WAFPlanet

CVE Database - 2017

Browse known vulnerabilities with WAF coverage analysis. See which CVEs are detectable by Web Application Firewalls and their OWASP CRS rules.

4807
Matching CVEs
15562
Critical
25943
High
66770
High WAF Coverage

CVE-2017-5263

HIGH
8.00 CVSS 3.0

Versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware lack CSRF controls that can mitigate the effects of CSRF attacks, which are most typically implemented as randomized per-session tokens associated with any web application function, especially destructive ones.

Cross-Site Request Forgery (CSRF)
WAF: Low

CVE-2017-5261

HIGH
8.80 CVSS 3.0

In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, the 'ping' and 'traceroute' functions of the web administrative console expose a file path traversal vulnerability, accessible to all authenticated users.

Path Traversal
WAF: High

CVE-2017-5258

MEDIUM
5.40 CVSS 3.0

In version 3.5 and prior of Cambium Networks ePMP firmware, an attacker who knows or can guess the RW community string can provide a URL for a configuration file over SNMP with XSS strings in certain SNMP OIDs, serve it via HTTP, and the affected device will perform a configuration restore using the attacker's supplied config file, including the inserted XSS strings.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-5257

MEDIUM
5.40 CVSS 3.0

In version 3.5 and prior of Cambium Networks ePMP firmware, an attacker who knows (or guesses) the SNMP read/write (RW) community string can insert XSS strings in certain SNMP OIDs which will execute in the context of the currently-logged on user.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-5256

MEDIUM
5.40 CVSS 3.0

In version 3.5 and prior of Cambium Networks ePMP firmware, all authenticated users have the ability to update the Device Name and System Description fields in the web administration console, and those fields are vulnerable to persistent cross-site scripting (XSS) injection.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-5255

HIGH
8.80 CVSS 3.0

In version 3.5 and prior of Cambium Networks ePMP firmware, a lack of input sanitation for certain parameters on the web management console allows any authenticated user (including the otherwise low-privilege readonly user) to inject shell meta-characters as part of a specially-crafted POST request to the get_chart function and run OS-level commands, effectively as root.

OS Command Injection
WAF: High

CVE-2017-5254

HIGH
8.80 CVSS 3.0

In version 3.5 and prior of Cambium Networks ePMP firmware, the non-administrative users 'installer' and 'home' have the capability of changing passwords for other accounts, including admin, after disabling a client-side protection mechanism.

Improper Privilege Management
WAF: Low

CVE-2011-4955

MEDIUM
6.10 CVSS 3.0

Multiple cross-site scripting (XSS) vulnerabilities in ui_stats.php in the bSuite plugin before 5 alpha 3 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) s or (2) p parameters to index.php.

Cross-Site Scripting (XSS)
WAF: High

CVE-2012-2576

CRITICAL
9.80 CVSS 3.0

SQL injection vulnerability in the LoginServlet page in SolarWinds Storage Manager before 5.1.2, SolarWinds Storage Profiler before 5.1.2, and SolarWinds Backup Profiler before 5.1.2 allows remote attackers to execute arbitrary SQL commands via the loginName field.

SQL Injection
WAF: High

CVE-2017-17745

MEDIUM
5.40 CVSS 3.0

Cross-site scripting (XSS) vulnerability in system_name_set.cgi in TP-Link TL-SG108E 1.0.0 allows authenticated remote attackers to submit arbitrary java script via the 'sysName' parameter.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-16735

MEDIUM
5.30 CVSS 3.0

A SQL Injection issue was discovered in Ecava IntegraXor v 6.1.1030.1 and prior. The SQL Injection vulnerability has been identified, which generates an error in the database log.

SQL Injection
WAF: High

CVE-2017-16733

MEDIUM
5.30 CVSS 3.0

A SQL Injection issue was discovered in Ecava IntegraXor v 6.1.1030.1 and prior. The SQL Injection vulnerability has been identified, which an attacker can leverage to disclose sensitive information from the database.

