Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-03-09 CVE-2017-17222 Improper Input Validation vulnerability in Huawei Espace 7950 Firmware and Espace 8950 Firmware
Import Language Package function in Huawei eSpace 7950 V200R003C30; eSpace 8950 V200R003C00; V200R003C30 has a remote code execution vulnerability.
network
low complexity
huawei CWE-20
8.8
2018-03-09 CVE-2017-17221 Improper Input Validation vulnerability in Huawei Espace 7950 Firmware and Espace 8950 Firmware
Import Signal Tone function in Huawei eSpace 7950 V200R003C30; eSpace 8950 V200R003C00; V200R003C30 has a remote code execution vulnerability.
network
low complexity
huawei CWE-20
8.8
2018-03-09 CVE-2017-17146 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei Dp300 Firmware V500R002C00
Huawei DP300 V500R002C00 have a buffer overflow vulnerability due to the lack of validation.
local
low complexity
huawei CWE-119
7.8
2018-03-09 CVE-2018-0544 Untrusted Search Path vulnerability in Woodybells Winshot
Untrusted search path vulnerability in WinShot 1.53a and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
woodybells CWE-426
7.8
2018-03-09 CVE-2018-0543 Untrusted Search Path vulnerability in Woodybells Jtrim
Untrusted search path vulnerability in Jtrim 1.53c and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
woodybells CWE-426
7.8
2018-03-09 CVE-2018-0524 Unspecified vulnerability in Jubat Jubatus
Jubatus 1.0.2 and earlier allows remote code execution via unspecified vectors.
network
low complexity
jubat
7.3
2018-03-09 CVE-2018-0523 OS Command Injection vulnerability in Buffalo Wxr-1900Dhp2 Firmware 2.48
Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
low complexity
buffalo CWE-78
8.8
2018-03-09 CVE-2018-0522 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Buffalo Wxr-1900Dhp2 Firmware 2.48
Buffer overflow in Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to execute arbitrary code via a specially crafted file.
local
low complexity
buffalo CWE-119
7.8
2018-03-09 CVE-2018-0521 Missing Authentication for Critical Function vulnerability in Buffalo Wxr-1900Dhp2 Firmware 2.48
Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to bypass authentication and execute arbitrary commands on the device via unspecified vectors.
low complexity
buffalo CWE-306
8.8
2018-03-09 CVE-2017-10854 Missing Authentication for Critical Function vulnerability in Corega Cg-Wgr 1200 Firmware 2.20
Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to bypass authentication and change the login password via unspecified vectors.
low complexity
corega CWE-306
8.8