|
198671
|
5.4 |
MEDIUM
Network
|
cs-cart
|
cs-cart_multivendor cs-cart
|
Cross-site scripting vulnerability in CS-Cart Japanese Edition v4.3.10 and earlier (excluding v2 and v3), CS-Cart Multivendor Japanese Edition v4.3.10 and earlier (excluding v2 and v3) allows an atta…
|
CWE-79
Cross-site Scripting
|
CVE-2017-10886
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198672
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing the boot image header, range checks can be bypassed by supplying diffe…
|
NVD-CWE-noinfo
|
CVE-2017-11038
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198673
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, possible buffer overflow or information leak in the functions "sme_set_ft_ies" and "csr…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-11035
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198674
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a double free can occur when kmalloc fails to allocate memory for pointers resp/req in …
|
CWE-415
Double Free
|
CVE-2017-11032
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198675
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, camera application triggers "user-memory-access" issue as the Camera CPP module Linux d…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11029
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198676
|
7.5 |
HIGH
Network
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the ISP Camera driver, the contents of an arbitrary kernel address can be leaked to …
|
CWE-200
Information Exposure
|
CVE-2017-11028
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198677
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing UBI image, size is not validated for being smaller than minimum header s…
|
CWE-20
Improper Input Validation
|
CVE-2017-11027
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198678
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing FRP partition using reference FRP unlock, authentication method can be c…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-11026
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198679
|
7.0 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, due to a race condition in the function audio_effects_shared_ioctl(), memory corruption…
|
CWE-362
Race Condition
|
CVE-2017-11025
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198680
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition in the rmnet USB control driver can potentially lead to a Use After Fr…
|
CWE-416
Use After Free
|
CVE-2017-11024
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|