|
198631
|
6.4 |
MEDIUM
Network
|
oracle
|
hyperion_financial_reporting
|
Vulnerability in the Oracle Hyperion Financial Reporting component of Oracle Hyperion (subcomponent: Workspace). The supported version that is affected is 11.1.2. Easily exploitable vulnerability all…
|
NVD-CWE-noinfo
|
CVE-2017-10358
|
2024-11-21 12:06 |
2017-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198632
|
5.3 |
MEDIUM
Network
|
oracle redhat netapp debian
|
jdk jre enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_tus enterprise_linux_eus satellite
|
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded…
|
NVD-CWE-noinfo
|
CVE-2017-10357
|
2024-11-21 12:06 |
2017-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198633
|
6.2 |
MEDIUM
Local
|
oracle redhat netapp debian
|
jdk jre enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_tus enterprise_linux_eus satellite
|
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embe…
|
NVD-CWE-noinfo
|
CVE-2017-10356
|
2024-11-21 12:06 |
2017-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198634
|
7.5 |
HIGH
Network
|
juniper
|
junos_space
|
Insufficient verification of node certificates in Juniper Networks Junos Space may allow a man-in-the-middle type of attacker to make unauthorized modifications to Space database or add nodes. Affect…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2017-10624
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198635
|
8.1 |
HIGH
Network
|
juniper
|
junos_space
|
Lack of authentication and authorization of cluster messages in Juniper Networks Junos Space may allow a man-in-the-middle type of attacker to intercept, inject or disrupt Junos Space cluster operati…
|
CWE-287
Improper Authentication
|
CVE-2017-10623
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198636
|
9.8 |
CRITICAL
Network
|
juniper
|
junos_space
|
An authentication bypass vulnerability in Juniper Networks Junos Space Network Management Platform may allow a remote unauthenticated network based attacker to login as any privileged user. This issu…
|
CWE-287
Improper Authentication
|
CVE-2017-10622
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198637
|
7.4 |
HIGH
Network
|
juniper
|
junos
|
Juniper Networks Junos OS on SRX series devices do not verify the HTTPS server certificate before downloading anti-virus updates. This may allow a man-in-the-middle attacker to inject bogus signature…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-10620
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198638
|
5.0 |
MEDIUM
Network
|
juniper
|
contrail
|
The ifmap service that comes bundled with Contrail has an XML External Entity (XXE) vulnerability that may allow an attacker to retrieve sensitive system files. Affected releases are Juniper Networks…
|
CWE-611
XXE
|
CVE-2017-10617
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198639
|
5.3 |
MEDIUM
Network
|
juniper
|
contrail
|
The ifmap service that comes bundled with Juniper Networks Contrail releases uses hard coded credentials. Affected releases are Contrail releases 2.2 prior to 2.21.4; 3.0 prior to 3.0.3.4; 3.1 prior …
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-10616
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198640
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
A vulnerability in telnetd service on Junos OS allows a remote attacker to cause a limited memory and/or CPU consumption denial of service attack. This issue was found during internal product securit…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-10614
|
2024-11-21 12:06 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|