|
247541
|
9.8 |
CRITICAL
Network
|
open-xchange
|
open-xchange_appsuite
|
Open-Xchange GmbH OX App Suite 7.8.3 and earlier is affected by: Incorrect Access Control.
|
CWE-284
Improper Access Control
|
CVE-2017-5863
|
2024-11-21 12:28 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247542
|
7.5 |
HIGH
Network
|
3m
|
detcon_sitewatch_gateway
|
Detcon Sitewatch Gateway, all versions without cellular, an attacker can edit settings on the device using a specially crafted URL.
|
CWE-287
Improper Authentication
|
CVE-2017-6049
|
2024-11-21 12:28 |
2019-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247543
|
9.8 |
CRITICAL
Network
|
3m
|
detcon_sitewatch_gateway
|
Detcon Sitewatch Gateway, all versions without cellular, Passwords are presented in plaintext in a file that is accessible without authentication.
|
CWE-255
Credentials Management
|
CVE-2017-6047
|
2024-11-21 12:28 |
2019-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247544
|
6.1 |
MEDIUM
Network
|
moinmo debian canonical opensuse
|
moinmoin debian_linux ubuntu_linux leap
|
Cross-site scripting (XSS) vulnerability in the link dialogue in GUI editor in MoinMoin before 1.9.10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2017-5934
|
2024-11-21 12:28 |
2018-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247545
|
5.3 |
MEDIUM
Network
|
apache
|
pony_mail
|
The statistics generator in Apache Pony Mail 0.7 to 0.9 was found to be returning timestamp data without proper authorization checks. This could lead to derived information disclosure on private list…
|
CWE-200
Information Exposure
|
CVE-2017-5658
|
2024-11-21 12:28 |
2018-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247546
|
5.5 |
MEDIUM
Local
|
intel
|
graphics_driver
|
Out-of-bounds read condition in older versions of some Intel Graphics Driver for Windows code branches allows local users to perform a denial of service attack.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-5692
|
2024-11-21 12:28 |
2018-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247547
|
7.5 |
HIGH
Network
|
intel
|
puma_firmware
|
Firmware in the Intel Puma 5, 6, and 7 Series might experience resource depletion or timeout, which allows a network attacker to create a denial of service via crafted network traffic.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-5693
|
2024-11-21 12:28 |
2018-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247548
|
6.7 |
MEDIUM
Local
|
intel
|
core_i3 core_i5 core_i7
|
Platform sample code firmware included with 4th Gen Intel Core Processor, 5th Gen Intel Core Processor, 6th Gen Intel Core Processor, and 7th Gen Intel Core Processor potentially exposes password inf…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2017-5704
|
2024-11-21 12:28 |
2018-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247549
|
7.5 |
HIGH
Network
|
schneider-electric aveva
|
clearscada
|
In Schneider Electric ClearSCADA 2014 R1 (build 75.5210) and prior, 2014 R1.1 (build 75.5387) and prior, 2015 R1 (build 76.5648) and prior, and 2015 R2 (build 77.5882) and prior, an attacker with net…
|
CWE-20
Improper Input Validation
|
CVE-2017-6021
|
2024-11-21 12:28 |
2018-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247550
|
7.8 |
HIGH
Local
|
rockwellautomation
|
factorytalk_activation
|
Without quotation marks, any whitespace in the file path for Rockwell Automation FactoryTalk Activation version 4.00.02 remains ambiguous, which may allow an attacker to link to or run a malicious ex…
|
CWE-74
Injection
|
CVE-2017-6015
|
2024-11-21 12:28 |
2018-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|