NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 86460 | CVE-2017-2308 | An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions prior to 16.1R1 may allow an authenticated user to read arbitrary files on the device. | 2 | 5 | Medium | 2017-06-12 | 2017-06-08 | View | |
| 86716 | CVE-2017-9527 | The mark_context_stack function in gc.c in mruby through 1.2.0 allows attackers to cause a denial of service (heap-based use-after-free and application crash) or possibly have unspecified other impact via a crafted .rb file. | 2 | 6.8 | Medium | 2017-06-23 | 2017-06-22 | View | |
| 21436 | CVE-2016-6770 | An elevation of privilege vulnerability in the Framework API could enable a local malicious application to access system functions beyond its access level. This issue is rated as Moderate because it is a local bypass of restrictions on a constrained process. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0. Android ID: A-30202228. | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-17 | View | |
| 87228 | CVE-2017-0897 | ExpressionEngine version 2.x < 2.11.8 and version 3.x < 3.5.5 create an object signing token with weak entropy. Successfully guessing the token can lead to remote code execution. | 2 | 5 | Medium | 2017-07-18 | 2017-07-06 | View | |
| 21948 | CVE-2016-7904 | Cross-site request forgery (CSRF) vulnerability in CMS Made Simple before 2.1.6 allows remote attackers to hijack the authentication of administrators for requests that create accounts via an admin/adduser.php request. | 2 | 6 | Medium | 2017-01-30 | 2017-01-27 | View |
Page 15279 of 17672, showing 5 records out of 88360 total, starting on record 76391, ending on 76395