Air Transfer 1.2.1 & 1.0.14 – Multiple XSS Web Vulnerabilities

Posted by Vulnerability Lab on Feb 23

Document Title:
===============
Air Transfer 1.2.1 & 1.0.14 iOS – Multiple XSS Web Vulnerabilities

References (Source):
====================
https://www.vulnerability-lab.com/get_content.php?id=2035

Release Date:
=============
2017-02-22

Vulnerability Laboratory ID (VL-ID):
====================================
2035

Common Vulnerability Scoring System:
====================================
3.2

Product & Service Introduction:…

CVE-2017-6206

D-Link DGS-1510-28XMP, DGS-1510-28X, DGS-1510-52X, DGS-1510-52, DGS-1510-28P, DGS-1510-28, and DGS-1510-20 Websmart devices with firmware before 1.31.B003 allow attackers to conduct Unauthenticated Information Disclosure attacks via unspecified vectors.

CVE-2017-6205

D-Link DGS-1510-28XMP, DGS-1510-28X, DGS-1510-52X, DGS-1510-52, DGS-1510-28P, DGS-1510-28, and DGS-1510-20 Websmart devices with firmware before 1.31.B003 allow attackers to conduct Unauthenticated Command Bypass attacks via unspecified vectors.

RHSA-2017:0300-1: Moderate: python-oslo-middleware security update

Red Hat Enterprise Linux: An update for python-oslo-middleware is now available for Red Hat OpenStack
Platform 10.0 (Newton).

Red Hat Product Security has rated this update as having a security impact of
Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a
detailed severity rating, is available for each vulnerability from the CVE
link(s) in the References section.
CVE-2017-2592

RHSA-2017:0295-1: Important: kernel-rt security update

Red Hat Enterprise Linux: An update for kernel-rt is now available for Red Hat Enterprise Linux 7.

Red Hat Product Security has rated this update as having a security impact of
Important. A Common Vulnerability Scoring System (CVSS) base score, which gives
a detailed severity rating, is available for each vulnerability from the CVE
link(s) in the References section.
CVE-2017-6074