NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
20137  CVE-2016-4513  Cross-site scripting (XSS) vulnerability in the Schneider Electric PowerLogic PM8ECC module before 2.651 for PowerMeter 800 devices allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-19  2016-06-28  View
85673  CVE-2017-0214  Windows COM in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when Windows fails to properly validate input before loading type libraries, aka Windows COM Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2017-0213.    4.4  Medium  2017-05-27  2017-05-24  View
86185  CVE-2017-9061  In WordPress before 4.7.5, a cross-site scripting (XSS) vulnerability exists when attempting to upload very large files, because the error message does not properly restrict presentation of the filename.    4.3  Medium  2017-07-18  2017-07-17  View
86441  CVE-2016-4879  Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Mail version 3.0.10 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.    6.8  Medium  2017-05-27  2017-05-19  View
86697  CVE-2017-9465  The yr_arena_write_data function in YARA 3.6.1 allows remote attackers to cause a denial of service (buffer over-read and application crash) or obtain sensitive information from process memory via a crafted file that is mishandled in the yr_re_fast_exec function in libyara/re.c and the _yr_scan_match_callback function in libyara/scan.c.    5.8  Medium  2017-06-17  2017-06-14  View

Page 14605 of 17672, showing 5 records out of 88360 total, starting on record 73021, ending on 73025

Actions