SQL Injection
WAF: High

CVE-2017-1757

HIGH
8.80 CVSS 3.0

IBM Security Guardium 10.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 135858.

SQL Injection
WAF: High

CVE-2017-1751

MEDIUM
5.40 CVSS 3.0

IBM Robotic Process Automation with Automation Anywhere 10.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 135546.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-1746

HIGH
8.80 CVSS 3.0

IBM Jazz for Service Management (IBM Tivoli Components 1.1.3) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 135519.

Cross-Site Request Forgery (CSRF)
WAF: Low

CVE-2017-1696

HIGH
8.80 CVSS 3.0

IBM QRadar 7.2 and 7.3 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 134178.

Improper Input Validation
WAF: Medium

CVE-2017-1631

HIGH
8.80 CVSS 3.0

IBM Jazz for Service Management (IBM Tivoli Components 1.1.3) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 133140.

Cross-Site Request Forgery (CSRF)
WAF: Low

CVE-2017-1600

MEDIUM
5.40 CVSS 3.0

IBM Security Guardium 10.0 Database Activity Monitor is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 132613.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-15532

MEDIUM
5.70 CVSS 3.0

Prior to 10.6.4, Symantec Messaging Gateway may be susceptible to a path traversal attack (also known as directory traversal). These types of attacks aim to access files and directories that are stored outside the web root folder. By manipulating variables, it may be possible to access arbitrary files and directories stored on the file system including application source code or configuration and critical system files.

Path Traversal
WAF: High

CVE-2017-14968

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x830000c4, a related issue to CVE-2017-17113.

Improper Input Validation
WAF: Medium

CVE-2017-14967

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x83000080.

Improper Input Validation
WAF: Medium

CVE-2017-14966

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x830000c0.

Improper Input Validation
WAF: Medium

CVE-2017-14965

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x830000cc.

Improper Input Validation
WAF: Medium

CVE-2017-14964

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x8300005c.

Improper Input Validation
WAF: Medium

CVE-2017-14963

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x83000058.

Improper Input Validation
WAF: Medium

CVE-2017-1494

MEDIUM
5.40 CVSS 3.0

IBM Business Process Manager 8.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 128692.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-1262

MEDIUM
6.10 CVSS 3.0

IBM Security Guardium 10.0 is vulnerable to HTTP response splitting attacks. A remote attacker could exploit this vulnerability using specially-crafted URL to cause the server to return a split response, once the URL is clicked. This would allow the attacker to perform further attacks, such as Web cache poisoning, cross-site scripting, and possibly obtain sensitive information. IBM X-Force ID: 124737.

HTTP Response Splitting
WAF: High

CVE-2017-12072

MEDIUM
5.40 CVSS 3.0

Cross-site scripting (XSS) vulnerability in PixlrEditorHandler.php in Synology Photo Station before 6.8.0-3456 allows remote authenticated users to inject arbitrary web scripts or HTML via the id parameter.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-17752

MEDIUM
6.10 CVSS 3.0

Ability Mail Server 3.3.2 has Cross Site Scripting (XSS) via the body of an e-mail message, with JavaScript code executed on the Read Mail screen (aka the /_readmail URI). This is fixed in version 4.2.4.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-4940

MEDIUM
6.10 CVSS 3.1

The ESXi Host Client in VMware ESXi (6.5 before ESXi650-201712103-SG, 5.5 before ESXi600-201711103-SG and 5.5 before ESXi550-201709102-SG) contains a vulnerability that may allow for stored cross-site scripting (XSS). An attacker can exploit this vulnerability by injecting Javascript, which might get executed when other users access the Host Client.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-17804

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus 2.16.20, the driver file (ntguard.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x83000084.

Improper Input Validation
WAF: Medium

CVE-2017-17803

HIGH
7.80 CVSS 3.0

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x82736068, a different vulnerability than CVE-2017-17475.

Improper Input Validation
WAF: Medium

CVE-2017-17802

HIGH
7.80 CVSS 3.0

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8273E080.

Improper Input Validation
WAF: Medium

CVE-2017-17801

HIGH
7.80 CVSS 3.0

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8273E060.

