NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
75256  CVE-1999-0604  An incorrect configuration of the WebStore 1.0 shopping cart CGI program "web_store.cgi" could disclose private information.    Medium  2017-01-05  2016-10-17  View
86055  CVE-2017-7968  An Incorrect Default Permissions issue was discovered in Schneider Electric Wonderware InduSoft Web Studio v8.0 Patch 3 and prior versions. Upon installation, Wonderware InduSoft Web Studio creates a new directory and two files, which are placed in the system's path and can be manipulated by non-administrators. This could allow an authenticated user to escalate his or her privileges.    7.2  High  2017-06-03  2017-06-02  View
82232  CVE-2017-5590  An incorrect implementation of XEP-0280: Message Carbons in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for ChatSecure (3.2.0 - 4.0.0; only iOS) and Zom (all versions up to 1.0.11; only iOS).    4.3  Medium  2017-03-18  2017-02-28  View
82254  CVE-2017-5858  An incorrect implementation of XEP-0280: Message Carbons in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Converse.js (0.8.0 - 1.0.6, 2.0.0 - 2.0.4).    4.3  Medium  2017-03-18  2017-02-28  View
82236  CVE-2017-5602  An incorrect implementation of XEP-0280: Message Carbons in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for jappix 1.0.0 to 1.1.6.    4.3  Medium  2017-03-18  2017-02-28  View

Page 1030 of 17672, showing 5 records out of 88360 total, starting on record 5146, ending on 5150

Actions