|
251521
|
8.8 |
HIGH
Network
|
geomview
|
geomview
|
common/help.c in Geomview 1.9.5 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection …
|
CWE-74
Injection
|
CVE-2017-17530
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251522
|
8.8 |
HIGH
Network
|
abisource
|
abiword
|
af/util/xp/ut_go_file.cpp in AbiWord 3.0.2-2 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argume…
|
CWE-74
Injection
|
CVE-2017-17529
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251523
|
8.8 |
HIGH
Network
|
scummvm
|
scummvm
|
backends/platform/sdl/posix/posix.cpp in ScummVM 1.9.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to cond…
|
CWE-74
Injection
|
CVE-2017-17528
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251524
|
8.8 |
HIGH
Network
|
pasdoc_project debian
|
pasdoc debian_linux
|
delphi_gui/WWWBrowserRunnerDM.pas in PasDoc 0.14 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct ar…
|
CWE-74
Injection
|
CVE-2017-17527
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251525
|
8.8 |
HIGH
Network
|
giac_project
|
giac
|
Input.cc in Bernard Parisse Giac 1.2.3.57 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-…
|
CWE-74
Injection
|
CVE-2017-17526
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251526
|
8.8 |
HIGH
Network
|
xtuple
|
postbooks
|
guiclient/guiclient.cpp in xTuple PostBooks 4.7.0 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct a…
|
CWE-74
Injection
|
CVE-2017-17525
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251527
|
8.8 |
HIGH
Network
|
swi-prolog
|
swi-prolog
|
library/www_browser.pl in SWI-Prolog 7.2.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument…
|
CWE-74
Injection
|
CVE-2017-17524
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251528
|
8.8 |
HIGH
Network
|
python
|
python
|
Lib/webbrowser.py in Python through 3.6.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-…
|
CWE-74
Injection
|
CVE-2017-17522
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251529
|
8.8 |
HIGH
Network
|
fontforge
|
fontforge
|
uiutil.c in FontForge through 20170731 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-inj…
|
CWE-74
Injection
|
CVE-2017-17521
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251530
|
8.8 |
HIGH
Network
|
debian
|
tin
|
tools/url_handler.pl in TIN 2.4.1 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injectio…
|
CWE-74
Injection
|
CVE-2017-17520
|
2024-11-21 12:18 |
2017-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|