NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87801  CVE-2017-11164  In PCRE 8.41, the OP_KETRMAX feature in the match function in pcre_exec.c allows stack exhaustion (uncontrolled recursion) when processing a crafted regular expression.    7.8  High  2017-07-18  2017-07-17  View
88313  CVE-2016-8946  IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 118833.          2017-07-18  2017-07-17  View
87546  CVE-2017-1000006  Plotly, Inc. plotly.js versions prior to 1.16.0 are vulnerable to an XSS issue.          2017-07-18  2017-07-17  View
87802  CVE-2017-11165  dataTaker DT80 dEX 1.50.012 allows remote attackers to obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI.    Medium  2017-07-18  2017-07-17  View
88314  CVE-2016-8947  IBM Emptoris Sourcing 9.5.x through 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 118834          2017-07-18  2017-07-17  View

Page 116 of 17672, showing 5 records out of 88360 total, starting on record 576, ending on 580

Actions