CVE List - 2017 / April
Showing 1001 - 1100 of 1568 CVEs for April 2017 (Page 11 of 16)
CVE ID | Date | Title |
---|---|---|
CVE-2015-8285 | 2017-04-20 | The webssx.sys driver in QuickHeal 16.00 allows remote attackers to... |
CVE-2016-1161 | 2017-04-20 | Cross-site request forgery (CSRF) vulnerability in ManageEngine Password Manager Pro... |
CVE-2016-3729 | 2017-04-20 | The user editing form in Moodle 3.0 through 3.0.3, 2.9... |
CVE-2016-3731 | 2017-04-20 | Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, and 2.8 through... |
CVE-2016-3732 | 2017-04-20 | The capability check to access other badges in Moodle 3.0... |
CVE-2016-3733 | 2017-04-20 | The "restore teacher" feature in Moodle 3.0 through 3.0.3, 2.9... |
CVE-2016-3734 | 2017-04-20 | Cross-site request forgery (CSRF) vulnerability in markposts.php in Moodle 3.0... |
CVE-2016-5401 | 2017-04-20 | Cross-site request forgery (CSRF) vulnerability in Red Hat JBoss BRMS... |
CVE-2016-8923 | 2017-04-20 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 contains... |
CVE-2016-9978 | 2017-04-20 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 could... |
CVE-2016-9979 | 2017-04-20 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 is... |
CVE-2016-9980 | 2017-04-20 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 is... |
CVE-2017-1122 | 2017-04-20 | IBM Security Guardium 8.2, 9.0, and 10.0 contains a vulnerability... |
CVE-2016-6368 | 2017-04-20 | A vulnerability in the detection engine parsing of Pragmatic General... |
CVE-2017-3793 | 2017-04-20 | A vulnerability in the TCP normalizer of Cisco Adaptive Security... |
CVE-2017-3808 | 2017-04-20 | A vulnerability in the Session Initiation Protocol (SIP) UDP throttling... |
CVE-2017-3860 | 2017-04-20 | Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2... |
CVE-2017-3861 | 2017-04-20 | Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2... |
CVE-2017-3862 | 2017-04-20 | Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2... |
CVE-2017-3863 | 2017-04-20 | Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2... |
CVE-2017-4969 | 2017-04-20 | The Cloud Controller in Cloud Foundry cf-release versions prior to... |
CVE-2017-6607 | 2017-04-20 | A vulnerability in the DNS code of Cisco ASA Software... |
CVE-2017-6608 | 2017-04-20 | A vulnerability in the Secure Sockets Layer (SSL) and Transport... |
CVE-2017-6609 | 2017-04-20 | A vulnerability in the IPsec code of Cisco ASA Software... |
CVE-2017-6610 | 2017-04-20 | A vulnerability in the Internet Key Exchange Version 1 (IKEv1)... |
CVE-2017-6611 | 2017-04-20 | A vulnerability in the web framework code of Cisco Prime... |
CVE-2017-6613 | 2017-04-20 | A vulnerability in the DNS input packet processor for Cisco... |
CVE-2017-6614 | 2017-04-20 | A vulnerability in the file-download feature of the web user... |
CVE-2017-6615 | 2017-04-20 | A vulnerability in the Simple Network Management Protocol (SNMP) subsystem... |
CVE-2017-6616 | 2017-04-20 | A vulnerability in the web-based GUI of Cisco Integrated Management... |
CVE-2017-6617 | 2017-04-20 | A vulnerability in the session identification management functionality of the... |
CVE-2017-6618 | 2017-04-20 | A vulnerability in the web-based GUI of Cisco Integrated Management... |
CVE-2017-6619 | 2017-04-20 | A vulnerability in the web-based GUI of Cisco Integrated Management... |
CVE-2017-7990 | 2017-04-21 | The Reporting Module 1.12.0 for OpenMRS allows CSRF attacks with... |
