NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83213 | CVE-2017-5537 | The password reset form in Weblate before 2.10.1 provides different error messages depending on whether the email address is associated with an account, which allows remote attackers to enumerate user accounts via a series of requests. | 2 | 5 | Medium | 2017-03-29 | 2017-03-21 | View | |
83481 | CVE-2017-6880 | Buffer overflow in Cerberus FTP Server 8.0.10.3 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a long MLST command. | 2 | 7.5 | High | 2017-03-29 | 2017-03-21 | View | |
83497 | CVE-2017-6951 | The keyring_search_aux function in security/keys/keyring.c in the Linux kernel through 3.14.79 allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a request_key system call for the dead type. | 2 | 4.9 | Medium | 2017-03-29 | 2017-03-21 | View | |
83500 | CVE-2017-6955 | An issue was discovered in by-email/by-email.php in the Invite Anyone plugin before 1.3.15 for WordPress. A user is able to change the subject and the body of the invitation mail that should be immutable, which facilitates a social engineering attack. | 2 | 5 | Medium | 2017-03-29 | 2017-03-21 | View | |
83507 | CVE-2017-6967 | xrdp 0.9.1 calls the PAM function auth_start_session() in an incorrect location, leading to PAM session modules not being properly initialized, with a potential consequence of incorrect configurations or elevation of privileges, aka a pam_limits.so bypass. | 2 | 7.5 | High | 2017-03-29 | 2017-03-21 | View |
Page 15719 of 17672, showing 5 records out of 88360 total, starting on record 78591, ending on 78595