered in Apport through 2.20.x. In apport/report.py, Apport sets the ExecutablePath field and it then uses the path to run package specific hooks without protecting against path tra…
|
CWE-22
Path Traversal
|
CVE-2017-10708
|
2024-11-21 12:06 |
2017-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255483
|
6.1 |
MEDIUM
Network
|
vanderbilt
|
redcap
|
REDCap before 7.5.1 has XSS via the query string.
|
CWE-79
Cross-site Scripting
|
CVE-2017-10962
|
2024-11-21 12:06 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255484
|
8.8 |
HIGH
Network
|
vanderbilt
|
redcap
|
REDCap before 7.5.1 has CSRF in the deletion feature of the File Repository and File Upload components.
|
CWE-352
Origin Validation Error
|
CVE-2017-10961
|
2024-11-21 12:06 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255485
|
7.5 |
HIGH
Network
|
freeradius
|
freeradius
|
An FR-GV-304 issue in FreeRADIUS 3.x before 3.0.15 allows "DHCP - Buffer over-read in fr_dhcp_decode_suboptions()" and a denial of service.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-10987
|
2024-11-21 12:06 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255486
|
7.5 |
HIGH
Network
|
freeradius
|
freeradius
|
An FR-GV-303 issue in FreeRADIUS 3.x before 3.0.15 allows "DHCP - Infinite read in dhcp_attr2vp()" and a denial of service.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-10986
|
2024-11-21 12:06 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255487
|
7.5 |
HIGH
Network
|
freeradius
|
freeradius
|
An FR-GV-302 issue in FreeRADIUS 3.x before 3.0.15 allows "Infinite loop and memory exhaustion with 'concat' attributes" and a denial of service.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-10985
|
2024-11-21 12:06 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255488
|
9.8 |
CRITICAL
Network
|
freeradius
|
freeradius
|
An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary …
|
CWE-787
Out-of-bounds Write
|
CVE-2017-10984
|
2024-11-21 12:06 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255489
|
7.5 |
HIGH
Network
|
freeradius
|
freeradius
|
An FR-GV-206 issue in FreeRADIUS 2.x before 2.2.10 and 3.x before 3.0.15 allows "DHCP - Read overflow when decoding option 63" and a denial of service.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-10983
|
2024-11-21 12:06 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255490
|
7.5 |
HIGH
Network
|
freeradius
|
freeradius
|
An FR-GV-205 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Buffer over-read in fr_dhcp_decode_options()" and a denial of service.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-10982
|
2024-11-21 12:06 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|