Medium · CVSS 5.3
An exploitable information disclosure vulnerability exists in the Server Agent functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted TCP packet can cause information disclosure. An attacker can send a crafted TCP packet to trigger this vulnerability.
Published May 14, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the ReadImage function in input-bmp.c:421:11.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid free), related to the free_bitmap function in bitmap.c:24:5.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
In MODX Revolution before 2.5.7, when PHP 5.3.3 is used, an attacker is able to include and execute arbitrary files on the web server due to insufficient validation of the action parameter to setup/index.php, aka directory traversal.
Published May 18, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
gaoxuyan is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.
Published May 29, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the GET_COLOR function in color.c:18:11.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The my_skip_input_data_fn function in imagew-jpeg.c in libimageworsener.a in ImageWorsener 1.3.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted image.
Published May 19, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The Life Before Us Yo app 2.5.8 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Published May 15, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The iw_get_ui16be function in imagew-util.c:422:24 in libimageworsener.a in ImageWorsener 1.3.1 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted image, related to imagew-jpeg.c.
Published May 23, 2017 · Updated Sep 16, 2024
Medium · CVSS 4.3
TIBCO Spotfire Server 7.0.X before 7.0.2, 7.5.x before 7.5.1, 7.6.x before 7.6.1, 7.7.x before 7.7.1, and 7.8.x before 7.8.1 and Spotfire Analytics Platform for AWS Marketplace 7.8.0 and earlier contain multiple vulnerabilities which may allow authorized users to perform SQL injection attacks.
Published May 9, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Privilege escalation vulnerability found in some Dahua IP devices. Attacker in possession of low privilege account can gain access to credential information of high privilege account and further obtain device information or attack the device.
Published May 23, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Fiyo CMS v2.0.7 has an arbitrary file delete vulnerability in dapur/apps/app_config/controller/backuper.php via directory traversal in the file parameter during an act=db action.
Published May 9, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The Quest Information Systems Indiana Voters app 1.1.24 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Published May 15, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
There is a stack-based buffer overflow on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). Crafted POST requests to an unspecified URL result in DoS, interrupting the HTTP service (used to login to the web UI of a router) for 1 to 2 seconds.
Published May 21, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the pnm_load_ascii function in input-pnm.c:303:12.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
PI Coresight 2016 R2 contains a cross-site request forgery vulnerability that may allow access to the PI system. OSIsoft recommends that users upgrade to PI Vision 2017 or greater to mitigate this vulnerability.
Published May 25, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the pnm_load_ascii function in input-pnm.c:303:12.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The Codextrous B2J Contact (aka b2j_contact) extension before 2.1.13 for Joomla! allows a directory traversal attack that bypasses a uniqid protection mechanism, and makes it easier to read arbitrary uploaded files.
Published May 17, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
PCManFM 1.2.5 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (application unavailability).
Published May 15, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
tkinter was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Published May 29, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:314:7.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
wolfSSL before 3.11.0 does not prevent wc_DhAgree from accepting a malformed DH key.
Published May 9, 2017 · Updated Sep 16, 2024
High · CVSS 8.8
An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into the CN= parm in the "/goform/net_WebCSRGen" uri to trigger this vulnerability.
Published May 14, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:319:7.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Libmenu-cache 1.0.2 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (menu unavailability).
Published May 15, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Symantec SSL Visibility (SSLV) 3.8.4FC, 3.10 prior to 3.10.4.1, 3.11, and 3.12 prior to 3.12.2.1 are vulnerable to the Return of the Bleichenbacher Oracle Threat (ROBOT) attack. All affected SSLV versions act as weak oracles according the oracle classification used in the ROBOT research paper. A remote attacker, who has captured a pre-recorded SSL session inspected by SSLV, can establish multiple millions of crafted SSL connections to the target and obtain the session keys required to decrypt the pre-recorded SSL session.
Published May 17, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
i18next is a language translation framework. When using the .init method, passing interpolation options without passing an escapeValue will default to undefined rather than the assumed true. This can result in a cross-site scripting vulnerability because user input is assumed to be escaped, but is not. This vulnerability affects i18next 2.0.0 and later.