CVE-2016-4075 | 2017-04-21 | Opera Mini 13 and Opera Stable 36 allow remote attackers... |
CVE-2017-7220 | 2017-04-21 | OpenText Documentum Content Server allows superuser access via sys_obj_save or... |
CVE-2017-7409 | 2017-04-21 | Palo Alto Networks PAN-OS before 7.0.15 has XSS in the... |
CVE-2017-7951 | 2017-04-21 | WonderCMS before 2.0.3 has CSRF because of lack of a... |
CVE-2016-0833 | 2017-04-21 | Android allows users to cause a denial of service. |
CVE-2016-1148 | 2017-04-21 | Akerun - Smart Lock Robot App for iOS before 1.2.4... |
CVE-2016-1184 | 2017-04-21 | Tokyo Star bank App for Android before 1.4 and Tokyo... |
CVE-2016-1194 | 2017-04-21 | Cybozu Garoon before 4.2.1 allows remote attackers to cause a... |
CVE-2016-4829 | 2017-04-21 | DMM Movie Player App for Android before 1.2.1, and DMM... |
CVE-2016-4830 | 2017-04-21 | Sushiro App for iOS 2.1.16 and earlier and Sushiro App... |
CVE-2016-4832 | 2017-04-21 | WAON "Service Application" for Android 1.4.1 and earlier does not... |
CVE-2016-4840 | 2017-04-21 | Coordinate Plus App for Android 1.0.2 and earlier and Coordinate... |
CVE-2016-4841 | 2017-04-21 | Cybozu Mailwise before 5.4.0 allows remote attackers to inject arbitrary... |
CVE-2016-4846 | 2017-04-21 | Untrusted search path vulnerability in the installer of PhishWall Client... |
CVE-2017-7992 | 2017-04-21 | Heartland Payment Systems Payment Gateway PHP SDK hps/heartland-php v2.8.17 is... |
CVE-2016-0720 | 2017-04-21 | Cross-site request forgery (CSRF) vulnerability in pcsd web UI in... |
CVE-2016-0721 | 2017-04-21 | Session fixation vulnerability in pcsd in pcs before 0.9.157. |
CVE-2016-10091 | 2017-04-21 | Multiple stack-based buffer overflows in unrtf 0.21.9 allow remote attackers... |
CVE-2016-1556 | 2017-04-21 | Information disclosure in Netgear WN604 before 3.3.3; WNAP210, WNAP320, WNDAP350,... |
CVE-2016-1557 | 2017-04-21 | Netgear WNAP320, WNDAP350, and WNDAP360 before 3.5.5.0 reveal wireless passwords... |
CVE-2016-1558 | 2017-04-21 | Buffer overflow in D-Link DAP-2310 2.06 and earlier, DAP-2330 1.06... |
CVE-2016-1559 | 2017-04-21 | D-Link DAP-1353 H/W vers. B1 3.15 and earlier, D-Link DAP-2553... |
CVE-2016-6519 | 2017-04-21 | Cross-site scripting (XSS) vulnerability in the "Shares" overview in Openstack... |
CVE-2016-1555 | 2017-04-21 | (1) boardData102.php, (2) boardData103.php, (3) boardDataJP.php, (4) boardDataNA.php, and (5)... |
CVE-2017-7994 | 2017-04-21 | The function TextExtractor::ExtractText in TextExtractor.cpp:77 in PoDoFo 0.9.5 allows remote... |
CVE-2017-8050 | 2017-04-21 | Tenable Appliance 4.4.0, and possibly prior, contains a flaw in... |
CVE-2017-8051 | 2017-04-21 | Tenable Appliance 3.5 - 4.4.0, and possibly prior versions, contains... |
CVE-2016-1186 | 2017-04-21 | Kintone mobile for Android 1.0.0 through 1.0.5 does not verify... |
CVE-2016-1187 | 2017-04-21 | Cybozu KUNAI for iPhone 2.0.3 through 3.1.5 and for Android... |
CVE-2016-1198 | 2017-04-21 | Photopt for Android before 2.0.1 does not verify SSL certificates. |
CVE-2016-1210 | 2017-04-21 | The 105 BANK app 1.0 and 1.1 for Android and... |
CVE-2016-1221 | 2017-04-21 | Jetstar App for iOS before 3.0.0 does not verify X.509... |
CVE-2016-1518 | 2017-04-21 | The auto-provisioning mechanism in the Grandstream Wave app 1.0.1.26 and... |
CVE-2016-1519 | 2017-04-21 | The com.softphone.common package in the Grandstream Wave app 1.0.1.26 and... |
CVE-2016-1520 | 2017-04-21 | The Grandstream Wave app 1.0.1.26 and earlier for Android does... |
