|
264411
|
4.7 |
MEDIUM
Local
|
google linux
|
android linux_kernel
|
An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate becaus…
|
CWE-200
Information Exposure
|
CVE-2017-0451
|
2024-11-21 12:03 |
2017-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264412
|
7.8 |
HIGH
Local
|
google
|
android
|
An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as Moderate…
|
NVD-CWE-noinfo
|
CVE-2017-0450
|
2024-11-21 12:03 |
2017-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264413
|
7.0 |
HIGH
Local
|
google linux
|
android linux_kernel
|
An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Mode…
|
NVD-CWE-noinfo
|
CVE-2017-0449
|
2024-11-21 12:03 |
2017-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264414
|
5.5 |
MEDIUM
Local
|
google linux
|
android linux_kernel
|
An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it c…
|
CWE-200
Information Exposure
|
CVE-2017-0448
|
2024-11-21 12:03 |
2017-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264415
|
7.5 |
HIGH
Network
|
mediawiki
|
mediawiki
|
MediaWiki before 1.23.16, 1.24.x through 1.27.x before 1.27.2, and 1.28.x before 1.28.1 allows remote attackers to discover the IP addresses of Wiki visitors via a style="background-image: attr(title…
|
NVD-CWE-noinfo
|
CVE-2017-0371
|
2024-11-21 12:02 |
2022-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264416
|
7.4 |
HIGH
Network
|
mcabber canonical debian
|
mcabber ubuntu_linux debian_linux
|
MCabber before 1.0.4 is vulnerable to roster push attacks, which allows remote attackers to intercept communications, or add themselves as an entity on a 3rd party's roster as another user, which wil…
|
CWE-269
Improper Privilege Management
|
CVE-2016-9928
|
2024-11-21 12:02 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264417
|
7.5 |
HIGH
Network
|
webmproject
|
libwebp
|
In libwebp 0.5.1, there is a double free bug in libwebpmux.
|
CWE-415
Double Free
|
CVE-2016-9969
|
2024-11-21 12:02 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264418
|
9.8 |
CRITICAL
Network
|
mediawiki debian
|
mediawiki debian_linux
|
Parameters injection in the SyntaxHighlight extension of Mediawiki before 1.23.16, 1.27.3 and 1.28.2 might result in multiple vulnerabilities.
|
CWE-74
Injection
|
CVE-2017-0372
|
2024-11-21 12:02 |
2018-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264419
|
5.3 |
MEDIUM
Network
|
mediawiki debian
|
mediawiki debian_linux
|
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw were Spam blacklist is ineffective on encoded URLs inside file inclusion syntax's link parameter.
|
CWE-20
Improper Input Validation
|
CVE-2017-0370
|
2024-11-21 12:02 |
2018-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264420
|
6.5 |
MEDIUM
Network
|
mediawiki debian
|
mediawiki debian_linux
|
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw, allowing a sysops to undelete pages, although the page is protected against it.
|
CWE-276
Incorrect Default Permissions
|
CVE-2017-0369
|
2024-11-21 12:02 |
2018-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|