|
255961
|
7.5 |
HIGH
Network
|
trendmicro
|
scanmail
|
A vulnerability in Trend Micro ScanMail for Exchange 12.0 exists in which certain specific installations that utilize a uncommon feature - Other Update Sources - could be exploited to overwrite sensi…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2017-14091
|
2024-11-21 12:12 |
2017-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255962
|
9.1 |
CRITICAL
Network
|
trendmicro
|
scanmail
|
A vulnerability in Trend Micro ScanMail for Exchange 12.0 exists in which some communications to the update servers are not encrypted.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2017-14090
|
2024-11-21 12:12 |
2017-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255963
|
8.8 |
HIGH
Network
|
fortinet
|
forticlient forticlient_sslvpn_client
|
An Information Disclosure vulnerability in Fortinet FortiClient for Windows 5.6.0 and below versions, FortiClient for Mac OSX 5.6.0 and below versions and FortiClient SSLVPN Client for Linux 4.4.2334…
|
CWE-200
Information Exposure
|
CVE-2017-14184
|
2024-11-21 12:12 |
2017-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255964
|
9.8 |
CRITICAL
Network
|
changehealthcare
|
conserus_image_repository
|
A security researcher found an XML External Entity (XXE) vulnerability on the Conserus Image Repository archive solution version 2.1.1.105 by McKesson Medical Imaging Company, which is now a Change H…
|
CWE-611
XXE
|
CVE-2017-14101
|
2024-11-21 12:12 |
2017-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255965
|
6.7 |
MEDIUM
Local
|
emc
|
isilon_onefs
|
In EMC Isilon OneFS 8.1.0.0, 8.0.1.0 - 8.0.1.1, 8.0.0.0 - 8.0.0.4, 7.2.1.0 - 7.2.1.5, 7.2.0.x, and 7.1.1.x, a malicious compliance admin (compadmin) account user could exploit a vulnerability in isi_…
|
CWE-269
Improper Privilege Management
|
CVE-2017-14380
|
2024-11-21 12:12 |
2017-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255966
|
7.3 |
HIGH
Network
|
microfocus
|
project_and_portfolio_management
|
Cross-Site Request Forgery vulnerability in Micro Focus Project and Portfolio Management Center, version 9.32. This vulnerability could be exploited to allow a Cross-Site Forgery attack.
|
CWE-352
Origin Validation Error
|
CVE-2017-14362
|
2024-11-21 12:12 |
2017-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255967
|
7.4 |
HIGH
Network
|
microfocus
|
project_and_portfolio_management
|
Man-In-The-Middle vulnerability in Micro Focus Project and Portfolio Management Center, version 9.32. This vulnerability could be exploited to allow a Man-in-the-middle attack.
|
NVD-CWE-noinfo
|
CVE-2017-14361
|
2024-11-21 12:12 |
2017-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255968
|
6.1 |
MEDIUM
Network
|
dell
|
2355dn_firmware 2335dn_firmware
|
The web user interface of Dell 2335dn and 2355dn Multifunction Laser Printers, firmware versions prior to V2.70.06.26 A13 and V2.70.45.34 A10 respectively, are affected by a cross-site scripting vuln…
|
CWE-79
Cross-site Scripting
|
CVE-2017-14386
|
2024-11-21 12:12 |
2017-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255969
|
9.8 |
CRITICAL
Network
|
dell
|
storage_manager
|
The SMI-S service in Dell Storage Manager versions earlier than 16.3.20 (aka 2016 R3.20) is protected using a hard-coded password. A remote user with the knowledge of the password might potentially d…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-14374
|
2024-11-21 12:12 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255970
|
7.8 |
HIGH
Local
|
microfocus
|
connected_backup
|
A potential security vulnerability has been identified in HPE Connected Backup versions 8.6 and 8.8.6. The vulnerability could be exploited locally to allow escalation of privilege.
|
NVD-CWE-noinfo
|
CVE-2017-14355
|
2024-11-21 12:12 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|