|
257811
|
7.8 |
HIGH
Local
|
google
|
android
|
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0539
|
2024-11-21 12:03 |
2017-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257812
|
7.8 |
HIGH
Local
|
google
|
android
|
A remote code execution vulnerability in libavc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0538
|
2024-11-21 12:03 |
2017-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257813
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
An elevation of privilege vulnerability in the Qualcomm Seemp driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High…
|
CWE-362
Race Condition
|
CVE-2017-0462
|
2024-11-21 12:03 |
2017-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257814
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
An elevation of privilege vulnerability in the Qualcomm audio driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High…
|
NVD-CWE-noinfo
|
CVE-2017-0454
|
2024-11-21 12:03 |
2017-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257815
|
4.3 |
MEDIUM
Network
|
nextcloud
|
nextcloud nextcloud_server
|
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a Content-Spoofing vulnerability in the "files" app. The top navigation bar displayed in the files list contained partially user-controllable in…
|
CWE-20
Improper Input Validation
|
CVE-2017-0888
|
2024-11-21 12:03 |
2017-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257816
|
4.3 |
MEDIUM
Network
|
nextcloud
|
nextcloud_server
|
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a bypass in the quota limitation. Due to not properly sanitizing values provided by the `OC-Total-Length` HTTP header an authenticated adversary…
|
CWE-20
Improper Input Validation
|
CVE-2017-0887
|
2024-11-21 12:03 |
2017-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257817
|
6.5 |
MEDIUM
Network
|
nextcloud
|
nextcloud_server
|
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a Denial of Service attack. Due to an error in the application logic an authenticated adversary may trigger an endless recursion in the applicat…
|
CWE-674
Uncontrolled Recursion
|
CVE-2017-0886
|
2024-11-21 12:03 |
2017-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257818
|
4.3 |
MEDIUM
Network
|
nextcloud
|
nextcloud_server
|
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a error message disclosing existence of file in write-only share. Due to an error in the application logic an adversary with access to a write-o…
|
CWE-200
Information Exposure
|
CVE-2017-0885
|
2024-11-21 12:03 |
2017-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257819
|
4.3 |
MEDIUM
Network
|
nextcloud
|
nextcloud_server
|
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a creation of folders in read-only folders despite lacking permissions issue. Due to a logical error in the file caching layer an authenticated …
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-0884
|
2024-11-21 12:03 |
2017-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257820
|
6.4 |
MEDIUM
Network
|
nextcloud
|
nextcloud_server
|
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a permission increase on re-sharing via OCS API issue. A permission related issue within the OCS sharing API allowed an authenticated adversary …
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-0883
|
2024-11-21 12:03 |
2017-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|