NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 20688 | CVE-2016-5437 | Unspecified vulnerability in Oracle MySQL 5.7.12 and earlier allows remote administrators to affect availability via vectors related to Server: Log. | 2 | 4 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 86224 | CVE-2017-9133 | An issue was discovered on Mimosa Client Radios before 2.2.3 and Mimosa Backhaul Radios before 2.2.3. In the device's web interface, after logging in, there is a page that allows you to ping other hosts from the device and view the results. The user is allowed to specify which host to ping, but this variable is not sanitized server-side, which allows an attacker to pass a specially crafted string to execute shell commands as the root user. | 2 | 9 | High | 2017-05-27 | 2017-05-26 | View | |
| 20944 | CVE-2016-5771 | spl_array.c in the SPL extension in PHP before 5.5.37 and 5.6.x before 5.6.23 improperly interacts with the unserialize implementation and garbage collection, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free and application crash) via crafted serialized data. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
| 86480 | CVE-2017-8402 | PivotX 2.3.11 allows remote authenticated users to execute arbitrary PHP code via vectors involving an upload of a .htaccess file. | 2 | 6.5 | Medium | 2017-06-12 | 2017-06-08 | View | |
| 21200 | CVE-2016-6426 | The j_spring_security_switch_user function in Cisco Unified Intelligence Center (CUIC) 8.5.4 through 9.1(1), as used in Unified Contact Center Express 10.0(1) through 11.0(1), allows remote attackers to create user accounts by visiting an unspecified web page, aka Bug IDs CSCuy75027 and CSCuy81653. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 14437 of 17672, showing 5 records out of 88360 total, starting on record 72181, ending on 72185