|
258641
|
5.5 |
MEDIUM
Local
|
swftools
|
swftools
|
In SWFTools, a memcpy buffer overflow was found in swfc.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000176
|
2024-11-21 12:04 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258642
|
5.5 |
MEDIUM
Local
|
swftools
|
swftools
|
In SWFTools, an address access exception was found in swfdump swf_GetBits().
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000174
|
2024-11-21 12:04 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258643
|
6.5 |
MEDIUM
Network
|
embedplus
|
youtube
|
CSRF in YouTube (WordPress plugin) could allow unauthenticated attacker to change any setting within the plugin
|
CWE-352
Origin Validation Error
|
CVE-2017-1000224
|
2024-11-21 12:04 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258644
|
9.8 |
CRITICAL
Network
|
windows-cpu_project
|
windows-cpu
|
npm/KyleRoss windows-cpu all versions vulnerable to command injection resulting in code execution as Node.js user
|
CWE-78
OS Command
|
CVE-2017-1000219
|
2024-11-21 12:04 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258645
|
9.8 |
CRITICAL
Network
|
lightftp_project
|
lightftp
|
LightFTP version 1.1 is vulnerable to a buffer overflow in the "writelogentry" function resulting a denial of services or a remote code execution.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000218
|
2024-11-21 12:04 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258646
|
9.8 |
CRITICAL
Network
|
mahara
|
mahara_mobile
|
Mahara Mobile before 1.2.1 is vulnerable to passwords being sent to the Mahara access log in plain text.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2017-1000171
|
2024-11-21 12:04 |
2017-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258647
|
4.4 |
MEDIUM
Network
|
mahara
|
mahara
|
Mahara 15.04 before 15.04.13 and 16.04 before 16.04.7 and 16.10 before 16.10.4 and 17.04 before 17.04.2 are vulnerable to recording plain text passwords in the event_log table during the user creatio…
|
CWE-200
Information Exposure
|
CVE-2017-1000157
|
2024-11-21 12:04 |
2017-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258648
|
6.5 |
MEDIUM
Network
|
mahara
|
mahara
|
Mahara 15.04 before 15.04.9 and 15.10 before 15.10.5 and 16.04 before 16.04.3 are vulnerable to a group's configuration page being editable by any group member even when they didn't have the admin ro…
|
CWE-269
Improper Privilege Management
|
CVE-2017-1000156
|
2024-11-21 12:04 |
2017-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258649
|
4.3 |
MEDIUM
Network
|
mahara
|
mahara
|
Mahara 15.04 before 15.04.8 and 15.10 before 15.10.4 and 16.04 before 16.04.2 are vulnerable to profile pictures being accessed without any access control checks consequently allowing any of a user's…
|
CWE-200
Information Exposure
|
CVE-2017-1000155
|
2024-11-21 12:04 |
2017-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258650
|
9.8 |
CRITICAL
Network
|
mahara
|
mahara
|
Mahara 15.04 before 15.04.8 and 15.10 before 15.10.4 and 16.04 before 16.04.2 are vulnerable to some authentication methods, which do not use Mahara's built-in login form, still allowing users to log…
|
CWE-287
Improper Authentication
|
CVE-2017-1000154
|
2024-11-21 12:04 |
2017-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|