NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87298 | CVE-2017-6050 | A SQL Injection issue was discovered in Ecava IntegraXor Versions 5.2.1231.0 and prior. The application fails to properly validate user input, which may allow for an unauthenticated attacker to remotely execute arbitrary code in the form of SQL queries. | 2 | 7.5 | High | 2017-07-18 | 2017-06-29 | View | |
87302 | CVE-2017-7918 | An Improper Access Control issue was discovered in Cambium Networks ePMP. After a valid user has used SNMP configuration export, an attacker is able to remotely trigger device configuration backups using specific MIBs. These backups lack proper access control and may allow access to sensitive information and possibly allow for configuration changes. | 2 | 6 | Medium | 2017-07-18 | 2017-06-29 | View | |
87303 | CVE-2017-7922 | An Improper Privilege Management issue was discovered in Cambium Networks ePMP. The privileges for SNMP community strings are not properly restricted, which may allow an attacker to gain access to sensitive information and possibly allow for configuration changes. | 2 | 6.5 | Medium | 2017-07-18 | 2017-06-29 | View | |
87305 | CVE-2017-9130 | The faacEncOpen function in libfaac/frame.c in Freeware Advanced Audio Coder (FAAC) 1.28 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted wav file. | 2 | 4.3 | Medium | 2017-07-18 | 2017-06-29 | View | |
87310 | CVE-2017-9741 | install/make-config.php in ProjectSend r754 allows remote attackers to execute arbitrary PHP code via the dbprefix parameter, related to replacing TABLES_PREFIX in the configuration file. | 2 | 7.5 | High | 2017-07-18 | 2017-06-29 | View |
Page 1370 of 17672, showing 5 records out of 88360 total, starting on record 6846, ending on 6850