|
257531
|
7.5 |
HIGH
Network
|
cisco
|
small_business_sa520_firmware small_business_sa540_firmware
|
Cisco Small Business SA520 and SA540 devices with firmware 2.1.71 and 2.2.0.7 allow ../ directory traversal in scgi-bin/platform.cgi via the thispage parameter, for reading arbitrary files.
|
CWE-22
Path Traversal
|
CVE-2017-15805
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257532
|
6.1 |
MEDIUM
Network
|
logitech
|
media_server
|
DOM Based Cross Site Scripting (XSS) exists in Logitech Media Server 7.7.1, 7.7.2, 7.7.3, 7.7.5, 7.7.6, 7.9.0, and 7.9.1 via a crafted URI.
|
CWE-79
Cross-site Scripting
|
CVE-2017-15687
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257533
|
9.8 |
CRITICAL
Network
|
gnu
|
glibc
|
The glob function in glob.c in the GNU C Library (aka glibc or libc6) before 2.27 contains a buffer overflow during unescaping of user names with the ~ operator.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15804
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257534
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "User Mode Write AV starting at CADImage+0x000000…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15789
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257535
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "User Mode Write AV starting at CADImage+0x000000…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15788
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257536
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "Data Execution Prevention Violation starting at …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15787
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257537
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to a "Read Access Violation starting a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15786
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257538
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "Data Execution Prevention Violation near NULL st…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15785
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257539
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to an "Illegal Instruction Violation starting at xnvie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15784
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257540
|
7.8 |
HIGH
Local
|
xnview
|
xnview
|
XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address control…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15783
|
2024-11-21 12:15 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|