|
251661
|
5.5 |
MEDIUM
Local
|
hunesion
|
i-onenet
|
Incorrect Access Control in Hunesion i-oneNet 3.0.6042.1200 allows the local user to access other user's information which is unauthorized via brute force.
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2017-16900
|
2024-11-21 12:17 |
2020-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251662
|
8.8 |
HIGH
Adjacent
|
huawei
|
hg655m_firmware
|
Some Huawei smart phones with versions earlier than Harry-AL00C 9.1.0.206(C00E205R3P1) have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected pro…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-17224
|
2024-11-21 12:17 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251663
|
5.4 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: Cross Site Scripting (XSS).
|
CWE-79
Cross-site Scripting
|
CVE-2017-17061
|
2024-11-21 12:17 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251664
|
9.8 |
CRITICAL
Network
|
open-xchange
|
open-xchange_appsuite
|
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: Insecure Permissions.
|
CWE-275
Permission Issues
|
CVE-2017-17060
|
2024-11-21 12:17 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251665
|
8.1 |
HIGH
Network
|
sophos ncp-e
|
ipsec_client ncp_secure_entry_client
|
The Sophos UTM VPN endpoint interacts with client software provided by NPC Engineering (www.ncp-e.com). The affected client software, "Sophos IPSec Client" 11.04 is a rebranded version of NCP "Secure…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2017-17023
|
2024-11-21 12:17 |
2019-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251666
|
6.5 |
MEDIUM
Network
|
libraw canonical
|
libraw ubuntu_linux
|
An error within the "LibRaw::xtrans_interpolate()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.6 can be exploited to cause an invalid read memory access and subsequently a D…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-16910
|
2024-11-21 12:17 |
2018-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251667
|
8.8 |
HIGH
Network
|
libraw canonical
|
libraw ubuntu_linux
|
An error related to the "LibRaw::panasonic_load_raw()" function (dcraw_common.cpp) in LibRaw versions prior to 0.18.6 can be exploited to cause a heap-based buffer overflow and subsequently cause a c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-16909
|
2024-11-21 12:17 |
2018-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251668
|
6.7 |
MEDIUM
Local
|
huawei
|
mate_9_firmware mate_9_pro_firmware
|
The hardware security module of Mate 9 and Mate 9 Pro Huawei smart phones with the versions earlier before MHA-AL00BC00B156, versions earlier before MHA-CL00BC00B156, versions earlier before MHA-DL00…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-17176
|
2024-11-21 12:17 |
2018-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251669
|
7.5 |
HIGH
Network
|
huawei
|
usg2205bsr_firmware usg2220bsr_firmware usg5120bsr_firmware usg5150bsr_firmware
|
Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoS vulnerability in the IPSEC IKEv1 implementations of Huawe…
|
CWE-20
Improper Input Validation
|
CVE-2017-17312
|
2024-11-21 12:17 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251670
|
7.5 |
HIGH
Network
|
huawei
|
usg2205bsr_firmware usg2220bsr_firmware usg5120bsr_firmware usg5150bsr_firmware
|
Some Huawei Firewall products USG2205BSR V300R001C10SPC600; USG2220BSR V300R001C00; USG5120BSR V300R001C00; USG5150BSR V300R001C00 have a DoS vulnerability in the IPSEC IKEv1 implementations of Huawe…
|
CWE-20
Improper Input Validation
|
CVE-2017-17311
|
2024-11-21 12:17 |
2018-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|