NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87819  CVE-2017-11193  Pulse Connect Secure 8.3R1 has CSRF in diag.cgi. In the panel, the diag.cgi file is responsible for running commands such as ping, ping6, traceroute, traceroute6, nslookup, arp, and Portprobe. These functions do not have any protections against CSRF. That can allow an attacker to run these commands against any IP if they can get an admin to visit their malicious CSRF page.    6.8  Medium  2017-07-18  2017-07-17  View
88075  CVE-2017-7317  An issue was discovered on Humax Digital HG100 2.0.6 devices. The attacker can find the root credentials in the backup file, aka GatewaySettings.bin.    10  High  2017-07-18  2017-07-07  View
88331  CVE-2017-10962  REDCap before 7.5.1 has XSS via the query string.          2017-07-18  2017-07-18  View
33291  CVE-2014-5667  The Vault-Hide SMS, Pics & Videos (aka com.netqin.ps) application 5.0.14.22 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.    5.4  Medium  2017-07-18  2017-07-11  View
65804  CVE-2005-0010  Unknown vulnerability in the MMSE dissector in Ethereal 0.10.4 through 0.10.8 allows remote attackers to cause a denial of service by triggering a free of statically allocated memory.    Medium  2017-07-18  2017-07-10  View

Page 15573 of 17672, showing 5 records out of 88360 total, starting on record 77861, ending on 77865

Actions