NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86917 | CVE-2017-1197 | IBM BigFix Compliance (TEMA SUAv1 SCA SCM) uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 123672. | 2 | 5 | Medium | 2017-06-23 | 2017-06-22 | View | |
86922 | CVE-2017-1379 | IBM API Connect 5.0.0.0 could allow a remote attacker to obtain sensitive information, caused by improper handling of requests to the Developer Portal. IBM X-Force ID: 127002. | 2 | 5 | Medium | 2017-06-23 | 2017-06-22 | View | |
86668 | CVE-2017-9324 | In Open Ticket Request System (OTRS) 3.3.x through 3.3.16, 4.x through 4.0.23, and 5.x through 5.0.19, an attacker with agent permission is capable of opening a specific URL in a browser to gain administrative privileges / full access. Afterward, all system settings can be read and changed. The URLs in question contain index.pl?Action=Installer with ;Subaction=Intro or ;Subaction=Start or ;Subaction=System appended at the end. | 2 | 6.5 | Medium | 2017-06-23 | 2017-06-22 | View | |
86927 | CVE-2017-4961 | An issue was discovered in Cloud Foundry Foundation BOSH Release 261.x versions prior to 261.3 and all 260.x versions. In certain cases an authenticated Director user can provide a malicious checksum that could allow them to escalate their privileges on the Director VM, aka BOSH Director Shell Injection Vulnerabilities. | 2 | 6.5 | Medium | 2017-06-23 | 2017-06-22 | View | |
83623 | CVE-2016-10248 | The jpc_tsfb_synthesize function in jpc_tsfb.c in JasPer before 1.900.9 allows remote attackers to cause a denial of service (NULL pointer dereference) via vectors involving an empty sequence. | 2 | 5 | Medium | 2017-06-23 | 2017-06-22 | View |
Page 1424 of 17672, showing 5 records out of 88360 total, starting on record 7116, ending on 7120