|
248801
|
7.5 |
HIGH
Network
|
huawei
|
ac6005_firmware ac6605_firmware
|
AC6005 with software V200R006C10, AC6605 with software V200R006C10 have a DoS Vulnerability. An attacker can send malformed packets to the device, which causes the device memory leaks, leading to DoS…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-2700
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248802
|
7.8 |
HIGH
Local
|
huawei
|
honor_7_firmware mate_s_firmware lyo-l21_firmware
|
The Huawei Themes APP in versions earlier than PLK-UL00C17B385, versions earlier than CRR-L09C432B380, versions earlier than LYO-L21C577B128 has a privilege elevation vulnerability. An attacker could…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2017-2699
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248803
|
7.8 |
HIGH
Local
|
huawei
|
p8_firmware
|
The ddr_devfreq driver in versions earlier than GRA-UL00C00B197 has buffer overflow vulnerability. An attacker with the root privilege of the Android system can tricks a user into installing a malici…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2698
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248804
|
7.8 |
HIGH
Local
|
huawei
|
gt3_firmware honor_5c_firmware knt_firmware p9_lite_firmware y6ii_firmware
|
The goldeneye driver in NMO-L31C432B120 and earlier versions,NEM-L21C432B100 and earlier versions,NEM-L51C432B120 and earlier versions,KNT-AL10C746B160 and earlier versions,VNS-L21C185B142 and earlie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2697
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248805
|
7.8 |
HIGH
Local
|
huawei
|
y6ii_firmware
|
The emerg_data driver in CAM-L21C10B130 and earlier versions, CAM-L21C185B141 and earlier versions has a buffer overflow vulnerability. An attacker with the root privilege of the Android system can t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2696
|
2024-11-21 12:24 |
2017-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248806
|
7.8 |
HIGH
Local
|
libxls_project debian
|
libxls debian_linux
|
An exploitable stack based buffer overflow vulnerability exists in the xls_getfcell function of libxls 1.3.4. A specially crafted XLS file can cause a memory corruption resulting in remote code execu…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2919
|
2024-11-21 12:24 |
2017-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248807
|
7.8 |
HIGH
Local
|
libxls_project
|
libxls
|
An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1.4. A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An atta…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2897
|
2024-11-21 12:24 |
2017-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248808
|
7.8 |
HIGH
Local
|
libxls_project debian
|
libxls debian_linux
|
An exploitable out-of-bounds write vulnerability exists in the xls_mergedCells function of libxls 1.4. . A specially crafted XLS file can cause a memory corruption resulting in remote code execution.…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2896
|
2024-11-21 12:24 |
2017-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248809
|
5.5 |
MEDIUM
Local
|
apache debian redhat
|
openoffice debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux_ser…
|
By exploiting the way Apache OpenOffice before 4.1.4 renders embedded objects, an attacker could craft a document that allows reading in a file from the user's filesystem. Information could be retrie…
|
CWE-200
Information Exposure
|
CVE-2017-3157
|
2024-11-21 12:24 |
2017-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248810
|
7.8 |
HIGH
Local
|
apache
|
hadoop
|
In Apache Hadoop versions 2.6.1 to 2.6.5, 2.7.0 to 2.7.3, and 3.0.0-alpha1, if a file in an encryption zone with access permissions that make it world readable is localized via YARN's localization me…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-3166
|
2024-11-21 12:24 |
2017-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|