|
257311
|
6.1 |
MEDIUM
Network
|
adobe
|
connect
|
An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A UI Redress (or Clickjacking) vulnerability exists. This issue has been resolved by adding a feature that enables Connect adminis…
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2017-11290
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257312
|
6.1 |
MEDIUM
Network
|
adobe
|
connect
|
An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A reflected cross-site scripting vulnerability exists that can result in information disclosure.
|
CWE-79
Cross-site Scripting
|
CVE-2017-11289
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257313
|
6.1 |
MEDIUM
Network
|
adobe
|
connect
|
An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A reflected cross-site scripting vulnerability exists that can result in information disclosure.
|
CWE-79
Cross-site Scripting
|
CVE-2017-11288
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257314
|
6.1 |
MEDIUM
Network
|
adobe
|
connect
|
An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A reflected cross-site scripting vulnerability exists that can result in information disclosure.
|
CWE-79
Cross-site Scripting
|
CVE-2017-11287
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257315
|
5.5 |
MEDIUM
Local
|
adobe
|
digital_editions
|
An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. Adobe Digital Editions parses crafted XML files in an unsafe manner, which could lead to sensitive information disclosure.
|
CWE-200
Information Exposure
|
CVE-2017-11273
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257316
|
6.1 |
MEDIUM
Network
|
elastic
|
kibana
|
The Kibana fix for CVE-2017-8451 was found to be incomplete. With X-Pack installed, Kibana versions before 6.0.1 and 5.6.5 have an open redirect vulnerability on the login page that would enable an a…
|
CWE-601
Open Redirect
|
CVE-2017-11482
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257317
|
6.1 |
MEDIUM
Network
|
elastic
|
kibana
|
Kibana versions prior to 6.0.1 and 5.6.5 had a cross-site scripting (XSS) vulnerability via URL fields that could allow an attacker to obtain sensitive information from or perform destructive actions…
|
CWE-79
Cross-site Scripting
|
CVE-2017-11481
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257318
|
7.5 |
HIGH
Network
|
elasticsearch
|
packetbeat
|
Packetbeat versions prior to 5.6.4 are affected by a denial of service flaw in the PostgreSQL protocol handler. If Packetbeat is listening for PostgreSQL traffic and a user is able to send arbitrary …
|
NVD-CWE-noinfo
|
CVE-2017-11480
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257319
|
9.8 |
CRITICAL
Network
|
redhat adobe
|
enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation flash_player
|
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK metadata functionality. The mis…
|
CWE-416
Use After Free
|
CVE-2017-11225
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257320
|
9.8 |
CRITICAL
Network
|
redhat adobe
|
enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation flash_player
|
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK. The mismatch between an old an…
|
CWE-416
Use After Free
|
CVE-2017-11215
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|