|
248091
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_server
|
Microsoft SharePoint Server 2013 Service Pack 1 allows an elevation of privilege vulnerability when it fails to properly sanitize a specially crafted web request to an affected SharePoint server, aka…
|
CWE-79
Cross-site Scripting
|
CVE-2017-8629
|
2024-11-21 12:34 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248092
|
6.8 |
MEDIUM
Adjacent
|
microsoft
|
windows_rt_8.1 windows_10 windows_8.1 windows_server_2008 windows_7
|
Microsoft Bluetooth Driver in Windows Server 2008 SP2, Windows 7 SP1, Windows 8.1, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703 allows a spoofing vulnerability due to Microsoft's implementation …
|
NVD-CWE-noinfo
|
CVE-2017-8628
|
2024-11-21 12:34 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248093
|
4.3 |
MEDIUM
Network
|
microsoft
|
windows_10
|
Microsoft Edge in Microsoft Windows 10 Version 1703 allows an attacker to obtain information to further compromise the user's system, due to the way that Microsoft Edge handles objects in memory, aka…
|
CWE-200
Information Exposure
|
CVE-2017-8597
|
2024-11-21 12:34 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248094
|
7.5 |
HIGH
Network
|
microsoft
|
edge
|
Microsoft Edge in Microsoft Windows 10 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user, due to the way that Microsoft browser JavaS…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-8649
|
2024-11-21 12:34 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248095
|
7.8 |
HIGH
Local
|
microsoft
|
excel excel_for_mac office_web_apps office_compatibility_pack
|
A remote code execution vulnerability exists in Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1, Microsoft Excel 2013 RT Service Pack 1, Microsoft Excel 2016, Microsoft Offic…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-8632
|
2024-11-21 12:34 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248096
|
7.8 |
HIGH
Local
|
microsoft
|
excel office_compatibility_pack office_web_apps office_online_server excel_viewer excel_web_app
|
A remote code execution vulnerability exists in Excel Services, Microsoft Excel 2007 Service Pack 3, Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1, Microsoft Excel 2013 RT …
|
NVD-CWE-noinfo
|
CVE-2017-8631
|
2024-11-21 12:34 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248097
|
7.8 |
HIGH
Local
|
microsoft
|
excel_for_mac
|
A remote code execution vulnerability exists in Microsoft Excel for Mac 2011 when it fails to properly handle objects in memory, aka "Microsoft Office Remote Code Execution".
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-8567
|
2024-11-21 12:34 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248098
|
5.5 |
MEDIUM
Local
|
blackwave
|
dive_assistant
|
XXE in Dive Assistant - Template Builder in Blackwave Dive Assistant - Desktop Edition 8.0 allows attackers to remotely view local files via a crafted template.xml file.
|
CWE-611
XXE
|
CVE-2017-8918
|
2024-11-21 12:34 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248099
|
5.3 |
MEDIUM
Network
|
elasticsearch
|
x-pack x-pack_reporting
|
The Reporting feature in X-Pack in versions prior to 5.5.2 and standalone Reporting plugin versions versions prior to 2.4.6 had an impersonation vulnerability. A user with the reporting_user role cou…
|
CWE-269
Improper Privilege Management
|
CVE-2017-8446
|
2024-11-21 12:34 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248100
|
5.5 |
MEDIUM
Local
|
elastic
|
x-pack
|
An error was found in the X-Pack Security TLS trust manager for versions 5.0.0 to 5.5.1. If reloading the trust material fails the trust manager will be replaced with an instance that trusts all cert…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-8445
|
2024-11-21 12:34 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|