CVE Database

Search and browse vulnerability records from NVD

Showing 50 of 41677 CVEs

CVE ID Severity Description EPSS Published
7.8 HIGH

Untrusted search path vulnerability in The electronic authentication system based on the commercial registration system "The CRCA user's Software" Ver1.8 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

1.5% 2017-08-29
7.8 HIGH

Untrusted search path vulnerability in Security Setup Tool all versions allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

1.1% 2017-08-29
7.8 HIGH

Untrusted search path vulnerability in Flets Install Tool all versions distributed through the website till 2017 August 8 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

1.1% 2017-08-29
7.8 HIGH

Untrusted search path vulnerability in Flets Azukeru for Windows Auto Backup Tool v1.0.3.0 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

1.1% 2017-08-29
7.8 HIGH

Untrusted search path vulnerability in Security Kinou Mihariban v1.0.21 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

1.1% 2017-08-29
7.8 HIGH

Untrusted search path vulnerability in Photo Collection PC Software Ver.4.0.2 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

1.1% 2017-08-29
7.5 HIGH

Multiple temporary file creation vulnerabilities in pki-core 10.2.0.

1.3% 2017-08-29
7.8 HIGH

Improper Verification of Cryptographic Signature in AVM FRITZ!Box 6810 LTE after firmware 5.22, FRITZ!Box 6840 LTE after firmware 5.23, and other models with firmware 5.50.

1.5% 2017-08-29
7.8 HIGH

DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel PDF Fusion.

8.3% 2017-08-29
8.8 HIGH

Huawei Video Content Management (VCM) before V100R001C10SPC001 does not properly "authenticate online user identities and privileges," which allows remote authenticated users to gain privileges and perform a case operation as another user via a crafted message, aka "Horizontal Privilege Escalation Vulnerability."

1.0% 2017-08-28
7.8 HIGH

Polycom BToE Connector before 3.0.0 uses weak permissions (Everyone: Full Control) for "Program Files (x86)\polycom\polycom btoe connector\plcmbtoesrv.exe," which allows local users to gain privileges via a Trojan horse file.

0.6% 2017-08-28
7.5 HIGH

The transit path validation code in Heimdal before 7.3 might allow attackers to bypass the capath policy protection mechanism by leveraging failure to add the previous hop realm to the transit path of issued tickets.

1.8% 2017-08-28
7.5 HIGH

NULL Pointer Dereference in the id3v2AddAudioDuration function in libmp3lame/id3tag.c in LAME 3.99.5 allows attackers to perform Denial of Service by triggering a NULL first argument.

1.7% 2017-08-28
7.8 HIGH

A kernel driver, namely DLMFENC.sys, bundled with the DESLock+ client application 4.8.16 and earlier contains a locally exploitable heap based buffer overflow in the handling of an IOCTL message of type 0x0FA4204. The vulnerability is present due to the kernel driver failing to allocate sufficient memory on the kernel heap to contain a user supplied string as such the string is copied into a buffer of constant size (0x1000-bytes) and thus an overflow condition results. Access to the kernel driver is permitted through an obfuscated interface whereby bytes of user supplied message are "authenticated" via an obfuscation routine employing a linear equation.

0.3% 2017-08-28
7.5 HIGH

Information disclosure vulnerability in Netatmo Indoor Module firmware 100 and earlier.

2.8% 2017-08-28
7.5 HIGH

kgb-bot 1.33-2 allows remote attackers to cause a denial of service (crash).

1.5% 2017-08-28
7.5 HIGH

FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.

4.7% 2017-08-28
7.5 HIGH

The expansion of '\h' in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in 'hostname' of a machine.

6.0% 2017-08-28
7.5 HIGH

Directory traversal vulnerability in ES File Explorer 3.2.4.1.

3.1% 2017-08-28
7.2 HIGH

HTTP header injection in the httpd package in fli4l before 3.10.1 and 4.0 before 2015-01-30.

1.8% 2017-08-28
8.8 HIGH

The httpd package in fli4l before 3.10.1 and 4.0 before 2015-01-30 allows remote attackers to execute arbitrary code.

3.5% 2017-08-28
7.5 HIGH

Directory traversal vulnerability in unshield 1.0-1.

2.7% 2017-08-28
7.5 HIGH

Directory traversal vulnerability in ppmd 10.1-5.

2.5% 2017-08-28
7.5 HIGH

Multiple directory traversal vulnerabilities in ha 0.999p+dfsg-5.

3.3% 2017-08-28
7.8 HIGH

Untrusted search path vulnerability in ZTE Datacard MF19 0V1.0.0B04 allows local users to gain privilege by modifying the 'Ucell Internet' directory to reference a malicious mms_dll_r.dll or mediaplayerdll.dll.

0.5% 2017-08-28
7.5 HIGH

libhtp 0.5.15 allows remote attackers to cause a denial of service (NULL pointer dereference).

2.3% 2017-08-28
7.8 HIGH

Stack-based buffer overflow in IBM V5R4, and IBM i Access for Windows 6.1 and 7.1.

0.4% 2017-08-28
7.5 HIGH

Emacs 24.4 allows remote attackers to bypass security restrictions.

2.8% 2017-08-28
8.8 HIGH

Unrestricted File Upload vulnerability in Photo Gallery 1.2.5.

45.4% 2017-08-28
8.8 HIGH

Cross-site request forgery (CSRF) vulnerability in IBM UrbanCode Release 6.0.1.6 and earlier, 6.1.0.7 and earlier, and 6.1.1.1 and earlier.

