NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84211  CVE-2017-0887  Nextcloud Server before 9.0.55 and 10.0.2 suffers from a bypass in the quota limitation. Due to not properly sanitizing values provided by the `OC-Total-Length` HTTP header an authenticated adversary may be able to exceed their configured user quota. Thus using more space than allowed by the administrator.    Medium  2017-04-27  2017-04-10  View
84212  CVE-2017-0888  Nextcloud Server before 9.0.55 and 10.0.2 suffers from a Content-Spoofing vulnerability in the files app. The top navigation bar displayed in the files list contained partially user-controllable input leading to a potential misrepresentation of information.    4.3  Medium  2017-04-27  2017-04-10  View
84218  CVE-2017-1001000  The register_routes function in wp-includes/rest-api/endpoints/class-wp-rest-posts-controller.php in the REST API in WordPress 4.7.x before 4.7.2 does not require an integer identifier, which allows remote attackers to modify arbitrary pages via a request for wp-json/wp/v2/posts followed by a numeric value and a non-numeric value, as demonstrated by the wp-json/wp/v2/posts/123?id=123helloworld URI.    Medium  2017-04-27  2017-04-10  View
84732  CVE-2017-6194  The relocs function in libr/bin/p/bin_bflt.c in radare2 1.2.1 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file.    6.8  Medium  2017-04-27  2017-04-10  View
84227  CVE-2017-1180  The IBM TRIRIGA Document Manager contains a vulnerability that could allow an authenticated user to execute actions they did not have access to. IBM Reference #: 2001084.    3.5  Low  2017-04-27  2017-04-11  View

Page 15826 of 17672, showing 5 records out of 88360 total, starting on record 79126, ending on 79130

Actions