Unknown · CVSS Not scored
Multiple SQL injection vulnerabilities in Synology Photo Station before 6.7.4-3433 and 6.3-2968 allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter to label.php; or (2) type parameter to synotheme.php.
Published Sep 8, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Windows Error Reporting (WER) in Microsoft Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allows an attacker to gain greater access to sensitive information and system functionality, due to the way that WER handles and executes files, aka "Windows Elevation of Privilege Vulnerability".
Published Sep 13, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
A denial of service vulnerability in the Android media framework (libhevc). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-37615911.
Published Sep 8, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
When handling a decoding failure for a malformed URL path of an HTTP request, libprocess in Apache Mesos before 1.1.3, 1.2.x before 1.2.2, 1.3.x before 1.3.1, and 1.4.0-dev might crash because the code accidentally calls inappropriate function. A malicious actor can therefore cause a denial of service of Mesos masters rendering the Mesos-controlled cluster inoperable.
Published Sep 28, 2017 · Updated Sep 16, 2024
High · CVSS 7.5
An exploitable buffer overflow vulnerability exists in the tag parsing functionality of Ledger-CLI 3.1.1. A specially crafted journal file can cause an integer underflow resulting in code execution. An attacker can construct a malicious journal file to trigger this vulnerability.
Published Sep 5, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user, due to the way that the scripting engine handles objects in memory in Microsoft Edge, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-8649, CVE-2017-8649, CVE-2017-8660, CVE-2017-8729, CVE-2017-8738, CVE-2017-8740, CVE-2017-8741, CVE-2017-8748, CVE-2017-8752, CVE-2017-8753, CVE-2017-8756, and CVE-2017-11764.
Published Sep 13, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
IBM Notes 8.5 and 9.0 is vulnerable to a denial of service. If a user is persuaded to click on a malicious link, it could cause the Notes client to hang and have to be restarted. IBM X-Force ID: 121370.
Published Sep 5, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
In the mboxlist_do_find function in imap/mboxlist.c in Cyrus IMAP before 3.0.4, an off-by-one error in prefix calculation for the LIST command caused use of uninitialized memory, which might allow remote attackers to obtain sensitive information or cause a denial of service (daemon crash) via a 'LIST "" "Other Users"' command.
Published Sep 10, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
IBM Emptoris Strategic Supply Management Platform 10.0.0.x through 10.1.1.x is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 120657.
Published Sep 5, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
The Microsoft Common Console Document (.msc) in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1 allows an attacker to read arbitrary files via an XML external entity (XXE) declaration, due to the way that the Microsoft Common Console Document (.msc) parses XML input containing a reference to an external entity, aka "Windows Information Disclosure Vulnerability".
Published Sep 13, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
NVIDIA GPU Display Driver contains a vulnerability in the kernel mode layer handler where an incorrect initialization of internal objects can cause an infinite loop which may lead to a denial of service.
Published Sep 22, 2017 · Updated Sep 16, 2024
High · CVSS 8.1
An exploitable buffer overflow vulnerability exists in the DDNS client used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.43. On devices with DDNS enabled, an attacker who is able to intercept HTTP connections will be able to fully compromise the device by creating a rogue HTTP server.
Published Sep 17, 2018 · Updated Sep 16, 2024
Unknown · CVSS Not scored
During Jelly (xml) file parsing with Apache Xerces, if a custom doctype entity is declared with a "SYSTEM" entity with a URL and that entity is used in the body of the Jelly file, during parser instantiation the parser will attempt to connect to said URL. This could lead to XML External Entity (XXE) attacks in Apache Commons Jelly before 1.0.1.
Published Sep 27, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
A SQL injection vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an unauthenticated user can use calls to various paths allowing performance of arbitrary SQL commands against the underlying database.
