|
250501
|
8.4 |
HIGH
Local
|
intel
|
nuc7i7bnh_firmware nuc7i5bnh_firmware nuc7i5bnk_firmware nuc7i3bnh_firmware nuc7i3bnk_firmware
|
Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2017-5700
|
2024-11-21 12:28 |
2017-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250502
|
7.5 |
HIGH
Network
|
apache debian
|
zookeeper debian_linux
|
Two four letter word commands "wchp/wchc" are CPU intensive and could cause spike of CPU utilization on Apache ZooKeeper server if abused, which leads to the server unable to serve legitimate client …
|
CWE-400 CWE-306
Uncontrolled Resource Consumption Missing Authentication for Critical Function
|
CVE-2017-5637
|
2024-11-21 12:28 |
2017-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250503
|
7.8 |
HIGH
Local
|
sophos
|
hitmanpro
|
A kernel pool overflow in the driver hitmanpro37.sys in Sophos SurfRight HitmanPro before 3.7.20 Build 286 (included in the HitmanPro.Alert solution and Sophos Clean) allows local users to escalate p…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6008
|
2024-11-21 12:28 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250504
|
5.5 |
MEDIUM
Local
|
sophos
|
hitmanpro
|
A kernel pool overflow in the driver hitmanpro37.sys in Sophos SurfRight HitmanPro before 3.7.20 Build 286 (included in the HitmanPro.Alert solution and Sophos Clean) allows local users to crash the …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6007
|
2024-11-21 12:28 |
2017-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250505
|
4.4 |
MEDIUM
Local
|
intel
|
manageability_engine_firmware active_management_technology_firmware small_business_technology_firmware
|
Intel Active Management Technology, Intel Standard Manageability, and Intel Small Business Technology firmware versions 11.0.25.3001 and 11.0.26.3000 anti-rollback will not prevent upgrading to firmw…
|
NVD-CWE-noinfo
|
CVE-2017-5698
|
2024-11-21 12:28 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250506
|
4.6 |
MEDIUM
Physics
|
intel
|
ssd_540s_2.5\"_firmware ssd_540s_series_m.2_firmware ssd_pro_5400s_2.5\"_firmware ssd_pro_5400s_m.2_firmware ssd_e_5400s_2.5\"_firmware ssd_e_5400s_m.2_firmware ssd_d…
|
Data corruption vulnerability in firmware in Intel Solid-State Drive Consumer, Professional, Embedded, Data Center affected firmware versions LSBG200, LSF031C, LSF036C, LBF010C, LSBG100, LSF031C, LSF…
|
CWE-20
Improper Input Validation
|
CVE-2017-5695
|
2024-11-21 12:28 |
2017-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250507
|
4.6 |
MEDIUM
Physics
|
intel
|
ssd_pro_6000p_firmware
|
Data corruption vulnerability in firmware in Intel Solid-State Drive Professional PSF104P, PSF109P allows local users to cause a denial of service via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2017-5694
|
2024-11-21 12:28 |
2017-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250508
|
9.0 |
CRITICAL
Network
|
intel
|
nuc7i3bnk_bios nuc7i5bnk_bios nuc7i7bnh_bios stk2mv64cc_bios stk2m3w64cc_bios nuc6i7kyk_bios nuc6i3syk_bios nuc6i5syk_bios r1304sposhor_bios r1304sposhorr_bios r1208spos…
|
Incorrect check in Intel processors from 6th and 7th Generation Intel Core Processor Families, Intel Xeon E3-1500M v5 and v6 Product Families, and Intel Xeon E3-1200 v5 and v6 Product Families allows…
|
NVD-CWE-noinfo
|
CVE-2017-5691
|
2024-11-21 12:28 |
2017-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250509
|
7.0 |
HIGH
Local
|
waves
|
maxxaudio
|
Waves MaxxAudio, as installed on Dell laptops, adds a "WavesSysSvc" Windows service with File Version 1.1.6.0. This service has a vulnerability known as Unquoted Service Path. This could potentially …
|
NVD-CWE-noinfo
|
CVE-2017-6005
|
2024-11-21 12:28 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250510
|
7.5 |
HIGH
Network
|
apache
|
impala
|
During a routine security analysis, it was found that one of the ports in Apache Impala (incubating) 2.7.0 to 2.8.0 sent data in plaintext even when the cluster was configured to use TLS. The port in…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2017-5652
|
2024-11-21 12:28 |
2017-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|