|
258111
|
4.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An information disclosure vulnerability in the NVIDIA crypto driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because…
|
CWE-200
Information Exposure
|
CVE-2017-0330
|
2024-11-21 12:02 |
2017-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258112
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
An elevation of privilege vulnerability in the NVIDIA boot and power management processor driver could enable a local malicious application to execute arbitrary code within the context of the boot an…
|
NVD-CWE-noinfo
|
CVE-2017-0329
|
2024-11-21 12:02 |
2017-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258113
|
4.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An information disclosure vulnerability in the NVIDIA crypto driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because…
|
CWE-200
Information Exposure
|
CVE-2017-0328
|
2024-11-21 12:02 |
2017-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258114
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
An elevation of privilege vulnerability in the NVIDIA crypto driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High …
|
CWE-120
Classic Buffer Overflow
|
CVE-2017-0327
|
2024-11-21 12:02 |
2017-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258115
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
An elevation of privilege vulnerability in the NVIDIA I2C HID driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-0325
|
2024-11-21 12:02 |
2017-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258116
|
5.3 |
MEDIUM
Network
|
tryton
|
tryton
|
file_open in Tryton 3.x and 4.x through 4.2.2 allows remote authenticated users with certain permissions to read arbitrary files via a "same root name but with a suffix" attack. NOTE: This vulnerabil…
|
CWE-269
Improper Privilege Management
|
CVE-2017-0360
|
2024-11-21 12:02 |
2017-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258117
|
6.1 |
MEDIUM
Network
|
ibm
|
inotes
|
IBM iNotes 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially lea…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9990
|
2024-11-21 12:02 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258118
|
9.8 |
CRITICAL
Network
|
synacor
|
zimbra_collaboration_suite
|
Zimbra Collaboration Suite (ZCS) before 8.7.4 allows remote attackers to conduct XML External Entity (XXE) attacks.
|
CWE-611
XXE
|
CVE-2016-9924
|
2024-11-21 12:02 |
2017-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258119
|
5.5 |
MEDIUM
Local
|
qemu
|
qemu
|
The cirrus_do_copy function in hw/display/cirrus_vga.c in QEMU (aka Quick Emulator), when cirrus graphics mode is VGA, allows local guest OS privileged users to cause a denial of service (divide-by-z…
|
CWE-369
Divide By Zero
|
CVE-2016-9922
|
2024-11-21 12:02 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258120
|
4.4 |
MEDIUM
Local
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 11 on Windows 10, 1511, and 1606 and Windows Server 2016 does not enforce cross-domain policies, allowing attackers to access information from one domain and inject it int…
|
CWE-74
Injection
|
CVE-2017-0154
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|