Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-2896 |
|
Out-of-Bounds Write in libxls-project (CVE-2017-2896)
out-of-bounds write in libxls-project (CVE-2017-2896). Successful exploitation can lead to full system takeover.
|
| CVE-2017-2897 |
|
Out-of-Bounds Write in libxls-project (CVE-2017-2897)
out-of-bounds write in libxls-project (CVE-2017-2897). Successful exploitation can lead to full system takeover.
|
| CVE-2017-2919 |
|
Out-of-Bounds Write in libxls-project (CVE-2017-2919)
out-of-bounds write in libxls-project (CVE-2017-2919). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16908 |
|
Cross-Site Scripting (XSS) in c (CVE-2017-16908)
cross-site scripting in c (CVE-2017-16908). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-16906 |
|
Cross-Site Scripting (XSS) in horde (CVE-2017-16906)
cross-site scripting in horde (CVE-2017-16906). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-16907 |
|
Cross-Site Scripting (XSS) in horde (CVE-2017-16907)
cross-site scripting in horde (CVE-2017-16907). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12608 |
|
Out-of-Bounds Write in apache (CVE-2017-12608)
out-of-bounds write in apache (CVE-2017-12608). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12607 |
|
Out-of-Bounds Write in dos (CVE-2017-12607)
out-of-bounds write in dos (CVE-2017-12607). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16904 |
|
Cross-Site Scripting (XSS) in lvyecms-project (CVE-2017-16904)
cross-site scripting in lvyecms-project (CVE-2017-16904). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-15527 |
|
Path Traversal in path-traversal (CVE-2017-15527)
path traversal in path-traversal (CVE-2017-15527). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16903 |
|
Path Traversal in path-traversal (CVE-2017-16903)
path traversal in path-traversal (CVE-2017-16903). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16898 |
|
Buffer Overflow in c (CVE-2017-16898)
vulnerability in c (CVE-2017-16898). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9806 |
|
Out-of-Bounds Write in dos (CVE-2017-9806)
out-of-bounds write in dos (CVE-2017-9806). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16896 |
|
SQL Injection in sqli (CVE-2017-16896)
SQL injection in sqli (CVE-2017-16896). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16883 |
|
Vulnerability in c (CVE-2017-16883)
vulnerability in c (CVE-2017-16883). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-16881 |
|
Cross-Site Scripting (XSS) in symphony-project (CVE-2017-16881)
cross-site scripting in symphony-project (CVE-2017-16881). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000227 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2017-1000227)
cross-site scripting in wordpress (CVE-2017-1000227). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-16880 |
|
The dump function in Util/TemplateHelper.php in filp whoops before 2.1.13 has XSS.
The dump function in Util/TemplateHelper.php in filp whoops before 2.1.13 has XSS.
|
| CVE-2017-1000230 |
|
Vulnerability in dos (CVE-2017-1000230)
vulnerability in dos (CVE-2017-1000230). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000215 |
|
OS Command Injection in xrootd (CVE-2017-1000215)
OS command injection in xrootd (CVE-2017-1000215). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1000169 |
|
Vulnerability in quickerbb-project (CVE-2017-1000169)
vulnerability in quickerbb-project (CVE-2017-1000169). Successful exploitation can lead to full system takeover.
|
| CVE-2017-13700 |
|
Cross-Site Scripting (XSS) in moxa (CVE-2017-13700)
cross-site scripting in moxa (CVE-2017-13700). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000170 |
|
jqueryFileTree 2.1.5 and older Directory Traversal
jqueryFileTree 2.1.5 and older Directory Traversal
|
| CVE-2017-13703 |
|
Vulnerability in dos (CVE-2017-13703)
vulnerability in dos (CVE-2017-13703). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000191 |
|
Jool 3.5.0-3.5.1 is vulnerable to a kernel crashing packet resulting in a DOS.
