Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-9259 |
|
Vulnerability in cpp (CVE-2017-9259)
vulnerability in cpp (CVE-2017-9259). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9260 |
|
Out-of-Bounds Read in cpp (CVE-2017-9260)
vulnerability in cpp (CVE-2017-9260). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9412 |
|
Buffer Overflow in c (CVE-2017-9412)
vulnerability in c (CVE-2017-9412). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9545 |
|
Out-of-Bounds Read in c (CVE-2017-9545)
vulnerability in c (CVE-2017-9545). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9614 |
|
Buffer Overflow in c (CVE-2017-9614)
vulnerability in c (CVE-2017-9614). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11678 |
|
SQL Injection in sqli (CVE-2017-11678)
SQL injection in sqli (CVE-2017-11678). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11677 |
|
Cross-Site Scripting (XSS) in hashtopus-project (CVE-2017-11677)
cross-site scripting in hashtopus-project (CVE-2017-11677). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11682 |
|
Cross-Site Scripting (XSS) in hashtopolis (CVE-2017-11682)
cross-site scripting in hashtopolis (CVE-2017-11682). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11685 |
|
Cross-Site Scripting (XSS) in zohocorp (CVE-2017-11685)
cross-site scripting in zohocorp (CVE-2017-11685). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11686 |
|
Cross-Site Scripting (XSS) in zohocorp (CVE-2017-11686)
cross-site scripting in zohocorp (CVE-2017-11686). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11687 |
|
Cross-Site Scripting (XSS) in zohocorp (CVE-2017-11687)
cross-site scripting in zohocorp (CVE-2017-11687). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11691 |
|
Cross-Site Scripting (XSS) in cacti (CVE-2017-11691)
cross-site scripting in cacti (CVE-2017-11691). Risk of unauthorized operations or information disclosure. Exploitable via `Referer header`.
|
| CVE-2017-11679 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-11679)
vulnerability in csrf (CVE-2017-11679). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11680 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-11680)
vulnerability in csrf (CVE-2017-11680). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9610 |
|
Out-of-Bounds Read in c (CVE-2017-9610)
vulnerability in c (CVE-2017-9610). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9611 |
|
Out-of-Bounds Read in c (CVE-2017-9611)
vulnerability in c (CVE-2017-9611). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9612 |
|
Use-After-Free in c (CVE-2017-9612)
vulnerability in c (CVE-2017-9612). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9618 |
|
Buffer Overflow in c (CVE-2017-9618)
vulnerability in c (CVE-2017-9618). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9619 |
|
Buffer Overflow in c (CVE-2017-9619)
vulnerability in c (CVE-2017-9619). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9620 |
|
Out-of-Bounds Read in c (CVE-2017-9620)
vulnerability in c (CVE-2017-9620). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9726 |
|
Out-of-Bounds Read in c (CVE-2017-9726)
vulnerability in c (CVE-2017-9726). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9727 |
|
Out-of-Bounds Read in c (CVE-2017-9727)
vulnerability in c (CVE-2017-9727). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9739 |
|
Out-of-Bounds Read in c (CVE-2017-9739)
vulnerability in c (CVE-2017-9739). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9740 |
|
Out-of-Bounds Read in c (CVE-2017-9740)
vulnerability in c (CVE-2017-9740). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9835 |
|
Vulnerability in c (CVE-2017-9835)
vulnerability in c (CVE-2017-9835). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11666 |
|
Cross-Site Scripting (XSS) in kopano (CVE-2017-11666)
cross-site scripting in kopano (CVE-2017-11666). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11612 |
|
Cross-Site Scripting (XSS) in joomla (CVE-2017-11612)
cross-site scripting in joomla (CVE-2017-11612). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11631 |
|
dapur/app/app_user/controller/status.php in Fiyo CMS 2.0.7 has SQL injection via the id parameter.
dapur/app/app_user/controller/status.php in Fiyo CMS 2.0.7 has SQL injection via the id parameter.
|
| CVE-2017-11629 |
|
Cross-Site Scripting (XSS) in c (CVE-2017-11629)
cross-site scripting in c (CVE-2017-11629). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11651 |
|
NexusPHP V1.5 has XSS via a javascript: or data: URL in a UBBCode url tag.
