Unknown · CVSS Not scored
The Facetag extension 0.0.3 for Piwigo allows XSS via the name parameter to ws.php in a facetag.changeTag action.
Published Feb 26, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Synacor Zimbra Collaboration Suite (ZCS) before 8.7.10 has Persistent XSS.
Published Feb 4, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A SQL injection issue exists in a file upload handler in REDCap 7.x before 7.0.11 via a trailing substring to SendITController:upload.
Published Feb 8, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Buffer overflow in libxml2 allows remote attackers to execute arbitrary code by leveraging an incorrect limit for port values when handling redirects.
Published Feb 19, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Synchronet BBS 3.16c for Windows allows remote attackers to cause a denial of service (service crash) via a long string in the HTTP Referer header.
Published Feb 27, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In the GD Graphics Library (aka LibGD) through 2.2.5, there is a heap-based buffer over-read in tiffWriter in gd_tiff.c. NOTE: the vendor says "In my opinion this issue should not have a CVE, since the GD and GD2 formats are documented to be 'obsolete, and should only be used for development and testing purposes.'
Published Feb 27, 2020 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered on Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19. When SmartPSS Software is launched, while on the login screen, the software in the background automatically logs in as admin. This allows sniffing sensitive information identified in CVE-2017-6341 without prior knowledge of the password. This is a different vulnerability than CVE-2013-6117.
Published Feb 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An integer overflow at a u_read_undo memory allocation site would occur for vim before patch 8.0.0377, if it does not properly validate values for tree length when reading a corrupted undo file, which may lead to resultant buffer overflows.
Published Feb 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19 send cleartext passwords in response to requests from the Web Page, Mobile Application, and Desktop Application interfaces, which allows remote attackers to obtain sensitive information by sniffing the network, a different vulnerability than CVE-2013-6117.
Published Feb 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Multiple use-after-free vulnerabilities in the gx_image_enum_begin function in base/gxipixel.c in Ghostscript before ecceafe3abba2714ef9b432035fe0739d9b1a283 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document.
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The web interface on Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19 allows remote attackers to obtain login access by leveraging knowledge of the MD5 Admin Hash without knowledge of the corresponding password, a different vulnerability than CVE-2013-6117.
Published Feb 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The tcp_splice_read function in net/ipv4/tcp.c in the Linux kernel before 4.9.11 allows remote attackers to cause a denial of service (infinite loop and soft lockup) via vectors involving a TCP packet with the URG flag.
Published Feb 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An integer overflow at an unserialize_uep memory allocation site would occur for vim before patch 8.0.0378, if it does not properly validate values for tree length when reading a corrupted undo file, which may lead to resultant buffer overflows.
Published Feb 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
XML External Entity (XXE) vulnerability in Grails PDF Plugin 0.6 allows remote attackers to read arbitrary files via a crafted XML document.
Published Feb 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Sandstorm before build 0.203 allows remote attackers to read any specified file under /etc or /run via the sandbox backup function. The root cause is that the findFilesToZip function doesn't filter Line Feed (\n) characters in a directory name.
Published Feb 6, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A Server Side Request Forgery vulnerability exists in the install app process in Sandstorm before build 0.203. A remote attacker may exploit this issue by providing a URL. It could bypass access control such as firewalls that prevent the attackers from accessing the URLs directly.
Published Feb 6, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in tnef before 1.4.13. Several Integer Overflows, which can lead to Heap Overflows, have been identified in the functions that wrap memory allocation.
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "5 of 9. Integer Overflow."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in tnef before 1.4.13. Two type confusions have been identified in the parse_file() function. These might lead to invalid read and write operations, controlled by an attacker.
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "2 of 9. Infinite Loop / DoS in the TNEFFillMapi function in lib/ytnef.c."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in tnef before 1.4.13. Four type confusions have been identified in the file_add_mapi_attrs() function. These might lead to invalid read and write operations, controlled by an attacker.
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "3 of 9. Buffer Overflow in version field in lib/tnef-types.h."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The L2TP Client in MikroTik RouterOS versions 6.83.3 and 6.37.4 does not enable IPsec encryption after a reboot, which allows man-in-the-middle attackers to view transmitted data unencrypted and gain access to networks on the L2TP server by monitoring the packets for the transmitted data and obtaining the L2TP secret.
Published Feb 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
D-Link DGS-1510-28XMP, DGS-1510-28X, DGS-1510-52X, DGS-1510-52, DGS-1510-28P, DGS-1510-28, and DGS-1510-20 Websmart devices with firmware before 1.31.B003 allow attackers to conduct Unauthenticated Information Disclosure attacks via unspecified vectors.
