|
249591
|
4.6 |
MEDIUM
Physics
|
apple
|
iphone_os watchos
|
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. watchOS before 3.1.3 is affected. The issue involves the "Unlock with iPhone" component, which allows attackers to by…
|
NVD-CWE-noinfo
|
CVE-2017-2352
|
2024-11-21 12:23 |
2017-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249592
|
2.4 |
LOW
Physics
|
apple
|
iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. The issue involves the "WiFi" component, which allows physically proximate attackers to bypass the activation-lock pr…
|
CWE-20
Improper Input Validation
|
CVE-2017-2351
|
2024-11-21 12:23 |
2017-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249593
|
6.5 |
MEDIUM
Network
|
apple webkitgtk
|
iphone_os safari tvos webkitgtk\+
|
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. Safari before 10.0.3 is affected. tvOS before 10.1.1 is affected. The issue involves the "WebKit" component. It allow…
|
CWE-200
Information Exposure
|
CVE-2017-2350
|
2024-11-21 12:23 |
2017-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249594
|
6.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The nested_vmx_check_vmptr function in arch/x86/kvm/vmx.c in the Linux kernel through 4.9.8 improperly emulates the VMXON instruction, which allows KVM L1 guest OS users to cause a denial of service …
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-2596
|
2024-11-21 12:23 |
2017-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249595
|
8.4 |
HIGH
Local
|
linux
|
linux_kernel
|
The load_segment_descriptor implementation in arch/x86/kvm/emulate.c in the Linux kernel before 4.9.5 improperly emulates a "MOV SS, NULL selector" instruction, which allows guest OS users to cause a…
|
NVD-CWE-noinfo
|
CVE-2017-2583
|
2024-11-21 12:23 |
2017-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249596
|
6.1 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 3.x, there is XSS in the assignment submission page.
|
CWE-79
Cross-site Scripting
|
CVE-2017-2578
|
2024-11-21 12:23 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249597
|
5.3 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 2.x and 3.x, there is incorrect sanitization of attributes in forums.
|
CWE-20
Improper Input Validation
|
CVE-2017-2576
|
2024-11-21 12:23 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249598
|
7.1 |
HIGH
Local
|
linux
|
linux_kernel
|
arch/x86/kvm/emulate.c in the Linux kernel through 4.9.3 allows local users to obtain sensitive information from kernel memory or cause a denial of service (use-after-free) via a crafted application …
|
CWE-200 CWE-416
Information Exposure Use After Free
|
CVE-2017-2584
|
2024-11-21 12:23 |
2017-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249599
|
4.7 |
MEDIUM
Network
|
zimbra
|
zm-ajax
|
A vulnerability has been found in Zimbra zm-ajax up to 8.8.1 and classified as problematic. Affected by this vulnerability is the function XFormItem.prototype.setError of the file WebRoot/js/ajax/dwt…
|
-
|
CVE-2017-20188
|
2024-11-21 12:22 |
2024-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249600
|
6.1 |
MEDIUM
Network
|
share_on_diaspora_project
|
share_on_diaspora
|
A vulnerability classified as problematic was found in ciubotaru share-on-diaspora 0.7.9. This vulnerability affects unknown code of the file new_window.php. The manipulation of the argument title/ur…
|
-
|
CVE-2017-20176
|
2024-11-21 12:22 |
2023-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|