NexusPHP V1.5 has XSS via a javascript: or data: URL in a UBBCode url tag.
|
| CVE-2017-11630 |
|
Path Traversal in path-traversal (CVE-2017-11630)
path traversal in path-traversal (CVE-2017-11630). Data can be tampered with by attackers.
|
| CVE-2017-11613 |
|
Vulnerability in dos (CVE-2017-11613)
vulnerability in dos (CVE-2017-11613). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11624 |
|
Vulnerability in dos (CVE-2017-11624)
vulnerability in dos (CVE-2017-11624). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11625 |
|
Vulnerability in dos (CVE-2017-11625)
vulnerability in dos (CVE-2017-11625). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11626 |
|
Vulnerability in dos (CVE-2017-11626)
vulnerability in dos (CVE-2017-11626). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11627 |
|
Vulnerability in dos (CVE-2017-11627)
vulnerability in dos (CVE-2017-11627). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11628 |
|
Buffer Overflow in c (CVE-2017-11628)
vulnerability in c (CVE-2017-11628). Successful exploitation can lead to full system takeover.
|
| CVE-2016-6133 |
|
Cross-Site Scripting (XSS) in ektron (CVE-2016-6133)
cross-site scripting in ektron (CVE-2016-6133). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-6753 |
|
A vulnerability in Cisco WebEx browser extensions for Google Chrome and Mozilla Firefox could allow an unauthenticated, remote attacker to execute arbitrary code with the privileges of the affected br...
A vulnerability in Cisco WebEx browser extensions for Google Chrome and Mozilla Firefox could allow an unauthenticated, remote attacker to execute arbitrary code with the privileges of the affected browser on an affected system. This vulnerability affects the browser extensions for Cisco WebEx Meeti...
|
| CVE-2017-6749 |
|
Cross-Site Scripting (XSS) in cisco (CVE-2017-6749)
cross-site scripting in cisco (CVE-2017-6749). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-6755 |
|
Cross-Site Scripting (XSS) in cisco (CVE-2017-6755)
cross-site scripting in cisco (CVE-2017-6755). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11458 |
|
Cross-Site Scripting (XSS) in sap (CVE-2017-11458)
cross-site scripting in sap (CVE-2017-11458). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11460 |
|
Cross-Site Scripting (XSS) in sap (CVE-2017-11460)
cross-site scripting in sap (CVE-2017-11460). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11457 |
|
XXE (XML External Entity) in ssrf (CVE-2017-11457)
vulnerability in ssrf (CVE-2017-11457). Confidential information can be exposed externally.
|
| CVE-2017-9413 |
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the Podcast feature in Subsonic 6.1.1 allow remote attackers to hijack the authentication of users for requests that (1) subscribe to a po...
Multiple cross-site request forgery (CSRF) vulnerabilities in the Podcast feature in Subsonic 6.1.1 allow remote attackers to hijack the authentication of users for requests that (1) subscribe to a podcast via the add parameter to podcastReceiverAdmin.view or (2) update Internet Radio Settings via t...
|
| CVE-2017-11434 |
|
Out-of-Bounds Read in c (CVE-2017-11434)
vulnerability in c (CVE-2017-11434). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-1417 |
|
Vulnerability in dos (CVE-2015-1417)
vulnerability in dos (CVE-2015-1417). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-5221 |
|
Use-After-Free in c (CVE-2015-5221)
vulnerability in c (CVE-2015-5221). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-1332 |
|
The oxide::JavaScriptDialogManager function in oxide-qt before 1.9.1 as packaged in Ubuntu 15.04 and Ubuntu 14.04 allows remote attackers to cause a denial of service (application crash) or execute ar...
The oxide::JavaScriptDialogManager function in oxide-qt before 1.9.1 as packaged in Ubuntu 15.04 and Ubuntu 14.04 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted website.
|
| CVE-2015-2798 |
|
SQL Injection in sqli (CVE-2015-2798)
SQL injection in sqli (CVE-2015-2798). Successful exploitation can lead to full system takeover.
|