NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87750  CVE-2017-10973  In FineCMS before 2017-07-06, application/lib/ajax/get_image_data.php has SSRF, related to requests for non-image files with a modified HTTP Host header.    4.3  Medium  2017-07-18  2017-07-17  View
87749  CVE-2017-10972  Uninitialized data in endianness conversion in the XEvent handling of the X.Org X Server before 2017-06-19 allowed authenticated malicious users to access potentially privileged data from the X server.          2017-07-18  2017-07-17  View
87748  CVE-2017-10971  In the X.Org X server before 2017-06-19, a user authenticated to an X Session could crash or execute code in the context of the X Server by exploiting a stack overflow in the endianness conversion of X Events.          2017-07-18  2017-07-17  View
87747  CVE-2017-10970  Cross-site scripting (XSS) vulnerability in link.php in Cacti 1.1.12 allows remote anonymous users to inject arbitrary web script or HTML via the id parameter, related to the die_html_input_error function in lib/html_validate.php.    4.3  Medium  2017-07-18  2017-07-17  View
87746  CVE-2017-10968  In FineCMS through 2017-07-07, applicationcorecontroller emplate.php allows remote PHP code execution by placing the code after <?php in a route=template request.    7.5  High  2017-07-18  2017-07-17  View

Page 123 of 17672, showing 5 records out of 88360 total, starting on record 611, ending on 615

Actions