Jool 3.5.0-3.5.1 is vulnerable to a kernel crashing packet resulting in a DOS.
|
| CVE-2017-16819 |
|
Cross-Site Scripting (XSS) in icontime (CVE-2017-16819)
cross-site scripting in icontime (CVE-2017-16819). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-16877 |
|
Path Traversal in path-traversal (CVE-2017-16877)
path traversal in path-traversal (CVE-2017-16877). Confidential information can be exposed externally.
|
| CVE-2017-1000203 |
|
OS Command Injection in cern (CVE-2017-1000203)
OS command injection in cern (CVE-2017-1000203). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1000212 |
|
Vulnerability in alchemist-elixir (CVE-2017-1000212)
vulnerability in alchemist-elixir (CVE-2017-1000212). Successful exploitation can lead to full system takeover.
|
| CVE-2017-10886 |
|
Cross-Site Scripting (XSS) in cs-cart (CVE-2017-10886)
cross-site scripting in cs-cart (CVE-2017-10886). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-4929 |
|
Cross-Site Scripting (XSS) in vmware (CVE-2017-4929)
cross-site scripting in vmware (CVE-2017-4929). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-4928 |
|
Cross-Site Request Forgery (CSRF) in ssrf (CVE-2017-4928)
vulnerability in ssrf (CVE-2017-4928). Confidential information can be exposed externally.
|
| CVE-2017-4927 |
|
Vulnerability in dos (CVE-2017-4927)
vulnerability in dos (CVE-2017-4927). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-4935 |
|
Out-of-Bounds Write in dos (CVE-2017-4935)
out-of-bounds write in dos (CVE-2017-4935). Successful exploitation can lead to full system takeover.
|
| CVE-2017-4936 |
|
Out-of-Bounds Read in dos (CVE-2017-4936)
vulnerability in dos (CVE-2017-4936). Successful exploitation can lead to full system takeover.
|
| CVE-2017-4937 |
|
Out-of-Bounds Read in dos (CVE-2017-4937)
vulnerability in dos (CVE-2017-4937). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16868 |
|
Vulnerability in c (CVE-2017-16868)
vulnerability in c (CVE-2017-16868). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-16869 |
|
Buffer Overflow in cpp (CVE-2017-16869)
vulnerability in cpp (CVE-2017-16869). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16870 |
|
SSRF (Server-Side Request Forgery) in wordpress (CVE-2017-16870)
SSRF in wordpress (CVE-2017-16870). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1000129 |
|
SQL Injection in sqli (CVE-2017-1000129)
SQL injection in sqli (CVE-2017-1000129). Confidential information can be exposed externally.
|
| CVE-2017-1000160 |
|
Cross-Site Scripting (XSS) in expressionengine (CVE-2017-1000160)
cross-site scripting in expressionengine (CVE-2017-1000160). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000164 |
|
Cross-Site Scripting (XSS) in privilege-escalation (CVE-2017-1000164)
cross-site scripting in privilege-escalation (CVE-2017-1000164). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000223 |
|
Cross-Site Scripting (XSS) in modx (CVE-2017-1000223)
cross-site scripting in modx (CVE-2017-1000223). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000225 |
|
Cross-Site Scripting (XSS) in relevanssi (CVE-2017-1000225)
cross-site scripting in relevanssi (CVE-2017-1000225). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000229 |
|
Vulnerability in dos (CVE-2017-1000229)
vulnerability in dos (CVE-2017-1000229). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1000241 |
|
Privilege Escalation in privilege-escalation (CVE-2017-1000241)
vulnerability in privilege-escalation (CVE-2017-1000241). Confidential information can be exposed externally.
|
| CVE-2017-1000228 |
|
Vulnerability in ejs (CVE-2017-1000228)
vulnerability in ejs (CVE-2017-1000228). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1000239 |
|
Cross-Site Scripting (XSS) in invoiceplane (CVE-2017-1000239)
cross-site scripting in invoiceplane (CVE-2017-1000239). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000240 |
|
Cross-Site Scripting (XSS) in open-emr (CVE-2017-1000240)
cross-site scripting in open-emr (CVE-2017-1000240). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1000201 |
|
Vulnerability in dos (CVE-2017-1000201)
vulnerability in dos (CVE-2017-1000201). Risk of unauthorized operations or information disclosure.
|