NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87006 | CVE-2017-8449 | X-Pack Security 5.2.x would allow access to more fields than the user should have seen if the field level security rules used a mix of grant and exclude rules when merging multiple rules with field level security rules for the same index. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-05 | View | |
87007 | CVE-2017-8450 | X-Pack 5.1.1 did not properly apply document and field level security to multi-search and multi-get requests so users without access to a document and/or field may have been able to access this information. | 2 | 4 | Medium | 2017-07-18 | 2017-07-05 | View | |
87008 | CVE-2017-8451 | With X-Pack installed, Kibana versions before 5.3.1 have an open redirect vulnerability on the login page that would enable an attacker to craft a link that redirects to an arbitrary website. | 2 | 5.8 | Medium | 2017-07-18 | 2017-07-05 | View | |
87279 | CVE-2017-3214 | The Milwaukee ONE-KEY Android mobile application stores the master token in plaintext in the apk binary. | 2 | 5 | Medium | 2017-07-18 | 2017-07-05 | View | |
87280 | CVE-2017-3215 | The Milwaukee ONE-KEY Android mobile application uses bearer tokens with an expiration of one year. This bearer token, in combination with a user_id can be used to perform user actions. | 2 | 5 | Medium | 2017-07-18 | 2017-07-05 | View |
Page 1318 of 17672, showing 5 records out of 88360 total, starting on record 6586, ending on 6590