NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 87819 | CVE-2017-11193 | Pulse Connect Secure 8.3R1 has CSRF in diag.cgi. In the panel, the diag.cgi file is responsible for running commands such as ping, ping6, traceroute, traceroute6, nslookup, arp, and Portprobe. These functions do not have any protections against CSRF. That can allow an attacker to run these commands against any IP if they can get an admin to visit their malicious CSRF page. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-17 | View | |
| 88075 | CVE-2017-7317 | An issue was discovered on Humax Digital HG100 2.0.6 devices. The attacker can find the root credentials in the backup file, aka GatewaySettings.bin. | 2 | 10 | High | 2017-07-18 | 2017-07-07 | View | |
| 88331 | CVE-2017-10962 | REDCap before 7.5.1 has XSS via the query string. | 2017-07-18 | 2017-07-18 | View | ||||
| 33291 | CVE-2014-5667 | The Vault-Hide SMS, Pics & Videos (aka com.netqin.ps) application 5.0.14.22 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-07-18 | 2017-07-11 | View | |
| 65804 | CVE-2005-0010 | Unknown vulnerability in the MMSE dissector in Ethereal 0.10.4 through 0.10.8 allows remote attackers to cause a denial of service by triggering a free of statically allocated memory. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15573 of 17672, showing 5 records out of 88360 total, starting on record 77861, ending on 77865