|
198251
|
7.5 |
HIGH
Network
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a buffer overread is observed in nl80211_set_station when user space application sends …
|
CWE-125
Out-of-bounds Read
|
CVE-2017-11089
|
2024-11-21 12:07 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198252
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, an integer overflow leading to a buffer overflow due to improper bound checking in msm_…
|
CWE-119 CWE-190
Incorrect Access of Indexable Resource ('Range Error') Integer Overflow or Wraparound
|
CVE-2017-11085
|
2024-11-21 12:07 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198253
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, the qcacld pktlog allows mapping memory via /proc/ath_pktlog/cld to user space.
|
NVD-CWE-noinfo
|
CVE-2017-11073
|
2024-11-21 12:07 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198254
|
7.5 |
HIGH
Network
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing a specially crafted cfg80211 vendor command, a buffer over-read can oc…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-11058
|
2024-11-21 12:07 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198255
|
8.8 |
HIGH
Network
|
iball
|
ib-wra300n3gt_firmware
|
Privilege Escalation on iBall iB-WRA300N3GT iB-WRA300N3GT_1.1.1 devices allows remote authenticated users to obtain root privileges by leveraging a guest/user/normal account to submit a modified priv…
|
NVD-CWE-noinfo
|
CVE-2017-11169
|
2024-11-21 12:07 |
2017-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198256
|
4.3 |
MEDIUM
Network
|
netapp
|
oncommand_unified_manager
|
NetApp OnCommand Unified Manager for 7-mode (core package) versions prior to 5.2.1 are susceptible to a clickjacking or "UI redress attack" which could be used to cause a user to perform an unintende…
|
CWE-20
Improper Input Validation
|
CVE-2017-11461
|
2024-11-21 12:07 |
2017-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198257
|
9.6 |
CRITICAL
Network
|
avaya
|
ip_office
|
Buffer overflow in the SoftConsole client in Avaya IP Office before 10.1.1 allows remote servers to execute arbitrary code via a long response.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11309
|
2024-11-21 12:07 |
2017-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198258
|
7.5 |
HIGH
Network
|
manageengine
|
servicedesk
|
The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the name parameter for the download-snapshot URL. An unauthenticat…
|
CWE-22
Path Traversal
|
CVE-2017-11512
|
2024-11-21 12:07 |
2017-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198259
|
7.5 |
HIGH
Network
|
manageengine
|
servicedesk
|
The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the filepath parameter for the download-file URL. An unauthenticat…
|
CWE-200
Information Exposure
|
CVE-2017-11511
|
2024-11-21 12:07 |
2017-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198260
|
7.5 |
HIGH
Network
|
websense
|
triton_ap_email
|
TRITON AP-EMAIL 8.2 before 8.2 IB does not properly restrict file access in an unspecified directory.
|
CWE-20
Improper Input Validation
|
CVE-2017-11177
|
2024-11-21 12:07 |
2017-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|