Unknown · CVSS Not scored
The chk_mem_access function in cpu/nes6502/nes6502.c in libnosefart.a in Nosefart 2.9-mls allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted nsf file.
Published Jul 31, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site scripting (XSS) vulnerability in aggregate_graphs.php in Cacti 1.1.12 allows remote authenticated users to inject arbitrary web script or HTML via specially crafted HTTP Referer headers, related to the $cancel_url variable.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
FineCMS 2.1.0 allows remote attackers to execute arbitrary PHP code by using a URL Manager "Add Site" action to enter this code after a ', sequence in a domain name, as demonstrated by the ',phpinfo() input value.
Published Jul 12, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
dataTaker DT80 dEX 1.50.012 allows remote attackers to obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI.
Published Jul 12, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ExifImageFile::readDQT function in ExifImageFileRead.cpp in OpenExif 2.1.4 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted jpg file.
Published Jul 31, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadTGAImage function in coders\tga.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via invalid colors data in the header of a TGA or VST file.
Published Jul 11, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In J2 Innovations FIN Stack 4.0, the authentication webform is vulnerable to reflected XSS via the query string to /login.
Published Jul 5, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, the openssl extension PEM sealing code did not check the return value of the OpenSSL sealing function, which could lead to a crash of the PHP interpreter, related to an interpretation conflict for a negative number in ext/openssl/openssl.c, and an OpenSSL documentation omission.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ExifImageFile::readDHT function in ExifImageFileRead.cpp in OpenExif 2.1.4 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted jpg file.
Published Jul 31, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
GraphicsMagick 1.3.26 has double free vulnerabilities in the ReadOneJNGImage() function in coders/png.c.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The III_i_stereo function in libmpg123/layer3.c in mpg123 through 1.25.1 allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file that is mishandled in the code for the "block_type != 2" case, a similar issue to CVE-2017-9870.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash), which could be relevant if unrarlib is used as library code for a long-running application. NOTE: one of the several test cases in the references may be the same as what was separately reported as CVE-2017-14121.
Published Jul 12, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
Published Jul 8, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
phpLDAPadmin through 1.2.3 has XSS in htdocs/entry_chooser.php via the form, element, rdn, or container parameter.
Published Jul 8, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vim 8.0 allows attackers to cause a denial of service (invalid free) or possibly have unspecified other impact via a crafted source (aka -S) file. NOTE: there might be a limited number of scenarios in which this has security relevance.
Published Jul 8, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
libxar.so in xar 1.6.1 has a NULL pointer dereference in the xar_unserialize function in archive.c.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In PHP before 5.6.30 and 7.x before 7.0.15, the PHAR archive handler could be used by attackers supplying malicious archive files to crash the PHP interpreter or potentially disclose information due to a buffer over-read in the phar_parse_pharfile function in ext/phar/phar.c.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Bolt CMS 3.2.14 allows stored XSS by uploading an SVG document with a "Content-Type: image/svg+xml" header.
Published Jul 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data.
Published Jul 8, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadDPXImage function in coders\dpx.c in ImageMagick 7.0.6-0 has a large loop vulnerability that can cause CPU exhaustion via a crafted DPX file, related to lack of an EOF check.
Published Jul 12, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
front/backup.php in GLPI before 9.1.5 allows remote authenticated administrators to delete arbitrary files via a crafted file parameter.
Published Jul 28, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An FR-GV-206 issue in FreeRADIUS 2.x before 2.2.10 and 3.x before 3.0.15 allows "DHCP - Read overflow when decoding option 63" and a denial of service.
Published Jul 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In ncurses 6.0, there is an attempted 0xffffffffffffffff access in the append_acs function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data.
Published Jul 8, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
libxar.so in xar 1.6.1 has a NULL pointer dereference in the xar_get_path function in util.c.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Knot DNS before 2.4.5 and 2.5.x before 2.5.2 contains a flaw within the TSIG protocol implementation that would allow an attacker with a valid key name and algorithm to bypass TSIG authentication if no additional ACL restrictions are set, because of an improper TSIG validity period check.
Published Jul 8, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Heimdal before 7.4 allows remote attackers to impersonate services with Orpheus' Lyre attacks because it obtains service-principal names in a way that violates the Kerberos 5 protocol specification. In _krb5_extract_ticket() the KDC-REP service name must be obtained from the encrypted version stored in 'enc_part' instead of the unencrypted version stored in 'ticket'. Use of the unencrypted version provides an opportunity for successful server impersonation and other attacks. NOTE: this CVE is only for Heimdal and other products that embed Heimdal code; it does not apply to other instances in which this part of the Kerberos 5 protocol specification is violated.
