|
198741
|
9.8 |
CRITICAL
Network
|
xml-libxml_project debian
|
xml-libxml debian_linux
|
Use-after-free in the XML-LibXML module through 2.0129 for Perl allows remote attackers to execute arbitrary code by controlling the arguments to a replaceChild call.
|
CWE-416
Use After Free
|
CVE-2017-10672
|
2024-11-21 12:06 |
2017-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198742
|
7.8 |
HIGH
Local
|
sthttpd_project
|
sthttpd
|
Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in sthttpd before 2.27.1 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impa…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-10671
|
2024-11-21 12:06 |
2017-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198743
|
6.1 |
MEDIUM
Network
|
zen-cart
|
zen_cart
|
In index.php in Zen Cart 1.6.0, the products_id parameter can cause XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2017-10667
|
2024-11-21 12:06 |
2017-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198744
|
7.8 |
HIGH
Local
|
postfix
|
postfix
|
Postfix before 2.11.10, 3.0.x before 3.0.10, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 might allow local users to gain privileges by leveraging undocumented functionality in Berkeley DB 2.x and late…
|
NVD-CWE-noinfo
|
CVE-2017-10140
|
2024-11-21 12:05 |
2018-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198745
|
8.1 |
HIGH
Network
|
oracle
|
peoplesoft_enterprise_peopletools
|
Vulnerability in the PeopleSoft Enterprise PRTL Interaction Hub component of Oracle PeopleSoft Products (subcomponent: Enterprise Portal). The supported version that is affected is 9.1.00. Easily exp…
|
NVD-CWE-noinfo
|
CVE-2017-10301
|
2024-11-21 12:05 |
2018-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198746
|
9.1 |
CRITICAL
Network
|
oracle
|
database_server
|
Vulnerability in the Core RDBMS component of Oracle Database Server. Supported versions that are affected are 12.1.0.2 and 12.2.0.1. Easily exploitable vulnerability allows high privileged attacker h…
|
NVD-CWE-noinfo
|
CVE-2017-10282
|
2024-11-21 12:05 |
2018-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198747
|
4.7 |
MEDIUM
Local
|
oracle
|
jdeveloper
|
Vulnerability in the Oracle JDeveloper component of Oracle Fusion Middleware (subcomponent: Deployment). Supported versions that are affected are 11.1.1.7.0, 11.1.1.7.1, 11.1.1.9.0, 11.1.2.4.0, 12.1.…
|
CWE-22
Path Traversal
|
CVE-2017-10273
|
2024-11-21 12:05 |
2018-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198748
|
5.9 |
MEDIUM
Network
|
oracle
|
access_manager
|
Vulnerability in the Oracle Access Manager component of Oracle Fusion Middleware (subcomponent: Web Server Plugin). The supported version that is affected is 11.1.2.3.0. Difficult to exploit vulnerab…
|
CWE-200
Information Exposure
|
CVE-2017-10262
|
2024-11-21 12:05 |
2018-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198749
|
8.2 |
HIGH
Network
|
oracle
|
business_intelligence
|
Vulnerability in the Oracle Business Intelligence Enterprise Edition component of Oracle Fusion Middleware (subcomponent: Analytics Web Dashboards). The supported version that is affected is 12.2.1.3…
|
NVD-CWE-noinfo
|
CVE-2017-10068
|
2024-11-21 12:05 |
2018-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198750
|
7.0 |
HIGH
Network
|
oracle
|
tuxedo
|
Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Security). Supported versions that are affected are 11.1.1, 12.1.1, 12.1.3 and 12.2.2. Difficult to exploit vul…
|
NVD-CWE-noinfo
|
CVE-2017-10278
|
2024-11-21 12:05 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|