|
250161
|
6.1 |
MEDIUM
Network
|
helpmewatchwho_project
|
helpmewatchwho
|
TheFirstQuestion/HelpMeWatchWho before 2017-03-28 is vulnerable to a reflected XSS in HelpMeWatchWho-master/unaired.php (episodeID parameter).
|
CWE-79
Cross-site Scripting
|
CVE-2017-7387
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250162
|
6.1 |
MEDIUM
Network
|
symetrie_project
|
symetrie
|
citymont/symetrie v.0.9.6 is vulnerable to a reflected XSS in symetrie-master/app/commands/page.php (model parameter).
|
CWE-79
Cross-site Scripting
|
CVE-2017-7386
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250163
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
Use-after-free vulnerability in fs/crypto/ in the Linux kernel before 4.10.7 allows local users to cause a denial of service (NULL pointer dereference) or possibly gain privileges by revoking keyring…
|
CWE-476 CWE-416
NULL Pointer Dereference Use After Free
|
CVE-2017-7374
|
2024-11-21 12:31 |
2017-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250164
|
6.1 |
MEDIUM
Network
|
lucidcrew
|
pixie
|
Pixie 1.0.4 allows an admin/index.php s=publish&m=module&x= XSS attack.
|
CWE-79
Cross-site Scripting
|
CVE-2017-7363
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250165
|
6.1 |
MEDIUM
Network
|
lucidcrew
|
pixie
|
Pixie 1.0.4 allows an admin/index.php s=publish&m=dynamic&x= XSS attack.
|
CWE-79
Cross-site Scripting
|
CVE-2017-7362
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250166
|
6.1 |
MEDIUM
Network
|
lucidcrew
|
pixie
|
Pixie 1.0.4 allows an admin/index.php s=publish&m=static&x= XSS attack.
|
CWE-79
Cross-site Scripting
|
CVE-2017-7361
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250167
|
6.1 |
MEDIUM
Network
|
lucidcrew
|
pixie
|
Pixie 1.0.4 allows an admin/index.php s=settings&x= XSS attack.
|
CWE-79
Cross-site Scripting
|
CVE-2017-7360
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250168
|
6.1 |
MEDIUM
Network
|
lucidcrew
|
pixie
|
Pixie 1.0.4 allows an admin/index.php s=login&m= XSS attack.
|
CWE-79
Cross-site Scripting
|
CVE-2017-7359
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250169
|
4.8 |
MEDIUM
Network
|
mantisbt
|
mantisbt
|
A cross-site scripting (XSS) vulnerability in the MantisBT Configuration Report page (adm_config_report.php) allows remote attackers to inject arbitrary code (if CSP settings permit it) through a cra…
|
CWE-79
Cross-site Scripting
|
CVE-2017-7309
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250170
|
4.8 |
MEDIUM
Network
|
mantisbt
|
mantisbt
|
A cross-site scripting (XSS) vulnerability in the MantisBT Move Attachments page (move_attachments_page.php, part of admin tools) allows remote attackers to inject arbitrary code through a crafted 't…
|
CWE-79
Cross-site Scripting
|
CVE-2017-7241
|
2024-11-21 12:31 |
2017-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|