Vulnerability_Archives

CVE_ARCHIVES.DB

ARCHIVE_CHRONOLOGY.INDEXSTATUS: ONLINE
Risk_Filter:

Records: 18,113

Mode: SECURE_QUERY

CVE-2017-18005
MEDIUM

Exiv2 0.26 has a Null Pointer Dereference in the Exiv2::DataValue::toLong function in value.cpp, related to crafted metadata in a TIFF file.

CVE-2017-18004
MEDIUM

Zurmo 3.2.3 allows XSS via the latitude or longitude parameter to maps/default/mapAndPoint.

CVE-2017-18001
CRITICAL

Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the device's SSH Authorized Keys dat

CVE-2017-17704
HIGH

A door-unlocking issue was discovered on Software House iStar Ultra devices through 6.5.2.20569 when used in conjunction with the IP-ACM Ethernet Door

CVE-2016-10704
MEDIUM

Magento Community Edition and Enterprise Edition before 2.0.10 and 2.1.x before 2.1.2 have XSS via e-mail templates that are mishandled during a previ

CVE-2017-17089
MEDIUM

custom/run.cgi in Webmin before 1.870 allows remote authenticated administrators to conduct XSS attacks via the description field in the custom comman

CVE-2017-14855
HIGH

Red Lion HMI panels allow remote attackers to cause a denial of service (software exception) via an HTTP POST request to a long URI that does not exis

CVE-2017-17997
HIGH

In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and crashes. This was addressed in epan/dissectors/packet-mrdisc.c by validati

CVE-2017-12813
MEDIUM

PHPJabbers File Sharing Script 1.0 has stored XSS in the comments section.

CVE-2017-12812
MEDIUM

PHPJabbers Night Club Booking Software has stored XSS in the name parameter in the reservations tab.

CVE-2017-12811
MEDIUM

PHPJabbers Star Rating Script 4.0 has stored XSS via a rating item.

CVE-2017-12810
MEDIUM

PHPJabbers PHP Newsletter Script 4.2 has stored XSS in lists in the admin panel.

CVE-2017-1000447
UNKNOWN

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-15955. Reason: This candidate is a reservation duplicate of CVE-2017-15955. N

CVE-2017-1000446
UNKNOWN

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-15954. Reason: This candidate is a reservation duplicate of CVE-2017-15954. N

CVE-2017-1000440
UNKNOWN

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-14976. Reason: This candidate is a reservation duplicate of CVE-2017-14976. N

CVE-2017-1000436
UNKNOWN

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-14975. Reason: This candidate is a reservation duplicate of CVE-2017-14975. N

CVE-2017-1000435
UNKNOWN

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-16227. Reason: This candidate is a reservation duplicate of CVE-2017-16227. N

CVE-2017-17995
MEDIUM

Biometric Shift Employee Management System has XSS via the Last_Name parameter in an index.php?user=ajax request.

CVE-2017-17994
MEDIUM

Biometric Shift Employee Management System has XSS via the criteria parameter in an index.php?user=competency_criteria request.

CVE-2017-17993
MEDIUM

Biometric Shift Employee Management System has XSS via the amount parameter in an index.php?user=addition_deduction request.

...
Jump_To_Sector:
CVE Database - Vulnerability Explorer