Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2018-03-09 CVE-2016-0275 Information Exposure vulnerability in IBM Financial Transaction Manager
IBM Financial Transaction Manager (FTM) for ACH Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, Financial Transaction Manager (FTM) for Check Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, and Financial Transaction Manager (FTM) for Corporate Payment Services (CPS) for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013 allows local users to obtain sensitive information via vectors related to cacheable HTTPS responses.
local
low complexity
ibm CWE-200
3.3
2018-03-09 CVE-2017-17330 Missing Release of Resource after Effective Lifetime vulnerability in Huawei Ar3200 Firmware and Ngfw Module Firmware
Huawei AR3200 V200R005C32; V200R006C10; V200R006C11; V200R007C00; V200R007C01; V200R007C02; V200R008C00; V200R008C10; V200R008C20; V200R008C30; NGFW Module V500R001C00; V500R001C20; V500R002C00 have a memory leak vulnerability.
local
low complexity
huawei CWE-772
3.3
2018-03-09 CVE-2017-17329 Missing Release of Resource after Effective Lifetime vulnerability in Huawei Viewpoint 8660 Firmware V100R008C03
Huawei ViewPoint 8660 V100R008C03 have a memory leak vulnerability.
local
low complexity
huawei CWE-772
3.3
2018-03-09 CVE-2017-17325 Unspecified vulnerability in Huawei Hicinema 8.0.3.308/8.0.4.300
Huawei video applications HiCinema with software of 8.0.3.308; 8.0.4.300 have a permission control vulnerability.
network
high complexity
huawei
3.7
2018-03-09 CVE-2017-17321 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei Ensp Firmware
Huawei eNSP software with software of versions earlier than V100R002C00B510 has a buffer overflow vulnerability.
local
low complexity
huawei CWE-119
3.3
2018-03-09 CVE-2017-17280 Information Exposure vulnerability in Huawei Lon-Al00B Firmware Lonal00Bc00
NFC (Near Field Communication) module in Huawei mobile phones with software LON-AL00BC00 has an information leak vulnerability.
low complexity
huawei CWE-200
3.5
2018-03-09 CVE-2017-17149 Unspecified vulnerability in Huawei Hiwallet 5.0.3.100/8.0.0.301
Huawei HiWallet App with the versions before 8.0.4 has an arbitrary lock pattern change vulnerability.
low complexity
huawei
3.9
2018-03-08 CVE-2018-0218 XXE vulnerability in Cisco Secure Access Control Server Solution Engine 5.8(0.8)
A vulnerability in the web-based user interface of the Cisco Secure Access Control Server prior to 5.8 patch 9 could allow an unauthenticated, remote attacker to gain read access to certain information in the affected system.
local
low complexity
cisco CWE-611
3.3
2018-03-08 CVE-2018-0207 XXE vulnerability in Cisco Secure Access Control Server Solution Engine 5.8(0.8)
A vulnerability in the web-based user interface of the Cisco Secure Access Control Server prior to 5.8 patch 9 could allow an unauthenticated, remote attacker to gain read access to certain information in the affected system.
local
low complexity
cisco CWE-611
3.3
2018-03-06 CVE-2018-5730 LDAP Injection vulnerability in multiple products
MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to circumvent a DN containership check by supplying both a "linkdn" and "containerdn" database argument, or by supplying a DN string which is a left extension of a container DN string but is not hierarchically within the container DN.
network
low complexity
mit fedoraproject debian redhat CWE-90
3.8