NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83213  CVE-2017-5537  The password reset form in Weblate before 2.10.1 provides different error messages depending on whether the email address is associated with an account, which allows remote attackers to enumerate user accounts via a series of requests.    Medium  2017-03-29  2017-03-21  View
83481  CVE-2017-6880  Buffer overflow in Cerberus FTP Server 8.0.10.3 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a long MLST command.    7.5  High  2017-03-29  2017-03-21  View
83497  CVE-2017-6951  The keyring_search_aux function in security/keys/keyring.c in the Linux kernel through 3.14.79 allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a request_key system call for the dead type.    4.9  Medium  2017-03-29  2017-03-21  View
83500  CVE-2017-6955  An issue was discovered in by-email/by-email.php in the Invite Anyone plugin before 1.3.15 for WordPress. A user is able to change the subject and the body of the invitation mail that should be immutable, which facilitates a social engineering attack.    Medium  2017-03-29  2017-03-21  View
83507  CVE-2017-6967  xrdp 0.9.1 calls the PAM function auth_start_session() in an incorrect location, leading to PAM session modules not being properly initialized, with a potential consequence of incorrect configurations or elevation of privileges, aka a pam_limits.so bypass.    7.5  High  2017-03-29  2017-03-21  View

Page 15719 of 17672, showing 5 records out of 88360 total, starting on record 78591, ending on 78595

Actions