14,642 vulnerabilities published in 2017
Paid To Read Script 2.0.5 has XSS via the referrals.php tier parameter or the admin/userview.php uid parameter.
The Batch Manager component of Piwigo 2.9.2 is vulnerable to Persistent Cross Site Scripting via tags-* array parameters
Bus Booking Script has XSS via the results.php datepicker parameter or the admin/new_master.php spemail parameter.
PHP Scripts Mall Responsive Realestate Script has XSS via the admin/general.php gplus parameter.
PHP Scripts Mall Professional Service Script has XSS via the admin/general_settingupd.php website_title parameter.
PHP Scripts Mall Professional Service Script has XSS via the admin/bannerview.php view parameter.
Cross-site scripting (XSS) vulnerability in User Policy editor in Synology MailPlus Server before 1.4.0-0415 allows remo
PHP Scripts Mall Single Theater Booking has XSS via the admin/viewtheatre.php theatreid parameter.
PHP Scripts Mall Single Theater Booking has XSS via the title parameter to admin/sitesettings.php.
PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/event_edit.php edit_id parameter.
PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/state_view.php cou_id parameter.
PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/caste_view.php comm_id parameter.
PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/event_add.php event_title parameter.
custom/run.cgi in Webmin before 1.870 allows remote authenticated administrators to conduct XSS attacks via the descript
An information disclosure vulnerability in Qualcomm components including the camera driver and video driver could enable
An information disclosure vulnerability in Qualcomm components including the camera driver and video driver could enable
An information disclosure vulnerability in Package Manager could enable a local malicious application to bypass operatin
A denial of service vulnerability in the NVIDIA camera driver could enable an attacker to cause a local permanent denial
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network
An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network
An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access
An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access
An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to acces
An information disclosure vulnerability in the camera driver could enable a local malicious application to access data o
An information disclosure vulnerability in the MediaTek driver could enable a local malicious application to access data
An information disclosure vulnerability in the MediaTek driver could enable a local malicious application to access data
An information disclosure vulnerability in the MediaTek driver could enable a local malicious application to access data
An information disclosure vulnerability in the STMicroelectronics driver could enable a local malicious application to a
An information disclosure vulnerability in the STMicroelectronics driver could enable a local malicious application to a
An information disclosure vulnerability in the HTC input driver could enable a local malicious application to access dat
The windows_icon_typefind function in gst-plugins-base in GStreamer before 1.10.2, when G_SLICE is set to always-malloc,
A vulnerability in the Cisco IOS Software forwarding queue of Cisco 2960X and 3750X switches could allow an unauthentica
Samsung KNOX 1.0 uses a weak eCryptFS Key generation algorithm, which makes it easier for local users to obtain sensitiv
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent
Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: P
Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supp
Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supp
Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supp
Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supp
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: MyISAM). Supported versions that are
An information disclosure vulnerability in the Qualcomm Secure Execution Environment Communicator could enable a local m
An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to acces
IBM InfoSphere Information Server could allow a local user under special circumstances to execute commands during instal
IBM Tivoli Storage Manager HSM for Windows displays the encrypted Tivoli Storage Manager password in application trace o
MantisBT before 1.3.1 and 2.x before 2.0.0-beta.2 uses a weak Content Security Policy when using the Gravatar plugin, wh
Scan for 2017 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started