Unknown · CVSS Not scored
An XSS vulnerability exists in framework/views/errorHandler/exception.php in Yii Framework 2.0.12 affecting the exception screen when debug mode is enabled, because $exception->errorInfo is mishandled.
Published Jul 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
tcpdump 4.9.0 has a buffer overflow in the sliplink_print function in print-sl.c.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadOneMNGImage function in coders/png.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted file.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadTXTImage function in coders/txt.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (infinite loop) via a crafted file, because the end-of-file condition is not considered.
Published Jul 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the WritePSImage() function in coders/ps.c.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
tcpdump 4.9.0 has a heap-based buffer over-read in the lldp_print function in print-lldp.c, related to util-print.c.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Sitecore 8.2, there is reflected XSS in the shell/Applications/Tools/Run Program parameter.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the WriteMPCImage() function in coders/mpc.c.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the GetPixelIndex() function, called from the WritePICONImage function in coders/xpm.c.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Floating Point Exception (FPE) in the WritePALMImage() function in coders/palm.c, related to an incorrect bits-per-pixel calculation.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
PHPMailer 5.2.23 has XSS in the "From Email Address" and "To Email Address" fields of code_generator.php.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Buffer overflow in the mp_override_legacy_irq() function in arch/x86/kernel/acpi/boot.c in the Linux kernel through 3.2 allows local users to gain privileges via a crafted ACPI table.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadDIBImage function in coders/dib.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory leak) via a crafted file.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
NixOS 17.03 and earlier has an unintended default absence of SSL Certificate Validation for LDAP. The users.ldap NixOS module implements user authentication against LDAP servers via a PAM module. It was found that if TLS is enabled to connect to the LDAP server with users.ldap.useTLS, peer verification will be unconditionally disabled in /etc/ldap.conf.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The SdpContents::Session::Medium::parse function in resip/stack/SdpContents.cxx in reSIProcate 1.10.2 allows remote attackers to cause a denial of service (memory consumption) by triggering many media connections.
Published Jul 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the lite_font_map() function in coders/wmf.c.
Published Jul 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
XML external entity (XXE) vulnerability in com.sap.km.cm.ice in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request, aka SAP Security Note 2387249.
Published Jul 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The WHM Upload Locale interface in cPanel before 56.0.51, 58.x before 58.0.52, 60.x before 60.0.45, 62.x before 62.0.27, 64.x before 64.0.33, and 66.x before 66.0.2 has XSS via a locale filename, aka SEC-297.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadPESImage function in coders\pes.c in ImageMagick 7.0.6-1 has an infinite loop vulnerability that can cause CPU exhaustion via a crafted PES file.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatifGadget/getxenmetrics.php via the element parameter.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Subrion CMS before 4.1.6 has a SQL injection vulnerability in /front/actions.php via the $_POST array.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site scripting (XSS) vulnerability in the DataArchivingService servlet in SAP NetWeaver Portal 7.4 allows remote attackers to inject arbitrary web script or HTML via the responsecode parameter to shp/shp_result.jsp, aka SAP Security Note 2308535.
Published Jul 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site scripting (XSS) vulnerability in the ctcprotocol/Protocol servlet in SAP NetWeaver AS JAVA 7.3 allows remote attackers to inject arbitrary web script or HTML via the sessionID parameter, aka SAP Security Note 2406783.
Published Jul 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
coders/jpeg.c in ImageMagick before 7.0.6-1 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via JPEG data that is too short.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A SIGFPE is raised in the function box_blur_line of rsvg-filter.c in GNOME librsvg 2.40.17 during an attempted parse of a crafted SVG file, because of incorrect protection against division by zero.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
get2post.php in IDERA Uptime Monitor 7.8 has directory traversal in the file_name parameter.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The acpi_ns_terminate() function in drivers/acpi/acpica/nsutils.c in the Linux kernel before 4.12 does not flush the operand cache and causes a kernel stack dump, which allows local users to obtain sensitive information from kernel memory and bypass the KASLR protection mechanism (in the kernel through 4.9) via a crafted ACPI table.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
GLPI before 9.1.5.1 has SQL Injection in the $crit variable in inc/computer_softwareversion.class.php, exploitable via ajax/common.tabs.php.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Subrion CMS before 4.1.5.10 has a SQL injection vulnerability in /front/search.php via the $_GET array.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
D-Link DIR-615 before v20.12PTb04 has a second admin account with a 0x1 BACKDOOR value, which might allow remote attackers to obtain access via a TELNET connection.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) via a crafted DHCP options string.
