NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86055  CVE-2017-7968  An Incorrect Default Permissions issue was discovered in Schneider Electric Wonderware InduSoft Web Studio v8.0 Patch 3 and prior versions. Upon installation, Wonderware InduSoft Web Studio creates a new directory and two files, which are placed in the system's path and can be manipulated by non-administrators. This could allow an authenticated user to escalate his or her privileges.    7.2  High  2017-06-03  2017-06-02  View
86311  CVE-2017-9230  The Bitcoin Proof-of-Work algorithm does not consider a certain attack methodology related to 80-byte block headers with a variety of initial 64-byte chunks followed by the same 16-byte chunk, multiple candidate root values ending with the same 4 bytes, and calculations involving sqrt numbers. This violates the security assumptions of (1) the choice of input, outside of the dedicated nonce area, fed into the Proof-of-Work function should not change its difficulty to evaluate and (2) every Proof-of-Work function execution should be independent.    Medium  2017-06-17  2017-06-12  View
86567  CVE-2017-9416  Directory traversal vulnerability in tools.file_open in Odoo 8.0, 9.0, and 10.0 allows remote authenticated users to read arbitrary local files readable by the Odoo service.    Medium  2017-06-12  2017-06-08  View
86823  CVE-2016-6093  IBM Tivoli Key Lifecycle Manager does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.    Medium  2017-06-18  2017-06-13  View
87079  CVE-2017-8551  An elevation of privilege vulnerability exists when Microsoft SharePoint software fails to properly sanitize a specially crafted requests, aka Microsoft SharePoint XSS vulnerability.    4.3  Medium  2017-07-18  2017-07-07  View

Page 15802 of 17672, showing 5 records out of 88360 total, starting on record 79006, ending on 79010

Actions