|
250261
|
7.8 |
HIGH
Local
|
ansible-vault_project
|
ansible-vault
|
An exploitable vulnerability exists in the yaml loading functionality of ansible-vault before 1.0.5. A specially crafted vault can execute arbitrary python commands resulting in command execution. An…
|
CWE-94
Code Injection
|
CVE-2017-2809
|
2024-11-21 12:24 |
2017-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250262
|
8.8 |
HIGH
Network
|
libofx_project debian
|
libofx debian_linux
|
An exploitable buffer overflow vulnerability exists in the tag parsing functionality of LibOFX 0.9.11. A specially crafted OFX file can cause a write out of bounds resulting in a buffer overflow on t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2816
|
2024-11-21 12:24 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250263
|
5.4 |
MEDIUM
Network
|
apache
|
brooklyn
|
In Apache Brooklyn before 0.10.0, the REST server is vulnerable to cross-site scripting where one authenticated user can cause scripts to run in the browser of another user authorized to access the f…
|
CWE-79
Cross-site Scripting
|
CVE-2017-3165
|
2024-11-21 12:24 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250264
|
6.1 |
MEDIUM
Network
|
fortinet
|
fortios
|
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.6.0 and earlier allows attackers to execute unauthorized code or commands via the Replacement Message HTML for SSL-VPN.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3133
|
2024-11-21 12:24 |
2017-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250265
|
6.1 |
MEDIUM
Network
|
fortinet
|
fortios
|
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.6.0 and earlier allows attackers to Execute unauthorized code or commands via the action input during the activation of a FortiToke…
|
CWE-79
Cross-site Scripting
|
CVE-2017-3132
|
2024-11-21 12:24 |
2017-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250266
|
5.4 |
MEDIUM
Network
|
fortinet
|
fortios
|
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.4.0 through 5.4.4 and 5.6.0 allows attackers to execute unauthorized code or commands via the filter input in "Applications" under …
|
CWE-79
Cross-site Scripting
|
CVE-2017-3131
|
2024-11-21 12:24 |
2017-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250267
|
7.8 |
HIGH
Local
|
gnome debian
|
gdk-pixbuf debian_linux
|
An exploitable integer overflow vulnerability exists in the tiff_image_parse functionality of Gdk-Pixbuf 2.36.6 when compiled with Clang. A specially crafted tiff file can cause a heap-overflow resul…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-2870
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250268
|
7.8 |
HIGH
Local
|
gnome debian
|
gdk-pixbuf debian_linux
|
An exploitable heap overflow vulnerability exists in the gdk_pixbuf__jpeg_image_load_increment functionality of Gdk-Pixbuf 2.36.6. A specially crafted jpeg file can cause a heap overflow resulting in…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2862
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250269
|
8.8 |
HIGH
Network
|
lexmark
|
perceptive_document_filters
|
An exploitable code execution vulnerability exists in the image rendering functionality of Lexmark Perceptive Document Filters 11.3.0.2400. A specifically crafted PDF can cause a function call on a c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2822
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250270
|
8.8 |
HIGH
Network
|
lexmark
|
perceptive_document_filters
|
An exploitable use-after-free exists in the PDF parsing functionality of Lexmark Perspective Document Filters 11.3.0.2400 and 11.4.0.2452. A crafted PDF document can lead to a use-after-free resultin…
|
CWE-416
Use After Free
|
CVE-2017-2821
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|