|
252861
|
5.9 |
MEDIUM
Network
|
psftp
|
psftpd
|
A use-after-free issue could be triggered remotely in the SFTP component of PSFTPd 10.0.4 Build 729. This issue could be triggered prior to authentication. The PSFTPd server did not automatically res…
|
CWE-416
Use After Free
|
CVE-2017-15271
|
2024-11-21 12:14 |
2017-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252862
|
5.3 |
MEDIUM
Network
|
psftp
|
psftpd
|
The PSFTPd 10.0.4 Build 729 server does not properly escape data before writing it into a Comma Separated Values (CSV) file. This can be used by attackers to hide data in the Graphical User Interface…
|
CWE-20
Improper Input Validation
|
CVE-2017-15270
|
2024-11-21 12:14 |
2017-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252863
|
4.3 |
MEDIUM
Network
|
psftp
|
psftpd
|
The PSFTPd 10.0.4 Build 729 server does not prevent FTP bounce scans by default. These can be performed using "nmap -b" and allow performing scans via the FTP server.
|
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
|
CVE-2017-15269
|
2024-11-21 12:14 |
2017-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252864
|
6.8 |
MEDIUM
Adjacent
|
symantec
|
endpoint_encryption
|
Prior to SEE v11.1.3MP1, Symantec Endpoint Encryption can be susceptible to a null pointer de-reference issue, which can result in a NullPointerException that can lead to a privilege escalation scena…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-15526
|
2024-11-21 12:14 |
2017-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252865
|
4.5 |
MEDIUM
Adjacent
|
symantec
|
endpoint_encryption
|
Prior to SEE v11.1.3MP1, Symantec Endpoint Encryption can be susceptible to a denial of service (DoS) attack, which is a type of attack whereby the perpetrator attempts to make a particular machine o…
|
NVD-CWE-noinfo
|
CVE-2017-15525
|
2024-11-21 12:14 |
2017-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252866
|
6.5 |
MEDIUM
Network
|
suse
|
susefirewall2
|
The SuSEfirewall2 package before 3.6.312-2.13.1 in SUSE Linux Enterprise (SLE) Desktop 12 SP2, Server 12 SP2, and Server for Raspberry Pi 12 SP2; before 3.6.312.333-3.10.1 in SLE Desktop 12 SP3 and S…
|
NVD-CWE-noinfo
|
CVE-2017-15638
|
2024-11-21 12:14 |
2017-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252867
|
7.5 |
HIGH
Network
|
redhat
|
gluster_storage
|
It was discovered that the fix for CVE-2017-12163 was not properly shipped in erratum RHSA-2017:2858 for Red Hat Gluster Storage 3.3 for RHEL 6.
|
-
|
CVE-2017-15087
|
2024-11-21 12:14 |
2017-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252868
|
7.4 |
HIGH
Network
|
redhat
|
gluster_storage
|
It was discovered that the fix for CVE-2017-12151 was not properly shipped in erratum RHSA-2017:2858 for Red Hat Gluster Storage 3.3 for RHEL 6.
|
-
|
CVE-2017-15086
|
2024-11-21 12:14 |
2017-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252869
|
5.9 |
MEDIUM
Network
|
redhat
|
gluster_storage
|
It was discovered that the fix for CVE-2017-12150 was not properly shipped in erratum RHSA-2017:2858 for Red Hat Gluster Storage 3.3 for RHEL 6.
|
-
|
CVE-2017-15085
|
2024-11-21 12:14 |
2017-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252870
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The kvm_vm_ioctl_check_extension function in arch/powerpc/kvm/powerpc.c in the Linux kernel before 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) …
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-15306
|
2024-11-21 12:14 |
2017-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|