|
250221
|
8.1 |
HIGH
Network
|
tibco
|
tibbr
|
The tibbr web server components of tibbr Community, and tibbr Enterprise contain SAML protocol handling errors which may allow authorized users to impersonate other users, and therefore escalate thei…
|
NVD-CWE-noinfo
|
CVE-2017-5530
|
2024-11-21 12:27 |
2017-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250222
|
9.8 |
CRITICAL
Network
|
tibco
|
jasperreports_server jaspersoft jaspersoft_reporting_and_analytics
|
A vulnerability in the server content cache of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO Jaspersoft for AWS with…
|
NVD-CWE-noinfo
|
CVE-2017-5533
|
2024-11-21 12:27 |
2017-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250223
|
5.4 |
MEDIUM
Network
|
tibco
|
jasperreports_server jasperreports_library jaspersoft jaspersoft_reporting_and_analytics jaspersoft_studio
|
A vulnerability in the report renderer component of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO JasperReports Libr…
|
CWE-79
Cross-site Scripting
|
CVE-2017-5532
|
2024-11-21 12:27 |
2017-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250224
|
5.7 |
MEDIUM
Adjacent
|
netapp
|
clustered_data_ontap
|
NetApp Clustered Data ONTAP before 8.3.2P8 and 9.0 before P2 allow remote authenticated users to obtain sensitive cluster and tenant information via unspecified vectors, a different vulnerability tha…
|
CWE-200
Information Exposure
|
CVE-2017-5201
|
2024-11-21 12:27 |
2017-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250225
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
Inappropriate use of table size handling in V8 in Google Chrome prior to 61.0.3163.100 for Windows allowed a remote attacker to trigger out-of-bounds access via a crafted HTML page.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5122
|
2024-11-21 12:27 |
2017-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250226
|
8.8 |
HIGH
Network
|
google debian redhat
|
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Inappropriate use of JIT optimisation in V8 in Google Chrome prior to 61.0.3163.100 for Linux, Windows, and Mac allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML…
|
CWE-20
Improper Input Validation
|
CVE-2017-5121
|
2024-11-21 12:27 |
2017-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250227
|
6.5 |
MEDIUM
Network
|
google debian redhat
|
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Inappropriate use of www mismatch redirects in browser navigation in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, allowed a remote attacker to potent…
|
NVD-CWE-noinfo
|
CVE-2017-5120
|
2024-11-21 12:27 |
2017-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250228
|
4.3 |
MEDIUM
Network
|
google debian
|
chrome debian_linux
|
Use of an uninitialized value in Skia in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, allowed a remote attacker to obtain potentially sensitive infor…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5119
|
2024-11-21 12:27 |
2017-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250229
|
4.3 |
MEDIUM
Network
|
google debian redhat
|
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Blink in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, failed to correctly propagate CSP restrictions to javascript scheme pages, which allowed a remo…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-5118
|
2024-11-21 12:27 |
2017-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250230
|
6.5 |
MEDIUM
Network
|
google debian
|
chrome debian_linux
|
Use of an uninitialized value in Skia in Google Chrome prior to 61.0.3163.79 for Linux and Windows allowed a remote attacker to obtain potentially sensitive information from process memory via a craf…
|
CWE-200
Information Exposure
|
CVE-2017-5117
|
2024-11-21 12:27 |
2017-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|