NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
88305  CVE-2016-4982  authd sets weak permissions for /etc/ident.key, which allows local users to obtain the key by leveraging a race condition between the creation of the key, and the chmod to protect it.          2017-07-18  2017-07-17  View
88306  CVE-2016-4984  /usr/libexec/openldap/generate-server-cert.sh in openldap-servers sets weak permissions for the TLS certificate, which allows local users to obtain the TLS certificate by leveraging a race condition between the creation of the certificate, and the chmod to protect it.          2017-07-18  2017-07-17  View
83443  CVE-2017-6797  A cross-site scripting (XSS) vulnerability in bug_change_status_page.php in MantisBT before 1.3.7 and 2.x before 2.2.1 allows remote attackers to inject arbitrary JavaScript via the 'action_type' parameter.    4.3  Medium  2017-07-18  2017-07-17  View
87795  CVE-2017-11143  In PHP before 5.6.31, an invalid free in the WDDX deserialization of boolean parameters could be used by attackers able to inject XML for deserialization to crash the PHP interpreter, related to an invalid free for an empty boolean element in ext/wddx/wddx.c.    Medium  2017-07-18  2017-07-17  View
88307  CVE-2016-4996  discovery-debug in Foreman before 6.2 when the ssh service has been enabled on discovered nodes displays the root password in plaintext in the system journal when used to log in, which allows local users with access to the system journal to obtain the root password by reading the system journal, or by clicking Logs on the console.          2017-07-18  2017-07-17  View

Page 112 of 17672, showing 5 records out of 88360 total, starting on record 556, ending on 560

Actions