|
248811
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
drivers/media/usb/dvb-usb/cxusb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (s…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-8063
|
2024-11-21 12:33 |
2017-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248812
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
drivers/media/usb/dvb-usb/dw2102.c in the Linux kernel 4.9.x and 4.10.x before 4.10.4 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (s…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-8062
|
2024-11-21 12:33 |
2017-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248813
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
drivers/media/usb/dvb-usb/dvb-usb-firmware.c in the Linux kernel 4.9.x and 4.10.x before 4.10.7 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-8061
|
2024-11-21 12:33 |
2017-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248814
|
5.3 |
MEDIUM
Network
|
watchguard
|
fireware
|
WatchGuard Fireware allows user enumeration, e.g., in the Firebox XML-RPC login handler. A login request that contains a blank password sent to the XML-RPC agent in Fireware v11.12.1 and earlier retu…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2017-8055
|
2024-11-21 12:33 |
2017-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248815
|
5.5 |
MEDIUM
Local
|
podofo_project
|
podofo
|
The function PdfPagesTree::GetPageNodeFromArray in PdfPageTree.cpp:464 in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (infinite recursion and application crash) via a crafted PD…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-8054
|
2024-11-21 12:33 |
2017-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248816
|
5.5 |
MEDIUM
Local
|
podofo_project
|
podofo
|
PoDoFo 0.9.5 allows denial of service (infinite recursion and stack consumption) via a crafted PDF file in PoDoFo::PdfParser::ReadDocumentStructure (PdfParser.cpp).
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-8053
|
2024-11-21 12:33 |
2017-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248817
|
6.1 |
MEDIUM
Network
|
craftcms
|
craft_cms
|
Craft CMS before 2.6.2974 allows XSS attacks.
|
CWE-79
Cross-site Scripting
|
CVE-2017-8052
|
2024-11-21 12:33 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248818
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
Exponent CMS 2.4.1 and earlier has SQL injection via a base64 serialized API key (apikey parameter) in the api function of framework/modules/eaas/controllers/eaasController.php.
|
CWE-89
SQL Injection
|
CVE-2017-7991
|
2024-11-21 12:33 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248819
|
9.8 |
CRITICAL
Network
|
tenable
|
appliance
|
Tenable Appliance 3.5 - 4.4.0, and possibly prior versions, contains a flaw in the simpleupload.py script in the Web UI. Through the manipulation of the tns_appliance_session_user parameter, a remote…
|
CWE-78
OS Command
|
CVE-2017-8051
|
2024-11-21 12:33 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248820
|
7.5 |
HIGH
Network
|
tenable
|
appliance
|
Tenable Appliance 4.4.0, and possibly prior, contains a flaw in the Web UI that allows for the unauthorized manipulation of the admin password.
|
NVD-CWE-noinfo
|
CVE-2017-8050
|
2024-11-21 12:33 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|