CVE-2016-1560 | 2017-04-21 | ExaGrid appliances with firmware before 4.8 P26 have a default... |
CVE-2016-1561 | 2017-04-21 | ExaGrid appliances with firmware before 4.8 P26 have a default... |
CVE-2016-2173 | 2017-04-21 | org.springframework.core.serializer.DefaultDeserializer in Spring AMQP before 1.5.5 allows remote attackers to... |
CVE-2016-2347 | 2017-04-21 | Integer underflow in the decode_level3_header function in lib/lha_file_header.c in Lhasa... |
CVE-2016-2433 | 2017-04-21 | The Broadcom Wi-Fi driver for Android, as used by BlackBerry... |
CVE-2016-3067 | 2017-04-21 | Cygwin before 2.5.0 does not properly handle updating permissions when... |
CVE-2016-3109 | 2017-04-21 | The backend/Login/load/ script in Shopware before 5.1.5 allows remote attackers... |
CVE-2016-3702 | 2017-04-21 | Padding oracle flaw in CloudForms Management Engine (aka CFME) 5... |
CVE-2016-5168 | 2017-04-21 | Skia, as used in Google Chrome before 50.0.2661.94, allows remote... |
CVE-2016-5399 | 2017-04-21 | The bzread function in ext/bz2/bz2.c in PHP before 5.5.38, 5.6.x... |
CVE-2016-9954 | 2017-04-21 | The backtrack compilation code in the Irregex package (aka IrRegular... |
CVE-2017-7991 | 2017-04-22 | Exponent CMS 2.4.1 and earlier has SQL injection via a... |
CVE-2017-8052 | 2017-04-22 | Craft CMS before 2.6.2974 allows XSS attacks. |
CVE-2017-8053 | 2017-04-22 | PoDoFo 0.9.5 allows denial of service (infinite recursion and stack... |
CVE-2017-8054 | 2017-04-22 | The function PdfPagesTree::GetPageNodeFromArray in PdfPageTree.cpp:464 in PoDoFo 0.9.5 allows remote... |
CVE-2017-8055 | 2017-04-22 | WatchGuard Fireware allows user enumeration, e.g., in the Firebox XML-RPC... |
CVE-2017-8056 | 2017-04-22 | WatchGuard Fireware v11.12.1 and earlier mishandles requests referring to an... |
CVE-2017-8061 | 2017-04-23 | drivers/media/usb/dvb-usb/dvb-usb-firmware.c in the Linux kernel 4.9.x and 4.10.x before 4.10.7... |
CVE-2017-8062 | 2017-04-23 | drivers/media/usb/dvb-usb/dw2102.c in the Linux kernel 4.9.x and 4.10.x before 4.10.4... |
CVE-2017-8063 | 2017-04-23 | drivers/media/usb/dvb-usb/cxusb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12... |
CVE-2017-8064 | 2017-04-23 | drivers/media/usb/dvb-usb-v2/dvb_usb_core.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12... |
CVE-2017-8065 | 2017-04-23 | crypto/ccm.c in the Linux kernel 4.9.x and 4.10.x through 4.10.12... |
CVE-2017-8066 | 2017-04-23 | drivers/net/can/usb/gs_usb.c in the Linux kernel 4.9.x and 4.10.x before 4.10.2... |
CVE-2017-8067 | 2017-04-23 | drivers/char/virtio_console.c in the Linux kernel 4.9.x and 4.10.x before 4.10.12... |
CVE-2017-8068 | 2017-04-23 | drivers/net/usb/pegasus.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly... |
CVE-2017-8070 | 2017-04-23 | drivers/net/usb/catc.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly... |
CVE-2017-8071 | 2017-04-23 | drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 uses a... |
CVE-2017-8072 | 2017-04-23 | The cp2112_gpio_direction_input function in drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x... |
CVE-2017-8069 | 2017-04-23 | drivers/net/usb/rtl8150.c in the Linux kernel 4.9.x before 4.9.11 interacts incorrectly... |
CVE-2016-2564 | 2017-04-23 | Invision Power Services (IPS) Community Suite before 4.1.9 makes session... |
CVE-2017-8073 | 2017-04-23 | WeeChat before 1.7.1 allows a remote crash by sending a... |