|
248211
|
6.1 |
MEDIUM
Network
|
cisco
|
unified_communications_manager
|
A cross-site scripting (XSS) filter bypass vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to mount XSS att…
|
CWE-79
Cross-site Scripting
|
CVE-2017-3798
|
2024-11-21 12:26 |
2017-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248212
|
5.3 |
MEDIUM
Network
|
cisco
|
webex_meetings_server
|
A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to view the fully qualified domain name of the Cisco WebEx administration server. More Information: CSCv…
|
CWE-200
Information Exposure
|
CVE-2017-3797
|
2024-11-21 12:26 |
2017-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248213
|
7.2 |
HIGH
Network
|
cisco
|
webex_meetings_server
|
A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to execute predetermined shell commands on other hosts. More Information: CSCuz03353. Known Affected Relea…
|
CWE-78
OS Command
|
CVE-2017-3796
|
2024-11-21 12:26 |
2017-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248214
|
5.4 |
MEDIUM
Network
|
cisco
|
webex_meetings_server
|
A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to conduct arbitrary password changes against any non-administrative user. More Information: CSCuz03345. K…
|
CWE-287
Improper Authentication
|
CVE-2017-3795
|
2024-11-21 12:26 |
2017-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248215
|
8.8 |
HIGH
Network
|
cisco
|
webex_meetings_server
|
A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack against an administrative user. More Information: …
|
CWE-352
Origin Validation Error
|
CVE-2017-3794
|
2024-11-21 12:26 |
2017-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248216
|
6.1 |
MEDIUM
Adjacent
|
cisco
|
nx-os
|
A vulnerability in Intermediate System-to-Intermediate System (IS-IS) protocol packet processing of Cisco Nexus 5000, 6000, and 7000 Series Switches software could allow an unauthenticated, adjacent …
|
NVD-CWE-noinfo
|
CVE-2017-3804
|
2024-11-21 12:26 |
2017-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248217
|
5.8 |
MEDIUM
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the content scanning engine of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could allow an unauthenticated, remote attacker to bypass configured message or cont…
|
CWE-20
Improper Input Validation
|
CVE-2017-3800
|
2024-11-21 12:26 |
2017-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248218
|
6.1 |
MEDIUM
Network
|
blackberry
|
appliance-x workspaces_vapp
|
A reflected cross-site scripting vulnerability in the BlackBerry WatchDox Server components Appliance-X, version 1.8.1 and earlier, and vAPP, versions 4.6.0 to 5.4.1, allows remote attackers to execu…
|
CWE-79
Cross-site Scripting
|
CVE-2017-3890
|
2024-11-21 12:26 |
2017-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248219
|
9.8 |
CRITICAL
Network
|
quickheal
|
antivirus_pro internet_security total_security
|
Stack-based buffer overflow in Quick Heal Internet Security 10.1.0.316 and earlier, Total Security 10.1.0.316 and earlier, and AntiVirus Pro 10.1.0.316 and earlier on OS X allows remote attackers to …
|
CWE-787
Out-of-bounds Write
|
CVE-2017-5005
|
2024-11-21 12:26 |
2017-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248220
|
5.3 |
MEDIUM
Network
|
yopify
|
yopify
|
Yopify, an e-commerce notification plugin, up to April 06, 2017, leaks the first name, last initial, city, and recent purchase data of customers, all without user authorization.
|
CWE-200
Information Exposure
|
CVE-2017-3211
|
2024-11-21 12:25 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|