NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82215  CVE-2017-5152  An issue was discovered in Advantech WebAccess Version 8.1. By accessing a specific uniform resource locator (URL) on the web server, a malicious user is able to access pages unrestricted (AUTHENTICATION BYPASS).    6.4  Medium  2017-02-28  2017-02-17  View
82217  CVE-2017-5154  An issue was discovered in Advantech WebAccess Version 8.1. To be able to exploit the SQL injection vulnerability, an attacker must supply malformed input to the WebAccess software. Successful attack could result in administrative access to the application and its data files.    7.5  High  2017-02-28  2017-02-17  View
82219  CVE-2017-5157  An issue was discovered in Schneider Electric homeLYnk Controller, LSS100100, all versions prior to V1.5.0. The homeLYnk controller is susceptible to a cross-site scripting attack. User inputs can be manipulated to cause execution of JavaScript code.    4.3  Medium  2017-02-28  2017-02-17  View
82497  CVE-2017-5992  Openpyxl 2.4.1 resolves external entities by default, which allows remote attackers to conduct XXE attacks via a crafted .xlsx document.    5.8  Medium  2017-02-28  2017-02-17  View
82579  CVE-2017-5027  Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to properly enforce unsafe-inline content security policy, which allowed a remote attacker to bypass content security policy via a crafted HTML page.    4.3  Medium  2017-02-28  2017-02-17  View

Page 15523 of 17672, showing 5 records out of 88360 total, starting on record 77611, ending on 77615

Actions