Published Feb 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in tnef before 1.4.13. Two OOB Writes have been identified in src/mapi_attr.c:mapi_attr_read(). These might lead to invalid read and write operations, controlled by an attacker.
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "9 of 9. Directory Traversal using the filename; SanitizeFilename function in settings.c."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "6 of 9. Invalid Write and Integer Overflow."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "8 of 9. Out of Bounds read and write."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "4 of 9. Out of Bounds Reads."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "7 of 9. Out of Bounds read."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "1 of 9. Null Pointer Deref / calloc return value not checked."
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Buffer overflow in APNGDis 2.8 and earlier allows a remote attackers to cause denial of service and possibly execute arbitrary code via a crafted image containing a malformed chunk size descriptor.
Published Feb 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Buffer overflow in APNGDis 2.8 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted image containing a malformed image size descriptor in the IHDR chunk.
Published Feb 20, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Supervisor in Sandstorm doesn't set and enforce the resource limits of a process. This allows remote attackers to cause a denial of service by launching a fork bomb in the sandbox, or by using a large amount of disk space.
Published Feb 6, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Buffer overflow in the built-in web server in DiskSavvy Enterprise 9.4.18 allows remote attackers to execute arbitrary code via a long URI in a GET request.
Published Feb 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
D-Link DGS-1510-28XMP, DGS-1510-28X, DGS-1510-52X, DGS-1510-52, DGS-1510-28P, DGS-1510-28, and DGS-1510-20 Websmart devices with firmware before 1.31.B003 allow attackers to conduct Unauthenticated Command Bypass attacks via unspecified vectors.
Published Feb 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The r_read_* functions in libr/include/r_endian.h in radare2 1.2.1 allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted binary file, as demonstrated by the r_read_le32 function.
Published Feb 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Munin before 2.999.6 has a local file write vulnerability when CGI graphs are enabled. Setting multiple upper_limit GET parameters allows overwriting any file accessible to the www-data user.
Published Feb 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A remote attacker could bypass the Sandstorm organization restriction before build 0.203 via a comma in an email-address field.
Published Feb 6, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/campaign/count_of_send.php (Requires authentication to Wordpress admin) with the POST Parameter: camp_id.
Published Feb 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
CMS Made Simple version 1.x Form Builder before version 0.8.1.6 allows remote attackers to conduct information-disclosure attacks via defaultadmin.
Published Feb 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
FastStone MaxView 3.0 and 3.1 allows user-assisted attackers to cause a denial of service (application crash) via a malformed BMP image with a crafted biSize field in the BITMAPINFOHEADER section.
Published Feb 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Multiple cross-site request forgery (CSRF) vulnerabilities in the access portal on the DIGISOL DG-HR1400 Wireless Router with firmware 1.00.02 allow remote attackers to hijack the authentication of administrators for requests that (1) change the SSID, (2) change the Wi-Fi password, or (3) possibly have unspecified other impact via crafted requests to form2WlanBasicSetup.cgi.
Published Feb 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A SQL injection issue was discovered in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects /inc/campaign_save.php (Requires authentication to Wordpress admin) with the POST Parameter: list_id.
Published Feb 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
SQL injection vulnerability in inc/lib/Control/Backend/menus.control.php in GeniXCMS through 1.0.2 allows remote authenticated users to execute arbitrary SQL commands via the order parameter.
Published Feb 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
CMS Made Simple version 1.x Form Builder before version 0.8.1.6 allows remote attackers to conduct information-disclosure attacks via exportxml.
Published Feb 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site scripting (XSS) vulnerability in GetAuthDetails.html.php in PayPal PHP Merchant SDK (aka merchant-sdk-php) 3.9.1 allows remote attackers to inject arbitrary web script or HTML via the token parameter.
Published Feb 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
CMS Made Simple version 1.x Form Builder before version 0.8.1.6 allows remote attackers to execute PHP code via the cntnt01fbrp_forma_form_template parameter in admin_store_form.
Published Feb 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In versions of wolfSSL before 3.10.2 the function fp_mul_comba makes it easier to extract RSA key information for a malicious user who has access to view cache on a machine.
Published Feb 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
It was discovered that a programming error in the processing of HTTPS requests in the Apache Tomcat servlet and JSP engine may result in denial of service via an infinite loop. The denial of service is easily achievable as a consequence of backporting a CVE-2016-6816 fix but not backporting the fix for Tomcat bug 57544. Distributions affected by this backporting issue include Debian (before 7.0.56-3+deb8u8 and 8.0.14-1+deb8u7 in jessie) and Ubuntu.
Published Feb 17, 2017 · Updated Aug 5, 2024