|
247131
|
6.5 |
MEDIUM
Network
|
imagemagick debian
|
imagemagick debian_linux
|
In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the WriteBlob function in MagickCore/blob.c because of missing checks in the ReadOneJNGImage function in coders/png.c.
|
CWE-20 CWE-617
Improper Input Validation Reachable Assertion
|
CVE-2017-9142
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247132
|
6.5 |
MEDIUM
Network
|
imagemagick debian
|
imagemagick debian_linux
|
In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the ResetImageProfileIterator function in MagickCore/profile.c because of missing checks in the ReadDDSImage function …
|
CWE-20 CWE-617
Improper Input Validation Reachable Assertion
|
CVE-2017-9141
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247133
|
6.1 |
MEDIUM
Network
|
progress
|
telerik_reporting sitefinity_cms
|
Cross-site scripting (XSS) vulnerability in Telerik.ReportViewer.WebForms.dll in Telerik Reporting for ASP.NET WebForms Report Viewer control before R1 2017 SP2 (11.0.17.406) allows remote attackers …
|
CWE-79
Cross-site Scripting
|
CVE-2017-9140
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247134
|
3.5 |
LOW
Adjacent
|
tendacn
|
f1200_firmware fh1202_firmware f1202_firmware
|
There is a stack-based buffer overflow on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). Crafted POST requests to an unspecified URL result in DoS, interrupting the HTTP service (…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-9139
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247135
|
8.0 |
HIGH
Adjacent
|
tendacn
|
f1200_firmware fh1202_firmware f1202_firmware
|
There is a debug-interface vulnerability on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). After connecting locally to a router in a wired or wireless manner, one can bypass inten…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-9138
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247136
|
8.8 |
HIGH
Network
|
mimosa
|
client_radios backhaul_radios
|
An issue was discovered on Mimosa Client Radios before 2.2.4 and Mimosa Backhaul Radios before 2.2.4. On the backend of the device's web interface, there are some diagnostic tests available that are …
|
CWE-74
Injection
|
CVE-2017-9135
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247137
|
7.5 |
HIGH
Network
|
mimosa
|
backhaul_radios client_radios
|
An information-leakage issue was discovered on Mimosa Client Radios before 2.2.3 and Mimosa Backhaul Radios before 2.2.3. There is a page in the web interface that will show you the device's serial n…
|
CWE-200
Information Exposure
|
CVE-2017-9134
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247138
|
8.8 |
HIGH
Network
|
mimosa
|
backhaul_radios client_radios
|
An issue was discovered on Mimosa Client Radios before 2.2.3 and Mimosa Backhaul Radios before 2.2.3. In the device's web interface, after logging in, there is a page that allows you to ping other ho…
|
CWE-74
Injection
|
CVE-2017-9133
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247139
|
7.5 |
HIGH
Network
|
mimosa
|
backhaul_radios client_radios
|
An issue was discovered on Mimosa Client Radios before 2.2.3 and Mimosa Backhaul Radios before 2.2.3. By connecting to the Mosquitto broker on an access point and one of its clients, an attacker can …
|
CWE-20
Improper Input Validation
|
CVE-2017-9131
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247140
|
9.8 |
CRITICAL
Network
|
php netapp
|
php storage_automation_store clustered_data_ontap
|
The i_zval_ptr_dtor function in Zend/zend_variables.h in PHP 7.1.5 allows attackers to cause a denial of service (memory consumption and application crash) or possibly have unspecified other impact b…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-9119
|
2024-11-21 12:35 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|