Published May 29, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Dolibarr ERP/CRM 4.0.4 allows password changes without supplying the current password, which makes it easier for physically proximate attackers to obtain access via an unattended workstation.
Published May 10, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
RuboCop 0.48.1 and earlier does not use /tmp in safe way, allowing local users to exploit this to tamper with cache files belonging to other users.
Published May 2, 2017 · Updated Sep 16, 2024
High · CVSS 8.8
An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into the rsakey\_name= parm in the "/goform/WebRSAKEYGen" uri to trigger this vulnerability.
Published May 14, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
GeniXCMS 1.0.2 has XSS triggered by an authenticated user who submits a page, as demonstrated by a crafted oncut attribute in a B element.
Published May 3, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:620:27.
Published May 23, 2017 · Updated Sep 16, 2024
High · CVSS 8.8
An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation resulting in root shell. An attacker can inject OS commands into the openvpnServer0_tmp= parameter in the "/goform/net\_Web\_get_value" uri to trigger this vulnerability.
Published May 14, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the GET_COLOR function in color.c:21:23.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This could be exploited in a Denial of Service attack.
Published May 4, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
In Android before the 2018-05-05 security patch level, NVIDIA Tegra X1 TZ contains a vulnerability in Widevine TA where the software writes data past the end, or before the beginning, of the intended buffer, which may lead to escalation of Privileges. This issue is rated as high. Android: A-69377364. Reference: N-CVE-2017-6293.
Published May 10, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
LAME through 3.99.5 relies on the signed integer data type for values in a WAV or AIFF header, which allows remote attackers to cause a denial of service (stack-based buffer overflow or heap-based buffer overflow) or possibly have unspecified other impact via a crafted file, as demonstrated by mishandling of num_channels.
Published May 2, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Symantec IntelligenceCenter 3.3 is vulnerable to the Return of the Bleichenbacher Oracle Threat (ROBOT) attack. A remote attacker, who has captured a pre-recorded SSL session inspected by SSLV, can establish large numbers of crafted SSL connections to the target and obtain the session keys required to decrypt the pre-recorded SSL session.
Published May 17, 2018 · Updated Sep 16, 2024
High · CVSS 7.5
An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP URI can cause a null pointer dereference resulting in denial of service. An attacker can send a GET request to "/MOXA\_CFG.ini" without a cookie header to trigger this vulnerability.
Published May 14, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The Bluetooth stack on the BMW 330i 2011 allows a remote crash of the CD/Multimedia software via %x or %c format string specifiers in a device name.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 have approximately 165 PE files in the default installation that do not use ASLR/DEP protection mechanisms that provide sufficient defense against directed attacks against the product.
Published May 4, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
node-tkinter was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.
Published May 29, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Boston Scientific ZOOM LATITUDE PRM Model 3120 uses a hard-coded cryptographic key to encrypt PHI prior to having it transferred to removable media. CVSS v3 base score: 4.6; CVSS vector string: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N.
Published May 1, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the ReadImage function in input-bmp.c:496:29.
Published May 23, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the ReadImage function in input-bmp.c:370:25.
Published May 23, 2017 · Updated Sep 16, 2024
High · CVSS 8.8
An exploitable cross-site request forgery vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP packet can cause cross-site request forgery. An attacker can create malicious HTML to trigger this vulnerability.
Published May 14, 2018 · Updated Sep 16, 2024
Critical · CVSS 9.8
In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Solaris), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process. An attacker that can initiate a TCP session with mmm\_agentd can trigger this vulnerability.
Published May 9, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the pnm_load_ascii function in input-pnm.c:306:14.
Published May 23, 2017 · Updated Sep 16, 2024
High · CVSS 8.8
An exploitable command injection vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP POST can cause a privilege escalation, resulting in a root shell. An attacker can inject OS commands into the ip= parm in the "/goform/net_WebPingGetValue" URI to trigger this vulnerability.
Published May 14, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
In MODX Revolution before 2.5.7, an attacker is able to trigger Reflected XSS by injecting payloads into several fields on the setup page, as demonstrated by the database_type parameter.
Published May 18, 2017 · Updated Sep 16, 2024