Unknown · CVSS Not scored
An Invalid memory address dereference was discovered in Exiv2::DataValue::read in value.cpp in Exiv2 0.26. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.
Published Sep 28, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to support subcommands such as cvsserver, which allows attackers to execute arbitrary OS commands via shell metacharacters in a module name. The vulnerable code is reachable via git-shell even without CVS support.
Published Sep 28, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Mojoomla WPAMS Apartment Management System for WordPress allows SQL Injection via the id parameter.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Mojoomla WPGYM WordPress Gym Management System allows SQL Injection via the id parameter.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
There is a heap-based buffer overflow in the Exiv2::us2Data function of types.cpp in Exiv2 0.26. A Crafted input will lead to a denial of service attack.
Published Sep 28, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Mojoomla School Management System for WordPress allows SQL Injection via the id parameter.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
TeamWork TicketPlus allows Arbitrary File Upload in updateProfile.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
TeamWork Photo Fusion allows Arbitrary File Upload in changeAvatar and changeCover.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Mojoomla SMSmaster Multipurpose SMS Gateway for WordPress allows SQL Injection via the id parameter.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
TeamWork Job Links allows Arbitrary File Upload in profileChange and coverChange.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Mojoomla Annual Maintenance Contract (AMC) Management System allows Arbitrary File Upload in profilesetting image handling.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
STDU Viewer 1.6.375 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .djvu file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at STDUDjVuFile!DllUnregisterServer+0x000000000000328e."
Published Sep 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
SQL injection vulnerability in Cash Back Comparison Script 1.0 allows remote attackers to execute arbitrary SQL commands via the PATH_INFO to search/.
Published Sep 26, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Intense WP "WP Jobs" plugin 1.5 for WordPress has XSS, related to the Job Qualification field.
Published Sep 26, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.c, which may lead to DoS when operating on a crafted audio file with vorbis_analysis().
Published Sep 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In GeniXCMS 1.1.4, /inc/lib/backend/menus.control.php has XSS via the id parameter.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
GetNextToken in MagickCore/token.c in ImageMagick 7.0.6 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted SVG document, a different vulnerability than CVE-2017-10928.
Published Sep 21, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The AcquireResampleFilterThreadSet function in magick/resample-private.h in ImageMagick 7.0.7-4 mishandles failed memory allocation, which allows remote attackers to cause a denial of service (NULL Pointer Dereference in DistortImage in MagickCore/distort.c, and application crash) via unspecified vectors.
Published Sep 26, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Before version 4.8.2, WordPress was vulnerable to a directory traversal attack during unzip operations in the ZipArchive and PclZip components.
Published Sep 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
member/Orderinfo.asp in ASP4CMS AspCMS 2.7.2 allows remote authenticated users to read arbitrary order information via a modified OrderNo parameter.
Published Sep 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Race condition in Blizzard Overwatch 1.15.0.2 allows remote authenticated users to cause a denial of service (season bans and SR losses for other users) by leaving a competitive match at a specific time during the initial loading of that match.
Published Sep 26, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The ReadCAPTIONImage function in coders/caption.c in ImageMagick 7.0.7-3 allows remote attackers to cause a denial of service (infinite loop) via a crafted font file.
Published Sep 26, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (integer underflow and application crash) or possibly have unspecified other impact via a crafted BPG file, related to improper interaction with copy_CTB_to_hv in hevc_filter.c in libavcodec in FFmpeg and sao_filter_CTB in hevc_filter.c in libavcodec in FFmpeg.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Simple Student Result plugin before 1.6.4 for WordPress has an Authentication Bypass vulnerability because the fn_ssr_add_st_submit() function and fn_ssr_del_st_submit() function in functions.php only require knowing the student id number.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
OWASP AntiSamy before 1.5.7 allows XSS via HTML5 entities, as demonstrated by use of : to construct a javascript: URL.
Published Sep 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In the Install Themes page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a theme.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Before version 4.8.2, WordPress mishandled % characters and additional placeholder values in $wpdb->prepare, and thus did not properly address the possibility of plugins and themes enabling SQL injection attacks.
Published Sep 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Before version 4.8.2, WordPress was susceptible to an open redirect attack in wp-admin/edit-tag-form.php and wp-admin/user-edit.php.
