|
247681
|
6.1 |
MEDIUM
Network
|
magmi_project
|
magmi
|
A Cross-Site Scripting (XSS) was discovered in 'Magmi 0.7.22'. The vulnerability exists due to insufficient filtration of user-supplied data (prefix) passed to the 'magmi-git-master/magmi/web/ajax_ge…
|
CWE-79
Cross-site Scripting
|
CVE-2017-7391
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247682
|
6.1 |
MEDIUM
Network
|
socialnetwork_project
|
socialnetwork
|
A Cross-Site Scripting (XSS) was discovered in 'SocialNetwork v1.2.1'. The vulnerability exists due to insufficient filtration of user-supplied data (mail) passed to the 'SocialNetwork-andrea/app/tem…
|
CWE-79
Cross-site Scripting
|
CVE-2017-7390
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247683
|
6.1 |
MEDIUM
Network
|
openeclass
|
openeclass
|
Multiple Cross-Site Scripting (XSS) were discovered in 'openeclass Release_3.5.4'. The vulnerabilities exist due to insufficient filtration of user-supplied data (meeting_id, user) passed to the 'ope…
|
CWE-79
Cross-site Scripting
|
CVE-2017-7389
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247684
|
6.1 |
MEDIUM
Network
|
wallaceit
|
wallacepos
|
A Cross-Site Scripting (XSS) was discovered in 'wallacepos v1.4.1'. The vulnerability exists due to insufficient filtration of user-supplied data (token) passed to the 'wallacepos-master/myaccount/re…
|
CWE-79
Cross-site Scripting
|
CVE-2017-7388
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247685
|
6.1 |
MEDIUM
Network
|
helpmewatchwho_project
|
helpmewatchwho
|
TheFirstQuestion/HelpMeWatchWho before 2017-03-28 is vulnerable to a reflected XSS in HelpMeWatchWho-master/unaired.php (episodeID parameter).
|
CWE-79
Cross-site Scripting
|
CVE-2017-7387
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247686
|
6.1 |
MEDIUM
Network
|
symetrie_project
|
symetrie
|
citymont/symetrie v.0.9.6 is vulnerable to a reflected XSS in symetrie-master/app/commands/page.php (model parameter).
|
CWE-79
Cross-site Scripting
|
CVE-2017-7386
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247687
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring…
|
CWE-476 CWE-416
NULL Pointer Dereference Use After Free
|
CVE-2017-7374
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247688
|
6.1 |
MEDIUM
Network
|
lucidcrew
|
pixie
|
Pixie 1.0.4 allows an admin/index.php s=publish&m=module&x= XSS attack.
|
CWE-79
Cross-site Scripting
|
CVE-2017-7363
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247689
|
6.1 |
MEDIUM
Network
|
lucidcrew
|
pixie
|
Pixie 1.0.4 allows an admin/index.php s=publish&m=dynamic&x= XSS attack.
|
CWE-79
Cross-site Scripting
|
CVE-2017-7362
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247690
|
6.1 |
MEDIUM
Network
|
lucidcrew
|
pixie
|
Pixie 1.0.4 allows an admin/index.php s=publish&m=static&x= XSS attack.
|
CWE-79
Cross-site Scripting
|
CVE-2017-7361
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|