NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87801 | CVE-2017-11164 | In PCRE 8.41, the OP_KETRMAX feature in the match function in pcre_exec.c allows stack exhaustion (uncontrolled recursion) when processing a crafted regular expression. | 2 | 7.8 | High | 2017-07-18 | 2017-07-17 | View | |
88313 | CVE-2016-8946 | IBM Emptoris Sourcing 9.5.x through 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 118833. | 2017-07-18 | 2017-07-17 | View | ||||
87546 | CVE-2017-1000006 | Plotly, Inc. plotly.js versions prior to 1.16.0 are vulnerable to an XSS issue. | 2017-07-18 | 2017-07-17 | View | ||||
87802 | CVE-2017-11165 | dataTaker DT80 dEX 1.50.012 allows remote attackers to obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI. | 2 | 5 | Medium | 2017-07-18 | 2017-07-17 | View | |
88314 | CVE-2016-8947 | IBM Emptoris Sourcing 9.5.x through 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 118834 | 2017-07-18 | 2017-07-17 | View |
Page 116 of 17672, showing 5 records out of 88360 total, starting on record 576, ending on 580