Published Sep 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The sdp_parse_fmtp_config_h264 function in libavformat/rtpdec_h264.c in FFmpeg before 3.3.4 mishandles empty sprop-parameter-sets values, which allows remote attackers to cause a denial of service (heap buffer overflow) or possibly have unspecified other impact via a crafted sdp file.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Before version 4.8.2, WordPress was vulnerable to a cross-site scripting attack via shortcodes in the TinyMCE visual editor.
Published Sep 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Multiple unrestricted file upload vulnerabilities in the (1) imageSubmit and (2) proof_submit functions in Claydip Laravel Airbnb Clone 1.0 allow remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/profile.
Published Sep 26, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
ERS Data System 1.8.1.0 allows remote attackers to execute arbitrary code, related to "com.branaghgroup.ecers.update.UpdateRequest" object deserialization.
Published Sep 29, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Before version 4.8.2, WordPress allowed a Cross-Site scripting attack in the template list view via a crafted template name.
Published Sep 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
FileRun (version 2017.09.18 and below) suffers from a remote SQL injection vulnerability due to a failure to sanitize input in the metafield parameter inside the metasearch module (under the search function).
Published Sep 29, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
ReadRLEImage in coders/rle.c in GraphicsMagick 1.3.26 mishandles RLE headers that specify too few colors, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
Published Sep 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
STDU Viewer 1.6.375 allows attackers to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at STDUJBIG2File!DllGetClassObject+0x000000000000653b."
Published Sep 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
ofx_proc_file in ofx_preproc.cpp in LibOFX 0.9.12 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file, as demonstrated by an ofxdump call.
Published Sep 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Before version 4.8.2, WordPress allowed a Directory Traversal attack in the Customizer component via a crafted theme filename.
Published Sep 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
logger.c in the logger plugin in WeeChat before 1.9.1 allows a crash via strftime date/time specifiers, because a buffer is not initialized.
Published Sep 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The init script in the Gentoo app-admin/logstash-bin package before 5.5.3 and 5.6.x before 5.6.1 has "chown -R" calls for user-writable directory trees, which allows local users to gain privileges by leveraging access to a $LS_USER account for creation of a hard link.
Published Sep 25, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Foxit Reader 8.3.2.25013 and earlier and Foxit PhantomPDF 8.3.2.25013 and earlier, when running in single instance mode, allows attackers to execute arbitrary code or cause a denial of service via a crafted .pdf file, related to "Data from Faulting Address controls Code Flow starting at tiptsf!CPenInputPanel::FinalRelease+0x000000000000002f.".
Published Sep 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Lack of Transport Encryption in the public API in Philips Hue Bridge BSB002 SW 1707040932 allows remote attackers to read API keys (and consequently bypass the pushlink protection mechanism, and obtain complete control of the connected accessories) by leveraging the ability to sniff HTTP traffic on the local intranet network.
Published Sep 30, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) or possibly have unspecified other impact via a crafted BPG file, related to improper interaction with hls_pcm_sample in hevc.c in libavcodec in FFmpeg and put_pcm_var in hevcdsp_template.c in libavcodec in FFmpeg.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
SQL Injection exists in /includes/event-management/index.php in the event-espresso-free (aka Event Espresso Lite) plugin v3.1.37.12.L for WordPress via the recurrence_id parameter to /wp-admin/admin.php.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Before version 4.8.2, WordPress was vulnerable to cross-site scripting in oEmbed discovery.
Published Sep 23, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In the Upload Modules page in GeniXCMS 1.1.4, remote authenticated users can execute arbitrary PHP code via a .php file in a ZIP archive of a module.
Published Sep 27, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
A cryptographic cache-based side channel in the RSA implementation in Botan before 1.10.17, and 1.11.x and 2.x before 2.3.0, allows a local attacker to recover information about RSA secret keys, as demonstrated by CacheD. This occurs because an array is indexed with bits derived from a secret key.
Published Sep 26, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Phonecall Notes Title parameter.
Published Sep 22, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
SmarterStats Version 11.3.6347 will Render the Referer Field of HTTP Logfiles from URL /Data/Reports/ReferringURLsWithQueries resulting in Stored Cross Site Scripting.
Published Sep 29, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Cross-site scripting (XSS) vulnerability in the EyesOfNetwork web interface (aka eonweb) 5.1-0 allows remote authenticated users to inject arbitrary web script or HTML via the filter parameter to module/module_filters/index.php.
Published Sep 27, 2017 · Updated Aug 5, 2024