|
250771
|
9.8 |
CRITICAL
Network
|
honeywell
|
xl_web_ii_controller
|
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior. Password is stored in clear text.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2017-5140
|
2024-11-21 12:27 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250772
|
9.8 |
CRITICAL
Network
|
honeywell
|
xl_web_ii_controller
|
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior. Any user is able to disclose a password by accessing a speci…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2017-5139
|
2024-11-21 12:27 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250773
|
5.9 |
MEDIUM
Network
|
xabber
|
xabber
|
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This…
|
CWE-20 CWE-346
Improper Input Validation Origin Validation Error
|
CVE-2017-5606
|
2024-11-21 12:27 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250774
|
5.9 |
MEDIUM
Network
|
movim
|
movim
|
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This…
|
CWE-20 CWE-346
Improper Input Validation Origin Validation Error
|
CVE-2017-5605
|
2024-11-21 12:27 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250775
|
5.9 |
MEDIUM
Network
|
mcabber
|
mcabber
|
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This…
|
CWE-20 CWE-346
Improper Input Validation Origin Validation Error
|
CVE-2017-5604
|
2024-11-21 12:27 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250776
|
5.9 |
MEDIUM
Network
|
jitsi
|
jitsi
|
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This…
|
CWE-20 CWE-346
Improper Input Validation Origin Validation Error
|
CVE-2017-5603
|
2024-11-21 12:27 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250777
|
5.9 |
MEDIUM
Network
|
jappix_project
|
jappix
|
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This…
|
CWE-20 CWE-346
Improper Input Validation Origin Validation Error
|
CVE-2017-5602
|
2024-11-21 12:27 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250778
|
5.9 |
MEDIUM
Network
|
psi-plus
|
psi\+
|
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This…
|
CWE-20 CWE-346
Improper Input Validation Origin Validation Error
|
CVE-2017-5593
|
2024-11-21 12:27 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250779
|
5.9 |
MEDIUM
Network
|
profanity_project
|
profanity
|
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This…
|
CWE-20 CWE-346
Improper Input Validation Origin Validation Error
|
CVE-2017-5592
|
2024-11-21 12:27 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250780
|
5.9 |
MEDIUM
Network
|
sleekxmpp_project slixmpp_project poezio
|
sleekxmpp slixmpp poezio
|
An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This…
|
CWE-20 CWE-346
Improper Input Validation Origin Validation Error
|
CVE-2017-5591
|
2024-11-21 12:27 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|