Latest CVE Feed
-
6.1
MEDIUMCVE-2017-6540
Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insufficient filtration of user-supplied data (configs) passed to the webpagetest-master/www/benchmarks/compare.php URL. An attacker could exec... Read more
Affected Products : webpagetest- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-6539
Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insufficient filtration of user-supplied data (benchmark, time) passed to the webpagetest-master/www/benchmarks/delta.php URL. An attacker coul... Read more
Affected Products : webpagetest- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-6538
A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtration of user-supplied data (video) passed to the webpagetest-master/www/speedindex/index.php URL. An attacker could execute arbitrary ... Read more
Affected Products : webpagetest- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-6537
A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtration of user-supplied data (bgcolor) passed to the webpagetest-master/www/video/view.php URL. An attacker could execute arbitrary HTML... Read more
Affected Products : webpagetest- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-6536
Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insufficient filtration of user-supplied data (url, pssid) passed to the webpagetest-master/www/weblite.php URL. An attacker could execute arbi... Read more
Affected Products : webpagetest- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-6535
Multiple Cross-Site Scripting (XSS) issues were discovered in webpagetest 3.0. The vulnerabilities exist due to insufficient filtration of user-supplied data (benchmark, url) passed to the webpagetest-master/www/benchmarks/trendurl.php URL. An attacker co... Read more
Affected Products : webpagetest- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-6534
A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtration of user-supplied data (pssid) passed to the webpagetest-master/www/pss.php URL. An attacker could execute arbitrary HTML and scri... Read more
Affected Products : webpagetest- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-6533
A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtration of user-supplied data (benchmark) passed to the webpagetest-master/www/benchmarks/view.php URL. An attacker could execute arbitra... Read more
Affected Products : webpagetest- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-5178
An issue was discovered in Schneider Electric Tableau Server/Desktop Versions 7.0 to 10.1.3 in Wonderware Intelligence Versions 2014R3 and prior. These versions contain a system account that is installed by default. The default system account is difficult... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
4.7
MEDIUMCVE-2017-0537
An information disclosure vulnerability in the kernel USB gadget driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
4.7
MEDIUMCVE-2017-0536
An information disclosure vulnerability in the Synaptics touchscreen driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged pro... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
4.7
MEDIUMCVE-2017-0535
An information disclosure vulnerability in the HTC sound codec driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. ... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
4.7
MEDIUMCVE-2017-0534
An information disclosure vulnerability in the Qualcomm video driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. P... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
4.7
MEDIUMCVE-2017-0533
An information disclosure vulnerability in the Qualcomm video driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. P... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
4.7
MEDIUMCVE-2017-0532
An information disclosure vulnerability in the MediaTek video codec driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged proc... Read more
Affected Products : android- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
4.7
MEDIUMCVE-2017-0531
An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. P... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2017-0529
An information disclosure vulnerability in the MediaTek driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it could be used to access sensitive data without explicit user ... Read more
Affected Products : android- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0528
An elevation of privilege vulnerability in the kernel security subsystem could enable a local malicious application to to execute code in the context of a privileged process. This issue is rated as High because it is a general bypass for a kernel level de... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
7.6
HIGHCVE-2017-0527
An elevation of privilege vulnerability in the HTC Sensor Hub Driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pro... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
7.6
HIGHCVE-2017-0526
An elevation of privilege vulnerability in the HTC Sensor Hub Driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pro... Read more
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025