CVE-2017-5610
- EPSS 0.86%
- Published 30.01.2017 04:59:00
- Last modified 20.04.2025 01:37:25
wp-admin/includes/class-wp-press-this.php in Press This in WordPress before 4.7.2 does not properly restrict visibility of a taxonomy-assignment user interface, which allows remote attackers to bypass intended access restrictions by reading terms.
CVE-2017-5611
- EPSS 12.38%
- Published 30.01.2017 04:59:00
- Last modified 20.04.2025 01:37:25
SQL injection vulnerability in wp-includes/class-wp-query.php in WP_Query in WordPress before 4.7.2 allows remote attackers to execute arbitrary SQL commands by leveraging the presence of an affected plugin or theme that mishandles a crafted post typ...
CVE-2017-5612
- EPSS 1.53%
- Published 30.01.2017 04:59:00
- Last modified 20.04.2025 01:37:25
Cross-site scripting (XSS) vulnerability in wp-admin/includes/class-wp-posts-list-table.php in the posts list table in WordPress before 4.7.2 allows remote attackers to inject arbitrary web script or HTML via a crafted excerpt.
CVE-2017-5202
- EPSS 1.08%
- Published 28.01.2017 01:59:01
- Last modified 20.04.2025 01:37:25
The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print().
CVE-2017-5203
- EPSS 1.08%
- Published 28.01.2017 01:59:01
- Last modified 20.04.2025 01:37:25
The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print().
CVE-2017-5204
- EPSS 2.17%
- Published 28.01.2017 01:59:01
- Last modified 20.04.2025 01:37:25
The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6_print().
CVE-2017-5205
- EPSS 1.08%
- Published 28.01.2017 01:59:01
- Last modified 20.04.2025 01:37:25
The ISAKMP parser in tcpdump before 4.9.0 has a buffer overflow in print-isakmp.c:ikev2_e_print().
CVE-2017-3312
- EPSS 0.22%
- Published 27.01.2017 22:59:04
- Last modified 20.04.2025 01:37:25
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows low privi...
CVE-2017-3313
- EPSS 0.05%
- Published 27.01.2017 22:59:04
- Last modified 20.04.2025 01:37:25
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: MyISAM). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows low privileg...
- EPSS 0.08%
- Published 27.01.2017 22:59:04
- Last modified 20.04.2025 01:37:25
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Logging). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows high privileged att...