NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82213  CVE-2017-5149  An issue was discovered in St. Jude Medical Merlin@home, versions prior to Version 8.2.2 (RF models: EX1150; Inductive models: EX1100; and Inductive models: EX1100 with MerlinOnDemand capability). The identities of the endpoints for the communication channel between the transmitter and St. Jude Medical's web site, Merlin.net, are not verified. This may allow a man-in-the-middle attacker to access or influence communications between the identified endpoints.    6.8  Medium  2017-03-18  2017-03-16  View
83493  CVE-2017-6916  CSRF exists in BigTree CMS 4.1.18 with the nav-social[#] parameter to the admin/settings/update/ page. The Navigation Social can be changed.    4.3  Medium  2017-03-18  2017-03-16  View
83494  CVE-2017-6917  CSRF exists in BigTree CMS 4.2.16 with the value parameter to the admin/settings/update/ page. The Colophon can be changed.    4.3  Medium  2017-03-18  2017-03-16  View
83495  CVE-2017-6918  CSRF exists in BigTree CMS 4.2.16 with the value[#][*] parameter to the admin/settings/update/ page. The Navigation Social can be changed.    4.3  Medium  2017-03-18  2017-03-16  View
82216  CVE-2017-5153  An issue was discovered in OSIsoft PI Coresight 2016 R2 and earlier versions, and PI Web API 2016 R2 when deployed using the PI AF Services 2016 R2 integrated install kit. An information exposure through server log files vulnerability has been identified, which may allow service account passwords to become exposed for the affected services, potentially leading to unauthorized shutdown of the affected PI services as well as potential reuse of domain credentials.    2.1  Low  2017-03-18  2017-03-16  View

Page 15691 of 17672, showing 5 records out of 88360 total, starting on record 78451, ending on 78455

Actions