|
249601
|
9.8 |
CRITICAL
Network
|
contentmap_project
|
contentmap
|
A vulnerability was found in AlexRed contentmap. It has been rated as critical. Affected by this issue is the function Load of the file contentmap.php. The manipulation of the argument contentid lead…
|
-
|
CVE-2017-20173
|
2024-11-21 12:22 |
2023-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249602
|
9.8 |
CRITICAL
Network
|
apersistence_project
|
apersistence
|
A vulnerability classified as critical has been found in PrivateSky apersistence. This affects an unknown part of the file db/sql/mysqlUtils.js. The manipulation leads to sql injection. The identifie…
|
CWE-89
SQL Injection
|
CVE-2017-20171
|
2024-11-21 12:22 |
2023-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249603
|
- |
|
-
|
-
|
A vulnerability was found in Zimbra zm-admin-ajax up to 8.8.1. It has been classified as problematic. This affects the function XFormItem.prototype.setError of the file WebRoot/js/ajax/dwt/xforms/XFo…
|
-
|
CVE-2017-20191
|
2024-11-21 12:22 |
2024-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249604
|
- |
|
-
|
-
|
Some Microsoft technologies as used in Windows 8 through 11 allow a temporary client-side performance degradation during processing of multiple Unicode combining characters, aka a "Zalgo text" attack…
|
-
|
CVE-2017-20190
|
2024-11-21 12:22 |
2024-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249605
|
9.8 |
CRITICAL
Network
|
clojure
|
clojure
|
In Clojure before 1.9.0, classes can be used to construct a serialized object that executes arbitrary code upon deserialization. This is relevant if a server deserializes untrusted objects.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2017-20189
|
2024-11-21 12:22 |
2024-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249606
|
9.8 |
CRITICAL
Network
|
floriangaerber
|
magnesium-php
|
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Magnesium-PHP up to 0.3.0. It has been classified as problematic. Affected is the function formatEmailString of the file src/Magnesium/Mes…
|
-
|
CVE-2017-20187
|
2024-11-21 12:22 |
2023-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249607
|
7.5 |
HIGH
Network
|
nikooo777
|
cksurf
|
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in nikooo777 ckSurf up to 1.19.2. It has been declared as problematic. This vulnerability affects the function SpecListMenuDead of the file c…
|
-
|
CVE-2017-20186
|
2024-11-21 12:22 |
2023-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249608
|
6.1 |
MEDIUM
Network
|
server_web_monitor_page_project
|
server_web_monitor_page
|
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Fuzzy SWMP. It has been rated as problematic. This issue affects some unknown processing of the file swmp.php of the component GET Paramet…
|
-
|
CVE-2017-20185
|
2024-11-21 12:22 |
2023-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249609
|
6.1 |
MEDIUM
Network
|
external_media_without_import_project
|
external_media_without_import
|
A vulnerability was found in External Media without Import Plugin up to 1.0.0 on WordPress. It has been declared as problematic. This vulnerability affects the function print_media_new_panel of the f…
|
CWE-79
Cross-site Scripting
|
CVE-2017-20183
|
2024-11-21 12:22 |
2023-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249610
|
7.5 |
HIGH
Network
|
gavazzionline
|
powersoft
|
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Carlo Gavazzi Powersoft up to version 2.1.1.1 allows an unauthenticated, remote attacker to download an…
|
-
|
CVE-2017-20184
|
2024-11-21 12:22 |
2023-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|