|
258451
|
7.1 |
HIGH
Network
|
apache
|
geode
|
When an Apache Geode cluster before v1.3.0 is operating in secure mode and an authenticated user connects to a Geode cluster using the gfsh tool with HTTP, the user is able to obtain status informati…
|
CWE-200
Information Exposure
|
CVE-2017-12622
|
2024-11-21 12:09 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258452
|
5.4 |
MEDIUM
Network
|
apache
|
drill
|
In Apache Drill 1.11.0 and earlier when submitting form from Query page users are able to pass arbitrary script or HTML which will take effect on Profile page afterwards. Example: after submitting sp…
|
CWE-79
Cross-site Scripting
|
CVE-2017-12630
|
2024-11-21 12:09 |
2017-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258453
|
5.9 |
MEDIUM
Network
|
cisco
|
adaptive_security_appliance_5505_firmware adaptive_security_appliance_5510_firmware adaptive_security_appliance_5520_firmware adaptive_security_appliance_5540_firmware adaptive_security_a…
|
A vulnerability in the TLS protocol implementation of legacy Cisco ASA 5500 Series (ASA 5505, 5510, 5520, 5540, and 5550) devices could allow an unauthenticated, remote attacker to access sensitive i…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2017-12373
|
2024-11-21 12:09 |
2017-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258454
|
8.8 |
HIGH
Network
|
apache
|
cxf_fediz
|
Apache CXF Fediz ships with a number of container-specific plugins to enable WS-Federation for applications. A CSRF (Cross Style Request Forgery) style vulnerability has been found in the Spring 2, S…
|
CWE-352
Origin Validation Error
|
CVE-2017-12631
|
2024-11-21 12:09 |
2017-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258455
|
9.6 |
CRITICAL
Network
|
cisco
|
webex_meetings_server webex_meetings
|
A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files.…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-12372
|
2024-11-21 12:09 |
2017-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258456
|
9.6 |
CRITICAL
Network
|
cisco
|
webex_meetings
|
A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files.…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-12371
|
2024-11-21 12:09 |
2017-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258457
|
9.6 |
CRITICAL
Network
|
cisco
|
webex_meetings
|
A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files.…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-12370
|
2024-11-21 12:09 |
2017-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258458
|
9.6 |
CRITICAL
Network
|
cisco
|
webex_meetings
|
A "Cisco WebEx Network Recording Player Out-of-Bounds Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remot…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-12369
|
2024-11-21 12:09 |
2017-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258459
|
5.3 |
MEDIUM
Network
|
cisco
|
webex_meetings_server
|
A vulnerability in Cisco WebEx Meeting Server could allow an unauthenticated, remote attacker to modify the welcome message of a meeting on an affected system. The vulnerability is due to insufficien…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2017-12363
|
2024-11-21 12:09 |
2017-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258460
|
6.5 |
MEDIUM
Network
|
cisco
|
meeting_server
|
A vulnerability in Cisco Meeting Server versions prior to 2.2.2 could allow an authenticated, remote attacker to cause the system to reload, resulting in a denial of service (DoS) condition. The vuln…
|
NVD-CWE-noinfo
|
CVE-2017-12362
|
2024-11-21 12:09 |
2017-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|