|
249301
|
5.5 |
MEDIUM
Local
|
freedesktop debian
|
poppler debian_linux
|
The function GfxImageColorMap::getGray in GfxState.cc in Poppler 0.54.0 allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted PDF doc…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-9865
|
2024-11-21 12:37 |
2017-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249302
|
9.8 |
CRITICAL
Network
|
bmc
|
server_automation
|
BMC Server Automation before 8.9.01 patch 1 allows Process Spawner command execution because of authentication bypass.
|
CWE-863
Incorrect Authorization
|
CVE-2017-9453
|
2024-11-21 12:36 |
2023-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249303
|
8.8 |
HIGH
Network
|
getvera
|
veraedge_firmware veralite_firmware
|
An issue was discovered on Vera VeraEdge 1.7.19 and Veralite 1.7.481 devices. The device provides UPnP services that are available on port 3480 and can also be accessed via port 80 using the url "/po…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-9392
|
2024-11-21 12:36 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249304
|
8.8 |
HIGH
Network
|
getvera
|
veraedge_firmware veralite_firmware
|
An issue was discovered on Vera VeraEdge 1.7.19 and Veralite 1.7.481 devices. The device provides UPnP services that are available on port 3480 and can also be accessed via port 80 using the url "/po…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-9391
|
2024-11-21 12:36 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249305
|
6.1 |
MEDIUM
Network
|
getvera
|
veraedge_firmware veralite_firmware
|
An issue was discovered on Vera VeraEdge 1.7.19 and Veralite 1.7.481 devices. The device provides a shell script called connect.sh which is supposed to return a specific cookie for the user when the …
|
CWE-79
Cross-site Scripting
|
CVE-2017-9390
|
2024-11-21 12:36 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249306
|
8.8 |
HIGH
Network
|
getvera
|
veraedge_firmware veralite_firmware
|
An issue was discovered on Vera VeraEdge 1.7.19 and Veralite 1.7.481 devices. The device provides a web user interface that allows a user to manage the device. As a part of the functionality the devi…
|
CWE-287
Improper Authentication
|
CVE-2017-9389
|
2024-11-21 12:36 |
2019-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249307
|
6.1 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: Cross Site Scripting (XSS).
|
CWE-79
Cross-site Scripting
|
CVE-2017-9808
|
2024-11-21 12:36 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249308
|
5.3 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX Software GmbH OX App Suite 7.8.4 and earlier is affected by: Information Exposure.
|
CWE-200
Information Exposure
|
CVE-2017-9809
|
2024-11-21 12:36 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249309
|
9.8 |
CRITICAL
Network
|
marel
|
pluto1203 pluto2
|
Systems using the Marel Food Processing Systems Pluto platform do not restrict remote access. Marel has created an update for Pluto-based applications. This update will restrict remote access by impl…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-9626
|
2024-11-21 12:36 |
2019-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249310
|
7.5 |
HIGH
Network
|
secure-endpoints
|
kerberised_netcat
|
The read_packet function in knc (Kerberised NetCat) before 1.11-1 is vulnerable to denial of service (memory exhaustion) that can be exploited remotely without authentication, possibly affecting anot…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-9732
|
2024-11-21 12:36 |
2018-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|