0.6% 2017-08-28
7.5 HIGH

Directory traversal vulnerability in hybris Commerce software suite 5.0.3.3 and earlier, 5.0.0.3 and earlier, 5.0.4.4 and earlier, 5.1.0.1 and earlier, 5.1.1.2 and earlier, 5.2.0.3 and earlier, and 5.3.0.1 and earlier.

4.1% 2017-08-28
8.8 HIGH

Directory traversal vulnerability in ServiceDesk Plus and Plus MSP v5 through v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 to v7.9; IT360 v8 to v10.4 allows remote authenticated users to execute arbitrary code.

10.7% 2017-08-28
8.8 HIGH

Directory traversal vulnerability in ServiceDesk Plus MSP v5 to v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 to v7.9; IT360 v8 to v10.4.

78.4% 2017-08-28
7.5 HIGH

Unspecified vulnerability in FFMPEG 0.10 allows remote attackers to cause a denial of service.

1.9% 2017-08-28
7.5 HIGH

The setup_group function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a group section that is too small.

2.7% 2017-08-27
7.5 HIGH

In FlightGear before version 2017.3.1, Main/logger.cxx in the FGLogger subsystem allows one to overwrite any file via a resource that affects the contents of the global Property Tree.

1.1% 2017-08-27
7.8 HIGH

The tokenizer in QPDF 6.0.0 and 7.0.b1 is recursive for arrays and dictionaries, which allows remote attackers to cause a denial of service (stack consumption and segmentation fault) or possibly have unspecified other impact via a PDF document with a deep data structure, as demonstrated by a crash in QPDFObjectHandle::parseInternal in libqpdf/QPDFObjectHandle.cc.

1.8% 2017-08-27
7.5 HIGH

In Kaspersky Internet Security for Android 11.12.4.1622, some of the application trace files were not encrypted.

0.9% 2017-08-25
7.8 HIGH

An Unrestricted Upload of File with Dangerous Type issue was discovered in Automated Logic Corporation (ALC) ALC WebCTRL, i-Vu, SiteScan Web 6.5 and prior; ALC WebCTRL, SiteScan Web 6.1 and prior; ALC WebCTRL, i-Vu 6.0 and prior; ALC WebCTRL, i-Vu, SiteScan Web 5.5 and prior; and ALC WebCTRL, i-Vu, SiteScan Web 5.2 and prior. An authenticated attacker may be able to upload a malicious file allowing the execution of arbitrary code.

2.4% 2017-08-25
7.0 HIGH

An Unquoted Search Path or Element issue was discovered in Automated Logic Corporation (ALC) ALC WebCTRL, i-Vu, SiteScan Web 6.5 and prior; ALC WebCTRL, SiteScan Web 6.1 and prior; ALC WebCTRL, i-Vu 6.0 and prior; ALC WebCTRL, i-Vu, SiteScan Web 5.5 and prior; and ALC WebCTRL, i-Vu, SiteScan Web 5.2 and prior. An unquoted search path vulnerability may allow a non-privileged local attacker to change files in the installation directory and execute arbitrary code with elevated privileges.

1.4% 2017-08-25
7.4 HIGH

An Improper Authentication issue was discovered in OSIsoft PI Server 2017 PI Data Archive versions prior to 2017. PI Data Archive has protocol flaws with the potential to expose change records in the clear and allow a malicious party to spoof a server within a collective.

2.0% 2017-08-25
8.8 HIGH

A Cross-Site Request Forgery issue was discovered in OSIsoft PI Web API versions prior to 2017 (1.9.0). The vulnerability allows cross-site request forgery (CSRF) attacks to occur when an otherwise-unauthorized cross-site request is sent from a browser the server has previously authenticated.

0.8% 2017-08-25
8.8 HIGH

Polycom SoundStation IP, VVX, and RealPresence Trio that are running software older than UCS 4.0.12, 5.4.5 rev AG, 5.4.7, 5.5.2, or 5.6.0 are affected by a vulnerability in their UCS web application. This vulnerability could allow an authenticated remote attacker to read a segment of the phone's memory which could contain an administrator's password or other sensitive information.

1.6% 2017-08-25
7.5 HIGH

A Directory Traversal issue was discovered in SpiderControl SCADA Web Server. An attacker may be able to use a simple GET request to perform a directory traversal into system files.

3.8% 2017-08-25
7.5 HIGH

Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 through 2.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this vulnerability exists due to an incomplete fix to CVE-2015-4180.

11.6% 2017-08-25
7.5 HIGH

Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 through 2.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this vulnerability exists due to an incomplete fix to CVE-2009-4050.

2.9% 2017-08-25
7.5 HIGH

Salt before 2014.7.6 does not verify certificates when connecting via the aliyun, proxmox, and splunk modules.

1.0% 2017-08-25
8.1 HIGH

The checkPassword function in python-kerberos does not authenticate the KDC it attempts to communicate with, which allows remote attackers to cause a denial of service (bad response), or have other unspecified impact by performing a man-in-the-middle attack.

2.3% 2017-08-25
7.5 HIGH

Directory traversal vulnerability in GNU patch versions which support Git-style patching before 2.7.3 allows remote attackers to write to arbitrary files with the permissions of the target user via a .. (dot dot) in a diff file name.

11.2% 2017-08-25
7.0 HIGH

Race condition in Apport before 2.17.2-0ubuntu1.1 as packaged in Ubuntu 15.04, before 2.14.70ubuntu8.5 as packaged in Ubuntu 14.10, before 2.14.1-0ubuntu3.11 as packaged in Ubuntu 14.04 LTS, and before 2.0.1-0ubuntu17.9 as packaged in Ubuntu 12.04 LTS allow local users to write to arbitrary files and gain root privileges.

0.9% 2017-08-25