|
198001
|
7.5 |
HIGH
Network
|
google
|
android
|
An information disclosure vulnerability in the Android media framework (libmedia drm). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-62872384.
|
CWE-200
Information Exposure
|
CVE-2017-13152
|
2024-11-21 12:11 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198002
|
8.8 |
HIGH
Network
|
google
|
android
|
A remote code execution vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-63874456.
|
CWE-682
Incorrect Calculation
|
CVE-2017-13151
|
2024-11-21 12:11 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198003
|
9.1 |
CRITICAL
Network
|
google
|
android
|
An information disclosure vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-38328132.
|
CWE-200
Information Exposure
|
CVE-2017-13150
|
2024-11-21 12:11 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198004
|
9.1 |
CRITICAL
Network
|
google
|
android
|
An information disclosure vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-65719872.
|
CWE-200
Information Exposure
|
CVE-2017-13149
|
2024-11-21 12:11 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198005
|
6.5 |
MEDIUM
Network
|
google
|
android
|
A denial of service vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-65717533.
|
CWE-20
Improper Input Validation
|
CVE-2017-13148
|
2024-11-21 12:11 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198006
|
4.8 |
MEDIUM
Physics
|
ethicon
|
endo-surgery_generator_gen11_firmware
|
An improper authentication issue was discovered in Johnson & Johnson Ethicon Endo-Surgery Generator Gen11, all versions released before November 29, 2017. The security authentication mechanism used b…
|
CWE-287
Improper Authentication
|
CVE-2017-14018
|
2024-11-21 12:11 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198007
|
9.8 |
CRITICAL
Network
|
ismartalarm
|
cubeone_firmware
|
Password file exposure in firmware in iSmartAlarm CubeOne version 2.2.4.8 and earlier allows attackers to execute arbitrary commands with administrative privileges by retrieving credentials from this…
|
CWE-200
Information Exposure
|
CVE-2017-13664
|
2024-11-21 12:11 |
2017-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198008
|
7.5 |
HIGH
Network
|
ismartalarm
|
cubeone_firmware
|
Encryption key exposure in firmware in iSmartAlarm CubeOne version 2.2.4.8 and earlier allows attackers to decrypt log files via an exposed key.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2017-13663
|
2024-11-21 12:11 |
2017-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198009
|
8.1 |
HIGH
Network
|
apple
|
mac_os_x
|
An issue was discovered in certain Apple products. macOS High Sierra before Security Update 2017-001 is affected. The issue involves the "Directory Utility" component. It allows attackers to obtain a…
|
CWE-287
Improper Authentication
|
CVE-2017-13872
|
2024-11-21 12:11 |
2017-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198010
|
9.8 |
CRITICAL
Network
|
moxa
|
eds-g512e_firmware
|
An issue was discovered on MOXA EDS-G512E 5.1 build 16072215 devices. The backup file contains sensitive information in a insecure way. There is no salt for password hashing. Indeed passwords are sto…
|
CWE-200
Information Exposure
|
CVE-2017-13701
|
2024-11-21 12:11 |
2017-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|