Published Sep 25, 2017 · Updated Sep 16, 2024
Unknown · CVSS Not scored
python-fedora 0.8.0 and lower is vulnerable to an open redirect resulting in loss of CSRF protection
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin webapp-builder v2.0, The plugin includes unlicensed vulnerable CMS software from http://www.invedion.com/
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin DTracker v1.5, In file ./dtracker/download.php user input isn't sanitized via the id variable before adding it to the end of an SQL query.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin membership-simplified-for-oap-members-only v1.58, The file download code located membership-simplified-for-oap-members-only/download.php does not check whether a user is logged in and has download privileges.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin mobile-app-builder-by-wappress v1.05, The plugin includes unlicensed vulnerable CMS software from http://www.invedion.com.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin DTracker v1.5, The code dtracker/save_mail.php doesn't check that the user is authorized before injecting new contacts into the wp_contact table.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin surveys v1.01.8, The code in questions.php does not sanitize the survey variable before placing it inside of an SQL query.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin DTracker v1.5, In file ./dtracker/delete.php user input isn't sanitized via the contact_id variable before adding it to the end of an SQL query.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin surveys v1.01.8, The code in individual_responses.php does not sanitize the survey_id variable before placing it inside of an SQL query.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin rk-responsive-contact-form v1.0, The variable $delid isn't sanitized before being passed into an SQL query in file ./rk-responsive-contact-form/include/rk_user_list.php.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin wordpress-gallery-transformation v1.0, SQL injection is in ./wordpress-gallery-transformation/gallery.php via $jpic parameter being unsanitized before being passed into an SQL query.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin surveys v1.01.8, The code in survey_form.php does not sanitize the action variable before placing it inside of an SQL query.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9
Published Sep 6, 2018 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin DTracker v1.5, The code dtracker/save_contact.php doesn't check that the user is authorized before injecting new contacts into the wp_contact table.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin mobile-friendly-app-builder-by-easytouch v3.0, The code in file ./mobile-friendly-app-builder-by-easytouch/server/images.php doesn't require authentication or check that the user is allowed to upload content.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
Vulnerability in wordpress plugin wp2android-turn-wp-site-into-android-app v1.1.4, The plugin includes unlicensed vulnerable CMS software from http://www.invedion.com.
Published Sep 14, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue in file() was introduced in commit 9611f31313a93aa036389c5f3b15eea53510d4d1 (Oct 2016) lets an attacker overwrite a fixed 20 bytes stack buffer with a specially crafted .notes section in an ELF binary. This was fixed in commit 35c94dc6acc418f1ad7f6241a6680e5327495793 (Aug 2017).
Published Sep 11, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space.
Published Sep 12, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
All versions of the SDP server in BlueZ 5.46 and earlier are vulnerable to an information disclosure vulnerability which allows remote attackers to obtain sensitive information from the bluetoothd process memory. This vulnerability lies in the processing of SDP search attribute requests.
Published Sep 12, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The KVM subsystem in the Linux kernel through 4.13.3 allows guest OS users to cause a denial of service (assertion failure, and hypervisor hang or crash) via an out-of bounds guest_irq value, related to arch/x86/kvm/vmx.c and virt/kvm/eventfd.c.
Published Sep 26, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option substring, as demonstrated by a --checkpoint-action=exec=bash at the beginning of the filename.
Published Sep 5, 2017 · Updated Aug 5, 2024
Unknown · CVSS Not scored
An issue was discovered in the Linux kernel before 4.14.11. A double free may be caused by the function allocate_trace_buffer in the file kernel/trace/trace.c.
Published Sep 4, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The avada theme before 5.1.5 for WordPress has stored XSS.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The kama-clic-counter plugin before 3.5.0 for WordPress has XSS.
Published Sep 13, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The examapp plugin 1.0 for WordPress has SQL injection via the wp-admin/admin.php?page=examapp_UserResult id parameter.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The wp-whois-domain plugin 1.0.0 for WordPress has XSS via the pages/func-whois.php domain parameter.
Published Sep 13, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Qards plugin through 2017-10-11 for WordPress has XSS via a remote document specified in the url parameter to html2canvasproxy.php.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The formcraft3 plugin before 3.4 for WordPress has stored XSS via the "New Form > Heading > Heading Text" field.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The magic-fields plugin before 1.7.2 for WordPress has XSS via the custom-write-panel-id parameter.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
CDG through 2017-01-01 allows downloadDocument.jsp?command=download&pathAndName= directory traversal.
Published Sep 30, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The trust-form plugin 2.0 for WordPress has XSS via the wp-admin/admin.php?page=trust-form-edit page parameter.
Published Sep 13, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The magic-fields plugin before 1.7.2 for WordPress has XSS via the RCCWP_CreateCustomFieldPage.php custom-group-id parameter.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The Pinfinity theme before 2.0 for WordPress has XSS via the s parameter.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The magic-fields plugin before 1.7.2 for WordPress has XSS via the RCCWP_CreateCustomFieldPage.php custom-field-css parameter.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The sitebuilder-dynamic-components plugin through 1.0 for WordPress has PHP object injection via an AJAX request.
Published Sep 10, 2019 · Updated Aug 5, 2024
Unknown · CVSS Not scored
The gravitate-qa-tracker plugin through 1.2.1 for WordPress has PHP Object Injection.
Published Sep 10, 2019 · Updated Aug 5, 2024