Latest CVE Feed
-
10.0
HIGHCVE-2017-14474
In the MMM::Agent::Helpers::_execute function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1, a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of th... Read more
Affected Products : mysql_multi-master_replication_manager- Published: May. 09, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14473
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14472
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14471
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14470
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14469
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14468
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14467
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14466
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14465
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14464
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14463
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14462
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
7.1
HIGHCVE-2017-14461
A specially crafted email delivered over SMTP and passed on to Dovecot by MTA can trigger an out of bounds read resulting in potential sensitive information disclosure and denial of service. In order to trigger this vulnerability, an attacker needs to sen... Read more
- Published: Mar. 02, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2017-14460
An exploitable overly permissive cross-domain (CORS) whitelist vulnerability exists in JSON-RPC of Parity Ethereum client version 1.7.8. An automatically sent JSON object to JSON-RPC endpoint can trigger this vulnerability. A victim needs to visit a malic... Read more
Affected Products : ethereum_client- Published: Jan. 19, 2018
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2017-14459
An exploitable OS Command Injection vulnerability exists in the Telnet, SSH, and console login functionality of Moxa AWK-3131A Industrial IEEE 802.11a/b/g/n wireless AP/bridge/client in firmware versions 1.4 to 1.7 (current). An attacker can inject comman... Read more
- Published: Apr. 11, 2018
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2017-14458
An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 8.3.2.25013. A specially crafted PDF document can trigger a previously freed object in memory to be reused, resulting in arbitrary cod... Read more
- Published: Apr. 23, 2018
- Modified: Nov. 21, 2024
-
8.2
HIGHCVE-2017-14457
An exploitable information leak/denial of service vulnerability exists in the libevm (Ethereum Virtual Machine) `create2` opcode handler of CPP-Ethereum. A specially crafted smart contract code can cause an out-of-bounds read leading to memory disclosure ... Read more
Affected Products : ethereum_virtual_machine- Published: Jan. 19, 2018
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2017-14455
On Insteon Hub 2245-222 devices with firmware version 1012, specially crafted replies received from the PubNub service can cause buffer overflows on a global section overwriting arbitrary data. An attacker should impersonate PubNub and answer an HTTPS GET... Read more
- Published: Aug. 23, 2018
- Modified: Nov. 21, 2024
-
8.5
HIGHCVE-2017-14454
Multiple exploitable buffer overflow vulnerabilities exists in the PubNub message handler for the "control" channel of Insteon Hub running firmware version 1012. Specially crafted replies received from the PubNub service can cause buffer overflows on a gl... Read more
- Published: Jan. 12, 2023
- Modified: Nov. 21, 2024