|
255181
|
8.1 |
HIGH
Network
|
ethereum
|
cpp-ethereum
|
An exploitable improper authorization vulnerability exists in miner_setEtherbase API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access t…
|
CWE-863
Incorrect Authorization
|
CVE-2017-12115
|
2024-11-21 12:08 |
2018-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255182
|
6.8 |
MEDIUM
Network
|
ethereum
|
cpp-ethereum
|
An exploitable improper authorization vulnerability exists in admin_peers API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the r…
|
CWE-863
Incorrect Authorization
|
CVE-2017-12114
|
2024-11-21 12:08 |
2018-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255183
|
8.1 |
HIGH
Network
|
ethereum
|
cpp-ethereum
|
An exploitable improper authorization vulnerability exists in admin_addPeer API of cpp-ethereum's JSON-RPC (commit 4e1015743b95821849d001618a7ce82c7c073768). A JSON request can cause an access to the…
|
CWE-863
Incorrect Authorization
|
CVE-2017-12112
|
2024-11-21 12:08 |
2018-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255184
|
6.1 |
MEDIUM
Network
|
delayed_job_web_project
|
delayed_job_web
|
An exploitable cross site scripting (XSS) vulnerability exists in the filter functionality of the delayed_job_web rails gem version 1.4. A specially crafted URL can cause an XSS flaw resulting in an …
|
CWE-79
Cross-site Scripting
|
CVE-2017-12097
|
2024-11-21 12:08 |
2018-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255185
|
6.1 |
MEDIUM
Network
|
rails_admin_project
|
rails_admin
|
An exploitable cross site scripting (XSS) vulnerability exists in the add filter functionality of the rails_admin rails gem version 1.2.0. A specially crafted URL can cause an XSS flaw resulting in a…
|
CWE-79
Cross-site Scripting
|
CVE-2017-12098
|
2024-11-21 12:08 |
2018-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255186
|
7.5 |
HIGH
Network
|
freeipa
|
freeipa
|
It was found that FreeIPA 4.2.0 and later could disclose password hashes to users having the 'System: Read Stage Users' permission. A remote, authenticated attacker could potentially use this flaw to…
|
CWE-200
Information Exposure
|
CVE-2017-12169
|
2024-11-21 12:08 |
2018-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255187
|
7.8 |
HIGH
Local
|
mozilla
|
network_security_services
|
Heap-based buffer overflow in the __get_page function in lib/dbm/src/h_page.c in Mozilla Network Security Services (NSS) allows context-dependent attackers to have unspecified impact using a crafted …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11698
|
2024-11-21 12:08 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255188
|
7.8 |
HIGH
Local
|
mozilla
|
network_security_services
|
The __hash_open function in hash.c:229 in Mozilla Network Security Services (NSS) allows context-dependent attackers to cause a denial of service (floating point exception and crash) via a crafted ce…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11697
|
2024-11-21 12:08 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255189
|
7.8 |
HIGH
Local
|
mozilla
|
network_security_services
|
Heap-based buffer overflow in the __hash_open function in lib/dbm/src/hash.c in Mozilla Network Security Services (NSS) allows context-dependent attackers to have unspecified impact using a crafted c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11696
|
2024-11-21 12:08 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255190
|
7.8 |
HIGH
Local
|
mozilla
|
network_security_services
|
Heap-based buffer overflow in the alloc_segs function in lib/dbm/src/hash.c in Mozilla Network Security Services (NSS) allows context-dependent attackers to have unspecified impact using a crafted ce…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11695
|
2024-11-21 12:08 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|