NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87790 | CVE-2017-1113 | IBM Rational Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 121151. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-14 | View | |
87796 | CVE-2017-11144 | In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, the openssl extension PEM sealing code did not check the return value of the OpenSSL sealing function, which could lead to a crash of the PHP interpreter, related to an interpretation conflict for a negative number in ext/openssl/openssl.c, and an OpenSSL documentation omission. | 2 | 5 | Medium | 2017-07-18 | 2017-07-14 | View | |
88059 | CVE-2017-6734 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web interface of an affected device, related to the Guest Portal. More Information: CSCvd74794. Known Affected Releases: 1.3(0.909) 2.1(0.800). | 2 | 3.5 | Low | 2017-07-18 | 2017-07-14 | View | |
87804 | CVE-2017-11167 | FineCMS 2.1.0 allows remote attackers to execute arbitrary PHP code by using a URL Manager Add Site action to enter this code after a ', sequence in a domain name, as demonstrated by the ',phpinfo() input value. | 2 | 7.5 | High | 2017-07-18 | 2017-07-14 | View | |
88071 | CVE-2017-7175 | NfSen before 1.3.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the customfmt parameter (aka the Custom output format field). | 2 | 9 | High | 2017-07-18 | 2017-07-13 | View |
Page 136 of 17672, showing 5 records out of 88360 total, starting on record 676, ending on 680