|
256611
|
5.7 |
MEDIUM
Adjacent
|
symantec
|
encryption_desktop
|
In Symantec Encryption Desktop before SED 10.4.1 MP2HF1, a kernel memory leak is a type of resource leak that can occur when a computer program incorrectly manages memory allocations in such a way th…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-13682
|
2024-11-21 12:11 |
2017-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256612
|
8.8 |
HIGH
Network
|
tp-link
|
wr940n_firmware
|
Multiple stack-based buffer overflows in TP-Link WR940N WiFi routers with hardware version 4 allow remote authenticated users to execute arbitrary code via the (1) ping_addr parameter to PingIframeRp…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-13772
|
2024-11-21 12:11 |
2017-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256613
|
6.7 |
MEDIUM
Local
|
progea
|
movicon
|
An Unquoted Search Path or Element issue was discovered in Progea Movicon Version 11.5.1181 and prior. An unquoted search path or element vulnerability has been identified, which may allow an authori…
|
CWE-428
Unquoted Search Path or Element
|
CVE-2017-14019
|
2024-11-21 12:11 |
2017-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256614
|
7.8 |
HIGH
Local
|
progea
|
movicon
|
An Uncontrolled Search Path Element issue was discovered in Progea Movicon Version 11.5.1181 and prior. An uncontrolled search path element vulnerability has been identified, which may allow a remote…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2017-14017
|
2024-11-21 12:11 |
2017-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256615
|
5.6 |
MEDIUM
Network
|
prominent
|
multiflex_m10a_controller_firmware
|
A Client-Side Enforcement of Server-Side Security issue was discovered in ProMinent MultiFLEX M10a Controller web interface. The log out function in the application removes the user's session only on…
|
CWE-669
Incorrect Resource Transfer Between Spheres
|
CVE-2017-14013
|
2024-11-21 12:11 |
2017-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256616
|
8.8 |
HIGH
Network
|
prominent
|
multiflex_m10a_controller_firmware
|
A Cross-Site Request Forgery issue was discovered in ProMinent MultiFLEX M10a Controller web interface. The application does not sufficiently verify requests, making it susceptible to cross-site requ…
|
CWE-352
Origin Validation Error
|
CVE-2017-14011
|
2024-11-21 12:11 |
2017-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256617
|
6.5 |
MEDIUM
Network
|
prominent
|
multiflex_m10a_controller_firmware
|
An Information Exposure issue was discovered in ProMinent MultiFLEX M10a Controller web interface. When an authenticated user uses the Change Password feature on the application, the current password…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2017-14009
|
2024-11-21 12:11 |
2017-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256618
|
5.6 |
MEDIUM
Network
|
prominent
|
multiflex_m10a_controller_firmware
|
An Insufficient Session Expiration issue was discovered in ProMinent MultiFLEX M10a Controller web interface. The user's session is available for an extended period beyond the last activity, allowing…
|
CWE-613
Insufficient Session Expiration
|
CVE-2017-14007
|
2024-11-21 12:11 |
2017-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256619
|
8.8 |
HIGH
Network
|
prominent
|
multiflex_m10a_controller_firmware
|
An Unverified Password Change issue was discovered in ProMinent MultiFLEX M10a Controller web interface. When setting a new password for a user, the application does not require the user to know the …
|
CWE-640
Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2017-14005
|
2024-11-21 12:11 |
2017-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256620
|
9.8 |
CRITICAL
Network
|
we-con
|
levi_studio_hmi_editor
|
A Stack-based Buffer Overflow issue was discovered in WECON LEVI Studio HMI Editor v1.8.1 and prior. Multiple stack-based buffer overflow vulnerabilities have been identified in which the application…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-13999
|
2024-11-21 12:11 |
2017-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|