NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
88020 | CVE-2017-6044 | An Improper Authorization issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11. Several files and directories can be accessed without authentication, which may allow a remote attacker to perform sensitive functions including arbitrary file upload, file download, and device reboot. | 2 | 10 | High | 2017-07-18 | 2017-07-06 | View | |
88276 | CVE-2017-9914 | XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .bie file, related to a Read Access Violation on Block Data Move starting at Xjbig+0x000000000000121b. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
66005 | CVE-2005-0241 | The httpProcessReplyHeader function in http.c for Squid 2.5-STABLE7 and earlier does not properly set the debug context when it is handling "oversized" HTTP reply headers, which might allow remote attackers to poison the cache or bypass access controls based on header size. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
66773 | CVE-2005-1024 | modules.php in PHP-Nuke 6.x to 7.6 allows remote attackers to obtain sensitive information via a direct request to (1) my_headlines, (2) userinfo, or (3) search, which reveals the path in a PHP error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67285 | CVE-2005-1558 | The web module in Neteyes Nexusway allows remote attackers to bypass authentication and gain administrator privileges by setting the cyclone500_auth cookie. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 1152 of 17672, showing 5 records out of 88360 total, starting on record 5756, ending on 5760