|
249531
|
9.8 |
CRITICAL
Network
|
sophos
|
web_appliance
|
In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine's interface responsible for generating reports was vulnerable to remote command injection via functions, aka NSWA-1304.
|
CWE-78
OS Command
|
CVE-2017-6182
|
2024-11-21 12:29 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249532
|
9.8 |
CRITICAL
Network
|
putty opensuse_project opensuse
|
putty leap
|
The ssh_agent_channel_data function in PuTTY before 0.68 allows remote attackers to have unspecified impact via a large length value in an agent protocol message and leveraging the ability to connect…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6542
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249533
|
6.5 |
MEDIUM
Network
|
ntp
|
ntp
|
NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote attackers to cause a denial of service (ntpd crash) via a malformed mode configuration directive.
|
CWE-20
Improper Input Validation
|
CVE-2017-6464
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249534
|
6.5 |
MEDIUM
Network
|
ntp
|
ntp
|
NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote authenticated users to cause a denial of service (daemon crash) via an invalid setting in a :config directive, related to the unpeer option.
|
CWE-20
Improper Input Validation
|
CVE-2017-6463
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249535
|
7.8 |
HIGH
Local
|
ntp
|
ntp
|
Buffer overflow in the legacy Datum Programmable Time Server (DPTS) refclock driver in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local users to have unspecified impact via a crafted /dev/dat…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6462
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249536
|
8.8 |
HIGH
Network
|
ntp
|
ntp
|
Stack-based buffer overflow in the reslist function in ntpq in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote servers have unspecified impact via a long flagstr variable in a restriction l…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6460
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249537
|
5.5 |
MEDIUM
Local
|
ntp
|
ntp
|
The Windows installer for NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local users to have unspecified impact via vectors related to an argument with multiple null bytes.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6459
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249538
|
8.8 |
HIGH
Network
|
ntp hpe apple siemens
|
ntp hpux-ntp mac_os_x simatic_net_cp_443-1_opc_ua_firmware
|
Multiple buffer overflows in the ctl_put* functions in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allow remote authenticated users to have unspecified impact via a long variable.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6458
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249539
|
7.0 |
HIGH
Local
|
ntp
|
ntp
|
NTP before 4.2.8p10 and 4.3.x before 4.3.94, when using PPSAPI, allows local users to gain privileges via a DLL in the PPSAPI_DLLS environment variable.
|
CWE-94
Code Injection
|
CVE-2017-6455
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249540
|
7.8 |
HIGH
Local
|
ntp
|
ntp
|
Stack-based buffer overflow in the Windows installer for NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local users to have unspecified impact via an application path on the command line.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6452
|
2024-11-21 12:29 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|