|
248281
|
7.5 |
HIGH
Network
|
cygwin
|
cygwin
|
Cygwin versions 1.7.2 up to and including 1.8.0 are vulnerable to buffer overflow vulnerability in wcsxfrm/wcsxfrm_l functions resulting into denial-of-service by crashing the process or potential hi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-7523
|
2024-11-21 12:32 |
2017-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248282
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The ip6_find_1stfragopt function in net/ipv6/output_core.c in the Linux kernel through 4.12.3 allows local users to cause a denial of service (integer overflow and infinite loop) by leveraging the ab…
|
-
|
CVE-2017-7542
|
2024-11-21 12:32 |
2017-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248283
|
8.8 |
HIGH
Network
|
spice_project
|
spice
|
spice versions though 0.13 are vulnerable to out-of-bounds memory access when processing specially crafted messages from authenticated attacker to the spice server resulting into crash and/or server …
|
-
|
CVE-2017-7506
|
2024-11-21 12:32 |
2017-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248284
|
6.5 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 3.x, course creators are able to change system default settings for courses.
|
CWE-269
Improper Privilege Management
|
CVE-2017-7532
|
2024-11-21 12:32 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248285
|
4.3 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 3.3, the course overview block reveals activities in hidden courses.
|
CWE-200
Information Exposure
|
CVE-2017-7531
|
2024-11-21 12:32 |
2017-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248286
|
7.5 |
HIGH
Network
|
apache
|
openmeetings
|
Apache OpenMeetings 1.0.0 updates user password in insecure manner.
|
NVD-CWE-noinfo
|
CVE-2017-7688
|
2024-11-21 12:32 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248287
|
5.3 |
MEDIUM
Network
|
apache
|
openmeetings
|
Apache OpenMeetings 1.0.0 responds to the following insecure HTTP methods: PUT, DELETE, HEAD, and PATCH.
|
NVD-CWE-noinfo
|
CVE-2017-7685
|
2024-11-21 12:32 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248288
|
7.5 |
HIGH
Network
|
apache
|
openmeetings
|
Apache OpenMeetings 1.0.0 doesn't check contents of files being uploaded. An attacker can cause a denial of service by uploading multiple large files to the server.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-7684
|
2024-11-21 12:32 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248289
|
7.5 |
HIGH
Network
|
apache
|
openmeetings
|
Apache OpenMeetings 1.0.0 displays Tomcat version and detailed error stack trace, which is not secure.
|
CWE-200
Information Exposure
|
CVE-2017-7683
|
2024-11-21 12:32 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248290
|
8.2 |
HIGH
Network
|
apache
|
openmeetings
|
Apache OpenMeetings 3.2.0 is vulnerable to parameter manipulation attacks, as a result attacker has access to restricted areas.
|
NVD-CWE-noinfo
|
CVE-2017-7682
|
2024-11-21 12:32 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|