|
198511
|
4.3 |
MEDIUM
Network
|
tablepress
|
tablepress
|
TablePress prior to version 1.8.1 allows an attacker to conduct XML External Entity (XXE) attacks via unspecified vectors.
|
CWE-611
XXE
|
CVE-2017-10889
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198512
|
5.5 |
MEDIUM
Local
|
bookwalker
|
book_walker
|
BOOK WALKER for Windows Ver.1.2.9 and earlier, BOOK WALKER for Mac Ver.1.2.5 and earlier allow an attacker to access local files via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2017-10888
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198513
|
7.8 |
HIGH
Local
|
bookwalker
|
book_walker
|
Untrusted search path vulnerability in BOOK WALKER for Windows Ver.1.2.9 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
|
CWE-426
Untrusted Search Path
|
CVE-2017-10887
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198514
|
5.4 |
MEDIUM
Network
|
cs-cart
|
cs-cart_multivendor cs-cart
|
Cross-site scripting vulnerability in CS-Cart Japanese Edition v4.3.10 and earlier (excluding v2 and v3), CS-Cart Multivendor Japanese Edition v4.3.10 and earlier (excluding v2 and v3) allows an atta…
|
CWE-79
Cross-site Scripting
|
CVE-2017-10886
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198515
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing the boot image header, range checks can be bypassed by supplying diffe…
|
NVD-CWE-noinfo
|
CVE-2017-11038
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198516
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, possible buffer overflow or information leak in the functions "sme_set_ft_ies" and "csr…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-11035
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198517
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a double free can occur when kmalloc fails to allocate memory for pointers resp/req in …
|
CWE-415
Double Free
|
CVE-2017-11032
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198518
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, camera application triggers "user-memory-access" issue as the Camera CPP module Linux d…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11029
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198519
|
7.5 |
HIGH
Network
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the ISP Camera driver, the contents of an arbitrary kernel address can be leaked to …
|
CWE-200
Information Exposure
|
CVE-2017-11028
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198520
|
7.8 |
HIGH
Local
|
google
|
android
|
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while flashing UBI image, size is not validated for being smaller than minimum header s…
|
CWE-20
Improper Input Validation
|
CVE-2017-11027
|
2024-11-21 12:06 |
2017-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|