NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 82215 | CVE-2017-5152 | An issue was discovered in Advantech WebAccess Version 8.1. By accessing a specific uniform resource locator (URL) on the web server, a malicious user is able to access pages unrestricted (AUTHENTICATION BYPASS). | 2 | 6.4 | Medium | 2017-02-28 | 2017-02-17 | View | |
| 82217 | CVE-2017-5154 | An issue was discovered in Advantech WebAccess Version 8.1. To be able to exploit the SQL injection vulnerability, an attacker must supply malformed input to the WebAccess software. Successful attack could result in administrative access to the application and its data files. | 2 | 7.5 | High | 2017-02-28 | 2017-02-17 | View | |
| 82219 | CVE-2017-5157 | An issue was discovered in Schneider Electric homeLYnk Controller, LSS100100, all versions prior to V1.5.0. The homeLYnk controller is susceptible to a cross-site scripting attack. User inputs can be manipulated to cause execution of JavaScript code. | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-17 | View | |
| 82497 | CVE-2017-5992 | Openpyxl 2.4.1 resolves external entities by default, which allows remote attackers to conduct XXE attacks via a crafted .xlsx document. | 2 | 5.8 | Medium | 2017-02-28 | 2017-02-17 | View | |
| 82579 | CVE-2017-5027 | Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, failed to properly enforce unsafe-inline content security policy, which allowed a remote attacker to bypass content security policy via a crafted HTML page. | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-17 | View |
Page 15523 of 17672, showing 5 records out of 88360 total, starting on record 77611, ending on 77615