|
255361
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x iphone_os watchos tvos
|
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS before 10.2.1 is affected. watchOS before 3.2.2 is affected. The issue involve…
|
CWE-20
Improper Input Validation
|
CVE-2017-7003
|
2024-11-21 12:30 |
2018-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255362
|
8.8 |
HIGH
Network
|
apple
|
mac_os_x iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. The issue involves the "SQLite" component. It allows remote attackers to execute ar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-7002
|
2024-11-21 12:30 |
2018-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255363
|
8.8 |
HIGH
Network
|
apple
|
mac_os_x iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. The issue involves the "SQLite" component. It allows remote attackers to execute ar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-7001
|
2024-11-21 12:30 |
2018-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255364
|
8.8 |
HIGH
Network
|
apple redhat debian chromium
|
mac_os_x iphone_os enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux chromium
|
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. The issue involves the "SQLite" component. It allows remote attackers to execute ar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-7000
|
2024-11-21 12:30 |
2018-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255365
|
5.5 |
MEDIUM
Local
|
apple
|
iphone_os
|
An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the "Sandbox Profiles" component. It allows attackers to bypass intended access restrictions (for iC…
|
NVD-CWE-noinfo
|
CVE-2017-6976
|
2024-11-21 12:30 |
2018-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255366
|
4.7 |
MEDIUM
Network
|
drupal debian
|
drupal debian_linux
|
Drupal core 7.x versions before 7.57 has an external link injection vulnerability when the language switcher block is used. A similar vulnerability exists in various custom and contributed modules. T…
|
CWE-601
Open Redirect
|
CVE-2017-6932
|
2024-11-21 12:30 |
2018-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255367
|
6.5 |
MEDIUM
Network
|
drupal
|
drupal
|
In Drupal versions 8.4.x versions before 8.4.5 the Settings Tray module has a vulnerability that allows users to update certain data that they do not have the permissions for. If you have implemented…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2017-6931
|
2024-11-21 12:30 |
2018-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255368
|
8.1 |
HIGH
Network
|
drupal
|
drupal
|
In Drupal versions 8.4.x versions before 8.4.5 when using node access controls with a multilingual site, Drupal marks the untranslated version of a node as the default fallback for access queries. Th…
|
NVD-CWE-noinfo
|
CVE-2017-6930
|
2024-11-21 12:30 |
2018-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255369
|
6.1 |
MEDIUM
Network
|
drupal debian
|
drupal debian_linux
|
A jQuery cross site scripting vulnerability is present when making Ajax requests to untrusted domains. This vulnerability is mitigated by the fact that it requires contributed or custom modules in or…
|
CWE-79
Cross-site Scripting
|
CVE-2017-6929
|
2024-11-21 12:30 |
2018-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255370
|
5.3 |
MEDIUM
Network
|
drupal debian
|
drupal debian_linux
|
Drupal core 7.x versions before 7.57 when using Drupal's private file system, Drupal will check to make sure a user has access to a file before allowing the user to view or download it. This check fa…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-6928
|
2024-11-21 12:30 |
2018-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|