|
248291
|
8.8 |
HIGH
Network
|
vimbadmin
|
vimbadmin
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the addAction and purgeAction functions in ViMbAdmin 3.0.15 allow remote attackers to hijack the authentication of logged administrators …
|
CWE-352
Origin Validation Error
|
CVE-2017-6086
|
2024-11-21 12:29 |
2017-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248292
|
10.0 |
CRITICAL
Network
|
symantec
|
messaging_gateway
|
The Symantec Messaging Gateway can encounter an issue of remote code execution, which describes a situation whereby an individual may obtain the ability to execute commands remotely on a target machi…
|
NVD-CWE-noinfo
|
CVE-2017-6326
|
2024-11-21 12:29 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248293
|
6.6 |
MEDIUM
Network
|
symantec
|
messaging_gateway
|
The Symantec Messaging Gateway can encounter a file inclusion vulnerability, which is a type of vulnerability that is most commonly found to affect web applications that rely on a scripting run time.…
|
CWE-94
Code Injection
|
CVE-2017-6325
|
2024-11-21 12:29 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248294
|
7.3 |
HIGH
Network
|
symantec
|
messaging_gateway
|
The Symantec Messaging Gateway, when processing a specific email attachment, can allow a malformed or corrupted Word file with a potentially malicious macro through despite the administrator having t…
|
NVD-CWE-noinfo
|
CVE-2017-6324
|
2024-11-21 12:29 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248295
|
5.9 |
MEDIUM
Network
|
file\ canonical debian
|
\ ubuntu_linux debian_linux
|
Race condition in the rmtree and remove_tree functions in the File-Path module before 2.13 for Perl allows attackers to set the mode on arbitrary files via vectors involving directory-permission loos…
|
CWE-362
Race Condition
|
CVE-2017-6512
|
2024-11-21 12:29 |
2017-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248296
|
9.8 |
CRITICAL
Network
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_access_policy_manager big-ip_application_security_manager big-ip_domain_nam…
|
In some circumstances, an F5 BIG-IP version 12.0.0 to 12.1.2 and 13.0.0 Azure cloud instance may contain a default administrative password which could be used to remotely log into the BIG-IP system. …
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-6131
|
2024-11-21 12:29 |
2017-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248297
|
9.8 |
CRITICAL
Network
|
ipswitch
|
moveit_dmz moveit_transfer_2017
|
Ipswitch MOVEit Transfer (formerly DMZ) allows pre-authentication blind SQL injection. The fixed versions are MOVEit Transfer 2017 9.0.0.201, MOVEit DMZ 8.3.0.30, and MOVEit DMZ 8.2.0.20.
|
CWE-89
SQL Injection
|
CVE-2017-6195
|
2024-11-21 12:29 |
2017-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248298
|
9.8 |
CRITICAL
Network
|
ribboncommunications
|
edgemarc_firmware
|
The HTTP web-management application on Edgewater Networks Edgemarc appliances has a hidden page that allows for user-defined commands such as specific iptables routes, etc., to be set. You can use th…
|
NVD-CWE-noinfo
|
CVE-2017-6079
|
2024-11-21 12:29 |
2017-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248299
|
5.9 |
MEDIUM
Network
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<…
|
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, PSM, WebAccelerator, and WebSafe 11.6.1 HF1, 12.0.0 HF3, 12.0.0 HF4, and 12.1.0 through 12.1.2, undisclo…
|
NVD-CWE-noinfo
|
CVE-2017-6137
|
2024-11-21 12:29 |
2017-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248300
|
7.5 |
HIGH
Network
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<…
|
An attacker may be able to cause a denial-of-service (DoS) attack against the sshd component in F5 BIG-IP, Enterprise Manager, BIG-IQ, and iWorkflow.
|
NVD-CWE-noinfo
|
CVE-2017-6128
|
2024-11-21 12:29 |
2017-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|