|
258001
|
9.8 |
CRITICAL
Network
|
onosproject
|
onos
|
Linux foundation ONOS 1.9.0 is vulnerable to unauthenticated upload of applications (.oar) resulting in remote code execution.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2017-1000081
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258002
|
7.5 |
HIGH
Network
|
onosproject
|
onos
|
Linux foundation ONOS 1.9.0 allows unauthenticated use of websockets.
|
NVD-CWE-noinfo
|
CVE-2017-1000080
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258003
|
7.5 |
HIGH
Network
|
onosproject
|
onos
|
Linux foundation ONOS 1.9.0 is vulnerable to a DoS.
|
NVD-CWE-noinfo
|
CVE-2017-1000079
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258004
|
6.1 |
MEDIUM
Network
|
onosproject
|
onos
|
Linux foundation ONOS 1.9 is vulnerable to XSS in the device. registration
|
CWE-79
Cross-site Scripting
|
CVE-2017-1000078
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258005
|
9.8 |
CRITICAL
Network
|
creolabs
|
gravity
|
Creolabs Gravity version 1.0 is vulnerable to a stack overflow in the memcmp function
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000075
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258006
|
9.8 |
CRITICAL
Network
|
creolabs
|
gravity
|
Creolabs Gravity version 1.0 is vulnerable to a stack overflow in the string_repeat() function.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000074
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258007
|
9.8 |
CRITICAL
Network
|
jenkins
|
jenkins
|
The re-key admin monitor was introduced in Jenkins 1.498 and re-encrypted all secrets in JENKINS_HOME with a new key. It also created a backup directory with all old secrets, and the key used to encr…
|
CWE-200
Information Exposure
|
CVE-2017-1000362
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258008
|
9.8 |
CRITICAL
Network
|
creolabs
|
gravity
|
Creolabs Gravity version 1.0 is vulnerable to a heap overflow in an undisclosed component that can result in arbitrary code execution.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000073
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258009
|
9.8 |
CRITICAL
Network
|
creolabs
|
gravity
|
Creolabs Gravity version 1.0 is vulnerable to a Double Free in gravity_value resulting potentially leading to modification of unexpected memory locations
|
CWE-415
Double Free
|
CVE-2017-1000072
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258010
|
8.1 |
HIGH
Network
|
apereo
|
phpcas
|
Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.
|
CWE-287
Improper Authentication
|
CVE-2017-1000071
|
2024-11-21 12:04 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|