|
255981
|
6.5 |
MEDIUM
Network
|
fastly
|
fastly
|
The Fastly CDN module before 1.2.26 for Magento2, when used with a third-party authentication plugin, might allow remote authenticated users to obtain sensitive information from authenticated session…
|
CWE-200
Information Exposure
|
CVE-2017-13761
|
2024-11-21 12:11 |
2017-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255982
|
7.8 |
HIGH
Local
|
gstn
|
india_goods_and_services_tax_network_offline_utility_tool
|
GSTN_offline_tool in India Goods and Services Tax Network (GSTN) Offline Utility tool before 1.2 executes winstart-server.vbs from the "C:\GST Offline Tool" directory, which has insecure permissions.…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-13779
|
2024-11-21 12:11 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255983
|
9.8 |
CRITICAL
Network
|
tcpdump debian
|
tcpdump debian_linux
|
The IPv6 routing header parser in tcpdump before 4.9.2 has a buffer over-read in print-rt6.c:rt6_print().
|
CWE-125
Out-of-bounds Read
|
CVE-2017-13725
|
2024-11-21 12:11 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255984
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The IKEv2 parser in tcpdump before 4.9.2 has a buffer over-read in print-isakmp.c, several functions.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-13690
|
2024-11-21 12:11 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255985
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The IKEv1 parser in tcpdump before 4.9.2 has a buffer over-read in print-isakmp.c:ikev1_id_print().
|
CWE-125
Out-of-bounds Read
|
CVE-2017-13689
|
2024-11-21 12:11 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255986
|
9.8 |
CRITICAL
Network
|
tcpdump
|
tcpdump
|
The OLSR parser in tcpdump before 4.9.2 has a buffer over-read in print-olsr.c:olsr_print().
|
CWE-125
Out-of-bounds Read
|
CVE-2017-13688
|
2024-11-21 12:11 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255987
|
9.8 |
CRITICAL
Network
|
tcpdump debian
|
tcpdump debian_linux
|
The Cisco HDLC parser in tcpdump before 4.9.2 has a buffer over-read in print-chdlc.c:chdlc_print().
|
CWE-125
Out-of-bounds Read
|
CVE-2017-13687
|
2024-11-21 12:11 |
2017-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255988
|
5.4 |
MEDIUM
Network
|
axesstel
|
mu553s_firmware
|
On the Axesstel MU553S MU55XS-V1.14, there is a Stored Cross Site Scripting vulnerability in the APN parameter under the "Basic Settings" page.
|
CWE-79
Cross-site Scripting
|
CVE-2017-13724
|
2024-11-21 12:11 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255989
|
9.8 |
CRITICAL
Network
|
lexmark
|
scan_to_network
|
Lexmark Scan To Network (SNF) 3.2.9 and earlier stores network configuration credentials in plaintext and transmits them in requests, which allows remote attackers to obtain sensitive information via…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2017-13771
|
2024-11-21 12:11 |
2017-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255990
|
5.4 |
MEDIUM
Network
|
wibu
|
codemeter
|
Cross-site scripting (XSS) vulnerability in the "advanced settings - time server" module in Wibu-Systems CodeMeter before 6.50b allows remote attackers to inject arbitrary web script or HTML via the …
|
CWE-79
Cross-site Scripting
|
CVE-2017-13754
|
2024-11-21 12:11 |
2017-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|