|
247191
|
6.5 |
MEDIUM
Network
|
openvpn
|
openvpn
|
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with an embedded NULL character.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-7522
|
2024-11-21 12:32 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247192
|
5.9 |
MEDIUM
Network
|
openvpn
|
openvpn
|
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service due to memory exhaustion caused by memory leaks and double-free issue in extract_x509_extension().
|
CWE-415 CWE-772
Double Free Missing Release of Resource after Effective Lifetime
|
CVE-2017-7521
|
2024-11-21 12:32 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247193
|
7.4 |
HIGH
Network
|
openvpn
|
openvpn
|
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service and/or possibly sensitive memory leak triggered by man-in-the-middle attacker.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7520
|
2024-11-21 12:32 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247194
|
7.5 |
HIGH
Network
|
openvpn
|
openvpn
|
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.
|
CWE-617
Reachable Assertion
|
CVE-2017-7508
|
2024-11-21 12:32 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247195
|
7.0 |
HIGH
Local
|
fedoraproject
|
arm_installer
|
fedora-arm-installer up to and including 1.99.16 is vulnerable to local privilege escalation due to lack of checking the error condition of mount operation failure on unsafely created temporary direc…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2017-7496
|
2024-11-21 12:32 |
2017-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247196
|
7.6 |
HIGH
Network
|
cambium_networks
|
epmp_1000_firmware epmp_elevate_firmware epmp_2000_firmware epmp_1000_hotspot_firmware
|
An Improper Privilege Management issue was discovered in Cambium Networks ePMP. The privileges for SNMP community strings are not properly restricted, which may allow an attacker to gain access to se…
|
CWE-269
Improper Privilege Management
|
CVE-2017-7922
|
2024-11-21 12:32 |
2017-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247197
|
6.8 |
MEDIUM
Network
|
cambium_networks
|
epmp_1000_firmware epmp_elevate_firmware epmp_2000_firmware epmp_1000_hotspot_firmware
|
An Improper Access Control issue was discovered in Cambium Networks ePMP. After a valid user has used SNMP configuration export, an attacker is able to remotely trigger device configuration backups u…
|
CWE-269
Improper Privilege Management
|
CVE-2017-7918
|
2024-11-21 12:32 |
2017-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247198
|
9.8 |
CRITICAL
Network
|
apache
|
http_server
|
In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_mime can read one byte past the end of a buffer when sending a malicious Content-Type response header.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-7679
|
2024-11-21 12:32 |
2017-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247199
|
7.5 |
HIGH
Network
|
apache netapp redhat debian oracle apple
|
http_server storagegrid clustered_data_ontap oncommand_unified_manager enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_t…
|
The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7668
|
2024-11-21 12:32 |
2017-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247200
|
7.5 |
HIGH
Network
|
gnu
|
gnutls
|
GnuTLS version 3.5.12 and earlier is vulnerable to a NULL pointer dereference while decoding a status response TLS extension with valid contents. This could lead to a crash of the GnuTLS server appli…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-7507
|
2024-11-21 12:32 |
2017-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|