Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-12648 |
|
XSS exists in Liferay Portal before 7.0 CE GA4 via a bookmark URL.
XSS exists in Liferay Portal before 7.0 CE GA4 via a bookmark URL.
|
| CVE-2017-12649 |
|
Cross-Site Scripting (XSS) in liferay (CVE-2017-12649)
cross-site scripting in liferay (CVE-2017-12649). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9801 |
|
Vulnerability in apache (CVE-2017-9801)
vulnerability in apache (CVE-2017-9801). Data can be tampered with by attackers.
|
| CVE-2017-12640 |
|
ImageMagick 7.0.6-1 has an out-of-bounds read vulnerability in ReadOneMNGImage in coders/png.c.
ImageMagick 7.0.6-1 has an out-of-bounds read vulnerability in ReadOneMNGImage in coders/png.c.
|
| CVE-2017-12641 |
|
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadOneJNGImage in coders\png.c.
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadOneJNGImage in coders\png.c.
|
| CVE-2017-12642 |
|
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMPCImage in coders\mpc.c.
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMPCImage in coders\mpc.c.
|
| CVE-2017-12643 |
|
ImageMagick 7.0.6-1 has a memory exhaustion vulnerability in ReadOneJNGImage in coders\png.c.
ImageMagick 7.0.6-1 has a memory exhaustion vulnerability in ReadOneJNGImage in coders\png.c.
|
| CVE-2017-12644 |
|
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadDCMImage in coders\dcm.c.
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadDCMImage in coders\dcm.c.
|
| CVE-2017-6665 |
|
Vulnerability in cisco (CVE-2017-6665)
vulnerability in cisco (CVE-2017-6665). Confidential information can be exposed externally.
|
| CVE-2017-6770 |
|
Vulnerability in cisco (CVE-2017-6770)
vulnerability in cisco (CVE-2017-6770). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-6757 |
|
SQL Injection in sqli (CVE-2017-6757)
SQL injection in sqli (CVE-2017-6757). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6758 |
|
Path Traversal in path-traversal (CVE-2017-6758)
path traversal in path-traversal (CVE-2017-6758). Confidential information can be exposed externally.
|
| CVE-2017-6747 |
|
Authentication Bypass in express (CVE-2017-6747)
authentication bypass in express (CVE-2017-6747). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12587 |
|
ImageMagick 7.0.6-1 has a large loop vulnerability in the ReadPWPImage function in coders\pwp.c.
ImageMagick 7.0.6-1 has a large loop vulnerability in the ReadPWPImage function in coders\pwp.c.
|
| CVE-2017-12583 |
|
DokuWiki through 2017-02-19b has XSS in the at parameter (aka the DATE_AT variable) to doku.php.
DokuWiki through 2017-02-19b has XSS in the at parameter (aka the DATE_AT variable) to doku.php.
|
| CVE-2017-12584 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-12584)
vulnerability in csrf (CVE-2017-12584). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12585 |
|
SQL Injection in sqli (CVE-2017-12585)
SQL injection in sqli (CVE-2017-12585). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12586 |
|
Path Traversal in path-traversal (CVE-2017-12586)
path traversal in path-traversal (CVE-2017-12586). Confidential information can be exposed externally.
|
| CVE-2017-12563 |
|
Vulnerability in c (CVE-2017-12563)
vulnerability in c (CVE-2017-12563). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12564 |
|
Vulnerability in c (CVE-2017-12564)
vulnerability in c (CVE-2017-12564). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12565 |
|
Vulnerability in c (CVE-2017-12565)
vulnerability in c (CVE-2017-12565). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12566 |
|
Vulnerability in c (CVE-2017-12566)
vulnerability in c (CVE-2017-12566). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12419 |
|
Information Disclosure in mantisbt (CVE-2017-12419)
vulnerability in mantisbt (CVE-2017-12419). Confidential information can be exposed externally.
|
| CVE-2017-12428 |
|
Vulnerability in c (CVE-2017-12428)
vulnerability in c (CVE-2017-12428). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12429 |
|
Vulnerability in c (CVE-2017-12429)
vulnerability in c (CVE-2017-12429). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12430 |
|
Vulnerability in c (CVE-2017-12430)
vulnerability in c (CVE-2017-12430). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12431 |
|
Use-After-Free in c (CVE-2017-12431)
vulnerability in c (CVE-2017-12431). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12432 |
|
Vulnerability in c (CVE-2017-12432)
vulnerability in c (CVE-2017-12432). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12433 |
|
Vulnerability in c (CVE-2017-12433)
vulnerability in c (CVE-2017-12433). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12434 |
|
Vulnerability in c (CVE-2017-12434)
vulnerability in c (CVE-2017-12434). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12435 |
|
Vulnerability in c (CVE-2017-12435)
vulnerability in c (CVE-2017-12435). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12427 |
|
Vulnerability in c (CVE-2017-12427)
vulnerability in c (CVE-2017-12427). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12418 |
|
Vulnerability in c (CVE-2017-12418)
vulnerability in c (CVE-2017-12418). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11393 |
|
Vulnerability in trendmicro (CVE-2017-11393)
vulnerability in trendmicro (CVE-2017-11393). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11394 |
|
Vulnerability in trendmicro (CVE-2017-11394)
vulnerability in trendmicro (CVE-2017-11394). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9459 |
|
Cross-Site Scripting (XSS) in paloaltonetworks (CVE-2017-9459)
cross-site scripting in paloaltonetworks (CVE-2017-9459). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9467 |
|
Cross-Site Scripting (XSS) in paloaltonetworks (CVE-2017-9467)
cross-site scripting in paloaltonetworks (CVE-2017-9467). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-2690 |
|
Cross-Site Scripting (XSS) in digium (CVE-2015-2690)
cross-site scripting in digium (CVE-2015-2690). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7890 |
|
Information Disclosure in c (CVE-2017-7890)
vulnerability in c (CVE-2017-7890). Confidential information can be exposed externally.
|
| CVE-2012-5030 |
|
Vulnerability in dos (CVE-2012-5030)
vulnerability in dos (CVE-2012-5030). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-8390 |
|
Vulnerability in paloaltonetworks (CVE-2017-8390)
vulnerability in paloaltonetworks (CVE-2017-8390). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11437 |
|
Vulnerability in gitlab (CVE-2017-11437)
vulnerability in gitlab (CVE-2017-11437). Confidential information can be exposed externally.
|
| CVE-2017-11438 |
|
Privilege Escalation in gitlab (CVE-2017-11438)
vulnerability in gitlab (CVE-2017-11438). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11364 |
|
Vulnerability in joomla (CVE-2017-11364)
vulnerability in joomla (CVE-2017-11364). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12138 |
|
Open Redirect in xoops (CVE-2017-12138)
vulnerability in xoops (CVE-2017-12138). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12139 |
|
Cross-Site Scripting (XSS) in xoops (CVE-2017-12139)
cross-site scripting in xoops (CVE-2017-12139). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12199 |
|
SQL Injection in wordpress (CVE-2017-12199)
SQL injection in wordpress (CVE-2017-12199). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12140 |
|
Vulnerability in c (CVE-2017-12140)
vulnerability in c (CVE-2017-12140). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-8571 |
|
Vulnerability in microsoft (CVE-2017-8571)
vulnerability in microsoft (CVE-2017-8571). Successful exploitation can lead to full system takeover.
|
| CVE-2017-8572 |
|
Information Disclosure in microsoft (CVE-2017-8572)
vulnerability in microsoft (CVE-2017-8572). Confidential information can be exposed externally.
|