NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83450  CVE-2017-6807  mod_auth_mellon before 0.13.1 is vulnerable to a Cross-Site Session Transfer attack, where a user with access to one web site running on a server can copy their session cookie to a different web site on the same server to get access to that site.    4.3  Medium  2017-03-18  2017-03-14  View
83451  CVE-2017-6808  paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.faq.php (id parameter).    4.3  Medium  2017-03-18  2017-03-17  View
82172  CVE-2017-1121  IBM WebSphere Application Server 7.0, 8.0, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 1997743    3.5  Low  2017-03-18  2017-02-28  View
83196  CVE-2017-5234  Rapid7 Insight Collector installers prior to version 1.0.16 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.    6.8  Medium  2017-03-18  2017-03-07  View
83452  CVE-2017-6809  paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.donate.php (id parameter).    4.3  Medium  2017-03-18  2017-03-17  View

Page 15713 of 17672, showing 5 records out of 88360 total, starting on record 78561, ending on 78565

Actions