CVE-2017-1000369
Exim supports the use of multiple “-p” command line arguments which are malloc()’ed and never free()’ed, used in conjunction with other issues allows attackers to cause arbitrary code execution. This...
Read MoreExim supports the use of multiple “-p” command line arguments which are malloc()’ed and never free()’ed, used in conjunction with other issues allows attackers to cause arbitrary code execution. This...
Read MoreSQL Injection exists in admin/index.php in Zenbership 1.0.8 via the filters array parameter, exploitable by a privileged account.
Read MoreIn EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80.8, a local authenticated user can load a maliciously crafted file in the search path which may potentially allow the attacker to...
Read MoreSQL injection vulnerability in rdr.php in nuevoMailer version 6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the “r” parameter.
Read MoreIn EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80.8, an unauthenticated remote attacker may be able to elevate their permissions to root through a command injection. This may...
Read More