|
255321
|
5.5 |
MEDIUM
Local
|
bento4
|
bento4
|
The AP4_AvccAtom::InspectFields function in Core/Ap4AvccAtom.cpp in Bento4 mp4dump before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and application cras…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-12476
|
2024-11-21 12:09 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255322
|
5.5 |
MEDIUM
Local
|
axiosys
|
bento4
|
The AP4_Processor::Process function in Core/Ap4Processor.cpp in Bento4 mp4encrypt before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-12475
|
2024-11-21 12:09 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255323
|
5.5 |
MEDIUM
Local
|
bento4
|
bento4
|
The AP4_AtomSampleTable::GetSample function in Core/Ap4AtomSampleTable.cpp in Bento4 mp42ts before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and applica…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-12474
|
2024-11-21 12:09 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255324
|
7.7 |
HIGH
Network
|
netapp
|
clustered_data_ontap
|
NetApp Clustered Data ONTAP 8.3.x before 8.3.2P12 allows remote authenticated users to read data on other Storage Virtual Machines (SVMs) via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2017-12423
|
2024-11-21 12:09 |
2017-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255325
|
8.8 |
HIGH
Network
|
netapp
|
clustered_data_ontap
|
NetApp Clustered Data ONTAP 8.3.x before 8.3.2P12 allows remote authenticated users to execute arbitrary code on the storage controller via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2017-12421
|
2024-11-21 12:09 |
2017-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255326
|
6.5 |
MEDIUM
Network
|
netapp
|
storagegrid_webscale
|
NetApp StorageGRID Webscale 10.2.x before 10.2.2.3, 10.3.x before 10.3.0.4, and 10.4.x before 10.4.0.2 allow remote authenticated users to delete arbitrary objects via unspecified vectors.
|
CWE-269
Improper Privilege Management
|
CVE-2017-12422
|
2024-11-21 12:09 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255327
|
7.8 |
HIGH
Local
|
qpdf_project
|
qpdf
|
The tokenizer in QPDF 6.0.0 and 7.0.b1 is recursive for arrays and dictionaries, which allows remote attackers to cause a denial of service (stack consumption and segmentation fault) or possibly have…
|
CWE-20
Improper Input Validation
|
CVE-2017-12595
|
2024-11-21 12:09 |
2017-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255328
|
8.8 |
HIGH
Network
|
asus
|
dsl-n10s_firmware
|
ASUS DSL-N10S V2.1.16_APAC devices allow CSRF.
|
CWE-352
Origin Validation Error
|
CVE-2017-12593
|
2024-11-21 12:09 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255329
|
8.8 |
HIGH
Network
|
asus
|
dsl-n10s_firmware
|
ASUS DSL-N10S V2.1.16_APAC devices have a privilege escalation vulnerability. A normal user can escalate its privilege and perform administrative actions. There is no mapping of users with their priv…
|
NVD-CWE-noinfo
|
CVE-2017-12592
|
2024-11-21 12:09 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255330
|
5.4 |
MEDIUM
Network
|
asus
|
dsl-n10s_firmware
|
ASUS DSL-N10S V2.1.16_APAC devices have reflected and stored cross site scripting, as demonstrated by the snmpSysName parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2017-12591
|
2024-11-21 12:09 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|