NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86537  CVE-2017-9372  PJSIP, as used in Asterisk Open Source 13.x before 13.15.1 and 14.x before 14.4.1, Certified Asterisk 13.13 before 13.13-cert4, and other products, allows remote attackers to cause a denial of service (buffer overflow and application crash) via a SIP packet with a crafted CSeq header in conjunction with a Via header that lacks a branch parameter.    Medium  2017-07-18  2017-07-07  View
88073  CVE-2017-7315  An issue was discovered on Humax Digital HG100R 2.0.6 devices. To download the backup file it's not necessary to use credentials, and the router credentials are stored in plaintext inside the backup, aka GatewaySettings.bin.    10  High  2017-07-18  2017-07-07  View
86026  CVE-2017-7485  In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server.    4.3  Medium  2017-07-18  2017-07-07  View
88074  CVE-2017-7316  An issue was discovered on Humax Digital HG100R 2.0.6 devices. There is XSS on the 404 page.    4.3  Medium  2017-07-18  2017-07-07  View
86027  CVE-2017-7486  PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in pg_user_mappings view which discloses foreign server passwords to any user having USAGE privilege on the associated foreign server.    Medium  2017-07-18  2017-07-07  View

Page 1218 of 17672, showing 5 records out of 88360 total, starting on record 6086, ending on 6090

Actions