|
247961
|
9.8 |
CRITICAL
Network
|
mcafee
|
livesafe security_scan_plus
|
A Code Injection vulnerability in the non-certificate-based authentication mechanism in McAfee Live Safe versions prior to 16.0.3 and McAfee Security Scan Plus (MSS+) versions prior to 3.11.599.3 all…
|
CWE-94
Code Injection
|
CVE-2017-3897
|
2024-11-21 12:26 |
2017-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247962
|
7.8 |
HIGH
Local
|
emc
|
elan_touchpad_driver
|
An unquoted service path vulnerability was identified in the driver for the ElanTech Touchpad, various versions, used on some Lenovo brand notebooks (not ThinkPads). This could allow an attacker with…
|
CWE-428
Unquoted Search Path or Element
|
CVE-2017-3757
|
2024-11-21 12:26 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247963
|
7.8 |
HIGH
Local
|
lenovo
|
thinkpad_usb_3.0_ethernet_adapter_driver
|
ThinkPad USB 3.0 Ethernet Adapter (part number 4X90E51405) driver, various versions, was found to contain a privilege escalation vulnerability that could allow a local user to execute arbitrary code …
|
NVD-CWE-noinfo
|
CVE-2017-3746
|
2024-11-21 12:26 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247964
|
5.3 |
MEDIUM
Network
|
openssl debian
|
openssl debian_linux
|
While parsing an IPAddressFamily extension in an X.509 certificate, it is possible to do a one-byte overread. This would result in an incorrect text display of the certificate. This bug has been pres…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-3735
|
2024-11-21 12:26 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247965
|
7.8 |
HIGH
Local
|
lenovo
|
thinkpad_10_ella_2_bios thinkpad_11e_beema_bios thinkpad_11e_braswell_bios thinkpad_11e_broadwell_bios thinkpad_11e_skylake_bios thinkpad_13e_bios thinkpad_e450_bios thinkpad_e45…
|
A privilege escalation vulnerability was identified in Lenovo Active Protection System for ThinkPad systems versions earlier than 1.82.0.17. An attacker with local privileges could execute code with …
|
NVD-CWE-noinfo
|
CVE-2017-3756
|
2024-11-21 12:26 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247966
|
6.8 |
MEDIUM
Physics
|
lenovo
|
ideacentre_300-20ish_firmware ideacentre_300s-11ish_firmware ideacentre_510s-08ish_firmware ideacentre_700_firmware 63_firmware h50-30g_firmware m4500_firmware m4500_id_firmware<…
|
A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with ad…
|
CWE-94
Code Injection
|
CVE-2017-3753
|
2024-11-21 12:26 |
2017-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247967
|
7.8 |
HIGH
Local
|
lenovo
|
thinkpad_compact_usb_keyboard_driver
|
An unquoted service path vulnerability was identified in the driver for the ThinkPad Compact USB Keyboard with TrackPoint versions earlier than 1.5.5.0. This could allow an attacker with local privil…
|
CWE-428
Unquoted Search Path or Element
|
CVE-2017-3751
|
2024-11-21 12:26 |
2017-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247968
|
8.2 |
HIGH
Adjacent
|
ibm lenovo
|
1g_l2-7_slb 1\ layer_2\/3_copper_firmware virtual_fabric_10gb en2092_1gb_firmware fabric_cn4093_10gb_firmware fabric_en4093\/en4093r_10gb_firmware g8052_firmware g8124_firmwar…
|
An industry-wide vulnerability has been identified in the implementation of the Open Shortest Path First (OSPF) routing protocol used on some Lenovo switches. Exploitation of these implementation fla…
|
CWE-20
Improper Input Validation
|
CVE-2017-3752
|
2024-11-21 12:26 |
2017-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247969
|
3.1 |
LOW
Network
|
oracle debian redhat mariadb
|
mysql debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_eus enterprise_linux_server_tus enterprise_linux_server_aus o…
|
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.5.56 and earlier, 5.6.36 and earlier and 5.7.18 and earlier. Diffic…
|
NVD-CWE-noinfo
|
CVE-2017-3653
|
2024-11-21 12:26 |
2017-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247970
|
4.2 |
MEDIUM
Network
|
oracle debian
|
mysql debian_linux
|
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.5.56 and earlier, 5.6.36 and earlier and 5.7.18 and earlier. Diffic…
|
NVD-CWE-noinfo
|
CVE-2017-3652
|
2024-11-21 12:26 |
2017-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|