Latest CVE Feed
-
7.8
HIGHCVE-2017-18065
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vent->vdev_id in wma_action_frame_filter_mac_event_handler(), which is received from firmware, leads to arbitrary... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-18064
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for p2p_noa_info in wma_send_bcn_buf_ll() which is received from firmware leads to potential buffer overflow.... Read more
Affected Products : android- Published: Mar. 15, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-18063
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for nlo_event in wma_nlo_match_evt_handler(), which is received from firmware, leads to potential out of bound memory... Read more
Affected Products : android- Published: Mar. 15, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-18062
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, potential buffer overflow can happen when processing UTF event in wma_process_utf_event().... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-18061
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, potential buffer overflow can happen when processing AOA measurement event from WIGIG firmware in wil_aoa_evt_meas().... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-18060
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for resp_event->vdev_id in wma_unified_bcntx_status_event_handler(), which is received from firmware, leads to potent... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-18059
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev id in wma_scan_event_callback(), which is received from firmware, leads to potential out of bounds memory re... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-18058
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for wow_buf_pkt_len in wma_wow_wakeup_host_event() which is received from firmware leads to potential out of bounds m... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-18057
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev id in wma_nlo_scan_cmp_evt_handler(), which is received from firmware, leads to potential out of bounds memo... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-18056
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev_id in wma_unified_bcntx_status_event_handler() which is received from firmware leads to potential out of bou... Read more
Affected Products : android- Published: Mar. 15, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-18055
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for wmi_event->num_vdev_mac_entries in wma_pdev_set_hw_mode_resp_evt_handler(), which is received from firmware, lead... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-18054
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for num_vdev_mac_entries in wma_pdev_hw_mode_transition_evt_handler(), which is received from firmware, leads to pote... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-18053
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for fix_param->vdev_id in wma_p2p_lo_event_handler(), which is received from firmware, leads to potential out of boun... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-18052
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for cmpl_params->num_reports, param_buf->desc_ids and param_buf->status in wma_mgmt_tx_bundle_completion_handler(), w... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-18051
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for event->vdev_id in wma_rcpi_event_handler(), which is received from firmware, leads to potential out of bounds mem... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2017-18050
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev_map in wma_tbttoffset_update_event_handler(), which is received from firmware, leads to potential buffer ove... Read more
Affected Products : android- Published: Mar. 16, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2017-18049
In the CSV export feature of SilverStripe before 3.5.6, 3.6.x before 3.6.3, and 4.x before 4.0.1, it's possible for the output to contain macros and scripts, which may be executed if imported without sanitization into common software (including Microsoft ... Read more
- Published: Jan. 23, 2018
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2017-18048
Monstra CMS 3.0.4 allows users to upload arbitrary files, which leads to remote command execution on the server, for example because .php (lowercase) is blocked but .PHP (uppercase) is not.... Read more
Affected Products : monstra- Published: Jan. 23, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2017-18047
Buffer Overflow in the FTP client in LabF nfsAxe 3.7 allows remote FTP servers to execute arbitrary code via a long reply.... Read more
Affected Products : nfsaxe- Published: Jan. 22, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2017-18046
Buffer overflow on Dasan GPON ONT WiFi Router H640X 12.02-01121 2.77p1-1124 and 3.03p2-1146 devices allows remote attackers to execute arbitrary code via a long POST request to the login_action function in /cgi-bin/login_action.cgi (aka cgipage.cgi).... Read more
- Published: Jan. 21, 2018
- Modified: Nov. 21, 2024