|
248851
|
7.8 |
HIGH
Local
|
ledger-cli
|
ledger
|
An exploitable buffer overflow vulnerability exists in the tag parsing functionality of Ledger-CLI 3.1.1. A specially crafted journal file can cause an integer underflow resulting in code execution. …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2807
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248852
|
7.8 |
HIGH
Local
|
ni
|
labview
|
An exploitable memory corruption vulnerability exists in the RSRC segment parsing functionality of LabVIEW 2017, LabVIEW 2016, LabVIEW 2015, and LabVIEW 2014. A specially crafted Virtual Instrument (…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2779
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248853
|
7.5 |
HIGH
Network
|
apache
|
solr
|
When using the Index Replication feature, Apache Solr nodes can pull index files from a master/leader node using an HTTP API which accepts a file name. However, Solr before 5.5.4 and 6.x before 6.4.1…
|
CWE-22
Path Traversal
|
CVE-2017-3163
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248854
|
6.1 |
MEDIUM
Network
|
apache
|
atlas
|
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to cross frame scripting.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3155
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248855
|
7.5 |
HIGH
Network
|
apache
|
atlas
|
Error responses from Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating included stack trace, exposing excessive information.
|
CWE-200
Information Exposure
|
CVE-2017-3154
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248856
|
6.1 |
MEDIUM
Network
|
apache
|
atlas
|
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to Reflected XSS in the search functionality.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3153
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248857
|
6.1 |
MEDIUM
Network
|
apache
|
atlas
|
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to DOM XSS in the edit-tag functionality.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3152
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248858
|
6.1 |
MEDIUM
Network
|
apache
|
atlas
|
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to Stored Cross-Site Scripting in the edit-tag functionality.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3151
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248859
|
6.1 |
MEDIUM
Network
|
apache
|
atlas
|
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating use cookies that could be accessible to client-side script.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3150
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248860
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader_dc reader
|
Adobe Acrobat Reader 2017.009.20058 and earlier, 2017.008.30051 and earlier, 2015.006.30306 and earlier, and 11.0.20 and earlier has an exploitable memory corruption vulnerability in the picture exch…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-3124
|
2024-11-21 12:24 |
2017-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|