Improper Input Validation
WAF: Medium

CVE-2017-17800

HIGH
7.80 CVSS 3.0

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8273A0A0, a different vulnerability than CVE-2017-17798.

Improper Input Validation
WAF: Medium

CVE-2017-17799

HIGH
7.80 CVSS 3.0

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x82730068.

Improper Input Validation
WAF: Medium

CVE-2017-17798

HIGH
7.80 CVSS 3.0

In TG Soft Vir.IT eXplorer Lite 8.5.42, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8273A0A0, a different vulnerability than CVE-2017-17800.

Improper Input Validation
WAF: Medium

CVE-2017-17797

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus 2.16.20, the driver file (ntguard.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x83000058.

Improper Input Validation
WAF: Medium

CVE-2017-17796

HIGH
7.80 CVSS 3.0

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x827300A4.

Improper Input Validation
WAF: Medium

CVE-2017-17795

HIGH
7.80 CVSS 3.0

In IKARUS anti.virus 2.16.20, the driver file (ntguard.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x83000088.

Improper Input Validation
WAF: Medium

CVE-2017-17792

MEDIUM
6.10 CVSS 3.0

Cross site scripting (XSS) vulnerability in the markup_clean_href function in inc/conv.php in BlogoText through 3.7.6 allows remote attackers to inject arbitrary JavaScript via a comment.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-17780

MEDIUM
6.10 CVSS 3.1

The Clockwork SMS clockwork-test-message.php component has XSS via a crafted "to" parameter in a clockwork-test-message request to wp-admin/admin.php. This component code is found in the following WordPress plugins: Clockwork Free and Paid SMS Notifications 2.0.3, Two-Factor Authentication - Clockwork SMS 1.0.2, Booking Calendar - Clockwork SMS 1.0.5, Contact Form 7 - Clockwork SMS 2.3.0, Fast Secure Contact Form - Clockwork SMS 2.1.2, Formidable - Clockwork SMS 1.0.2, Gravity Forms - Clockwork SMS 2.2, and WP e-Commerce - Clockwork SMS 2.0.5.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-17779

CRITICAL
9.80 CVSS 3.0

Paid To Read Script 2.0.5 has SQL injection via the referrals.php id parameter.

SQL Injection
WAF: High

CVE-2017-17778

MEDIUM
4.80 CVSS 3.0

Paid To Read Script 2.0.5 has XSS via the referrals.php tier parameter or the admin/userview.php uid parameter.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-17777

CRITICAL
9.80 CVSS 3.0

Paid To Read Script 2.0.5 has authentication bypass in the admin panel via a direct request, as demonstrated by the admin/viewvisitcamp.php fn parameter and the admin/userview.php uid parameter.

Improper Authentication
WAF: Low

CVE-2017-17775

MEDIUM
6.10 CVSS 3.0

Piwigo 2.9.2 has XSS via the name parameter in an admin.php?page=album-3-properties request.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-17774

HIGH
8.80 CVSS 3.0

admin/configuration.php in Piwigo 2.9.2 has CSRF.

Cross-Site Request Forgery (CSRF)
WAF: Low

CVE-2017-17753

MEDIUM
6.10 CVSS 3.0

Multiple cross-site scripting (XSS) vulnerabilities in the esb-csv-import-export plugin through 1.1 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) cie_type, (2) cie_import, (3) cie_update, or (4) cie_ignore parameter to includes/admin/views/esb-cie-import-export-page.php.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-17744

MEDIUM
6.10 CVSS 3.0

A cross-site scripting (XSS) vulnerability in the custom-map plugin through 1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the map_id parameter to view/advancedsettings.php.

Cross-Site Scripting (XSS)
WAF: High

CVE-2017-17719

MEDIUM
6.10 CVSS 3.0

A cross-site scripting (XSS) vulnerability in the wp-concours plugin through 1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the result_message parameter to includes/concours_page.php.

Cross-Site Scripting (XSS)
WAF: High
Page 4 of 97 (4807 CVEs)