Published Jul 13, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In install/page_dbsettings.php in the Core distribution of XOOPS 2.5.8.1, unfiltered data passed to CREATE and ALTER SQL queries caused SQL Injection in the database settings page, related to use of GBK in CHARACTER SET and COLLATE clauses.
Published Jul 12, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In PHP before 5.6.31, an invalid free in the WDDX deserialization of boolean parameters could be used by attackers able to inject XML for deserialization to crash the PHP interpreter, related to an invalid free for an empty boolean element in ext/wddx/wddx.c.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, an error in the date extension's timelib_meridian parsing code could be used by attackers able to supply date strings to leak information from the interpreter, related to ext/date/lib/parse_date.c out-of-bounds reads affecting the php_parse_date function. NOTE: the correct fix is in the e8b7698f5ee757ce2c8bd10a192a491a498f891c commit, not the bd77ac90d3bdf31ce2a5251ad92e9e75 gist.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The mq_notify function in the Linux kernel through 4.11.9 does not set the sock pointer to NULL upon entry into the retry logic. During a user-space close of a Netlink socket, it allows attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact.
Published Jul 11, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadJPEGImage function in coders/jpeg.c in GraphicsMagick 1.3.26 creates a pixel cache before a successful read of a scanline, which allows remote attackers to cause a denial of service (resource consumption) via crafted JPEG files.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadMATImage function in coders\mat.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via a crafted MAT file, related to incorrect ordering of a SetImageExtent call.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In PHP before 5.6.31, 7.x before 7.0.17, and 7.1.x before 7.1.3, remote attackers could cause a CPU consumption denial of service attack by injecting long form variables, related to main/php_variables.c.
Published Jul 10, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The put_chars function in html_r.c in Twibright Links 2.14 allows remote attackers to cause a denial of service (buffer over-read) via a crafted HTML file.
Published Jul 31, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In PCRE 8.41, the OP_KETRMAX feature in the match function in pcre_exec.c allows stack exhaustion (uncontrolled recursion) when processing a crafted regular expression.
Published Jul 11, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ExifJpegHUFFTable::deriveTable function in ExifHuffmanTable.cpp in OpenExif 2.1.4 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) via a crafted jpg file.
Published Jul 31, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ExifImageFile::readImage function in ExifImageFileRead.cpp in OpenExif 2.1.4 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted jpg file.
Published Jul 31, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The mng_get_long function in coders/png.c in ImageMagick 7.0.6-0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted MNG image.
Published Jul 7, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Bolt CMS 3.2.14 allows stored XSS via text input, as demonstrated by the Title field of a New Entry.
Published Jul 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
tcpdump 4.9.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via crafted packet data. The crash occurs in the EXTRACT_16BITS function, called from the stp_print function for the Spanning Tree Protocol.
Published Jul 8, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ole_init function in ole.c in catdoc 0.95 allows remote attackers to cause a denial of service (heap-based buffer underflow and application crash) or possibly have unspecified other impact via a crafted file, i.e., data is written to memory addresses before the beginning of the tmpBuf buffer.
Published Jul 8, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadOneJNGImage function in coders/png.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (application crash) during JNG reading via a zero-length color_image data structure.
Published Jul 7, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An FR-GV-301 issue in FreeRADIUS 3.x before 3.0.15 allows "Write overflow in data2vp_wimax()" - this allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code.
Published Jul 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An FR-GV-204 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Memory leak in fr_dhcp_decode()" and a denial of service.
Published Jul 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Contao before 3.5.28 and 4.x before 4.4.1 allows remote attackers to include and execute arbitrary local PHP files via a crafted parameter in a URL, aka Directory Traversal.
Published Jul 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An FR-GV-203 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - Memory leak in decode_tlv()" and a denial of service.
Published Jul 17, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Foxit Reader before 8.3.1 and PhantomPDF before 8.3.1 have an Arbitrary Write vulnerability, which allows remote attackers to execute arbitrary code via a crafted document.
Published Jul 7, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Yaws 1.91 allows Unauthenticated Remote File Disclosure via HTTP Directory Traversal with /%5C../ to port 8080. NOTE: this CVE is only about use of an initial /%5C sequence to defeat traversal protection mechanisms; the initial /%5C sequence was apparently not discussed in earlier research on this product.
Published Jul 7, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
REDCap before 7.5.1 has CSRF in the deletion feature of the File Repository and File Upload components.
Published Jul 18, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The getNodeSize function in ext/rtree/rtree.c in SQLite through 3.19.3, as used in GDAL and other products, mishandles undersized RTree blobs in a crafted database, leading to a heap-based buffer over-read or possibly unspecified other impact.
Published Jul 7, 2017 · Updated Aug 5, 2024