Unknown · CVSS Not scored
The AppleTalk parser in tcpdump before 4.9.0 has a buffer overflow in print-atalk.c, multiple functions.
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The SPIP template composer/compiler in SPIP 3.1.2 and earlier allows remote authenticated users to execute arbitrary PHP code by uploading an HTML file with a crafted (1) INCLUDE or (2) INCLURE tag and then accessing it with a valider_xml action.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Directory traversal vulnerability in ecrire/exec/valider_xml.php in SPIP 3.1.2 and earlier allows remote attackers to enumerate the files on the system via the var_url parameter in a valider_xml action.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Heap-based buffer overflow in the WPG format reader in GraphicsMagick 1.3.25 and earlier allows remote attackers to have unspecified impact via a colormap with a large number of entries.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Cross-site request forgery (CSRF) vulnerability in ecrire/exec/valider_xml.php in SPIP 3.1.2 and earlier allows remote attackers to hijack the authentication of administrators for requests that execute the XML validator on a local file via a crafted valider_xml request. NOTE: this issue can be combined with CVE-2016-7998 to execute arbitrary PHP code.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information including user passwords without supplying the current administrator password a second time via the GUI or GUI terminal commands.
Published Jan 5, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The GeoNetworking parser in tcpdump before 4.9.0 has a buffer overflow in print-geonet.c, multiple functions.
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The WPG format reader in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (assertion failure and crash) via vectors related to a ReferenceBlob and a NULL pointer.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
A bug in util-print.c:relts_print() in tcpdump before 4.9.0 could cause a buffer overflow in multiple protocol parsers (DNS, DVMRP, HSRP, IGMP, lightweight resolver protocol, PIM).
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The TFTP parser in tcpdump before 4.9.0 has a buffer overflow in print-tftp.c:tftp_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The CALM FAST parser in tcpdump before 4.9.0 has a buffer overflow in print-calm-fast.c:calm_fast_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Cross-site scripting (XSS) vulnerability in valider_xml.php in SPIP 3.1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the var_url parameter in a valider_xml action.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The Ethernet parser in tcpdump before 4.9.0 has a buffer overflow in print-ether.c:ethertype_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The GRE parser in tcpdump before 4.9.0 has a buffer overflow in print-gre.c, multiple functions.
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The STP parser in tcpdump before 4.9.0 has a buffer overflow in print-stp.c, multiple functions.
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The VAT parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:vat_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The MPLS parser in tcpdump before 4.9.0 has a buffer overflow in print-mpls.c:mpls_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The ZeroMQ parser in tcpdump before 4.9.0 has an integer overflow in print-zeromq.c:zmtp1_print_frame().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The IEEE 802.11 parser in tcpdump before 4.9.0 has a buffer overflow in print-802_11.c:ieee802_11_radio_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The RTP parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:rtp_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The PPP parser in tcpdump before 4.9.0 has a buffer overflow in print-ppp.c:ppp_hdlc_if_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
magick/attribute.c in ImageMagick 7.0.3-2 allows remote attackers to cause a denial of service (use-after-free) via a crafted file.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The UDP parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:udp_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The LLC/SNAP parser in tcpdump before 4.9.0 has a buffer overflow in print-llc.c:llc_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The Juniper PPPoE ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-juniper.c:juniper_parse_header().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The PIM parser in tcpdump before 4.9.0 has a buffer overflow in print-pim.c:pimv2_check_checksum().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in print-sl.c:sl_if_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The IPComp parser in tcpdump before 4.9.0 has a buffer overflow in print-ipcomp.c:ipcomp_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:oam_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The RTCP parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:rtcp_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().
Published Jan 28, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Unrestricted file upload vulnerability in the fileUnzip->unzip method in Dotclear before 2.10.3 allows remote authenticated users with permissions to manage media items to execute arbitrary code by uploading a ZIP file containing a file with a crafted extension, as demonstrated by .php.txt or .php%20.
Published Jan 4, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.
Published Jan 4, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Cross-site request forgery (CSRF) vulnerability in CMS Made Simple before 2.1.6 allows remote attackers to hijack the authentication of administrators for requests that create accounts via an admin/adduser.php request.
Published Jan 16, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Ubiquiti Networks UniFi 5.2.7 does not restrict access to the database, which allows remote attackers to modify the database by directly connecting to it.
Published Jan 23, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Exponent CMS 2.3.9 suffers from a remote code execution vulnerability in /install/index.php. An attacker can upload 'php' file to the website through uploader_paste.php, then overwrite /framework/conf/config.php, which leads to arbitrary code execution.
Published Jan 12, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Exponent CMS 2.3.9 suffers from a remote code execution vulnerability in /install/index.php. An attacker can upload an evil 'exploit.tar.gz' file to the website, then extract it by visiting '/install/index.php?install_sample=../../files/exploit', which leads to arbitrary code execution.
Published Jan 12, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The openssl gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryption protection mechanism.
Published Jan 30, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
MagickCore/profile.c in ImageMagick before 7.0.3-2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a crafted repository URL.
Published Jan 19, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a crafted repository name.
Published Jan 19, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Directory traversal vulnerability in docker2aci before 0.13.0 allows remote attackers to write to arbitrary files via a .. (dot dot) in the embedded layer data in an image.
Published Jan 27, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
In iOS before 9.3.3, a memory corruption issue existed in the kernel. This issue was addressed through improved memory handling.
Published Jan 11, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.
Published Jan 19, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 environment variables.
Published Jan 19, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have unspecified impact via a crafted string.
Published Jan 23, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The chartorune function in Artifex Software MuJS allows attackers to cause a denial of service (out-of-bounds read) via a * (asterisk) at the end of the input.
Published Jan 18, 2017 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Crypto++ 5.6.4 incorrectly uses Microsoft's stack-based _malloca and _freea functions. The library will request a block of memory to align a table in memory. If the table is later reallocated, then the wrong pointer could be freed.
Published Jan 30, 2017 · Updated Aug 6, 2024