Published Jul 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Humax Wi-Fi Router model HG100R-* 2.0.6 is prone to an authentication bypass vulnerability via specially crafted requests to the management console. The bug is exploitable remotely when the router is configured to expose the management console. The router is not validating the session token while returning answers for some methods in url '/api'. An attacker can use this vulnerability to retrieve sensitive information such as private/public IP addresses, SSID names, and passwords.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadSCREENSHOTImage function in coders/screenshot.c in ImageMagick before 7.0.6-1 has memory leaks, causing denial of service.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
SAP TREX 7.10 allows remote attackers to (1) read arbitrary files via an fget command or (2) write to arbitrary files and consequently execute arbitrary code via an fdir command, aka SAP Security Note 2419592.
Published Jul 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Arbitrary file upload vulnerability in com/dotmarketing/servlets/AjaxFileUploadServlet.class in dotCMS 4.1.1 allows remote authenticated administrators to upload .jsp files to arbitrary locations via directory traversal sequences in the fieldName parameter to servlets/ajax_file_upload. This results in arbitrary code execution by requesting the .jsp file at a /assets URI.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
GLPI before 9.1.5.1 has SQL Injection in the condition rule field, exploitable via front/rulesengine.test.php.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Docker Registry before 2.6.2 in Docker Distribution does not properly restrict the amount of content accepted from a user, which allows remote attackers to cause a denial of service (memory consumption) via the manifest endpoint.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatIfGadget/getmetrics.php via the element parameter.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
coders/mpc.c in ImageMagick before 7.0.6-1 does not enable seekable streams and thus cannot validate blob sizes, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an image received from stdin.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Sitecore 8.2, there is absolute path traversal via the shell/Applications/Layouts/IDE.aspx fi parameter and the admin/LinqScratchPad.aspx Reference parameter.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
OrientDB through 2.2.22 does not enforce privilege requirements during "where" or "fetchplan" or "order by" use, which allows remote attackers to execute arbitrary OS commands via a crafted request.
Published Jul 20, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadJPEGImage function in coders/jpeg.c in ImageMagick before 7.0.6-1 allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted file.
Published Jul 19, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
gnome-exe-thumbnailer before 0.9.5 is prone to a VBScript Injection when generating thumbnails for MSI files, aka the "Bad Taste" issue. There is a local attack if the victim uses the GNOME Files file manager, and navigates to a directory containing a .msi file with VBScript code in its filename.
Published Jul 18, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Stack-based buffer overflow in ASUS_Discovery.c in networkmap in Asuswrt-Merlin firmware for ASUS devices and ASUS firmware for ASUS RT-AC5300, RT_AC1900P, RT-AC68U, RT-AC68P, RT-AC88U, RT-AC66U, RT-AC66U_B1, RT-AC58U, RT-AC56U, RT-AC55U, RT-AC52U, RT-AC51U, RT-N18U, RT-N66U, RT-N56U, RT-AC3200, RT-AC3100, RT_AC1200GU, RT_AC1200G, RT-AC1200, RT-AC53, RT-N12HP, RT-N12HP_B1, RT-N12D1, RT-N12+, RT_N12+_PRO, RT-N16, and RT-N300 devices allows remote attackers to execute arbitrary code via long device information that is mishandled during a strcat to a device list.
Published Jul 18, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The cabd_read_string function in mspack/cabd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2 and other products, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted CAB file.
Published Jul 18, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Fiyo CMS 2.0.7 has SQL injection in /apps/app_article/controller/editor.php via $_POST['id'] and $_POST['art_title'].
Published Jul 18, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Statamic framework before 2.6.0 does not correctly check a session's permissions when the methods from a user's class are called. Problematic methods include reset password, create new account, create new role, etc.
Published Jul 24, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Octopus Deploy 3.x before 3.15.4, an authenticated user with PackagePush permission to upload packages could upload a maliciously crafted NuGet package, potentially overwriting other packages or modifying system files. This is a directory traversal in the PackageId value.
Published Jul 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Integer overflow in the ape_decode_frame function in libavcodec/apedec.c in FFmpeg 2.4 through 3.3.2 allows remote attackers to cause a denial of service (out-of-array access and application crash) or possibly have unspecified other impact via a crafted APE file.
Published Jul 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Fiyo CMS 2.0.7 has SQL injection in dapur/apps/app_article/controller/comment_status.php via $_GET['id'].
Published Jul 18, 2017 · Updated Aug 5, 2024