|
247791
|
8.8 |
HIGH
Network
|
sagecrm
|
sagecrm
|
A SQL Injection issue was discovered in SageCRM 7.x before 7.3 SP3. The AP_DocumentUI.asp web resource includes Utilityfuncs.js when the file is opened or viewed. This file crafts a SQL statement to …
|
CWE-89
SQL Injection
|
CVE-2017-5218
|
2024-11-21 12:27 |
2017-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247792
|
4.9 |
MEDIUM
Network
|
citrix
|
xenserver
|
An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can cancel tasks of other administrators.
|
NVD-CWE-noinfo
|
CVE-2017-5573
|
2024-11-21 12:27 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247793
|
6.5 |
MEDIUM
Network
|
citrix
|
xenserver
|
An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host database.
|
CWE-269
Improper Privilege Management
|
CVE-2017-5572
|
2024-11-21 12:27 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247794
|
6.1 |
MEDIUM
Network
|
piwigo
|
piwigo
|
Cross-site scripting (XSS) vulnerability in the image upload function in Piwigo before 2.8.6 allows remote attackers to inject arbitrary web script or HTML via a crafted image filename.
|
CWE-79
Cross-site Scripting
|
CVE-2017-5608
|
2024-11-21 12:27 |
2017-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247795
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print().
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5486
|
2024-11-21 12:27 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247796
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in addrtoname.c:lookup_nsap().
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5485
|
2024-11-21 12:27 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247797
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:sig_print().
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5484
|
2024-11-21 12:27 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247798
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The SNMP parser in tcpdump before 4.9.0 has a buffer overflow in print-snmp.c:asn1_parse().
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5483
|
2024-11-21 12:27 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247799
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2016-8575.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5482
|
2024-11-21 12:27 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247800
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, OTV, VXLAN and VXLAN GPE) could cause a buffer overflow in print-ether.c:ether_print().
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5342
|
2024-11-21 12:27 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|